Remote job
Infrastructure Security Engineer - London
Job details
About this role
Role overview
This London-based Infrastructure Security Engineer role focuses on hardening multi-cloud and hybrid environments that support critical, customer-facing services. The position emphasizes an automation-first approach, embedding security into engineering workflows rather than treating it as an afterthought. The hire will partner closely with platform and product engineers to design secure foundations, scale protections through code, and run day-to-day detection and response.
Responsibilities
- Design and ship secure cloud architectures spanning multiple providers and hybrid topologies, including on-premises components - Author and maintain infrastructure-as-code modules with security controls built in - Run periodic assessments and audits of cloud infrastructure and services - Deploy and operate cloud security tooling such as CSPM, CWPP, and CASB solutions - Define secure container standards and keep Kubernetes clusters aligned with current best practices - Embed security into CI/CD pipelines, including code scanning integrations - Triage and respond to cloud and hybrid security incidents, maintaining SIEM data pipelines that drive reliable alerting - Build security operations tooling in Python and Terraform, with configuration management such as Puppet - Create dashboards and alerts from security metrics, and maintain cloud security policies, standards, and procedures - Manage identities, roles, and remediations to keep environments aligned with regulations and frameworks
Requirements
- Bachelor's degree in Computer Science, Cybersecurity, or a related field - 3–5 years of experience in cloud security, infrastructure security, or related roles - Solid grasp of cloud security principles, compliance frameworks, and best practices - Working proficiency in at least one major cloud platform (AWS, GCP, or Azure) and its security services - Demonstrated experience securing hybrid cloud/on-premises or multi-cloud environments, including IAM - Hands-on experience with infrastructure-as-code tools such as Terraform or CloudFormation - Familiarity with containerization technologies and their security implications - Understanding of network security concepts and protocols - Scripting ability in Python or Bash for automation and tool development - Self-directed mindset with strong ownership, critical thinking, and prioritization skills - Located in the EU/UK or willing to relocate
Nice to have
- Relevant certifications such as CCSP or AWS Security Specialty - Deep Kubernetes and container security expertise - Multi-cloud and cloud-to-cloud security experience - Strong proficiency with Python, Terraform, and configuration management such as Puppet - Hands-on experience building GitHub Actions and workflows - Familiarity with observability and SecOps tooling such as Prometheus, Grafana, CloudWatch, or SIEM platforms like Wazuh - Experience building custom cloud security tools or integrations - Interest in applying AI to cloud security monitoring and automation - Open-source contributions to cloud security projects - Experience securing AI/ML workloads in cloud environments - Background in banking, money transmission, P2P payments, or similarly regulated financial platforms