Cloud Security Engineer - Kubernetes (JN -092024-6539214) London, England
| Salary: | GBP95000 - GBP125000 per annum + Pension, Bonus and more |
This role requires for a seasoned Cloud Security Engineer to join a vibrant team in the financial services industry. The ideal candidate will be essential in safeguarding the security, confidentiality, integrity, and availability of cloud infrastructure. This position requires the design, implementation, and maintenance of cloud security solutions that adhere to industry regulations and best practices, while ensuring the protection of sensitive financial data.
Key Responsibilities:
1) Cloud Security Strategy & Architecture:
- Design and implement secure cloud architectures in multi-cloud environments (e.g Azure, Google Cloud).
- Develop and enforce security standards, policies, and procedures for cloud environments.
- Evaluate and integrate cloud security technologies, such as CASB, CSPM, CWPP, and others.
2) Security Operations:
- Monitor cloud infrastructure for security breaches and respond to incidents promptly.
- Implement and manage security tools for threat detection, vulnerability management, and encryption.
- Conduct regular security assessments, including penetration testing, vulnerability scanning, and cloud configuration reviews.
3) Compliance & Risk Management:
- Ensure compliance with industry regulations (e.g., PCI-DSS, GDPR, SOX) and internal security policies.
- Perform risk assessments to identify and mitigate potential security threats to cloud environments.
- Collaborate with audit teams to ensure the cloud environment meets all regulatory and security standards.
4) Collaboration & Stakeholder Engagement:
- Work closely with DevOps, IT, and application development teams to integrate security best practices into the CI/CD pipeline.
- Provide guidance and training on cloud security best practices to internal teams and stakeholders.
- Liaise with external vendors, partners, and regulators to ensure the alignment of cloud security initiatives.
5) Incident Response & Forensics:
- Develop and maintain incident response plans for cloud environments.
- Lead investigations into security incidents involving cloud infrastructure, coordinating with relevant teams for remediation.
- Perform forensic analysis to identify root causes of security breaches and recommend improvements.
6) Innovation & Continuous Improvement:
- Stay updated on the latest cloud security trends, threats, and technologies.
- Propose and implement innovative solutions to enhance the security posture of the organization’s cloud environments.
- Participate in continuous improvement initiatives related to cloud security processes and technologies.
Required Experience:
- 5+ years of experience in cloud security, preferably in the financial services industry.
- Hands-on experience with Azure cloud platforms
- 5+ years proven experience with Terraform or similar IaC language
- 5+ years proven experience in implementing and managing cloud security controls and technologies.
- 5+ years proven Azure security expertise and ability to deploy Azure Policies, blueprints and alike.
- 5+ years Advanced Kubernetes security knowledge and CI/CD security knowledge.