Cloud Security Engineer

Darkshield
York, United Kingdom
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate
Compensation
£ 80K

Job location

York, United Kingdom

Tech stack

Kubernetes Security
Amazon Web Services (AWS)
Software System Penetration Testing
Azure
Cloud Computing Security
DevOps
Identity and Access Management
Python
Network Security
Ansible
Security Information and Event Management
Google Cloud Platform
Firewalls (Computer Science)
Infrastructure as Code (IaC)
Cloudformation
Kubernetes
Patch Management
CIS Benchmarks
Terraform
Docker
Security Orchestration, Automation & Response
Vulnerability Analysis
Microservices

Job description

We are looking for a Cloud Security Engineer to join our growing team. This role involves designing, implementing, and managing security solutions across AWS, Azure, and Google Cloud. The ideal candidate will have a deep understanding of cloud security architectures, automation, and compliance frameworks., Cloud Security Architecture & Implementation

  • Design and implement cloud security architectures across AWS, Azure, or Google Cloud.
  • Develop and enforce cloud security controls, including IAM policies, encryption, and network security.

Threat Monitoring & Incident Response

  • Monitor cloud environments for security threats, vulnerabilities, and misconfigurations.
  • Lead incident response efforts related to cloud security breaches and misconfigurations.
  • Implement SIEM and security monitoring tools for real-time threat detection.

Cloud Security Assessments & Compliance

  • Conduct cloud security assessments, penetration testing, and risk analysis.
  • Ensure compliance with ISO 27001, NIST, CIS Benchmarks, GDPR, and other security standards.
  • Collaborate with DevOps teams to integrate security into CI/CD pipelines.

Security Automation & Infrastructure as Code (IaC)

  • Automate security policies and compliance enforcement using Python, Terraform, Ansible, or CloudFormation.
  • Develop security automation scripts for vulnerability scanning and patch management.

Collaboration & Knowledge Sharing

  • Provide guidance and best practices to internal teams on cloud security.
  • Work closely with developers, DevOps, and compliance teams to align security requirements.

Requirements

Technical Skills & Experience

  • At least three years of experience in cloud security engineering or a related role.
  • Hands-on expertise securing AWS, Azure, or Google Cloud platforms.
  • Strong knowledge of IAM, firewalls, WAFs, encryption, and security groups.
  • Experience with security automation using Python, Terraform, or CloudFormation.
  • Familiarity with container security (Kubernetes, Docker) and microservices security., * AWS Certified Security - Specialty
  • Azure Security Engineer Associate (AZ-500)
  • Google Professional Cloud Security Engineer
  • CISSP, OSCP, CEH, or relevant security certifications are a plus.

Soft Skills & Work Environment

  • Strong problem-solving skills and ability to think like an attacker.
  • Excellent communication and collaboration skills to work with cross-functional teams.
  • Ability to work independently and handle multiple projects in a fast-paced environment.

Benefits & conditions

To ensure a strong match, the ideal candidate should:

  • Implement cloud security controls across at least one major cloud provider within the first three months.

  • Conduct at least two full cloud security assessments per quarter.

  • Develop automated security enforcement scripts that reduce vulnerabilities by 30 percent within the first six months.

  • Work on cutting-edge cybersecurity projects with top-tier clients.

  • Career growth opportunities in a fast-growing cybersecurity agency.

  • Flexible work environment - remote and hybrid options available.

  • Competitive salary and bonuses based on security impact and research.

About the company

Darkshield is an expert cybersecurity agency based in York, UK. We help organisations navigate an increasingly complex digital landscape by providing expert services in penetration testing, vulnerability assessment, managed security, and compliance. Our mission is to protect businesses by delivering tailored, cutting-edge cybersecurity solutions that keep them resilient and ahead of cyber threats.

Apply for this position