We are looking for a Senior Security Engineer to join our Cloud Security team. The ideal candidate will have 5+ years of experience in security engineering, with a focus on cloud security, and expertise in AWS security. The role involves designing and implementing secure cloud infrastructure, building and maintaining Infrastructure as Code (IaC) security standards, and developing cloud security automation using Terraform, CloudFormation, and Python.
Requirements
- 5+ years as a Security Engineer with 4+ years specialising in cloud security
- Deep AWS security expertise (IAM, VPC, Security Hub, GuardDuty, KMS, CloudTrail, Config)
- Advanced Infrastructure as Code skills (Terraform required, CloudFormation)
- Strong understanding of Kubernetes security (RBAC, network policies, Pod Security Standards)
- Experience with container security tools (Falco, Trivy, etc)
- Proficiency in Python and automation for security policy enforcement
- Knowledge of security frameworks and cloud compliance (ISO 27001, SOC 2, CIS Benchmarks)
- Experience with DevSecOps practices and security integration in CI/CD pipelines
- Understanding of network security, TLS/mTLS, service mesh architectures
- Multi-cloud experience (GCP, Azure) is advantageous
- Knowledge of financial services regulations (MaRisk, BAIT, GDPR) is a plus