Senior Cloud Security Engineer
Location
United Kingdom
Posted
12 days ago
Salary
0
Seniority
Senior
Job Description
Senior Cloud Security Engineer
Sony Interactive Entertainment
• Provide cloud security capabilities that are proactive, preventive-focused models that address modern threats, including those driven by AI-enabled attack techniques. • Expanding into next-generation security domains such as AI/ML security, container security, and advanced threat detection and response. • Design and implement cloud security controls that reduce risk and improve prevention, detection, and response capabilities. • Contribute to securing multi-cloud and hybrid environments across AWS, Azure, GCP, and on-premise infrastructure. • Implement security controls for AI/ML workloads, including protecting data pipelines, model services, and AI-integrated applications. • Identify and help mitigate AI-specific risks such as prompt injection, data poisoning, and model/data leakage. • Apply DevSecOps and Infrastructure-as-Code (IaC) practices to integrate security into CI/CD pipelines. • Partner with product and platform teams to implement secure architecture patterns and cloud security standards. • Utilize CNAPP platforms and related tools to identify and remediate risks across cloud, container, and AI environments. • Implement and maintain security controls for containerized environments, including Kubernetes cluster configuration, image scanning, and runtime protection. • Support monitoring, detection, and response capabilities, including integration with cloud-native telemetry and security tooling. • Participate in threat modeling and risk assessments (Attack Surface Management, Data Security Posture Management, etc.) for cloud-native and AI-enabled systems. • Develop and maintain automation solutions to improve security coverage and operational efficiency. • Deploy and manage infrastructure using Infrastructure-as-Code (IaC) tools and best practices. • Contribute to security initiatives and projects, helping deliver measurable improvements to the organization’s security posture. • Support security operations and internal service requests, contributing to continuous process improvement.
Job Requirements
- Bachelor’s degree or equivalent in Computer Science, Information Security, or related field.
- Experience designing and securing cloud and hybrid environments (AWS, Azure, GCP, On-Premise)
- Proficiency in one or more programming or scripting languages, with experience interacting with cloud APIs and automation workflows
- Strong understanding of cloud security fundamentals, including IAM, network security, encryption, and secure architecture design
- Experience implementing DevSecOps practices and securing Infrastructure-as-Code (IaC) workflows
- Experience deploying and securing container technologies (Kubernetes, Docker, EKS, GKE, AKS)
- Understanding of security risks in AI/ML systems, including prompt injection, data poisoning, and model/data leakage
- Familiarity with data security principles in AI training and inference pipelines
- Experience implementing basic security controls, logging, and monitoring for AI-enabled services
- Awareness of AI security frameworks such as OWASP Top 10 for LLMs and NIST AI Risk Management Framework
- Experience using CNAPP platforms to identify and remediate cloud security risks
- Familiarity with IaC scanning, cloud security posture management, and runtime detection tools
- Understanding of security prevention, detection, and response concepts
- Experience building and securing scalable cloud architectures across application, network, and data layers
- Familiarity with serverless and event-driven architectures (e.g., AWS Lambda, GCP Cloud Functions, Azure Automation)
- Relevant certifications (e.g., AWS, Azure, GCP, Security+) are a plus
- Experience working in multi-OS and distributed environments.
Benefits
- Please note, Sony Interactive Entertainment conducts background checks at the offer stage for all new employees (which may include criminal background checks for some roles) and will need to process personal information to support these checks.
- Equal Opportunity Statement: Sony is an Equal Opportunity Employer. All persons will receive consideration for employment without regard to gender (including gender identity, gender expression and gender reassignment), race (including colour, nationality, ethnic or national origin), religion or belief, marital or civil partnership status, disability, age, sexual orientation, pregnancy, maternity or parental status, trade union membership or membership in any other legally protected category.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Director – Cybersecurity, Product Security
JioStarA legacy of entertainment, now united as one. Welcome to JioStar - where stories and experiences are infinite!
Role Description As a Director – Cybersecurity you will lead, mentor, and develop engineers who are part of our Security team. The Security team helps secure Infrastructure that run the Hotstar business, streaming product, live broadcast and social gaming. As devsecops engineer you would be developing software tools that work reliably at scale and extending our operational excellence around securely operating a large cloud infrastructure. We need passionate hackers who derive purpose in life by finding potential weaknesses and then crafting creative solutions to eliminate those weaknesses. The pace of our growth is incredible – if you want to tackle hard and interesting problems at scale, and create an impact within an entrepreneurial environment, join us! Key Responsibilities - Championing security: Educate and train people at all levels of the business to advocate for a security-conscious culture - Advocate for policy-as-code, security, and automation - Leverage AI/ML techniques to enhance threat detection, anomaly identification, and automated security operations - Growing our security tech stack: Maintain our existing tooling and stay on top of emerging technologies that could improve our security posture and drive their evaluation, rollout, and adoption - Promoting security by design: Work closely with engineering teams to embed security considerations, including vulnerability management, in the design, development, and maintenance of products and features - Manage internal efforts to successfully end security incidents - Build and design tooling to automate security operations without compromising our posture - Define and refine measurements of security risk - Advocate and support engineering teams in developing secure platform tooling and services - Mentor team members to uplevel technical and interpersonal security skills - Exert technical influence over Infosec team members, increasing their productivity and effectiveness by sharing your deep knowledge and experience Qualifications - Extensive knowledge of security risks and mitigations through process and technology, especially for cloud-based applications and infrastructure - Experienced with securing AWS infrastructure managed and provisioned using IaC - Architect, design, develop and operationalize high-performance, scalable, reliable, and resilient services - You have experience working with and securing containers and Kubernetes - You have a robust knowledge of security engineering and application security - Strong understanding of web or mobile application security - Penetration Testing, threat modeling, and architecture review experience - Strong communication skills to translate security requirements into business objectives and to effectively convey security considerations to both technical and non-technical audiences - Confidence to engage with peers, both internally and at prospects/customers, to understand their information security concerns - You have experience working with a fully distributed, remote team - Excellent problem-solving abilities - Sound business judgment, proven ability to influence others and strong analytical thinking skills - Entrepreneurial spirit and willingness to have fun! Preferred Education & Experience - Bachelor's Degree in Computer Science or related field with a minimum 8+ years of experience in securing large scalable systems Company Description Perched firmly at the nucleus of spellbinding content and innovative technology, JioStar is a leading global media & entertainment company that is reimagining the way audiences consume entertainment and sports. Its television network and streaming service together reach more than 750 million viewers every week, igniting the dreams and aspirations of hundreds of million people across geographies. JioStar is an equal opportunity employer. The company values diversity and its mission is to create a workplace where everyone can bring their authentic selves to work. The company ensures that the work environment is free from any discrimination against persons with disabilities, gender, gender identity and any other characteristics or status that is legally protected.
Workday Security & Integration Developer
CAIWHEN YOU NEED TO MEET A HIGHER STANDARD® in US | ASIA | EUROPE | AUSTRALIA
Role Description We are seeking an experienced Workday Security & Integration Developer to help shape and support our Workday transformation across Finance, HR, and Reporting. This role will evaluate the current security posture, design a future-state role and domain framework, manage day-to-day security configurations, and partner with our Integration Developer to troubleshoot and maintain Workday integrations. The ideal candidate brings deep expertise in Workday HCM and Finance security, along with strong integration knowledge and a collaborative, solutions-oriented mindset. This position is full-time and remote. "This position does not offer employment sponsorship. All candidates must be eligible to work without need for sponsorship by employer." What You’ll Do - Lead the redesign of Workday security to reduce excessive access, eliminate role overlap, address segregation of duties (SoD) gaps, and improve clarity across business units. - Collaborate with Finance, HR, IT, and other stakeholders to gather security requirements, validate configurations, and communicate access design decisions clearly and transparently. - Design, implement, and maintain comprehensive security solutions, policies, procedures, and guidelines that safeguard the Workday environment. - Ensure security solutions align with SOC 2 Type 2 requirements. - Develop compliance dashboards, audit reports, and notifications to monitor access, configuration changes, and data flow within Workday. - Recommend durable security design choices that support evolving AI and agent-based use cases, including agent identities, permissions, human-in-the-loop approval models, and audit trails for agent-initiated actions. - Troubleshoot issues related to EIB, Core Connector, and Studio integrations. - Build and maintain Workday Studio integrations. - Partner with cross-functional teams to design, implement, and support Workday solutions aligned with business objectives. - Create and maintain detailed documentation of processes, integrations, and configurations to support knowledge sharing and future reference. Qualifications - Minimum of 5 years of Workday configuration experience, including at least 3 years focused on Workday security administration across both Finance and HCM security domains. - Demonstrated experience redesigning Workday security models at enterprise scale, including role rationalization and persona-based security frameworks. - Deep knowledge of Workday security constructs, including domain security policies, business process security policies, security groups, and security analysis tools. - Understanding of SOC 2 compliance requirements as they apply to Workday security, with the ability to embed compliance controls throughout configuration. - Demonstrated understanding of how Workday security supports downstream identity, role, and access consumers, including familiarity with SSO, identity provider integrations, and federated access concepts. - Minimum of 1 year of experience with Workday integrations, preferably Workday Studio. - Strong knowledge of XML and XSLT for designing and maintaining integrations. - Strong analytical and problem-solving skills, with the ability to translate complex business access requirements into technical security configurations. - Excellent communication and collaboration skills, with the ability to work effectively across functional teams and with program stakeholders at all levels. - Highly self-motivated and able to work independently in a fully remote contract environment. Requirements - Workday certifications in Integrations and/or Security (preferred). - Experience supporting SOC 2 Type 2 audits or similar control environments (preferred). - Familiarity with AI agent access control frameworks and how Workday security governance applies to emerging agent-based use cases (preferred). - Bachelor’s degree in Computer Science, Information Systems, or a related field (preferred). Physical Demands - Ability to safely and successfully perform the essential job functions. - Sedentary work that involves sitting or remaining stationary most of the time with occasional need to move around the office to attend meetings, etc. - Ability to conduct repetitive tasks on a computer, utilizing a mouse, keyboard, and monitor. Benefits - $105,000 - $130,000 per year. - Benefit packages include medical, dental, and vision insurance, as well as 401k retirement account access. - Employees in this role receive paid time off and may also be entitled to paid sick leave and/or other paid time off as provided by applicable law. Reasonable Accommodation Statement If you require a reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employment selection process, please direct your inquiries to application.accommodations@cai.io or (888) 824 – 8111.
Principal Cybersecurity Strategist
HumanaLouisville, Kentucky-based Humana is a leading healthcare company that offers a variety of health, wellness, and insurance products and services designed to off
Role Description The Principal Cybersecurity Strategist serves as the enterprise thought leader and primary architect of the EIP Cybersecurity Strategy. This role is accountable for shaping, evolving, and governing a multi‑year cybersecurity strategy that enables business priorities, strengthens enterprise resilience, and advances security maturity across Humana. Operating as a senior advisor to executive leadership, this role translates business objectives, risk posture, regulatory expectations, and emerging technology trends into a coherent, prioritized, and achievable cybersecurity roadmap. The Principal Cybersecurity Strategist partners closely with EIP leaders, technology teams, and business stakeholders to drive execution, investment decisions, and measurable outcomes. Key Responsibilities - Strategic Leadership: Define, develop, and continually advance EIP's long-term cybersecurity strategy, ensuring alignment with corporate goals and evolving risk landscapes. Set direction for capability development, maturity roadmaps, and investment priorities over a three-year horizon. - Board Engagement: Develop and present executive and board-level materials, articulating cybersecurity vision, strategic priorities, maturity metrics, and progress against objectives. Serve as a strategic advisor to senior leadership and board stakeholders. - Healthcare & Financial Services Expertise: Leverage deep experience in healthcare and/or financial services to inform strategy and ensure compliance with sector-specific regulatory frameworks (e.g., HIPAA, PCI DSS, SOX). - AI Security & Implementation: Lead the strategic integration of AI into cybersecurity operations, ensuring secure adoption, risk mitigation, and compliance. Advise on AI security trends, regulatory implications, and best practices for responsible implementation. - Program Maturity & Capability Growth: Architect and execute initiatives to advance cybersecurity program maturity, talent development, and operational excellence. Establish frameworks for continuous assessment, capability benchmarking, and value creation. - Investment Prioritization: Direct the allocation of resources and investment in cybersecurity capabilities, controls, and technologies based on risk, business value, and strategic impact. - Organizational Change Management: Drive a security-centric culture through enterprise change management strategies, maximizing adoption of strategic priorities and minimizing resistance across a matrixed organization. - Consultative Leadership: Provide consultative expertise to EIP department leaders, project teams, and cross-functional partners to ensure strategic alignment and integration of cybersecurity priorities at every stage of project and program lifecycles. Qualifications - Bachelor's degree or higher in cybersecurity, information technology, business, economics, organizational management, or related field. - Significant cybersecurity strategy experience, including enterprise‑level planning and transformation. - Demonstrated success in developing and presenting cybersecurity strategies at the board/executive level. - Significant experience advancing cybersecurity maturity and capabilities in healthcare and/or financial services environments. - Proven expertise in AI security and the secure implementation of AI in cybersecurity practice. - In-depth knowledge of regulatory and compliance frameworks relevant to healthcare and financial services. - Consulting skills. - Experience leading large-scale organizational change and adoption of new technologies, processes, and systems. Preferred Qualifications - MBA or Master's degree in Computer Science, Information Technology, or a related discipline. - Professional cybersecurity certifications (e.g., CISSP, CISM, CISA). - Experience with project security phases, cloud security policies, and identity and access management. - Familiarity with security review processes and strategic consulting frameworks. Requirements - WAH requirements: Must have the ability to provide a high speed DSL or cable modem for a home office. - A minimum standard speed for optimal performance of 25x10 (25mpbs download x 10mpbs upload) is required. - Satellite and Wireless Internet service is NOT allowed for this role. - A dedicated space lacking ongoing interruptions to protect member PHI / HIPAA information. - While this is a remote position, occasional travel to Humana's offices for training or meetings may be required. Scheduled Weekly Hours 40 Pay Range The compensation range below reflects a good faith estimate of starting base pay for full time (40 hours per week) employment at the time of posting. The pay range may be higher or lower based on geographic location and individual pay will vary based on demonstrated job related skills, knowledge, experience, education, certifications, etc. $189,400 - $260,600 per year This job is eligible for a bonus incentive plan. This incentive opportunity is based upon company and/or individual performance. Benefits - Medical, dental and vision benefits. - 401(k) retirement savings plan. - Time off (including paid time off, company and personal holidays, volunteer time off, paid parental and caregiver leave). - Short-term and long-term disability. - Life insurance and many other opportunities.
Role Description The Security Analyst is responsible for the delivery and execution of security operations, governance activities, monitoring, and access management across multiple service lines. This role ensures that security controls are implemented effectively, operational processes meet contractual and regulatory requirements, and monitoring platforms are properly administered. Key Responsibilities - Administer and monitor DLP and user-activity monitoring platforms. - Oversee firewall, switch, and access point administration for a dedicated sub-environment. - Manage infrastructure alerts and provide Level 2 network support. - Support security incidents with evidence collection, analysis, and coordination with security teams. - Perform security assessments for changes, implementations, hiring, terminations, and role changes. - Centralized user management for one of the service lines (onboarding, offboarding, password handling, group administration). - Perform active personnel certification, quarterly access certification, and monthly privileged-group certification. - Validate access requests submitted by other service lines to ensure segregation of duties. - Lead the Information Security Awareness Plan (onboarding, annual training, monthly quizzes, communications). - Manage SharePoint sites and the Power Apps security policies course. - Maintain technical and governance documentation. - Lead internal audits and ensure compliance with contractual security controls. - Maintain risk matrices, control dashboards, and support audit and compliance processes. - Participate in weekly and monthly operational and governance meetings. Qualifications - Strong background in security governance, risk management, and access control. - Experience with DLP tools, monitoring platforms, and network security devices. - Ability to analyze incidents, perform assessments, and communicate with leadership. - Strong documentation, communication, and stakeholder-management skills. Requirements - At least one of the following (or higher-level equivalent) cybersecurity certifications: - ISO 27001 Lead Implementer or Lead Auditor - CompTIA Security+ - CISSP - GIAC (relevant governance or monitoring track) - BA/BS degree and 2-4 years’ relevant experience OR equivalent combination of education and experience. Company Description Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers. If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at GlobalRecruiting@unisys.com or alternatively Toll Free: 888-560-1782 (Prompt 4). US job seekers can find more information about Unisys’ EEO commitment here.




