First Due

Cloud Security Software Engineer

First Due United States · $115K/yr

Software Development · 201-500 employees

8 h ago
Remote Junior (0-2 yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will build and integrate agent-driven workflows for cloud security solutions, including triage, investigation, and threat intelligence agents. This role involves translating complex security requirements into autonomous, production-ready AI tools within a high-velocity environment.

What they look for

Python Go TypeScript Cloud Security Agentic AI LLM SIEM SOC AWS NIST SP 800-53 NIST SP 800-171 FedRAMP Infrastructure-as-code Terraform Ansible Zero Trust

Requirements

Candidates should have a strong programming foundation in Python, Go, or TypeScript and demonstrated experience with AI/LLM frameworks. A bachelor's degree in Computer Science or Engineering is required, along with an understanding of cloud-native security concepts.

Benefits

Medical coverage Dental coverage Vision coverage FSA HSA 401(k) Flexible PTO Fully remote workplace Technology stipend

Full description

About First Due

First Due’s mission is to prevent first responder injury or death by providing fire and EMS agencies with transformative, end-to-end software solutions that empower them to run safer, smarter, and more effective operations.

Job Title: Cloud Security Software Engineer

Location: Remote - US Only Country: United States Department: Security Reports To: VP of Cybersecurity Position Type: Full-Time Salary: $115,000

Job Summary:

We are looking for a foundational, high-performing builder, likely a recent graduate, with raw engineering talent, a relentless drive to learn, and a highly developed understanding of agentic AI frameworks. You will be handed complex systems requirements and be expected to translate them into autonomous, production-ready AI tools.

Key Responsibilities:

You will be the fast‑pace integrator behind the Cloud Security Plane of our solutions. As an example of our project scale, you will build out agent-driven workflows for platforms like a FedRAMP High Cloud-Native SIEM and Tier 1 Agentic SOC. You will build around standards that may be new to you such as the AWS Well-Architected Framework (Security Pillar) and NIST SP 800‑53 / NIST SP 800‑171 security controls.

This includes engineering solutions like:

  • Triage Agents that ingest, enrich, deduplicate, and disposition massive volumes of data around the clock.
  • Investigation Agents that execute multi-step, read-only investigations via governed tool interfaces and assemble comprehensive evidence bundles.
  • Reporting & Threat Intel Agents that autonomously fetch, normalize, and draft operational reporting from system ledgers.

Qualifications:

  • Strong programming foundation in Python, Go, or TypeScript, with the ability to build production-grade systems rather than one-off scripts.
  • Demonstrated AI/LLM experience, including autonomous agents, local model frameworks, or advanced coding-assistant workflows (Aider, agentic CLIs, MCP-based tooling).
  • Ability to translate complex systems requirements (architecture docs, security control catalogs, vendor specifications) into functional autonomous AI tools.
  • Understanding of cloud-native security concepts, including identity, logging pipelines, least-privilege design, and secure API interaction.
  • Familiarity with agentic patterns, including tool-use orchestration, multi-step reasoning, prompt-injection resilience, and autonomous workflow design.
  • Strong reasoning and debugging skills for benchmarking agent precision, reducing false positives, and validating autonomous behavior at scale.
  • Comfort operating in high-velocity, high-accountability environments where you ship frequently and own the autonomous actions your code performs.
  • Bachelor’s degree in Computer Science, Engineering, or equivalent practical experience.
  • Ability to obtain Security+ within the first year.

Preferred Qualifications:

  • Exposure to cloud security frameworks:
  • NIST SP 800‑53
  • NIST SP 800‑171
  • FedRAMP High
  • SOC 2
  • CIS Benchmarks
  • OWASP
  • Experience with AWS security and observability tooling (CloudWatch, Security Hub, IAM, event-driven architectures).
  • Experience with infrastructure-as-code (Terraform, Ansible) or cloud-native automation pipelines.
  • Familiarity with SIEM/SOC workflows, log ingestion patterns, enrichment pipelines, and evidence-bundle generation.
  • Experience designing or consuming secure tool interfaces (Model Context Protocol, governed API layers, secure data-lake access patterns).
  • Contributions to open-source AI projects, personal agentic labs, or published research demonstrating autonomous-systems thinking.
  • Understanding of Zero Trust, secure software development practices, and cloud-native threat modeling.

For US-based Roles All applicants must be authorized to work for any US employer in the United States. Locality Media LLC is unable to sponsor or transition sponsorship ownership of employment visas at this time. Hiring is contingent upon candidates successfully passing a criminal background check. As part of the I-9 verification of authorization to work in the US, Locality Media participates in E-Verify.

Physical Demands and Work Environment This role is fully remote with minimal travel expectations at this time. Reasonable accommodation may be made to enable qualified employees and applicants to perform the essential functions as outlined above. If you require an accommodation during the interview process, please reach out to people@firstdue.com.

Working at First Due First Due offers a comprehensive compensation and benefits package for eligible employees, including competitive pay, medical, dental, and vision coverage, FSA/HSA, 401(k), flexible PTO, a fully remote workplace, a technology stipend, opportunities for advancement, and other benefits and perks that sets our team apart. Visit www.firstdue.com to learn more.

If you are a resident of a state requiring wage transparency, please reach out to people@firstdue.com for a reasonable estimate of annual base compensation and any eligible incentive compensation. The actual compensation offered to successful candidates for roles may be higher or lower, based on non-discriminatory criteria including but not limited to relevant professional experience, geographic location, knowledge, skills, and abilities. This range will be reviewed on a regular basis.

First Due is an equal opportunity employer. We do not discriminate in any aspect of employment on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status, or any other protected status or class. We are committed to promoting an environment of respect, acceptance, diversity and inclusivity, and equal opportunity. Discrimination and harassment of any type in any form will not be tolerated.

When you apply for a role at Locality Media, LLC d/b/a First Due, we collect personal information such as identifiers (e.g., name, email, phone number), professional and employment information, education information, and information you provide in your application materials. We use this information to evaluate your candidacy, communicate with you, and manage our recruiting process. We may share this information with our service providers who assist with recruiting and background screening. We do not sell or share applicant personal information for cross-context behavioral advertising. We retain applicant information in accordance with our data retention policies. California residents have rights under the California Consumer Privacy Act (CCPA), as amended by the CPRA. For more information, please review our Candidate Privacy here.