Job Closed
This listing is no longer active.
SWORD Health is a virtual musculoskeletal care provider that is on a mission to free 2 million people from post-surgical and chronic pain. The company’s platf
Senior Cloud Security Engineer
Location
Portugal
Posted
115 days ago
Salary
0
Seniority
Senior
Job Description
Senior Cloud Security Engineer
SWORD Health
• Design, implement, and maintain secure cloud infrastructure and configurations across AWS and GCP, aligned with HIPAA, GDPR, and internal security standards. • Own and continuously improve Sword’s cloud security posture, leveraging CSPM, CWPP, and CNAPP capabilities to proactively identify and mitigate risks across cloud infrastructure, workloads, and identities. • Act as a subject matter expert in Identity and Access Management (IAM), including RBAC design, least-privilege models, service accounts, workload identities, role lifecycle management, and access reviews across cloud environments. • Monitor cloud environments for security threats, vulnerabilities, and misconfigurations, ensuring timely and effective detection and response. • Lead and support incident response activities, including log analysis, forensic support, root cause analysis (RCA), post-incident reviews, and long-term remediation planning. • Evaluate, design, and ensure the availability and quality of logging, monitoring, and traceability data sources required for effective security operations and investigations. • Provide guidance on compensatory and mitigative controls, applying risk-based decision-making when ideal controls are not immediately feasible. • Own the end-to-end vulnerability management lifecycle, applying risk-based judgment beyond CVE severity by considering exploitability, asset criticality, exposure, business context, and operational trade-offs, while clearly communicating prioritization decisions, managing remediation timelines, and driving vulnerabilities to closure in close collaboration with engineering teams. • Lead and operate key cloud security platforms and services, including Wiz, Google Security Command Center, and related detection and posture management tooling. • Partner with Infrastructure and Engineering teams to build security automation, infrastructure-as-code controls, and scalable security guardrails using scripting and automation (Python, n8n, Bash, etc.), including Terraform-based controls, Kubernetes security configurations, and CLI-driven workflows to enforce secure-by-default cloud and platform environments. • Define, track, and report security metrics and KPIs, such as cloud posture maturity, vulnerability remediation SLAs, detection coverage, IAM hygiene, and incident response effectiveness, enabling data-driven security decisions. • Develop, document, and evangelize cloud security standards, patterns, and best practices, driving consistent adoption across teams. • Operate with an engineering-first, efficiency-oriented mindset, continuously seeking ways to reduce toil, automate controls, and scale security without unnecessary friction.
Job Requirements
- Bachelor’s degree in Computer Science, Information Security, or equivalent practical experience.
- 5+ years of hands-on experience in cloud security, with strong exposure to AWS and GCP.
- Deep understanding of IAM concepts and implementations, including RBAC, least privilege, identity federation, service/workload identities, and access governance.
- Proven experience operating CSPM, CWPP, and CNAPP solutions in production cloud environments.
- Strong knowledge of cloud security fundamentals: networking, encryption, logging, monitoring, and secure configuration management.
- Proficiency in scripting and automation (Python, Bash) with an infrastructure-as-code and automation mindset, including hands-on experience with Terraform, cloud and Kubernetes CLIs, and operational workflows to manage, audit, and enforce security controls at scale.
- Experience with cloud security tools such as Wiz, Google Security Command Center, AWS Security Hub, GuardDuty, and SIEM platforms.
- Solid understanding of security frameworks and standards such as NIST, CIS, and COBIT, and how to apply them pragmatically.
- Demonstrated ability to perform risk-based vulnerability prioritization, balancing security posture, operational impact, and business needs.
- Experience defining and using security metrics to measure effectiveness and drive continuous improvement.
- Strong problem-solving and analytical skills, with experience leading RCAs and incident reviews.
- Ability to influence cross-functional teams and communicate clearly with both technical and non-technical stakeholders.
- A pragmatic, engineering-driven approach to security, focused on outcomes, scalability, and efficiency.
Benefits
- Health, dental and vision insurance
- Meal allowance
- Equity shares
- Remote work allowance
- Flexible working hours
- Work from home
- Discretionary vacation
- Snacks and beverages
- English class
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Workday HCM, Security Principal Consultant
ERPAERPA is a leader in enterprise application managed services, cloud hosting, and consulting services.
• Act as a lead consultant on multiple client engagements with limited direction • Understand client business requirements and provide guidance throughout design, configuration and prototype, and assist clients with testing and move to Production efforts • Support clients during Annual Events such as: Annual Talent/Performance, Merit, Open Enrollment, ACA, etc. as needed • Partner with Engagement Managers to keep them informed of project status, changes, etc. • Collaborate with cross-functional counterparts to ensure clear lines of communication and project alignment • Accurately maintain forecast in a timely manner • Partner with the Sales team and serve as a Subject Matter Expert while assisting with sales presentations, demos, and LOEs • Stay up to date on industry knowledge, Workday enhancements, and be able to advise on Workday best practices • Build strong relationships with clients, gained through trust and exceptional customer service
• Developing and enhancing tools using Python and Linux to improve identity visibility, connectivity, and security • Using Python, REST API, GraphQL, Pandas, and data analysis techniques to process logs, identity events, and access data • Building dashboards, reports, and metrics to help measure and improve identity security posture • Supporting initiatives around SSO, MFA and NHI posture management • Learning how to automate identity and security workflows to improve infrastructure protection • Gaining hands-on experience with Linux administration, secure system configurations, and identity security best practices
• The Principal Cybersecurity Architect is responsible for driving enterprise-wide technology security strategy and providing technical expertise to business areas and project teams with an emphasis on implementation of innovative, leading-edge security technology solutions. • Proven Track Record of accomplishments and experience leading the design and deployment of AI Architectures (both On-Premise and Public Cloud) and driving and deploying Secure Cloud Adoption on an enterprise scale from Foundational Security Controls to Cloud migrations. • Extensive experience migrating from a large scale onprem datacenter to the cloud while maintaining the proper levels of security, compliance and regulatory adherence. • Cross-Functional Communication: Bridging gaps between data scientists, engineers, AI Architects, Cloud Architects, Data Protection professionals, legal, and executive teams. • Security Evangelism: Promoting secure-by-design principles across AI and Cloud initiatives. • Mentorship & Governance: Leading security teams and establishing governance frameworks for AI and Public Cloud adoption. • AI-Specific Security Expertise: Understanding of AI/ML Risks, Model Connectivity & Secure Deployment, AI Lifecycle Security. • Enterprise Security Architecture: Zero Trust & Identity Management, Cloud & Hybrid Security, Security Design Patterns. • Technical Depth in AI & Cloud Infrastructure: API & Data Security, AI System Integration, Public Cloud Integration, Model Usage Procedures. • Regulatory & Compliance Knowledge: Healthcare Regulations, Audit & Risk Management.
Senior Cyber Security Engineer
Ziphire HRWe connect talent to companies using our innovative platform.
• Responsible for deploying, managing, and maintaining security tools. • Develop, monitor, and improve KPIs to measure effectiveness of the security program. • Design, develop, and maintain the CrowdStrike Falcon platform and associated modules. • Collaborate with cross-functional teams for integration and functionality. • Implement new features and enhance existing functionalities. • Address complex technical challenges to deliver robust solutions.




