AWS Cloud Security Engineer

identifi Global Resources
Bolton, UK
14 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£60,000.0 - £80,000.0
Working hours
Shift work

Tech stack

Amazon Web Services Cloud Computing Security Cloud Engineering Cyber Security DevOps Cloud Services Security Information and Event Management Terraform Vulnerability Analysis

Job description

The organisation develops cloud-native software used in environments where security, resilience and availability genuinely matter. As its UK operation continues to grow, you’ll take meaningful ownership of security across its AWS environment while working closely with an established Cybersecurity function in the US.

This isn’t a role where you’ll spend your week writing policies or simply passing findings to somebody else.

You’ll be expected to understand the environment, work directly with AWS security controls, assess vulnerabilities and threats, support security incidents and help engineering teams make good security decisions.

At the same time, you won’t be expected to arrive having done every part of the job already.

If you’ve built strong AWS security experience and are ready for greater ownership, broader project exposure and the opportunity to become the key security presence for a growing UK operation, this could be an excellent next move.

What you’ll be doing

You’ll take day-to-day security ownership of the UK AWS environment, working with Cybersecurity, DevOps, Infrastructure and other engineering teams.

Your work will include:

  • Maintaining and improving AWS security controls and cloud security posture.
  • Identifying vulnerabilities, assessing their real-world risk and helping drive remediation.
  • Monitoring emerging threats and translating them into practical actions.
  • Working with AWS-native security tooling, including environments using GuardDuty and CloudTrail.
  • Reviewing configurations and identifying opportunities to harden the AWS estate.
  • Supporting security incidents as the UK security point of contact, coordinating effectively with the wider Cybersecurity team.
  • Contributing to new cloud services and security projects.
  • Helping align UK AWS security controls with the organisation’s wider US environment.
  • Advising technical teams on the security implications of cloud changes and new services.
  • Taking part in an out-of-hours on-call rotation.
  • Occasionally helping with broader local technology issues in the Manchester office where needed.

Requirements

The strongest candidates are likely to have around five or more years in cybersecurity, with meaningful hands-on experience securing AWS environments.

You’ll ideally bring:

  • Strong practical AWS cloud security experience.
  • Experience maintaining or improving cloud security controls.
  • Vulnerability assessment, prioritisation and remediation experience.
  • Exposure to security incidents, including investigation, triage or coordination.
  • Experience using AWS-native security and monitoring services.
  • Good understanding of cloud security configuration and hardening.
  • Experience working alongside Infrastructure, DevOps or Engineering teams.
  • The judgement to distinguish an important security issue from background noise.
  • The confidence to operate independently while knowing when to involve others.
  • Clear communication with both technical and non-technical stakeholders.

Experience with GuardDuty and CloudTrail would be particularly relevant, although the hiring team is open to candidates with strong transferable AWS security experience rather than expecting an exact match across every tool.

Useful, but not essential

Experience in any of the following would strengthen your application:

  • Terraform or cloud security automation.
  • Cloud architecture or security design reviews.
  • SIEM and cloud security monitoring.
  • Security assurance or compliance.
  • Highly regulated or security-sensitive environments.
  • Cyber Essentials or ISO 27001 environments.
  • AWS or broader security certifications.

You do not need to have been the formal Incident Manager for major incidents. Experience supporting and coordinating security incidents is sufficient; there is scope to take greater ownership as you develop in the role. This was specifically confirmed during the client briefing.

Benefits & conditions

You’ll be joining at an unusually interesting point in the organisation’s UK growth.

You’ll be the first dedicated UK hire in this Cybersecurity team, with an established US function behind you rather than being left to build everything alone. There is genuine scope to shape how the UK security capability develops as the organisation grows.

You’ll also be working for a business whose technology supports public-safety organisations rather than a product where the consequences of security are abstract. The underlying platform is cloud-native and designed for always-available public-safety operations.

Package and working arrangements

Salary: £60,000-£80,000

Bonus: approximately 6-8%, depending on level

Equity: stock options

Benefits: private medical insurance and pension

Development: support is available for role-relevant professional development and certifications, subject to agreement with your manager

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

6:51 min

Audience questions on cloud security and operational capacity

Steffen Heilmann · World Congress 2021

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

Videos

See all

Related articles

See all