20 Cloud Security jobs in London

Cloud Security Architect

London, London Avanade Inc.

Posted 9 days ago

Job Viewed

Tap Again To Close

Job Description

Avanade is looking for an experienced Cloud Security Architect to join our security practice. This is a client-facing role where you will be engaged in some of the most exciting, complex, and leading-edge projects. You will play an active role in transforming our client's Cyber Defence strategy, capabilities, and operations through the design and implementation of predominantly Microsoft Threat Protection technologies. You will also be part of the Avanade Security presales and Architecture function, creating proposals and solutions for our largest, most complex enterprise clients. This role will include partial delivery expectations for the year.
About the Role:
In this role, you will:
- Lead large projects and project teams.
- Manage deliverables and be responsible for delivering against critical milestones.
- Engage in solution architecture and pre-sales deal shaping.
- Develop and maintain long-term strategic client relationships.
- Design, implement, and integrate security, incident, and event management solutions into Security Operations, with a particular interest in Azure Sentinel.
- Understand threat modelling, risk, and how to mitigate risks concerning applications from internal and external threat actors.
- Have a deep understanding of incident response processes and techniques for cyber recovery.
- Understand security operations centres, their functions, and roles.
- Have a good understanding of the Microsoft platforms across Windows, Microsoft 365, and Azure.
- Understand techniques and approaches used by threat actors to compromise companies.
- Apply the MITRE ATT&CK framework to help customers improve their cyber defence.
- Understand the business, privacy, security, and compliance challenges surrounding client data and articulate the types of assets that would be seen as valuable and susceptible to attack.
- Be aware of emerging technologies in the Cyber Defence and cloud security space.
Your responsibilities may include :
- Develop and maintain strong relationships with the account teams and client stakeholders
- Identify customer needs and understand business goals to envisage a high-level solution and winning strategy.
- Develop detailed security transformation and operations opportunities based on the capabilities, standardised tools, processes and partner technology with the security architects and other technology partners.
- Drive and be involved in the proposal, solution presentations and discussions.
- Conduct and follow through the sales process to accomplish deal closure.
Requirements:
- Advanced Microsoft Security Certifications such as: SC-100, SC-200, SC-300, SC-400, SC-900.
- Industry-recognised certifications such as: CISSP, CCSP, CISM, SANS.
- In-depth Knowledge of Azure Security Tools: Have a key in-depth knowledge of Azure Security tools such as Security Copilot, Azure Sentinel, and Defender for Cloud to monitor, detect, and respond to security incidents. You will be responsible for configuring and managing these tools to ensure real-time threat detection and response.
- Security Architecture Design: Design and implement robust security architectures for cloud-based applications and services. Ensure compliance with industry standards and best practices.
- RFP Responses: Prepare and review responses to Requests for Proposals (RFPs) related to cloud security. Ensure that all security requirements are addressed and communicated to potential clients.
- Continuous Improvement: Stay updated on the latest security trends, technologies, and threats. Continuously improve security processes and tools to enhance the overall security posture.
- Strong knowledge of Azure Security tools, including Security Copilot, Azure Sentinel, and Azure Defender for Cloud.
- Experience with security incident management and response.
- Familiarity with industry standards and best practices for cloud security.
- Excellent communication and collaboration skills.
- Ability to lead RFP responses related to cloud security and Managed Security Services.
- Beneficial Knowledge: Familiarity with the Defender suite of products, including Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Office 365, and Microsoft Cloud App Security.
- Certifications such as CISSP, CCSP, or Azure Security Engineer.
- Experience with other cloud platforms (AWS, Google Cloud) and their security tools.
- Knowledge of regulatory compliance requirements (e.g., GDPR, HIPAA).
Beneficial Knowledge:
Familiarity with the Defender suite of products, including Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Office 365, and Microsoft Cloud App Security.
- Security Copilot Knowledge: Proven experience and knowledge in utilising Security Copilot for enhancing cyber defence strategies and operations.
Experience with other cloud platforms (AWS, Google Cloud) and their security tools.
Knowledge of regulatory compliance requirements (e.g., GDPR, HIPAA).
Benefits We Offer:
- Opportunity to work for Microsoft's Global Alliance Partner of the Year (17 of the last 20 years!)
- Pension, Electric Car Purchase scheme (tax-free!), 25 days holiday, Flexible benefits, Car allowance (where applicable), bonus, PMI, Life cover, IP cover, and much more.
- Exceptional development and training with a minimum of 80 hours/year of training and paid certifications.
- Avanade University - real-time access to technical and skilled resources globally.
- Dedicated career adviser to encourage your progression.
- Engaged and helpful coworkers genuinely interested in you.
- Reward and recognition program.
- Full benefits package including medical coverage, income protection policy, extended benefits, bonus program, generous retirement plan, and much more.
About Avanade:
Avanade leads in providing innovative digital services, business solutions, and design-led experiences for its clients, delivered through the power of people and the Microsoft ecosystem. Our professionals combine technology, business, and industry expertise to build and deploy solutions to realize results for clients and their customers. Avanade has 39,000 digitally connected people across 24 countries, bringing clients the best thinking through a collaborative culture that honours diversity and reflects the communities in which we operate. The majority owned by Accenture, Avanade was founded in 2000 by Accenture LLP and Microsoft Corporation. Learn more at is an Equal Opportunity Employer. We evaluate applicants without regard to race, colour, age, religion, sex, national origin, gender identity or expression, sexual orientation, disability, veteran, military or marital status, genetic information, or any other protected status.
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, perform essential job functions, and receive other benefits and privileges of employment. Please contact us to request accommodation.
We work hard to provide an inclusive, diverse culture with a deep sense of belonging for all our employees. Avanade believes that all persons are entitled to equal employment opportunities, and we do not discriminate against our employees, applicants, or job seekers because of their race, color, gender, religion, national origin, disability, veteran status, age, marital status, sexual orientation, genetic information, gender identity, or any other protect group status as defined by law.
This advertiser has chosen not to accept applicants from your region.

Cloud Security Engineer

London, London Kurt Geiger

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

Permanent

Kurt Geiger | About Us

We are an inclusive, creative footwear and accessories brand powered by kindness. We want to empower our talent to be confident and true to themselves, the London way. London is our home, our heartbeat, and we draw inspiration from the energy and spirit of the city; its diversity and creativity. For over fifty years our team of in-house shoe and accessory designers have been creating authentic, distinctive designs from our London headquarters. The rainbow is our signature. It represents the good energy and love we have for our community and the many ways we collectively express our individual style.

Cloud Security Engineer (InfoSec)

We are seeking a Cloud Security Engineer (InfoSec) to join our Technology and Information security team. You’ll play a key role in designing, implementing, and supporting secure infrastructure, cloud services, and applications across the organisation. This position requires strong expertise in AWS, Microsoft cloud services (Intune, Azure, Entra), security auditing, and modern endpoint protection such as CrowdStrike.

Responsibilities

  • Monitor and respond to security incidents using EDR/XDR tools such as CrowdStrike, Microsoft Defender, and SIEM platforms.
  • Perform regular audits and security assessments across cloud (AWS, Azure) and SaaS platforms to identify risks and ensure compliance with internal policies and industry standards (ISO 27001, CIS, NIST).
  • Manage and enforce Identity and Access Management (IAM) controls, including conditional access, MFA policies, role-based access control (RBAC), and least-privilege enforcement across Microsoft Entra and AWS IAM.
  • Support incident response processes including investigation, containment, eradication, and recovery of security events.
  • Conduct vulnerability scanning and remediation follow-ups using tools.
  • Develop and maintain security baselines, configuration hardening, and patch compliance reporting across endpoints and cloud systems.
  • Assist in third-party risk assessments and ensure vendors meet security requirements.
  • Participate in change advisory boards (CAB) to review infrastructure and application changes from a security perspective.
  • Support internal and external compliance audits by gathering evidence, ensuring policy alignment, and reporting findings.
  • Collaborate with SOC, DevOps, and IT operations teams to integrate security automation and build secure-by-design practices.
  • Support the IT helpdesk with complex application and system security issues.
  • Patch and secure endpoints (Windows/macOS), and mobile devices via Microsoft Intune, Jamf, or Meraki.
  • Implement and support endpoint and network-level security controls: FortiGate, Cisco Meraki, and Zero Trust Network Access (ZTNA) principles.
  • Provide technical documentation, runbooks, and SOPs for security operations and system configurations.

Requirements

Skills Required

  • Previous experience in a technical IT security, cloud engineering, or InfoSec-focused role.
  • Proven experience with Microsoft 365 Security, Azure Entra ID, Intune, and AWS IAM/Security Services.
  • Strong background in cloud security (AWS/Azure), including the shared responsibility model.
  • Familiarity with compliance frameworks (ISO 27001, GDPR, SOC 2, NIST).
  • Hands-on experience with EDR tools (CrowdStrike, Defender for Endpoint) and SIEM/SOAR platforms.
  • Basic scripting for automation and reporting using PowerShell or Python.
  • Working knowledge of network security protocols, VPNs, firewalls, and web filtering tools.
  • Understanding of patch management, application control, and vulnerability remediation.

Desirable Qualifications

  • Certifications such as CISSP, CISM, Security+, AWS Security Specialty, AZ-500, or MS-500 .
  • Experience working in or with a Security Operations Centre (SOC) .
  • Familiarity with DevSecOps , infrastructure-as-code, or cloud-native security practices.

Benefits

  • Competitive basic salary
  • Pension and life assurance
  • Enviable discounts
  • Gym Discounts
  • Summer Hours - 3pm Friday finish
  • Half Day, Pay Day Friday (once per month)
  • RetailTrust support
  • And so much more!

Our Culture  

We’re an energic fast-paced brand that embraces progress and strives for innovation. Hard work is rewarded with new opportunities at every level and kindness is celebrated in everything we do. Our summer working hours accommodate a healthy work life balance. Wellbeing is important to our working culture, which is why we nurture a friendly environment for talent to thrive in, alongside a vibrant social community.

Our Stores

The first Kurt Geiger store opened on London Bond street in 1963.  Today, our brand has global appeal and is distributed in hundreds of cities around the world. We operate over 70 stand-alone stores nationwide, including our new flagship store on London Oxford street, and in over 400 stores globally. Beyond stand-alone stores and retail pop ups, our retail partners include some of the world’s most famous department stores.

We Are One: For Love | For Diversity | For Change | For Equality | For Kindness |  For Freedom | For Unity Against Racism

This advertiser has chosen not to accept applicants from your region.

Senior Cloud Security Engineer

Greater London, London £65000 Annually Invitise

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

permanent

We’re looking for a Senior Cloud Security Engineer for our growing, prestigious client in the data sector, based in London, on a permanent basis paying up to £65,000 plus great benefits.

This role offers hybrid working with an expectation to be in the office 2–3 days per week.

You’ll be joining a technical team focused on strengthening cloud security and ensuring compliance across Microsoft Azure environments. This role will involve hands-on security engineering, working closely with infrastructure and DevOps teams, and supporting the adoption of Microsoft’s security toolset across the organisation.

You will need proven experience with:

  • p>Securing Azure environments in line with best practices - essential 

  • Microsoft Defender (Cloud, Endpoint, 365) - essential 

  • Sentinel - essential

  • Microsoft Purview, Compliance Manager and related compliance tools 

  • Entra ID (Azure AD), Conditional Access and Identity Governance

  • Data Loss Prevention, sensitivity labels and insider risk management

  • ISO 27001, SOC 2, GDPR and NIS2 frameworks

  • PowerShell scripting and use of Microsoft Graph API

  • Working across cloud, infrastructure and application teams

Certifications required:

  • AZ-500

  • SC-100 (or working towards)

  • One or more of MS-500 / SC-400 / SC-900

The following are desired: CISSP, CISM, CCSP

Interested?

Please apply below.

Senior Cloud Security Engineer, Azure Security Engineer, Azure Security Consultant, Cloud Security Consultant, Microsoft Security, Azure Sentinel, Defender, Purview, Compliance, Entra ID, Cloud Security, DLP, Data Sector, London, Hybrid

This advertiser has chosen not to accept applicants from your region.

Senior Cloud Security Engineer

Greater London, London Invitise

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

full time

We’re looking for a Senior Cloud Security Engineer for our growing, prestigious client in the data sector, based in London, on a permanent basis paying up to £65,000 plus great benefits.

This role offers hybrid working with an expectation to be in the office 2–3 days per week.

You’ll be joining a technical team focused on strengthening cloud security and ensuring compliance across Microsoft Azure environments. This role will involve hands-on security engineering, working closely with infrastructure and DevOps teams, and supporting the adoption of Microsoft’s security toolset across the organisation.

You will need proven experience with:

  • p>Securing Azure environments in line with best practices - essential 

  • Microsoft Defender (Cloud, Endpoint, 365) - essential 

  • Sentinel - essential

  • Microsoft Purview, Compliance Manager and related compliance tools 

  • Entra ID (Azure AD), Conditional Access and Identity Governance

  • Data Loss Prevention, sensitivity labels and insider risk management

  • ISO 27001, SOC 2, GDPR and NIS2 frameworks

  • PowerShell scripting and use of Microsoft Graph API

  • Working across cloud, infrastructure and application teams

Certifications required:

  • AZ-500

  • SC-100 (or working towards)

  • One or more of MS-500 / SC-400 / SC-900

The following are desired: CISSP, CISM, CCSP

Interested?

Please apply below.

Senior Cloud Security Engineer, Azure Security Engineer, Azure Security Consultant, Cloud Security Consultant, Microsoft Security, Azure Sentinel, Defender, Purview, Compliance, Entra ID, Cloud Security, DLP, Data Sector, London, Hybrid

This advertiser has chosen not to accept applicants from your region.

Senior Cloud Security Engineer

EC1A Islington, London InvitISE Ltd

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Permanent

We’re looking for a Senior Cloud Security Engineer for our growing, prestigious client in the data sector, based in London, on a permanent basis paying between £55,000 to £65,000 plus great benefits.

This role offers hybrid working with an expectation to be in the office 2-3 days per week.

You’ll be joining a technical team focused on strengthening cloud security and ensuring compliance across Microsoft Azure environments. This role will involve hands-on security engineering, working closely with infrastructure and DevOps teams, and supporting the adoption of Microsoft’s security toolset across the organisation.

You will need proven experience with:

Securing Azure environments in line with best practices - essential

Microsoft Defender (Cloud, Endpoint, 365) - essential

Sentinel - essential

Microsoft Purview, Compliance Manager and related compliance tools

Entra ID (Azure AD), Conditional Access and Identity Governance

Data Loss Prevention, sensitivity labels and insider risk management

ISO 27001, SOC 2, GDPR and NIS2 frameworks

PowerShell scripting and use of Microsoft Graph API

Working across cloud, infrastructure and application teams

Certifications required:

AZ-500

SC-100 (or working towards)

One or more of MS-500 / SC-400 / SC-900

The following are desired: CISSP, CISM, CCSP

Interested?

Please apply below.

Senior Cloud Security Engineer, Azure Security Engineer, Azure Security Consultant, Cloud Security Consultant, Microsoft Security, Azure Sentinel, Defender, Purview, Compliance, Entra ID, Cloud Security, DLP, Data Sector, London, Hybrid

This advertiser has chosen not to accept applicants from your region.

Cloud Security Engineer - July 2025

London, London £400 - £480 Daily Tenth Revolution Group

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

contract


Cloud Security Engineer - London - 480/pd Outside IR35

Please note - this role will require you to work from the London based office 1-2 days per week. You must have the unrestricted right to work in the UK to be eligible for this role.



About the Role

A digitally driven reinsurance broker is seeking a Cloud Security Engineer to play a key role in strengthening its cloud security posture across multi-cloud environments. This is a hands-on contract role focused on designing, implementing, and maintaining secure cloud environments, with a strong emphasis on leveraging the latest Google Cloud Platform (GCP) technologies.

You'll work closely with engineering, operations, and compliance teams to embed security best practices across platforms including GCP, Azure, and M365.



Key Responsibilities

  • Design, implement, and manage cloud security policies and solutions for GCP and Azure.
  • Configure and maintain security tools such as Cloud IAM, Security Command Center, VPC Service Controls, Azure Security Center, Azure AD, and Microsoft Defender for Cloud.
  • Conduct security assessments, vulnerability scans, and penetration testing.
  • Monitor cloud environments for threats and lead incident response efforts.
  • Integrate security into the CI/CD pipeline and ensure secure configurations.
  • Develop and enforce cloud security policies aligned with regulatory and internal frameworks.
  • Provide guidance on data protection, network security, and identity and access management.
  • (Desirable) Assess and enhance Salesforce security, including data protection and access controls.


Desirable Qualifications

  • 6+ years of experience in cloud or information security.
  • Proven experience securing Google Cloud Platform (GCP) environments.
  • Strong understanding of cloud security principles and native controls.
  • Experience with incident response and threat modelling.
  • Relevant certifications such as:
    • Google Professional Cloud Security Engineer
    • Azure Security Engineer Associate (AZ-500)
    • Certified Cloud Security Professional (CCSP)


Key Attributes

  • Strong verbal and written communication skills.
  • Curious, investigative mindset essential for cybersecurity.
  • Detail-oriented and process-driven.
  • Collaborative and relationship-focused.
  • Able to prioritise and perform under pressure.
  • Eager to learn and grow in the cybersecurity field.

To apply for this role please submit your CV or contact David Airey on (phone number removed) or at (url removed).

Tenth Revolution Group are the go-to recruiter for Data & AI roles in the UK offering more opportunities across the country than any other recruitment agency. We're the proud sponsor and supporter of SQLBits, Power Platform World Tour, and the London Fabric User Group. We are the global leaders in Data & AI recruitment.

This advertiser has chosen not to accept applicants from your region.

Cloud Security Solutions Architect (London)

SW7 Brompton, London Dark Trace

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

Darktrace is a global leader in AI for cybersecurity that keeps organizations ahead of the changing threat landscape every day. Founded in 2013, Darktrace provides the essential cybersecurity platform protecting nearly 10,000 organizations from unknown threats using its proprietary AI.

Find out if this opportunity is a good fit by reading all of the information that follows below.

The Darktrace Active AI Security Platform delivers a proactive approach to cyber resilience to secure the business across the entire digital estate - from network to cloud to email. Breakthrough innovations from our R&D teams have resulted in over 200 patent applications filed. Darktrace's platform and services are supported by over 2,400 employees around the world. To learn more, visit .

Job Description:

Darktrace is seeking to grow our team of Cloud Solutions Engineers. This fast-paced, high-profile, customer-focused role will support our EMEA sales teams on our largest customer opportunities in Cloud.

You will use your expertise to provide technical pre-sales guidance, partnering with account teams to drive revenue growth and further the adoption of our cloud products. As a key technical expert, you'll be a go-to leader within the field for both customers and internal teams.

What will I be doing:
  • Helping to secure client multi-cloud environments using Cyber AI, sharing your passion and deep knowledge of cloud provider suites in this client-facing role at the cutting edge of cybersecurity solutions.
  • Using your technical excellence to meet client and account team needs, ultimately leading to increased revenue and client satisfaction. Day to day you'll be:

Partnering with account and leadership teams to develop cloud-specific sales strategies to achieve revenue and growth objectives, supporting customers through demos and Proof of Value, positioning Darktrace in their cloud environments, identifying new opportunities for upsells by developing strong technical relationships with customers and channel partners, sharing insights via technology reviews and product findings, supporting the design of deployment plans and architectures for customers, and aligning with key Darktrace partners to drive Cloud products.

What experience do I need:

We welcome applications from candidates with a strong track record as a software sales engineer or technical account manager, with expertise in at least one cloud service provider platform. Ideally, you will have relevant certifications and strong knowledge of both on-premise and cloud networking. You will likely have:

  • Knowledge of CNAPP/CSPM/CDR/CIDR and related Cloud Security technologies
  • Experience supporting consultative selling through technical expertise
  • Strong and polished communication skills to share complex information compellingly
  • The ability to build lasting business relationships
  • A collaborative approach, guiding where needed to ensure team success
  • Fluency in English
Benefits:
  • 23 days' holiday + all public holidays, rising to 25 days after 2 years of service
  • Additional day off for your birthday
  • Private medical insurance covering you, your cohabiting partner, and children
  • Life insurance of 4 times your base salary
  • Salary sacrifice pension scheme
  • Enhanced family leave
  • Confidential Employee Assistance Program
  • Cycle to work scheme

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Cloud security Jobs in London !

Mandiant Cloud Security Architect, Mandiant, Google Cloud

London, London Google

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

**Minimum qualifications:**
+ Bachelor's degree in Computer Science, Information Systems, Cybersecurity or related technical field or equivalent practical experience.
+ 6 years of experience in information security and engineering, working with cloud-based infrastructure environments.
+ 4 years of experience with identity and access management with tech stacks (e.g., Active Directory, GCP, Entra ID, Palo Alto, Cisco), enterprise architecture and cloud architecture with one cloud platform.
**Preferred qualifications:**
+ Certification in one or more of the following: CompTIA Security+; CompTIA Network+; ISC2 (CISSP); SANS-GIAC certification (GSEC, GCIH, GCED, GCFA, GCIA, GNFA, GPEN, GWAPT); CISCO (CCNA); EC-Council (CEH, LPT).
+ Experience communicating remediation recommendations and strategies to technical staff, executive leadership, legal counsel, and internal and external clients.
+ Experience in incident response remediation or disaster recovery.
+ Ability to travel up to 30% of the time.
+ Excellent written and verbal communication skills, with the ability to develop documentation and explain technical details in a concise manner.
+ Excellent attention to detail and time management skills.
In this role, you will be responsible for helping clients effectively prepare to mitigate, and respond to cyber security threats. You will identify enterprise security requirements and provide guidance to enterprise initiatives. You will serve as technical support for security tools and assist with security tool implementation and integration into the customer environment. You will also provide guidance on the development of containment and remediation plans for cyber security incidents.
In addition, you will be the technical advocate for information security requirements and provide information of the security domain. You will execute on tactical plans, including direct engagement and delivery in technical matters. You will articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors.
Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.
**Responsibilities:**
+ Lead, coordinate, and conduct technical security assessments for cloud-based security infrastructures and platforms.
+ Assist clients with designing and implementing architecture enhancements, security configurations, identity protections, cloud workflows, and appropriate counter measures to defend against threats and attacker techniques.
+ Build scripts, tools, or methodologies to enhance Mandiant's on-premise active directory or Cloud assessment processes.
+ Develop and present comprehensive and accurate reports, training, and presentations for technical and executive audiences.
+ Communicate strategies and roadmap initiatives to client stakeholders including technical staff, executive leadership, and legal counsel.
Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also and If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form:
This advertiser has chosen not to accept applicants from your region.

Cloud Security Engineer (Automation & Tooling) - Engine by Starling

London, London Starling Bank

Posted 6 days ago

Job Viewed

Tap Again To Close

Job Description

Permanent

At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. 

Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. 

Starling Bank  has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. This SaaS technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success.

Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together!

The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness.

Hybrid Working

We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of our offices so that we're able to interact and collaborate in person.

About the role:

As a Cloud Security Engineer at Engine, you will be a hands-on builder, responsible for engineering and automating the security of our core platform. Your primary mission is to treat security as an engineering discipline, creating robust, scalable, and automated solutions to protect our cloud infrastructure and development lifecycle. You will spend your time writing code (Go, Python), defining secure infrastructure-as-code (Terraform), and building the tooling that ensures our platform is secure by design and compliant by default. This is a role for an engineer who loves to build, automate, and solve complex security problems through code.

You’ll be working on projects covering identity and access management, cloud and network security, vulnerability management, security monitoring, security hardening, compliance reviews, and more. It’s a very varied role with lots of close interaction with the infrastructure, security engineering, cross cutting and compliance teams.

Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear from the team in our latest Blog or our case studies with Women in Tech .

Primarily, we are looking for an experienced Cloud Security Engineer to join our growing Security Engineering team, but we are also keen to talk to talented Cloud Engineers who possess strong programming skills and a genuine desire to apply their knowledge to solving security challenges. In this role, you will work closely with the GRC team and the various Engine Technology teams to make sure security is at the heart of all our technical processes. Your place within the team will depend on your individual strengths and interests.

This role will cover a wide array of security areas across our multi-tenant SaaS cloud environments and internal infrastructure and will require a skilled individual to spearhead efforts in fortifying both infrastructure and application platforms, against potential threats.

What you’ll get to do?

  • Design, build, and maintain security automation and tooling to enforce security controls and simplify compliance (e.g., automating evidence collection for frameworks like SOC 2, ISO 27001, or PCI DSS)
  • Build, manage, and automate identity and access management controls to ensure secure access to our cloud platforms and applications
  • Write and review Infrastructure-as-Code (Terraform) to securely configure our AWS and GCP environments
  • Secure our CI/CD pipelines by implementing and interpreting results from SAST/DAST/SCA tools and ensuring the integrity of our software supply chain
  • Develop and maintain preventative and detective security controls within our cloud environments, responding to and automating the remediation of security alerts
  • Implement and automate technical controls based on the findings from security assessments, audits, and architecture reviews
  • Engineer solutions to secure our Kubernetes environments, focusing on RBAC, network policies, and runtime security
  • Collaborate with engineering teams to implement security best practices and provide hands-on support for remediation efforts
  • Contribute to incident response efforts, including the investigation, remediation, and post-mortem analysis of security breaches

Requirements

What skills are essential:

  • Strong, demonstrable hands-on experience in a software or infrastructure engineering role
  • A genuine passion for security, demonstrated by a proactive desire to learn about emerging threats, vulnerabilities, and best practices
  • Proficiency in at least one programming language, with a strong preference for Go, followed by Python
  • A mature understanding of cloud security architecture, and a deep, practical hands-on experience securing core infrastructure and services within AWS or GCP
  • Experience with Infrastructure-as-Code, specifically Terraform, for managing cloud environments
  • An aptitude for building tools and automating workflows to solve complex problems
  • A practical understanding of how to integrate security into the software development lifecycle
  • Experience securing containerised environments (Kubernetes) and CI/CD pipelines (e.g., GitHub Actions, TeamCity)
  • Strong scripting skills in Bash

What skills are desirable, but not essential:

  • Proven experience creating custom tools or scripts specifically to solve security challenges
  • You have an in-depth knowledge of security principles, technologies, best practices and threat detection and mitigation strategies
  • A deep understanding of security principles, common attack vectors (OWASP Top 10, MITRE ATT&CK), and the threat landscape
  • The ability to identify potential threats, attack vectors, and vulnerabilities in systems and applications
  • Experience in automating security controls for compliance frameworks like SOC 2, ISO 27001, or PCI DSS.
  • Expertise in Kubernetes, securing clusters and meshes (Cilium is preferable), networking best practices and RBAC implementation (CKA, CKS qualifications are a plus)
  • Container security knowledge including container image provenance (e.g. Sigstore, Notary) with an in-depth knowledge of container runtimes
  • Strong understanding of network protocols & practices, firewalls, intrusion detection/prevention systems and WAFs
  • Understanding of integrating security into the software development lifecycle
  • Experience in Cryptography management & enhancements
  • Experience configuring and utilising cloud-native security logging, monitoring, and detection services
  • Experience performing secure code reviews and security approvals including the use of static and dynamic application security testing (SAST/DAST) tools
  • Relevant security certifications such as AWS Security Specialist or GCP Professional Cloud Security Engineer

Our Interview process

Interviewing is a two way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team:

  • Initial interview with our Staff Security Engineer - ~45 minutes
  • Take home technical task to be discussed in the next interview
  • Technical interview with some of our Security Engineer team members - ~1.5 hours
  • Final interview with our CTO / deputy CTO ~45 minutes

Benefits

  • 33 days holiday (including public holidays, which you can take when it works best for you)
  • An extra day’s holiday for your birthday
  • Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off
  • 16 hours paid volunteering time a year
  • Salary sacrifice, company enhanced pension scheme
  • Life insurance at 4x your salary & group income protection
  • Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton
  • Generous family-friendly policies
  • Incentives refer a friend scheme
  • Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks
  • Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing

About Us

You may be put off applying for a role because you don't tick every box. Forget that! While we can’t accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren’t sure if you're 100% there yet, get in touch anyway. We’re on a mission to radically reshape banking – and that starts with our brilliant team. Whatever came before, we’re proud to bring together people of all backgrounds and experiences who love working together to solve problems.

Engine by Starling is an equal opportunity employer, and we’re proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Engine by Starling are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. 

When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application, you agree that Engine by Starling and Starling Bank will collect your personal data for recruiting and related purposes. Our Privacy Notice explains what personal information we will process, where we will process your personal information, its purposes for processing your personal information, and the rights you can exercise over our use of your personal information.

This advertiser has chosen not to accept applicants from your region.

Senior Director Analyst, Security Architecture and Cloud Security (Remote Canada and EMEA) (London)

SW7 Brompton, London Gartner

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

Senior Director Analyst, Security Architecture and Cloud Security (Remote Canada and EMEA)

Join to apply for the Senior Director Analyst, Security Architecture and Cloud Security (Remote Canada and EMEA) role at Gartner

Senior Director Analyst, Security Architecture and Cloud Security (Remote Canada and EMEA)

Join to apply for the Senior Director Analyst, Security Architecture and Cloud Security (Remote Canada and EMEA) role at Gartner

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from Gartner

What makes Gartner Research and Advisory a great fit for you?
Not sure what skills you will need for this opportunity Simply read the full description below to get a complete picture of candidate requirements.

  • You are a team player who values expert insights, bold ideas, and intellectual courage.
  • You are always learning and looking to discover whats next in technology.
  • You believe that good technology needs to be balanced with good governance, planning and process.
  • You pursue personal excellence through team collaboration and consensus.
If this describes you, Gartner is looking for you! Gartner is an upbeat culture based on collaboration, teamwork, integrity, and objectivity that values creativity and innovation. As a Gartner analyst, youll not only help clients solve complex challenges and deliver on key initiatives, but youll also grow your career and the scope of your impact across industries. We work hard and we reward success with exceptional opportunity.
About This Role
Gartner Analysts help clients in different industries all around the world address their greatest challenges and continue to innovate through the delivery of best practice research and insights. This role will work with security technical professionals (e.g., security architects, security engineers, security operations managers) to implement and execute best practices.
What Youll Do
As a Gartner analyst, you will be required to be both a thought leader and partner - share frame-breaking ideas but also provide actionable guidance. The expectations of your Gartner peers and clients are the following:
  • Develop new research and ideas through thought leadership and offer compelling, actionable approaches to client's needs and requests that accelerate the client's ability to act.
  • Create innovative, thought provoking, actionable, and highly leveraged must-have research content.
  • Present best practices and emerging trends to security technical professionals in virtual meetings and conferences.
  • Create and deliver high value presentation materials on and off stage for Gartner events and briefings.
  • Actively participate in innovation, ideation, and research discussions and collaborate effectively with peers in the research community.
  • Remain ahead of the curve on developments and issues within these specified areas as well as applicable adjacent areas.
What Youll Need
It helps to be obsessed with your topic! Gartner analysts are correctly viewed as THE experts. This means you need to know your technologies, architectures, markets, vendors, trends, management practices, etc. and be able to see the forest and the trees. Most Gartner analysts have many years of experience and enjoy solving puzzles.
  • Subject matter expertise and hands-on experience in enterprise security architecture and architecture frameworks such as SABSA and NIST CSF.
  • Experience with applying security architecture end-end; from business analysis to technical component selection.
  • Subject matter expertise in cloud security, with the ability to demonstrate understanding of the business requirements and opportunities in that market.
  • Knowledge of the native security controls for the leading infrastructure-as-a-service providers.
  • Knowledge of CNAPP, CSPM, CWPP, SSE and related cloud security control technologies as well as container security concepts.
  • Knowledge of the global landscape, and the competitive interplay between incumbents, emerging providers, disruptors and outsourcers in the cloud security market.
  • Strong organizational skills; ability to work under tight deadlines and produce high quality deliverables.
  • Demonstrate excellence in research and writing ability.
  • Strong written and verbal proficiency, analytical and presentation skills; ability to engage clients and respond effectively to questions.
  • Proficient in analyzing and synthesizing data; can effectively apply patterns and frameworks while drawing and defending conclusions to client challenges.
  • Strong communicator who is able to explain complex concepts concisely and simply.
  • Subject matter expert comfortable presenting at large and small-scale speaking engagements.
  • Demonstrated superior analytical skills, applying conceptual models, recognizing patterns while drawing and defending conclusions.
  • Minimum of 12 years of experience in a security architecture/engineering/operations or technology related role.
  • Bachelor's or equivalent experience, masters degree preferred.
  • Ability to conduct occasional travel, regionally and globally.
Who are we?
At Gartner, Inc. (NYSE:IT), we guide the leaders who shape the world.
Our mission relies on expert analysis and bold ideas to deliver actionable, objective insight, helping enterprise leaders and their teams succeed with their mission-critical priorities.
Since our founding in 1979, weve grown to more than 21,000 associates globally who support ~14,000 client enterprises in ~90 countries and territories. We do important, interesting and substantive work that matters. Thats why we hire associates with the intellectual curiosity, energy and drive to want to make a difference. The bar is unapologetically high. So is the impact you can have here.
What makes Gartner a great place to work?
Our sustained success creates limitless opportunities for you to grow professionally and flourish personally. We have a vast, virtually untapped market potential ahead of us, providing you with an exciting trajectory long into the future. How far you go is driven by your passion and performance.
We hire remarkable people who collaborate and win as a team. Together, our singular, unifying goal is to deliver results for our clients.
Our teams are inclusive and composed of individuals from different geographies, cultures, religions, ethnicities, races, genders, sexual orientations, abilities and generations.
We invest in great leaders who bring out the best in you and the company, enabling us to multiply our impact and results. This is why, year after year, we are recognized worldwide as a great place to work.
What do we offer?
Gartner offers world-class benefits, highly competitive compensation and disproportionate rewards for top performers.
In our hybrid work environment, we provide the flexibility and support for you to thrive working virtually when it's productive to do so and getting together with colleagues in a vibrant community that is purposeful, engaging and inspiring.
Ready to grow your career with Gartner? Join us.
The policy of Gartner is to provide equal employment opportunities to all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, ancestry, disability, veteran status, or any other legally protected status and to seek to advance the principles of equal employment opportunity.
Gartner is committed to being an Equal Opportunity Employer and offers opportunities to all job seekers, including job seekers with disabilities. If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access the Companys career webpage as a result of your disability. You may request reasonable accommodations by calling Human Resources at +1 ( or by sending an email to
Job Requisition ID:99583
By submitting your information and application, you confirm that you have read and agree to the country or regional recruitment notice linked below applicable to your place of residence.
Gartner Applicant Privacy Link: efficient navigation through the application, please only use the back button within the application, not the back arrow within your browser.
Seniority level
  • Seniority levelNot Applicable
Employment type
  • Employment typeFull-time
Job function
  • Job functionFinance and Sales
  • IndustriesIT Services and IT Consulting, Information Services, and Research Services

Referrals increase your chances of interviewing at Gartner by 2x

Get notified about new Investment Analyst jobs in London, England, United Kingdom.

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 1 week ago

London, England, United Kingdom 2 weeks ago

Were unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
Remote working/work at home options are available for this role.
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Cloud Security Jobs View All Jobs in London