At Bloom Energy, our vision for a world powered by clean, reliable, and affordable energy is more than just a dreamāweāreāÆmaking it reality.āÆĀ
For over two decades,āÆweāveāÆbeen at the forefront of the global energy transition, pioneering solutions that empower critical industries to thrive in a rapidly digitizing, energy-intensive world. From revolutionizing power for AI-driven data centers to ensuring resilience for hospitals, electric grids, manufacturing facilities, and utilities, our solid oxide fuel cell (SOFC) and solid oxideāÆelectrolyzerāÆ(SOEC) technologies are redefiningāÆwhatāsāÆpossible by delivering energy abundance for all. With more than 30,000 fuel cell modules deployed worldwide, we are the trusted partner for Fortune 100 companies and innovators alike. OurāÆcutting-edgeāÆsolutions enable unparalleled ātime-to-powerā capabilities, reliability, and sustainability, ensuring our customersāÆremaināÆahead in a world where soaring energy demand and intensifying energy scarcity are rapidly becoming the new norm.āÆĀ
At Bloom, we thrive on collaboration, bold thinking, and relentless innovation. We believe that, together, we can create a brighter, more sustainable future while tackling the most pressing challenges of the 21st century.āÆĀ
We are looking for aāÆPrincipal Cloud Security EngineerāÆto join our team in one of todayās most exciting technologies.āÆāÆThis role willāÆreportāÆtoāÆSenior Manager, Cloud Engineering and based ināÆSan Jose, CA.āÆāÆThis is a fully on-site, in officeāÆroleāÆ5 days a week.āÆ
CloudĀ SecurityĀ Engineering
Design, implement, automate, and maintainĀ securityĀ architectures, controls, and processes across AWS and Microsoft Azure environments
Develop and maintainĀ cloudĀ securityĀ reference architectures, patterns, and guardrails aligned with industry best practices and Bloom EnergyĀ securityĀ standards
Build and operationalizeĀ securityĀ baseline controls integrated into CI/CD pipelines and Infrastructure-as-Code deployments
Implement policy-as-code and automated compliance validation acrossĀ cloudĀ environments
Review and approveĀ security-sensitive infrastructure and application changes, including IAM policies, networkĀ securityĀ controls, secrets management, andĀ cloud-native services
Serve as theĀ cloudĀ securityĀ subject matter expert supporting enterpriseĀ cloudĀ transformation initiatives across IaaS, PaaS, and SaaS platforms
AI & Machine LearningĀ Security
Define and implementĀ securityĀ frameworks for AI/ML systems across the full model lifecycle, including data ingestion, model training, deployment, and monitoring
Assess and mitigate emerging AIĀ securityĀ risks such as adversarial attacks, prompt injection, model theft, model inversion, and data poisoning
Secure AI/ML platforms and services including Amazon SageMaker, Bedrock, Azure Machine Learning, OpenAI APIs, and other enterprise AI tooling
Collaborate with AI engineering and data science teams to integrateĀ securityĀ controls into MLOps pipelines and AI governance processes
Monitor evolving AI regulations, standards, and frameworks including NIST AI RMF and global AI governance initiatives, translating them into actionable controls and engineering practices
DataĀ Security
Implement and manage DataĀ SecurityĀ Posture Management (DSPM) capabilities to identify and reduce sensitive data exposure acrossĀ cloudĀ environments
Design and enforce controls for structured and unstructured data platforms including databases, data lakes, warehouses, object storage, and analytics platforms such as AWS S3.
Drive adoption of data-centricĀ securityĀ controls including encryption, tokenization, data classification, retention, and access governance
Partner with application and analytics teams to embed secure data handling practices into engineering workflows
SecurityĀ Architecture & Leadership
Provide deep technical expertise acrossĀ cloud, AI, infrastructure, identity, and applicationĀ securityĀ domains
LeadĀ securityĀ assessments and threat modeling exercises forĀ cloudĀ services, AI/ML platforms, enterprise applications, and emerging technologies
Enable secure innovation by partnering with engineering teams early in the design and development lifecycle
Support incident response, investigation, and remediation activities related toĀ cloud, AI, and dataĀ securityĀ events
Collaborate closely with Information and OTĀ Security, Infrastructure, Product Engineering, and Enterprise Architecture teams to drive secure technology adoption across the organization
Contribute to the development ofĀ securityĀ standards, policies, and operational procedures aligned with business and regulatory requirements
What You Bring
Mindset
Self-starter with strong ownership mentality and ability to manage multiple priorities in a dynamic environment
Passion for DevSecOps, automation, and engineering scalableĀ securityĀ solutions
Strong curiosity and practical understanding of the evolving AI threat landscape and modernĀ cloud-native technologies
Collaborative mindset with ability to work effectively across engineering, infrastructure, AI, data, andĀ securityĀ teams
Strong communication skills with the ability to influence technical and business stakeholders
Desire to continuously improveĀ securityĀ maturity while enabling business agility and innovation
Qualifications
Required
Bachelor's degree in computer science, Engineering, Information Technology, Cybersecurity, or related field
10+ years of experience inĀ securityĀ engineering,Ā cloudĀ securityĀ architecture, or cybersecurityĀ operations
Strong hands-on expertise with AWS and/or Microsoft AzureĀ securityĀ services andĀ cloud-native architectures
Experience implementingĀ securityĀ automation within CI/CD and Infrastructure-as-Code environments
Deep understanding of IAM, networkĀ security, encryption, secrets management, logging, monitoring, and threat detection
Experience securing enterprise data platforms and modernĀ cloud-native applications
Strong knowledge ofĀ securityĀ frameworks and best practices including NIST, CIS, Zero Trust, and secure SDLC principles
Preferred
Experience securing AI/ML platforms, GenAI services, or MLOps pipelines
Familiarity with AI governance, AIĀ securityĀ risks, and emerging regulatory frameworks
Experience with DSPM, CSPM, CNAPP, SIEM, SOAR, and modernĀ cloudĀ securityĀ tooling
SecurityĀ certifications such as CISSP, CCSP, CCSK, AWS CertifiedĀ SecurityĀ Specialty, or Microsoft Certified: AzureĀ SecurityĀ Engineer Associate
Preferred additional certifications or training in AIĀ securityĀ or data privacy/securityĀ domains (e.g., CDPSE, CIPP, AIĀ securityĀ certifications)
Bloom Energy is an equal opportunity employer and makes employment decisions on the basis of merit. We are committed to compliance with all applicable laws providing equal employment opportunities. All qualified applicants, will receive consideration for employment without regard to race, sex, color, religion, national origin, protected veteran status, or on the basis of disability. Bloom Energy makes reasonable accommodations, consistent with applicable laws, for the known physical or mental limitations of an otherwise qualified applicant or employee with a disability, who can perform the essential job functions, unless undue hardship would result.Ā Ā
Ā Ā
At Bloom Energy, we are committed to supporting the well-being of our employees and their families. Our comprehensive benefits package for eligible employees includes competitive Medical, Dental, and Vision plans with a large employer contribution, a 401(k) Retirement Plan with companyĀ match, generousĀ Mental Health Support services, Legal services, virtual Physical Therapy access, and Fertility & Family Forming benefits.Ā
Ā Ā
Bloom Energy is committed to fair andĀ equitableĀ compensation practices.Ā Ā
Ā
FULL TIME ROLE ONLY:Ā The total compensation for this position includes standard company benefits and is based onĀ various factorsĀ including, but not limited to, relevant skills and experience.Ā
#LI-NP
Salary Ranges:
$155,800.00 - $224,200.00Learn more about this Employer on their Career Site
