Cloud Platform Security Lead
Indexed description
AXA UK Support Functions look after our three customer-facing business units, providing the infrastructure and expertise to make sure we can be there for our customers.
Job Overview
We have a new opportunity for a Cloud Platform Security Lead to join us. In this specialist role you’ll provide technical security guidance to drive our platform security to the highest, drive and adoption and implementation of Cloud Security solutions and practices and work closely with our Cyber Security operational teams.
Key Responsibilities
- Define, produce, and present security posture metrics, risk reports, compliance status, and governance dashboards for AWS and Azure platforms to senior leadership and stakeholders
- Implement, and continuously improve preventative, detective, and corrective security controls, guardrails, and policy enforcement across cloud platform services
- Review, challenge, and approve cloud platform architectures and designs, ensuring alignment with enterprise security, regulatory, and technology standards
- Drive security-by-design principles and integrate security controls into cloud services, Infrastructure-as-Code (IaC), automation frameworks, and CI/CD pipelines
- Own vulnerability management, threat modelling, exposure management, and remediation governance across AWS and Azure platforms, ensuring security findings are remediated within agreed timelines and escalated where required
- Maintain compliance with internal policies, regulatory requirements, audit controls, and industry frameworks, ensuring audit readiness and timely remediation of control gaps
- Identify, assess, prioritize, mitigate, and report security risks, exceptions, and technical debt, ensuring risks are managed within approved risk tolerances
Your Skills & Experience
- Cloud security architecture and engineering expertise
- Significant experience securing large scale cloud platforms – Azure preferred
- Ability to present security risk and governance reports to leadership audiences
- Experience designing and implementing cloud security controls and guardrails
- Evidence of prior coaching, mentoring, and team leadership
- Competence in implementing security standards aligned to frameworks such as ISO27001, NIST, CIS or SOC2
- Good understanding of policy-as-code and infrastructure-as-code practices
- Proficiency in operating within regulated or enterprise-scale environments
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search