> Markdown version of [/jobs/ext/3291528-senior-cloud-security-engineer-cloud-defense](https://www.wearedevelopers.com/jobs/ext/3291528-senior-cloud-security-engineer-cloud-defense). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cloud Security Engineer (Cloud Defense) - **Company:** Allianz Group - **Location:** Madrid, Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cloud Engineering, Continuous Integration, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Security Information and Event Management, Scripting, Google Cloud, Cloud Platform System, Git Flow, Kubernetes, Terraform, Prisma Cloud Platform, Docker, Microservices - **Published:** September 11, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=98f3ed0e1a67c632 ## About the Role * Hands-on experience securing cloud environments (AWS, Azure and/or GCP), including IAM, networking and workload protection * Strong understanding of cloud threat detection and attacker techniques (e.g., credential abuse, lateral movement, misconfiguration exploitation) * Experience with CNAPP/CSPM platforms (e.g., Wiz, Prisma Cloud, Lacework or similar) * Proven ability to manage security incidents end-to-end, from investigation to containment and reporting * Experience designing or working with event-driven detection and SIEM/SOAR environments * Knowledge of microservices and cloud-native architectures, with a focus on scalability and resilience * Hands-on experience with Kubernetes, Docker and cloud platforms (AWS, Azure, GCP) * Familiarity with Infrastructure as Code (Terraform, CI/CD, GitOps) and shift-left security practices * Scripting or automation skills (e.g., Python or similar) * Strong communication skills in English, with the ability to explain technical findings to non-security stakeholders ## Description This is a hands-on, high-impact role where you will work at the intersection of cloud security engineering, threat detection, and automation, collaborating with international teams in a fast-paced and continuously evolving environment. What you do * Analyze and investigate cloud security findings across AWS, Azure, and GCP, prioritizing based on risk and business impact * Manage and remediate cloud security posture issues, including misconfigurations, identity risks, and exposure scenarios * Handle and respond to active threat detections, correlating signals across multiple data sources * Monitor and improve SaaS security posture, identifying risks such as identity drift or third-party access issues * Develop and enhance detection use cases within SIEM and contribute to SOAR automation workflows * Collaborate with engineering and platform teams to implement security guardrails and enforce best practices * Support shift-left security initiatives by integrating security into infrastructure pipelines (IaC, CI/CD) * Contribute to continuous improvement through automation, documentation, and knowledge sharing