Назад
Company hidden
обновлено 4 дня назад

Senior Cyber Security Engineer (AWS)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK/Bulgaria
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cyber Security Engineer (AWS): Improving application and cloud security across a cloud-native, AWS-hosted technology estate with an accent on developer-friendly guardrails, vulnerability management, and secure CI/CD workflows. Focus on running practical threat modelling, reducing AWS and infrastructure-as-code misconfigurations, and building Python-based automation that makes security findings actionable.

Location: London or Sofia. Hybrid work requires onsite attendance 50% of the time.

Company

hirify.global is a globally recognised news organisation delivering quality information and services worldwide.

What you will do

  • Improve application security guardrails across SAST, software composition analysis, secret scanning, and related CI/CD controls.
  • Reduce AWS and infrastructure-as-code vulnerabilities and misconfigurations through pragmatic tooling and remediation workflows.
  • Drive vulnerability and cloud misconfiguration management, including prioritisation, ownership, tracking, and remediation.
  • Run practical threat-modelling sessions and provide application and cloud security input during architecture and design reviews.
  • Build scripts, integrations, dashboards, and workflows that reduce manual effort and improve risk visibility.
  • Partner with product, platform, and engineering teams, support incident response and lessons learned, and mentor security engineers.

Requirements

  • Strong practical experience in both application security and cloud security, ideally in AWS-hosted cloud-native environments.
  • Hands-on AWS security experience, including misconfiguration identification and remediation at scale.
  • Experience improving vulnerability management and integrating or tuning SAST, software composition analysis, secret scanning, or IaC scanning in CI/CD workflows.
  • Experience running threat-modelling sessions that influence design, delivery, or remediation decisions.
  • Ability to write scripts or small tools, ideally in Python, to automate security workflows and improve visibility.
  • Strong communication, collaboration, mentoring, and engineering-influence skills, plus familiarity with Agile or Scrum.

Nice to have

  • Experience using AI for application and cloud security.
  • AWS Certified Security – Specialty or equivalent practical experience.
  • Terraform or CloudFormation expertise.
  • Incident management or response experience, and familiarity with Splunk or similar SIEM platforms.
  • Experience with security metrics, dashboards, reporting, mentoring, or line management.

Culture & Benefits

  • Generous annual leave and medical cover, varying by location.
  • Inclusive parental leave packages and subsidised gym memberships.
  • Opportunities to give back to the community.
  • Collaborative workplace focused on inclusion, wellbeing, learning, and career development.
  • Hybrid working model designed to support flexibility, collaboration, communication, and peer learning.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →