> Markdown version of [/jobs/ext/3045645-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/3045645-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** Postaladdress - **Location:** UK (Remote available) - **Experience:** Experienced - **Contract:** Temporary contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Audit Trail, Cloud Computing, Cloud Computing Security, Cloud Foundry, Continuous Integration, Payment Systems, Identity and Access Management, Key Management, Machine Learning, Role-Based Access Control, Security Software, Software Vulnerability Management, Policy as Code, Cloud Platform System, Software Security, Kubernetes, Build Process, Terraform, Security Orchestration, Automation & Response - **Published:** September 24, 2026 - **Apply:** https://startup.jobs/senior-cloud-security-engineer-ai-resilience-security-enhancements-fixed-term-contract-form3-10169780 ## About the Role * Extensive experience designing and implementing cloud security solutions within large-scale cloud-native environments. * Strong hands-on experience securing public cloud platforms (AWS preferred). * Expertise in cloud security architecture, identity and access management, workload protection and infrastructure security. * Experience securing CI/CD pipelines and modern software delivery practices. * Strong understanding of software supply chain security, including dependency management, artefact signing, provenance and vulnerability management. * Experience implementing least-privilege access models and RBAC. * Knowledge of security monitoring, risk assessment and security governance. * Experience working within highly regulated or business-critical production environments. * Excellent stakeholder management and communication skills, with the ability to influence engineering teams. * Strong technical documentation and design skills. Desirable * Experience implementing security controls for AI or machine learning platforms. * Knowledge of cryptographic controls and key management. * Experience with Infrastructure as Code and policy-as-code tooling. * Familiarity with payment platforms or financial services environments. * Understanding of operational resilience frameworks and regulatory requirements affecting critical financial infrastructure. * Relevant cloud or security certifications (AWS Security Specialty, CISSP, CCSP or similar). TECH STACK ️ * AWS - Cloud infrastructure and security controls. * Kubernetes - Container orchestration and workload security. ## Description Focusing on improving cloud security, operational resilience and governance across our engineering ecosystem, you will work closely with our Platform Engineering and Security teams to design and implement practical security improvements that enhance how we build, deploy and operate critical payment infrastructure. You'll play a key role in strengthening areas such as cloud platform security, software supply chain security, identity and access management, AI governance, cryptographic controls and automated security assurance, ensuring solutions are scalable, production-ready and aligned with regulatory expectations., * Assess the current cloud security posture across Form3 environments, identifying risks, control gaps and opportunities for improvement. * Design and implement scalable cloud security controls that improve the resilience and security of our cloud-native platform. * Enhance perimeter security controls across cloud infrastructure. * Strengthen CI/CD pipeline security through secure build processes, automated security testing, deployment governance and artefact integrity. * Improve production access security, including RBAC, least-privilege implementation, deployment tooling and operational processes. * Enhance software supply chain security through dependency management, container image scanning, provenance, signing and vulnerability remediation. * Contribute to the secure adoption and governance of AI-enabled engineering capabilities, including controls for data protection, auditability and operational resilience. * Provide technical leadership and guidance on cloud security architecture and secure engineering practices. * Produce high-quality technical documentation, including solution designs, implementation plans, operational procedures and security evidence. * Collaborate closely with engineering, platform and security teams to deliver maintainable, production-ready security improvements. * Ensure all deliverables align with operational resilience requirements, regulatory obligations and internal security standards. * Deliver changes using structured, low-risk change management practices while maintaining service availability., * CI/CD tooling - Secure software delivery, build security and deployment governance. * Container security tooling - Image scanning, vulnerability management and runtime protection. * Identity & Access Management (IAM) - Least privilege, RBAC and privileged access controls. * Software Supply Chain Security - Dependency scanning, artefact signing, provenance and integrity controls. * Security monitoring & observability platforms - Detection, auditability and operational visibility. * AI governance and security controls - Supporting secure adoption of AI-enabled engineering capabilities., All new team members start their first day in our office to collect the equipment needed to work remotely. ## Related Videos - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [Building a Cloud Platform Where Everything is Just Another Kubernetes Resource](https://www.wearedevelopers.com/videos/100137-building-a-cloud-platform-where-everything-is-just-another-kubernetes-resource) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)