Senior Cloud Security Engineer
RemoteUnited Kingdom
Job Summary
Design and automate security controls for cloud infrastructure across AWS and GCP, while maintaining and scaling cloud security tooling like CSPM and vulnerability platforms. Investigate and remediate security vulnerabilities in cloud environments, and build access controls applying zero-trust principles across Kubernetes. Partner with incident response teams to create detections and analyze security incidents, and develop guardrails for engineering teams by embedding standards into CI/CD and GitOps workflows. Conduct architecture reviews, threat modeling, and code reviews to identify risks, leading security projects independently from scoping to measurable outcomes. Work with compliance teams to translate frameworks such as ISO 27001, SOC 2, and GDPR into technical controls.
Required Qualifications
- 5+ years of experience in cloud security, or in security-focused infrastructure/DevOps engineering
- Hands-on experience securing containerized environments and Kubernetes
- Strong understanding of AWS (ideally GCP as well) and infrastructure-as-code solutions
- Proficiency in one or more programming or scripting languages (e.g., Python) for automation
- Experience working with cloud security posture management or similar security tooling
- A self-starter and problem solver who can own problems end to end, drive projects with minimal direction, and communicate clearly across teams
- Location: Remote, within UK
Desired Qualifications
- Experience across multiple clouds (AWS and GCP)
- Experience integrating security into CI/CD pipelines and DevOps/GitOps workflows
- Hands-on experience with threat modeling and security architecture reviews
- Hands-on experience working with compliance requirements and turning them into technical controls
- Contributions to security communities, open-source projects, or security research
- Relevant security certifications (e.g., CKS)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.