Senior Cloud Infrastructure Security Engineer
Upload My Resume
Drop here or click to browse · PDF, DOCX, DOC, RTF, TXT
Requirements
• 10+ years in cloud security architecture in large scale multi-cloud, multi-region platforms with strong isolation, governance, and reliability guarantees • Ability to balance security risk, scalability, resilience, and developer velocity • Deep expertise in Kubernetes security at scale (multi-cluster, multi-tenant, isolation models) Zero Trust architecture design and enforcement in Kubernetes-based platforms • Hands-on experience with mTLS and Service Mesh (Istio, Linkerd, ambient mesh) • Policy-as-code using OPA/Gatekeeper and/or Kyverno (admission control, secure defaults) • Workload identity & IAM integration, including service-to-service authorization (SPIFFE/SPIRE a plus) • Advanced Kubernetes network security using Cilium or Calico and NetworkPolicies, eBPF-based observability and Network Threat Detection & Layered Security (NTLS) • Runtime and behavioural security with Falco or equivalent syscall based detection • Infrastructure as Code with Crossplane (preferred) and/or Terraform • GitOps driven platforms and secure-by-default provisioning workflows • Cloud native supply chain security (Sigstore/Cosign, SBOMs, image scanning) • Experience operating in high growth or early stage environments • Strong crossfunctional collaboration and communication skills • Relevant security certifications (e.g. CKS, CCSP) • We value diversity and are committed to equal employment opportunity regardless of sex, race, religion, ethnicity, nationality, disability, age, sexual orientation or gender identity. We strongly encourage individuals from groups traditionally underrepresented in tech to apply. To help make a change, we sponsor bright women from disadvantaged backgrounds through their university degrees in science and mathematics. • We collect diversity and inclusion data solely for the purpose of monitoring the effectiveness of our equal opportunities policies and ensuring compliance with UK employment and equality legislation. This information is confidential, used only in aggregate form, and will not influence the outcome of your application.
Responsibilities
• Ensure security is built into every aspect of the PhysicsX platform infrastructure • Design cloud security controls (e.g. IAM, VPC, KMS, secrets management, etc.) as part of core architecture • Design, Build and manage infrastructure security configurations • Support the infrastructure team and security teams triaging and remediating security vulnerabilities • Automate infrastructure provisioning, hardening, and compliance guardrails
Similar Jobs
No credit card. Takes 10 seconds.