Information Security Officer - AWS, CISSP, CISM, CCSP

Sanderson Recruitment Plc
London, UK
3 days ago
Apply on www.totaljobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Amazon Web Services Cloud Computing Security Cyber Security Identity and Access Management Information Systems Security Architecture Professional Cloud Services Cloud Platform System Cloudformation Terraform Vulnerability Analysis

Job description

The client is seeking an experienced Information Security Officer to help drive the security strategy, governance, and risk management activities across cloud and technology environments. You will work closely with technology and business teams to identify security risks, implement effective controls, and ensure solutions are designed and operated securely.

This is a highly visible role requiring strong technical security expertise, stakeholder management skills, and experience securing modern cloud platforms.

Key Responsibilities

  • Drive the implementation and continuous improvement of information security controls.
  • Identify, assess, and mitigate security risks across applications, infrastructure, and cloud environments.
  • Conduct security reviews, vulnerability assessments, and risk analysis.
  • Analyse security findings and coordinate remediation activities with engineering teams.
  • Review application and infrastructure security controls and recommend improvements.
  • Support secure solution design and ensure alignment with security policies and best practices.
  • Provide security guidance on architecture, cloud platforms, and technology initiatives.
  • Work with stakeholders to balance security, risk, and business objectives.
  • Contribute to the development of security standards, governance processes, and technology roadmaps.

Requirements

  • Strong experience within Information Security, Cyber Security, Risk Management, or Security Architecture.
  • Hands-on knowledge of AWS and/or Google Cloud Platform (GCP) security architectures.
  • Experience securing cloud services including networking, compute, storage, IAM, and infrastructure services.
  • Strong understanding of cloud security frameworks and best practices.
  • Knowledge of security and compliance frameworks such as NIST, ISO 27001, and CSA STAR.
  • Experience conducting security risk assessments and managing remediation activities.
  • Strong stakeholder management and communication skills.
  • Ability to explain complex security concepts to both technical and non-technical audiences.

Desirable Skills

  • Experience with Infrastructure as Code security (Terraform, CloudFormation).
  • Cloud security certifications such as CISSP, CISM, CCSP, AWS Security Specialty, AWS Solutions Architect, or GCP Professional Cloud Security Engineer.
  • Previous experience within a large-scale enterprise or regulated environment

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.totaljobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:41 min

Transitioning artificial intelligence infrastructure into scalable commodity cloud services

juarezjunior juarezjunior · World Congress 2024

6:51 min

Audience questions on cloud security and operational capacity

Steffen Heilmann · World Congress 2021

2:32 min

Overview of Terraform and Terraform Cloud features

Devlin Duldulao · LIVE

Videos

See all

Related articles

See all