Senior Cloud Security Engineer
Location
United Kingdom
Posted
66 days ago
Salary
0
Seniority
Senior
Job Description
Senior Cloud Security Engineer
Subsea7
Role Description We are looking for a Senior Cloud Security Engineer to join our team in our Aberdeen office, London office or on a Remote basis on a full-time permanent contract. The Senior Cloud Security Engineer (CSE) role will be responsible for delivery of cyber security improvements across the cloud offerings at Subsea7. Reporting to the Information Security Manager as part of the IT Security team, the successful candidate will bring a solid cybersecurity background and have a sound technical understanding of enterprise IT. The Senior CSE will work alongside the IT security team, Internal IT teams and managed service providers to ensure that our cloud environment meets security best practices. This role will require a clear communicator who will be able to explain complex security challenges to a wide range of stakeholders. As the cloud technologies continue to evolve, so do the security requirements to keep them secure. The Senior CSE will help shape our cloud security strategy ensuring that our policies, tools and ways of working continue to adapt to meet these new challenges. What will you be doing? - Working within the IT Security team to design and deploy cloud security solutions across our IAAS, PAAS and SAAS technologies - Working with the IT Security team to develop and maintain security policies and procedures for the cloud environment - Conduct regular security assessments and audits to identify and mitigate risks within our cloud environment - Support and maintain our security controls within Azure Active Directory and Microsoft 365 - Identify security risks and provide recommendations for mitigation - Support during any production issues and incidents and participate in the problem and change management forums - Support and maintenance of Cloud Security Tooling and Platforms - Take part in post incident reviews and propose engineering resolutions to improve results in any future recurrence - Assist with mentoring and cross skill training across the IT Security team and wider IT function - Stay up to date with the latest threats and vulnerabilities in the cloud environment and make recommendations for remediation Qualifications - Extensive IT experience with cloud technologies (Microsoft Azure preferred) - Experience in delivering Information Security in a modern digital workplace - Preferred security certification (CISSP, CISM) - Preferred azure certifications (AZ-500, SC-300) - Experience within a Windows Server environment - Experience within Microsoft 365 and Azure Active Directory with Microsoft Purview experience is desirable - Scripting knowledge with PowerShell - Understanding of the NIST cybersecurity Framework, ISO27001, GDPR - Operates with the highest level of confidentiality - Clear communicator who can present to both technical and non-technical audiences - Good understanding of IT Infrastructure & applications with knowledge of industry standards and current technology trends.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Manage and develop a team of vulnerability analysts and security engineers • Provide coaching, mentorship, performance feedback, and career development • Ensure high-quality delivery of security services across client accounts • Act as the operational escalation point for client-facing delivery issues • Own day-to-day operations of scanning, triage, ticketing, remediation coordination
• Create the conditions that enable product and engineering teams to move faster with confidence. • Lead infrastructure, IT security operations, and governance, risk, and compliance functions. • Ensure a reliable, scalable, and secure environment as the organization transforms. • Play a key role in the evolution toward a Full-Stack Builder model. • Build a technical and security foundation that reduces friction.
• Design and develop product security APIs, tools, and utilities for internal and external stakeholders. • Conduct threat modeling and secure design reviews for application backend services and business integrations. • Perform advanced penetration tests and adversarial attack simulations against Harness modules, APIs, and codebase using industry-standard frameworks. • Lead manual and automated code review efforts to discover vulnerabilities, weaknesses, and anti-patterns in the Harness platform. • Implement and operate security tooling including SAST, DAST, and SCA, and integrate these into CI/CD pipelines. • Consult and advise developers and Product Managers on security standards, vulnerability remediation, and security architecture. • Assess risks and trade-offs, and propose solutions for product security features such as authentication and authorization. • Participate in the creation, review, and implementation of technical security standards across global engineering teams. • Use the Harness platform to integrate security processes like vulnerability management into the SDLC. • Collaborate cross-functionally with Engineering and Product to accelerate the release of software with security by design.
• We are looking for a Security Technician to join the team of a public sector client. If you are eager to advance your career in this area and are looking for a company that invests in your development, get to know us and send your CV.



