Cloud Security Senior Manager

Cambridge
1 week ago
Applications closed

Related Jobs

View all jobs

AI - Internal Technical Security Consultant

Senior Security Architect

Senior Information Security Consultant

Senior Cloud Security Architect (UK Nationals Only)

Cyber Security Manager

Technical Cyber Security Consultant

Job Overview:

Arm’s new business capabilities bring security challenges that need a thoughtful, adaptable and strong cloud security strategy.

We ensure Arm’s success by providing scalable, defendable security services that protect Arm, customer, and partner data, giving an edge in a competitive industry.

Responsibilities:

Working with the Enterprise Security, Architecture, Cloud Enablement & Engineering teams, you will plan, implement, and optimise security controls in the cloud (AWS) and drive delivery of CNAPP capability.

Utilise comprehensive technical assessments of existing cloud security capabilities and solutions to identify vulnerabilities and risks.

Create and deliver actionable recommendations and strategies for securing cloud solutions.

Implement security measures for cloud-native applications, including container security and serverless architectures.

Creating a sustainable framework and operational processes for continuous management of Cloud Security in Arm, within Security Technology Operations. Integrating security controls seamlessly into technology and operational workflows.

Leveraging Infrastructure as Code (IaC) tools to automate the deployment of security controls, ensuring consistency and efficiency.

Enhancing security configurations and policies to minimise risks and ensure compliance with industry standards and regulations and alignment with industry leading security frameworks, including the Cloud Security Alliance (CSA) Cloud Controls Matrix (CCM) and NIST guidelines, to strengthen cloud environments.

Providing training and awareness programs for partners and internal teams on cloud security standard methodologies.

Implementing standards and policies to safeguard workloads and the cloud infrastructure.

Required Skills and Experience:

Experience with cloud technologies focused on security, both strategically and operationally, and implementing a strategic Cloud Security support model.

In-depth knowledge of cross-cloud security principles and standard processes with experience in implementation and automation.

Experience with security tools and technologies such as firewalls, CNAPP, intrusion detection/prevention systems, and SIEM.

Ability to communicate and report cloud security controls and a solid understanding of IAM and RBAC, with emphasis on applying the Least Privilege principle.

Experience in embedding and training cloud security practices within teams, particularly within Security Technology Operations (STO).

“Nice To Have” Skills and Experience:

Bachelor’s degree or higher in relevant subject (e.g., Cyber Security, Information Security), or equivalent evidenced experience!

Demonstrated ability in cloud security, with a solid grasp of cloud platforms such as AWS, Azure, and Google Cloud.

Relevant security certifications such as CISSP & CISM with additional certifications that underscore expertise in cloud security design and deployment: CCSP, AWS Certified Security, Google Professional Cloud Security Engineer & Azure Security Engineer Associate!

In Return:

We offer exciting and interesting work in a global and diverse team. Arm's growth trajectory will ensure career progression and the opportunity to have a significant impact on our success.

#LI-JW

Accommodations at Arm

At Arm, we want our people to Do Great Things. If you need support or an accommodation to Be Your Brilliant Self during the recruitment process, please email . To note, by sending us the requested information, you consent to its use by Arm to arrange for appropriate accommodations. All accommodation requests will be treated with confidentiality, and information concerning these requests will only be disclosed as necessary to provide the accommodation. Although this is not an exhaustive list, examples of support include breaks between interviews, having documents read aloud or office accessibility. Please email us about anything we can do to accommodate you during the recruitment process.

Hybrid Working at Arm

Arm’s approach to hybrid working is designed to create a working environment that supports both high performance and personal wellbeing. We believe in bringing people together face to face to enable us to work at pace, whilst recognizing the value of flexibility. Within that framework, we empower groups/teams to determine their own hybrid working patterns, depending on the work and the team’s needs. Details of what this means for each role will be shared upon application. In some cases, the flexibility we can offer is limited by local legal, regulatory, tax, or other considerations, and where this is the case, we will collaborate with you to find the best solution. Please talk to us to find out more about what this could look like for you.

Equal Opportunities at Arm

Arm is an equal opportunity employer, committed to providing an environment of mutual respect where equal opportunities are available to all applicants and colleagues. We are a diverse organization of dedicated and innovative individuals, and don’t discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Contract vs Permanent Cybersecurity Jobs: Which Pays Better in 2025?

Cybersecurity has become one of the fastest-growing and most crucial fields in modern business. With high-profile breaches dominating headlines and the ongoing digital transformation exposing organisations to new threats, companies across the UK are competing to attract skilled cybersecurity professionals. Roles range from penetration testers (pen testers) and SOC (Security Operations Centre) analysts to compliance officers, cloud security architects, threat intelligence analysts, and CISOs (Chief Information Security Officers). As demand continues to surge, cybersecurity salaries have climbed accordingly, and businesses have turned to more flexible hiring practices. Alongside permanent employment, many professionals explore short-term day‑rate contracting or fixed-term contracts (FTCs), searching for the ideal balance of pay, job security, and growth opportunities. Which arrangement truly pays better in 2025—and which best aligns with your ambitions? In this article, we dive into the contract vs. permanent debate with a focus on cybersecurity roles. We will examine the current market, the structure of day‑rate vs. FTC vs. permanent positions, the pros and cons of each, and some hypothetical pay comparisons. By the end, you should have a clearer sense of which career path might suit your situation and goals—whether you are a seasoned specialist aiming for top rates, or an up-and-coming analyst seeking a stable environment to develop in.

Cyber Security Jobs for Non‑Technical Professionals: Where Do You Fit In?

Defence Needs More Than Hackers in Hoodies When headlines warn of ransomware crippling hospitals or deepfakes swaying elections, we picture hoodie‑clad hackers and elite penetration testers. Yet the reality of the UK’s cyber security sector is broader—and desperately short of talent. The Department for Science, Innovation & Technology (DSIT) estimates a shortfall of 11,200 cyber security professionals in 2024, while 43 % of advertised roles require governance, risk or communication skills rather than hands‑on technical exploits. Put plainly: if you can guide policy, manage projects, interpret regulations or inspire behaviour change, cyber security wants you. This guide highlights the fastest‑growing non‑technical roles, the transferable skills you already possess, and a concrete 90‑day plan to land a cyber security job—no packet sniffers required.

BAE Systems Cybersecurity Jobs in 2025: Your Complete UK Guide to Protecting Governments, Businesses and Critical Infrastructure

From securing the Royal Navy’s new Dreadnought submarines to foiling multimillion‑pound fraud rings, BAE Systems Digital Intelligence (DI)—formerly Detica—sits at the sharp end of global cyber defence. Head‑quartered in Guildford with hubs in Gloucester, Leeds and London, the 5,500‑strong DI business delivers threat‑intelligence platforms, secure‑by‑design software and 24/7 SOC services to government and commercial clients worldwide. With escalating ransomware, AI‑driven disinformation and complex supply‑chain threats, BAE plans to expand its UK cyber workforce by 20 % in 2025. Whether you’re a graduate passionate about reverse engineering, a DevSecOps engineer who loves IaC, or an incident‑response pro comfortable in high‑side environments, this guide explains how to land a BAE Systems cybersecurity job in 2025.