Cloud Security Lead

Dublin
2 weeks ago
Create job alert

Cloud Security Lead - OUTSIDE IR35 - Hybrid Dublin

About the Role
As a Cloud Security Engineer within the Cyber Engineering & Architecture function, this role owns the definition, governance and continuous improvement of cloud security posture across IaaS, PaaS and SaaS services. This hands‑on role provides security architecture, standards and control governance for cloud platforms, ensuring secure‑by‑design patterns, guardrails and posture management that protect critical services and data while enabling rapid delivery. In addition to deep expertise in cloud security, the role holder is expected to collaborate and support with the wider Cyber Engineering team, supporting resilience in cyber domains, and creating an integrated strategy to protect company applications, assets and data.
Context
Reporting to the Head of Cyber Engineering & Architecture, this role delivers appropriate and proportionate technical measures by ensuring cloud security controls, identity and access safeguards, logging/monitoring enablement and resilience patterns are defined and governed across cloud platforms. The role will partner closely with the IT Cloud Operations team who operate, manage and support cloud infrastructure, and with the Product Engineering teams, maintaining a clear RACI between security control ownership and operational execution.
Initial Success Factors
*
Build cloud IaaS and SaaS security reference architectures, landing zone security standards and baseline control blueprints
*
Improve cloud posture visibility and governance through Cloud Security Posture Management, including measurable reduction in high‑risk misconfigurations and exceptions.
*
Logging and monitoring requirements standardised and enabled to support effective detection and incident investigation across cloud services.
*
Establish repeatable secure‑by‑design review process for cloud changes (IaaS/PaaS/SaaS), integrated with delivery ways of working.
Principal Accountabilities
*
Own cloud security policies, standards, secure‑by‑design architectures and baseline control requirements across IaaS, PaaS and SaaS.
*
Define and govern cloud security posture management requirements and remediation workflows (including risk‑based prioritisation and exception handling).
*
Establish secure cloud architecture patterns for network segmentation, IAM design, secrets management, encryption, key management and secure connectivity.
*
Ensure cloud logging and monitoring requirements are defined and implemented to enable protective monitoring and incident investigation.
*
Partner with Cloud Ops to embed automated guardrails and policy-as-code where appropriate, reducing manual control drift and enabling scale.
*
Act as cloud security SME for incidents and high‑risk findings, supporting containment and root‑cause remediation.
Additional Accountabilities / Responsibilities
*
Provide security architecture reviews for new cloud services and significant changes, ensuring alignment to standards and enterprise architecture.
*
Collaborate with Cyber Defence to ensure cloud telemetry and detections are aligned with monitoring coverage and response playbooks.
*
Contribute to cloud security awareness and enablement for delivery teams (secure patterns, anti‑patterns, and reusable blueprints).
*
Support multi‑cloud risk assessments and third‑party SaaS security reviews where required.
Qualifications, Competencies and Experience
Essential Qualifications / Experience
*
Minimum of 10 years' cloud industry experience with at least 5 years in cloud security / cyber engineering roles.
*
Proven hands‑on experience securing cloud environments using native security controls and patterns (IAM, networking, logging, encryption)
*
Experience with Cloud Security Posture Management (CSPM), building compliance detection and enforcement policies, and remediation of cloud misconfigurations.
*
Experience working with Cloud Operations teams to implement security standards via change and delivery processes.
*
Cloud security certifications (e.g., AWS Security Specialty, CCSP, or equivalent).
Essential Competencies / Skills
*
Direct experience with shared responsibility models and secure cloud architecture patterns.
*
Ability to define pragmatic security standards and blueprints that enable delivery teams to reduce risk.
*
Strong capability in security control design for IAM, network security, data protection and resilience within cloud environments.
*
Comfortable working with automation and infrastructure‑as‑code concepts to reduce manual control drift.
*
Hands-on experience with Cloud Security Posture Management platforms e.g. Palo Prisma Cloud, Crowdstrike CSPM
Desirable Criteria
*
Exposure to Azure and GCP security controls and posture management concepts.
*
Experience integrating cloud logs and signals into SIEM/SOC monitoring and supporting cloud incident response.
*
Proven engineering and/or architecture experience in at least one other Cyber domain e.g. infrastructure security, network security, identity security

Related Jobs

View all jobs

Head of InfoSec

Cloud operations manager

Cyber Security Operations Lead

Security Manager

Information Security Technical Assurance Lead

Head of Information Security

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Penetration Tester Jobs in the UK: What Employers Actually Want in 2026

The demand for skilled professionals in cyber security has never been higher, and penetration testers sit at the very heart of this rapidly evolving industry. As organisations across the UK continue to digitise their operations, protect sensitive data, and defend against increasingly sophisticated threats, the need for ethical hackers has grown dramatically. If you are considering a career in this field—or looking to advance within it—it is essential to understand what employers are really looking for in 2026. This guide breaks down the current expectations, required skills, certifications, and practical experience that can help you stand out in a competitive job market.

SOC Analyst Jobs UK 2026: Salaries, Skills & How to Get Hired

Cyber security is one of the UK's fastest-growing career paths — and SOC analyst is where most people begin. It's in high demand, genuinely accessible, and you don't need a degree or years of experience to get started. But knowing what UK employers actually want in 2026 — what they pay, which certs matter, and how to stand out — is a different matter. This guide covers all of it.

How Many Cyber Security Tools Do You Need to Know to Get a Cyber Security Job?

If you are trying to build or move forward in a cyber security career, it can feel like the list of tools you are expected to know never ends. One job advert asks for SIEM platforms, another mentions penetration testing tools, another lists cloud security, threat intelligence platforms, endpoint detection, scripting languages and compliance frameworks. Scroll LinkedIn and it gets worse. Everyone seems to “know” dozens of tools, certifications and platforms. Here is the reality most cyber security hiring managers agree on: they are not hiring you because you know every tool. They are hiring you because you understand risk, can think like an attacker and a defender, follow process, communicate clearly and make good decisions under pressure. Tools matter — but only when they support those outcomes. So how many cyber security tools do you actually need to know to get a job? For most job seekers, the answer is far fewer than you think. This article explains what employers really expect, which tools are essential, which are role-specific and how to focus your learning so you look credible, not overwhelmed.