Назад
Company hidden
2 часа назад

Senior Cloud Security Engineer (AWS)

Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK/Spain
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Cloud Security Engineer (AWS/DevSecOps): Securing and automating an expanding cloud infrastructure in AWS and GCP with an accent on Infrastructure as Code (IaC) and continuous deployment. Focus on implementing security policies, managing IAM, and building robust Security Incident Response processes.

Location: Barcelona, Spain

Company

hirify.global is a pioneer in research technology (ResTech) providing a programmatic marketplace for global research with nearly 300 million respondents.

What you will do

  • Define and improve the general security posture across legacy and green-field AWS and GCP resources.
  • Provide security expertise on applications, data, and networks to wider engineering teams to ensure policy adoption.
  • Automate security within the cloud platform by embedding security into the DevSecOps methodology.
  • Enhance monitoring and alerting systems with specific security data points.
  • Define and implement a Security Incident Response process and policy.
  • Participate in an on-call rotation to troubleshoot infrastructure issues.

Requirements

  • 3+ years of experience in Cloud Infrastructure roles (predominantly AWS) within DevSecOps teams.
  • Proficiency in managing infrastructure exclusively via Terraform.
  • Expertise in threat assessment, attack surface management, VPC security, WAF, and CloudFront.
  • Experience designing and managing IAM policies, roles, and trust policies.
  • Knowledge of VPN, MFA, SAML, OAuth2, KMS, TLS, and IdP frameworks (e.g., Okta, Auth0).
  • Proficiency in at least one scripting or programming language such as Python, Bash, or Golang.

Nice to have

  • AWS Certified Security Specialist certification.
  • Hands-on experience implementing security controls within GCP.
  • Experience with ISO27001 certification processes.
  • Knowledge of monitoring tools like Prometheus, Grafana, or OpenSearch.
  • Offensive or defensive penetration testing experience.

Culture & Benefits

  • Collaborative global environment that values diversity, equity, and inclusion.
  • Strong technical culture driven by innovation and a compulsive commitment to Infrastructure as Code.
  • Competitive compensation packages and employment benefits.
  • Recognized as one of Newsweek’s 2025 Global Top 100 Most Loved Workplaces®.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →