Principal/Senior Principal Engineer (Cloud Security & Governance)
Indexed description
As part of a centralised software engineering team, you will work closely with cloud platform and application product teams to identify risks, strengthen technical controls, and guide teams towards implementing and using the cloud securely. You will support security governance by reviewing cloud architectures and configurations, and escalating material risks and exception requests to the appropriate security and governance authorities.
What We Offer You
We champion career autonomy and provide the opportunity to work alongside passionate professionals with deep expertise in cybersecurity, software quality assurance and compliance to delivering robust engineering excellence
You Will Have The Opportunity To
- Define and maintain cloud security standards, baselines, and guardrails.
- Lead security reviews of cloud architectures, designs, and configurations.
- Assess and strengthen controls across identity, network, data protection, logging, and monitoring.
- Identify cloud security risks, vulnerabilities, control gaps and recommend remediation.
- Support security audits, inspections, and assurance activities.
- Advise teams on secure cloud patterns, threat mitigation, and approved security services.
- Investigate recurring security or compliance issues and drive systemic improvements.
- Escalate high‑risk security issues and non‑standard requests for senior decision.
- Mentor engineers and architects on cloud security best practices.
- Bachelor's or Master's degree in Computer Science, Engineering or a related field.
- At least 6 years of cybersecurity experience across IT networking, infrastructure, platforms, and/or cloud ecosystems, with 2 years of actual hands-on cloud security experience.
Relevant Skills And Experience
- Deep understanding and practical experience implementing
- Cloud IAM and access control
- Network and perimeter security
- Cryptographic keys, encryption, and data protection structures
- Security logging, continuous monitoring, and incident response frameworks
- Proven experience in security governance, technology risk management, and/or compliance audits.
- Experience conducting vulnerability assessments across networks, hosts, and/or applications.
- Ability to translate high-level security requirements and governance policies into practical, technical engineering controls.
- Strong communication and relationship-building skills, with a proven ability to influence engineering teams.
- Industry-standard certifications in cloud architecture or security, such as:
- AWS Certified Solutions Architect – Professional
- Certified Cloud Security Professional (CCSP)
- Practical knowledge of DevSecOps principles and integrating automated security tools (e.g. SAST/DAST) into CI/CD pipelines.
- Familiarity with secure coding practices and application security standards (e.g. OWASP).
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search