> Markdown version of [/jobs/ext/2382396-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/2382396-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** Reply Ltd - **Location:** London, UK - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Software as a Service, Cloud Computing Security, Cloud Engineering, Cyber Security, Domain Name System (DNS), Internet Protocol Security (IP SEC), Virtual Private Networks (VPN), Network Security, Scrum Methodology, Software Deployment, Software Engineering, TCP/IP, Delivery Pipeline, Software Security, Information Technology, Integration Frameworks, Terraform, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** August 17, 2026 - **Apply:** https://www.efinancialcareers.com/jobs-United_Kingdom-London-Cloud_Security_Engineer.id24690472 ## About the Role alongside engineering and platform teams to design and implement secure cloud architectures, integrate security into delivery pipelines, and improve cloud security posture across primarily AWS -based environments. You will bring a strong cloud engineering background with a solid, practical understanding of security and a genuine desire to shift security left across the full delivery lifecycle. Responsibilities: Design and implement cloud security architectures on AWS (primary), with exposure to Azure and/or GCP being advantageous Build and maintain secure infrastructure using Infrastructure as Code (Terraform), including reusable, security-hardened modules and reference patterns Integrate security tooling and automated controls into CI/CD pipelines, including SAST/DAST tooling, secrets scanning, and policy-as-code enforcement Conduct threat modelling exercises, cloud security posture reviews, and risk assessments for cloud platforms and workloads Work within scaled agile delivery teams, contributing security requirements and controls to sprint cycles and platform roadmaps Provide technical security assurance for application deployments, third-party integrations, and SaaS product onboarding Support incident response planning and contribute to cloud resilience and recovery design for client-hosted services Communicate security risks and remediation priorities clearly to technical peers and, where needed, to technical leads and delivery managers About the candidate: A minimum Bachelor's degree (2.1 or above) in Cyber Security, Computer Science, Software Engineering, or a related technical discipline Demonstrable, hands-on experience engineering and securing workloads on AWS Practical experience with Terraform and IaC-based delivery in a real engineering context Background in DevSecOps, secure software engineering, or application security, with direct experience integrating security into CI/CD pipelines Exposure to cloud security posture management, workload protection, or equivalent cloud-native security tooling Familiarity with network security fundamentals including TCP/IP, DNS, VPN, and IPSEC Familiarity working within financial services and/or public sector environments is advantageous Familiarity operating within agile delivery frameworks (Scrum, SAFe, or equivalent) Reply is an Equal Opportunities Employer and committed to embracing diversity in the workplace. We provide equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type regardless of age, sexual orientation, gender, identity, pregnancy, religion, nationality, ethnic origin, disability, medical history, skin colour, marital status or parental status or any other characteristic protected by the Law. Reply is committed to making sure that our selection methods are fair to everyone. To help you during the recruitment process, please let us know of any reasonable adjustments you may need. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london)