As Security / Cloud Reviewer, you will provide targeted senior review when an architecture or security decision has meaningful downside. Your job is to identify material risks early, challenge the design where necessary, and recommend controls that are proportionate to the risk and practical for the team to operate.
This is not a standing governance layer or a second platform architect. The Principal Data & Platform Engineer will own routine decisions. You will engage at defined gates, on unusual questions, or when Great Hill wants an independent view before sensitive data or a major workload moves into production.
What you will do
Review major decisions involving identity, permissions, data movement, trust boundaries, networking, deployment, logging, recovery, and third-party access.
Threat-model the most important data flows and application interfaces, focusing on realistic failure and misuse scenarios rather than generic control catalogs.
Assess whether the use of managed Azure and Snowflake services is secure, observable, recoverable, and supportable by a small team.
Review automation and production-readiness practices, including infrastructure as code, environment separation, secrets, privileged access, monitoring, and break-glass procedures.
Deliver short, risk-ranked findings that separate launch blockers from near-term remediation and later hardening, with practical options and clear evidence requirements.
Transfer reusable review patterns to the Principal and IT team so routine decisions do not require outside review.
What we are looking for
Deep experience reviewing and securing cloud data platforms that handle sensitive or regulated information.
Strong practical knowledge of Azure identity and cloud controls, Snowflake security, modern deployment practices, and data-platform operations.
The technical depth to review architecture and infrastructure artifacts directly and ask useful questions of senior engineers.
Excellent judgment about materiality, compensating controls, and the difference between a real launch risk and a theoretical concern.
A concise, constructive communication style. Findings should help the team decide and act, not create a parallel governance process.
Availability for planned reviews and occasional rapid-turn consultation when a material issue arises.
Preferred background
Experience in financial services, private equity, or another environment with confidential transactions and sensitive enterprise data.
Experience reviewing small, fast-moving platform teams that rely on managed cloud services and contractors.
Relevant credentials are helpful, but demonstrated architecture judgment matters more.
Numbers & Facts
Location
Boston, MA (Remote)
Skills
Automationunmatched
Cloud Computingunmatched
Financial Servicesunmatched
Information/Data Security (InfoSec)unmatched
Microsoft Windows Azureunmatched
Riskunmatched
Risk Analysisunmatched
Security Architectureunmatched
Snowflake Schemaunmatched
Threat Modelingunmatched
🎯
Be found by employers
5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.
Level up your application
Professional resume templates
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.