img
Permanent

Senior Cloud Security Engineer

London
money-bag Negotiable
Posted Yesterday

Overview

Join Our Team at Holland and Barrett! Are you passionate about cloud security and looking to make a significant impact? Holland and Barrett is seeking a

Cloud Security Specialist

to help us define and implement our cloud security strategy. If you''re an experienced professional eager to work with cutting-edge technology and collaborate with diverse teams, we want to hear from you!Key Responsibilities

Security Strategy: Help define and execute the Holland and Barrett cloud security strategy, partnering with platform and Site Reliability Engineering (SRE) teams to build robust infrastructure that supports our business.Perimeter Security: Establish platform perimeter security by implementing controls at ingress and egress points, including creating and maintaining an edge network with a Web Application Firewall (WAF), Distributed Denial of Service (DDoS) protection, and a Content Delivery Network (CDN).Access Control: Establish an access control baseline focusing on the principle of least privilege and segregation of duties. Monitor and enforce these controls once roles and permissions are set.Security Controls: Design, implement, and maintain security controls to prevent, detect, and remediate insecure configurations, including defining and disseminating secure AWS/infrastructure baselines.Standards Development: Own the development and maintenance of tailored security standards and guidelines, creating reusable resources for various development teams.AWS Security Services: Establish and manage AWS security services, including certificate authorities, encryption services, insecure configuration scanners, and security control canaries.Essential

5+ years of experience in cloud security, particularly with AWS, and at least 2+ years in software development.Strong understanding of cloud and application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms.Experience with AWS, Kubernetes, Service Mesh, API gateways, and API Security (authentication and authorization).Proficiency in programming languages such as Python, JavaScript, GoLang, Terraform, CloudFormation (AWS), and AWS CDK.Familiarity with Agile methodologies like SCRUM, along with proven project management skills to manage multiple security projects effectively.Desired

Ability to work independently, take initiative, and maintain a keen attention to detail, ensuring high security standards.Strong communication and interpersonal skills, facilitating effective collaboration with both technical and non-technical teams.Why Holland and Barrett?

At Holland and Barrett, we are dedicated to promoting health and well-being while ensuring the highest standards of cloud security. Join our team and be part of a company that values innovation and security.Ready to Make an Impact?

If you''re excited about cloud security and want to contribute to a secure future, apply now! We look forward to welcoming you to our team.Benefits

Pension company contribution = 3%Incentive scheme up to 10% of annual salary, based on company performanceWellbeing: 33 Days Holiday per yearPrivate Medical Care (Self after 1 year)Learning and Development opportunities with Holland and Barrett as a base for career developmentCareer progressionRefer and Earn SchemeEpic Extras: exclusive benefits, discounts with retailers and providersDiscounted products: 25% off from day oneFree 24/7 Confidential Advice and Colleague WelfareMental Health First Aiders on siteOnsite Gym at our Nuneaton HubColleague Reward and Recognition SchemesWe are committed to diversity and an inclusive workplace. In line with our EPIC values (Expertise, Pioneering, Inclusive, Caring), we embrace all backgrounds, identities and cultures.Holland and Barrett does not accept unsolicited resumes from search firms/recruiters. Please do not forward resumes to our job alias, employees, or any other company location. Holland and Barrett is not responsible for any fees if a candidate is submitted by a search firm/recruiter unless otherwise agreed with respect to specific open position(s).Seniority level

Mid-Senior levelEmployment type

Full-timeJob function

Information TechnologyIndustries

Wellness and Fitness ..... full job details .....

Other jobs of interest...

Deloitte LLP
St AlbansYesterday
money-bagNegotiable
Miro
LondonYesterday
money-bagNegotiable
CreateFuture
LondonYesterday
money-bagNegotiable

Perform a fresh search...

  • Create your ideal job search criteria by
    completing our quick and simple form and
    receive daily job alerts tailored to you!

Jobs. Straight to your inbox!