About Darkshield
Darkshield is an expert cybersecurity agency based in York, UK. We help organisations navigate an increasingly complex digital landscape by providing expert services inpenetration testing, vulnerability assessment, managed security, and compliance. Our mission is to protect businesses by deliveringtailored, cutting-edge cybersecurity solutionsthat keep them resilient and ahead of cyber threats.
The Role
We are looking for aCloud Security Engineerto join our growing team. This role involves designing, implementing, and managing security solutions acrossAWS, Azure, and Google Cloud. The ideal candidate will have adeep understanding of cloud security architectures, automation, and compliance frameworks.
Key Responsibilities
Cloud Security Architecture & Implementation
- Design and implementcloud security architecturesacross AWS, Azure, or Google Cloud.
- Develop and enforcecloud security controls, including IAM policies, encryption, and network security.
Threat Monitoring & Incident Response
- Monitor cloud environments forsecurity threats, vulnerabilities, and misconfigurations.
- Lead incident response efforts related to cloud security breaches and misconfigurations.
- ImplementSIEM and security monitoring toolsfor real-time threat detection.
Cloud Security Assessments & Compliance
- Conductcloud security assessments, penetration testing, and risk analysis.
- Ensure compliance withISO 27001, NIST, CIS Benchmarks, GDPR, and other security standards.
- Collaborate withDevOps teamsto integrate security into CI/CD pipelines.
Security Automation & Infrastructure as Code (IaC)
- Automate security policies and compliance enforcement usingPython, Terraform, Ansible, or CloudFormation.
- Develop security automation scripts forvulnerability scanning and patch management.
Collaboration & Knowledge Sharing
- Provideguidance and best practicesto internal teams on cloud security.
- Work closely with developers, DevOps, and compliance teams to align security requirements.
Required Qualifications & Experience
Technical Skills & Experience
- At leastthree years of experience in cloud security engineeringor a related role.
- Hands-on expertise securingAWS, Azure, or Google Cloudplatforms.
- Strong knowledge ofIAM, firewalls, WAFs, encryption, and security groups.
- Experience withsecurity automationusingPython, Terraform, or CloudFormation.
- Familiarity withcontainer security(Kubernetes, Docker) and microservices security.
Certifications (Preferred, Not Required)
- AWS Certified Security – Specialty
- Azure Security Engineer Associate (AZ-500)
- Google Professional Cloud Security Engineer
- CISSP, OSCP, CEH, or relevant security certifications are a plus.
Soft Skills & Work Environment
- Strong problem-solving skills and ability tothink like an attacker.
- Excellent communication and collaboration skills to work withcross-functional teams.
- Ability to workindependentlyand handlemultiple projects in a fast-paced environment.
Success Criteria (Performance Expectations)
To ensure a strong match, the ideal candidate should:
- Implementcloud security controls across at least one major cloud providerwithin the first three months.
- Conductat least two full cloud security assessments per quarter.
- Developautomated security enforcement scriptsthat reduce vulnerabilities by30 percent within the first six months.
Why Join Darkshield?
- Work on cutting-edge cybersecurity projects with top-tier clients.
- Career growth opportunities in a fast-growing cybersecurity agency.
- Flexible work environment – remote and hybrid options available.
- Competitive salary and bonuses based on security impact and research.
#J-18808-Ljbffr