At Braze, we have found our people. We’re a genuinely approachable, exceptionally kind, and intensely passionate crew.
We seek to ignite that passion by setting high standards, championing teamwork, and creating work-life harmony as we collectively navigate rapid growth on a global scale while striving for greater equity and opportunity – inside and outside our organization.
To flourish here, you must be prepared to set a high bar for yourself and those around you. There is always a way to contribute: Acting with autonomy, having accountability and being open to new perspectives are essential to our continued success.
Our deep curiosity to learn and our eagerness to share diverse passions with others gives us balance and injects a one-of-a-kind vibrancy into our culture.
If you are driven to solve exhilarating challenges and have a bias toward action in the face of change, you will be empowered to make a real impact here, with a sharp and passionate team at your back. If Braze sounds like a place where you can thrive, we can’t wait to meet you.
WHAT YOU'LL DO
Braze is a modern, cloud-first SaaS company running on cloud-native infrastructure across AWS and GCP. We're looking for a Cloud Security Engineer to join our Security Engineering function - a hands-on role focused on keeping our security operations running well day to day. You'll respond to incidents, review changes and access for security risk, operate the security tooling that protects our environment (endpoint/EDR, SIEM, cloud posture, and vulnerability scanners), manage identity and access, and drive vulnerabilities to remediation.
This is an individual-contributor role that works within priorities set by senior members of the team. You don't need to have set security strategy or led a team - but you should operate tools with real judgment (knowing a genuine finding from noise, and why it matters), be reliable at driving issues to closure, and want to grow deeper in cloud security. It sits one level below our Senior Cloud Security Engineer.
Key job responsibilities:
1) Incident response & investigations:
- Respond to security alerts and events - triage, contain, and help investigate - with support from senior engineers on higher-severity incidents
- Follow and help improve our incident-response playbooks, and capture what you learn so the next response goes faster
- Pull the right data (cloud logs, endpoint telemetry) to reconstruct what happened and support the response
2) Security reviews & IAM:
- Review changes, designs, and cloud configurations for security issues, and give practical, specific feedback to the teams making them
- Operate and improve identity and access across AWS and GCP: handle access requests, run least-privilege reviews, and keep access hygiene high
- Reason about IAM policies and permissions - spotting risky or over-broad access and proposing tighter alternatives
3) Operate the security stack:
- Run and tune our security tooling day to day - CrowdStrike (EDR/CSPM), SIEM, cloud-native security services, and vulnerability scanners such as Tenable
- Triage the alerts these tools produce: separate real signal from noise, tune out false positives, and escalate what matters
- Keep tooling healthy - coverage, agent deployment, integrations, and configuration
- Write small scripts (Python) to automate repetitive work and reduce manual toil
4) Vulnerability management & remediation:
- Run vulnerability scanning across cloud assets, and triage and prioritize findings by real risk, not just severity score
- Drive remediation to closure: partner with Infrastructure, SRE, and Product Engineering to get fixes shipped, and track them until they're done
- Spot recurring issues and suggest the guardrail or config change that stops them coming back
WHO YOU ARE
You're a hands-on engineer who's curious about how attacks and cloud systems work - not someone who just clicks through consoles. You operate security tools with judgment: you can tell a real detection from a false positive, explain why a permission or misconfiguration is risky, and decide what deserves attention now. You're reliable at chasing an issue all the way to closure, and you communicate clearly and without friction with the teams you're asking to fix things. You want to grow into deeper cloud security work, and you learn quickly. Above all, you can walk someone through the messy middle - what you tried, what broke, and what you'd do differently.
1) WHAT WE'RE SCREENING FOR:
You should be able to reason about the areas below from real experience - not just recite tools you've touched. We go deep on the "why" and the "what would you do if," and we'd rather hear about something that went sideways than a tidy success:
- Incident response - how you triage an alert: what you check first, in what order, and when you pull in someone senior
- Endpoint / EDR - a real detection versus a false positive, and how you told them apart or tuned it out
- IAM - how you reason about least privilege, and how you'd handle an over-broad access request
- Vulnerability remediation - how you prioritize findings, and how you actually get another team to fix them
- Security reviews - what you look for when reviewing a change, config, or access request
- Automation - something small you scripted to cut out manual work
2) THE FEW HARD PREREQUISITES
The genuinely pass/fail requirements:
- ~3+ years in security operations, cloud, or infrastructure, with hands-on time operating security tooling (EDR, SIEM, and/or vulnerability scanners)
- Working knowledge of AWS, especially IAM; some GCP and container/cloud-workload exposure is a plus
- You can script in Python to automate small tasks — not just drive tools through their UI
- You can explain not just what a tool flagged, but why it matters
Backgrounds we welcome: this is a role you can grow in, so we're glad to hear from strong SRE, infrastructure, or DevOps engineers moving into security, and from SOC or security analysts going cloud-native - not only people with a linear cloud-security resume.
3) WHAT MAKES A CANDIDATE STAND OUT
We weight depth and curiosity relative to your experience over any credential:
- A time you chased a root cause further than you strictly had to - and what you found
- Something tedious you automated because it was worth doing, even if no one asked
- You can explain a cloud attack path, or an incident you were part of, clearly and honestly - including what you'd do differently
- A home lab, CTF, write-up, or side project that shows you dig into how things work
- Certs (e.g., AWS or security certifications) are fine signal, but we read them as a starting point
#LI-Hybrid
WHAT WE OFFER
Braze benefits vary by location, and we encourage you to review our specific benefits offerings for each country here. More details on benefits plans will be provided if you receive an offer of employment.
From offering comprehensive benefits to fostering hybrid ways of working, we’ve got you covered so you can prioritize work-life harmony. Braze offers benefits such as:
- Competitive compensation that may include equity
- Retirement and Employee Stock Purchase Plans
- Flexible paid time off
- Comprehensive benefit plans covering medical, dental, vision, life, and disability
- Family services that include fertility benefits and equal paid parental leave
- Professional development supported by formal career pathing, learning platforms, and a yearly learning stipend
- A curated in-office employee experience, designed to foster community, team connections, and innovation
- Opportunities to give back to your community, including an annual company-wide Volunteer Week and donation matching
- Employee Resource Groups that provide supportive communities within Braze
- Collaborative, transparent, and fun culture recognized as a Great Place to Work®
ABOUT BRAZE
Braze is the leading customer engagement platform that empowers brands to Be Absolutely Engaging™. Braze helps brands deliver great customer experiences that drive value both for consumers and for their businesses. Built on a foundation of composable intelligence, BrazeAI™ allows marketers to combine and activate AI agents, models, and features at every touchpoint throughout the Braze Customer Engagement Platform for smarter, faster, and more meaningful customer engagement. From cross-channel messaging and journey orchestration to Al-powered decisioning and optimization, Braze enables companies to turn action into interaction through autonomous, 1:1 personalized experiences.
The company has been consistently recognized as a Leader in marketing technology by industry analysts, and was named a G2 “Best of Marketing and Digital Advertising Software Product” in 2026. Braze was also named a 2026 Best Places to Work by Built In, a 2025 America’s Greenest Companies by Newsweek, and a 2025 Fortune Best Workplace in Technology™ by Great Place To Work®. Braze is also proudly certified as a Great Place to Work® in the U.S., the UK, Australia, and Singapore.
The company is headquartered in New York with offices in Austin, Berlin, Bucharest, Chicago, Dubai, Jakarta, London, Paris, San Francisco, São Paulo, Singapore, Seoul, Sydney and Tokyo.
BRAZE IS AN EQUAL OPPORTUNITY EMPLOYERAt Braze, we strive to create equitable growth and opportunities inside and outside the organization.
Building meaningful connections is at the heart of everything we do, and that includes our recruiting practices. We're committed to offering all candidates a fair, accessible, and inclusive experience – regardless of age, color, disability, gender identity, marital status, maternity, national origin, pregnancy, race, religion, sex, sexual orientation, or status as a protected veteran. When applying and interviewing with Braze, we want you to feel comfortable showcasing what makes you you.
We know that sometimes different circumstances can lead talented people to hesitate to apply for a role unless they meet 100% of the criteria. If this sounds familiar, we encourage you to apply, as we’d love to meet you.
OUR AI-POWERED BRAZE RECRUITMENT PROCESS
At Braze, we’re committed to a fair and transparent candidate experience. To help our recruitment teams focus on what matters most — the person behind each application — we use AI-assisted tools at certain stages of our recruitment process.
This includes using AI to analyze the experience, skills and qualifications in your application materials to help with screening and prioritizing candidates. Such screening may amount to a form of solely automated decision-making. We also use AI for administrative support, like scheduling and recording interviews and summarizing interview notes. Our recruiting teams remain responsible for all hiring decisions and are involved throughout the process.
Depending on where you are located, you may have the right to request further information about how AI is used in our recruitment process, to opt out of AI-assisted review, to request a manual review of any decision made or to contest a decision.
Please contact us at talentdata.privacy@braze.com for any requests or questions. To find out more about our hiring process, check out this page.
Notice Regarding Automated Employment Decision Tool (NYC Local Law 144)
Our use of AI during the application review process may include the use of automated employment decision tools. Pursuant to New York City Local Law 144, for roles based in New York City, or if you reside in New York City, you have the right to request an alternative selection process or a reasonable accommodation instead of AI-assisted review. Please submit any such request to our Talent Acquisition team at talentdata.privacy@braze.com promptly after applying. A summary of the most recent bias audit results for such tool is available here.
Please see our Candidate Privacy Policy for more information on how Braze processes your personal information during the recruitment process and, if applicable based on your location, how you can exercise any privacy rights.