Senior Cloud Security Engineer
Indexed description
Senior Cloud Security & DevSecOps Engineer
Canary Wharf
Salary Circa £100,000 - Bonus 15-40%
We are looking for a senior cloud security engineer who still enjoys being close to the technology.
This is not a governance-only position or a role focused mainly on reviewing other people’s work. You will be hands-on across a large, global cloud environment, helping to secure platforms, workloads, identities, data and software delivery across AWS, Azure and GCP.
You will join an established financial-services organisation where cloud security is treated as an engineering discipline. The environment is complex, regulated and highly visible, so you will need to be comfortable taking ownership of technical problems and following them through to resolution.
What you will be working on
You will help manage and develop the organisation’s cloud security capabilities, including CSPM and CNAPP platforms, cloud-native security controls, IAM and policy-as-code pipelines.
The role will involve:
- Implementing and improving security controls across AWS, Azure and GCP
- Managing CSPM and CNAPP platforms such as Prisma Cloud, Defender for Cloud, Wiz or similar technologies
- Embedding security into CI/CD pipelines and the wider software development lifecycle
- Building and maintaining security controls through Terraform and policy-as-code
- Securing cloud identities, workloads, data, encryption and key-management services
- Leading investigations into complex cloud security incidents and platform issues
- Performing root-cause analysis and delivering practical corrective actions
- Working with engineering, infrastructure, risk, architecture and vendor teams
- Supporting platform upgrades, configuration changes and product lifecycle decisions
- Mentoring less-experienced engineers and helping raise the technical standard of the team
- Contributing to strong change, incident and problem-management processes
What we are looking for
You will likely have at least seven years of experience across cloud security engineering, DevSecOps, infrastructure security or a closely related technical discipline.
More importantly, you should be able to demonstrate that you have personally designed, implemented and supported cloud security solutions in production.
Strong experience in several of the following areas would be particularly relevant:
- AWS and Azure, ideally with exposure to GCP
- CSPM, CNAPP or cloud workload protection platforms
- Terraform and Infrastructure-as-Code
- Cloud IAM, federation and privileged access
- CI/CD security and software supply-chain controls
- Cloud-native logging, monitoring and threat detection
- Encryption, secrets management and key management
- Splunk, Microsoft Sentinel, Chronicle or similar SIEM platforms
- Traditional network security and hybrid cloud connectivity
- Incident response, problem management and technical remediation
Experience within banking, capital markets, fintech or another regulated environment would be valuable, although strong candidates from other technically complex organisations will also be considered.
Cloud and security certifications are useful, but they are not a substitute for genuine hands-on engineering experience.
Why consider it?
This is an opportunity to work on cloud security at meaningful scale, with the scope to influence how security is designed and delivered across a global organisation.
You will be trusted to solve difficult technical problems, improve existing platforms and help shape the organisation’s wider cloud security approach, while remaining firmly involved in implementation and delivery.
Applications are welcomed from Senior Cloud Security Engineers, DevSecOps Engineers, Cloud Security Platform Engineers and hands-on Cloud Security Architects based within commuting distance of Greater London.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search