Principal Cloud Native Security Consultant London - Hybrid (2 days in office per week)
Principal Cloud Native Security Consultant London - Hybrid (2 days in office per week)

Principal Cloud Native Security Consultant London - Hybrid (2 days in office per week)

London Full-Time 72000 - 100000 £ / year (est.) No home office possible
C

At a Glance

  • Tasks: Lead cloud security projects and engage with clients on innovative solutions.
  • Company: ControlPlane is a cutting-edge consultancy focused on cloud-native security and open source solutions.
  • Benefits: Enjoy a competitive salary, 33 days holiday, private medical insurance, and a personal training budget.
  • Why this job: Make a real impact in cybersecurity while collaborating with passionate colleagues in a dynamic environment.
  • Qualifications: Experience in cloud security, incident response, and Kubernetes is essential; certifications are a plus.
  • Other info: Hybrid work model with opportunities for personal development and community engagement.

The predicted salary is between 72000 - 100000 £ per year.

Principal Cloud Native Security Consultant

London – Hybrid (2 days in office per week)

Report To: Security Engineering Manager

Job Location: London – Hybrid (2 days in office per week)

Employment Status: Full Time

Salary: Competitive and Market Based

Who is ControlPlane?

ControlPlane is a London headquartered consultancy specialising in cloud-native, Kubernetes, and open source solutions. Our expertise lies in helping organisations adopt and secure complex cloud infrastructures by implementing security measures that are \”secure-by-design\” and \”secure-by-default.\” This engineering excellence has driven ControlPlane deeper into cybersecurity providing services like threat modelling, penetration testing, and supply chain security to ensure robust protection against cyberattacks in containerised and cloud-native environments.

We are acclaimed for our contributions to securing highly regulated industries, such as finance, healthcare, and national infrastructure. We help businesses improve their security posture through services like DevSecOps consulting, zero-trust architectures, and platform engineering. ControlPlane also focuses on advancing best practices in the Kubernetes ecosystem, offering specialised training and community engagement.

Our clients range from multinational banks to tech giants and public clouds, where we assist with both security and operational needs. In addition to consulting, we are active in the open source community, supporting projects like Flux CD and providing security tools for Kubernetes environments.

Over the coming years you’ll see us retain our focus on solving difficult problems for clients with intense security controls using pragmatic, real world solutions. Taking our extensive R&D to help organisations consume next generation and open source projects safely and securely – that might be extending our work with FINOS AI Readiness or the overhaul of open source supply chain security.

What We\’re Looking For in a Principal Cloud Native Security Consultant:

As a Principal level consultant you will represent the technical and cultural values of ControlPlane, leading our customers by example in the complex and fast-changing world of cloud native technology. You will assume end to end responsibilities accross a mix of client consulting and internal projects

You will be comfortable leading engagements and defining end-to-end security architectures for cloud infrastructure, through a mixture of threat modelling and proof of concepts. You will also have insight into security operations and incident response for cloud environments, with experience of defining events, SOC integration & engineering and running table top exercises for incident response

We\’re looking for principal level skill sets. You should have strong knowledge of container and cloud security architecture principles, and you enjoy getting hands-on, experimenting with cloud infrastructure, and want to expand your horizons in this area. You value transparency and candid feedback, and are driven by a strong desire to become the best you can be.

ControlPlane thrives on community participation and collaboration through meetups and conferences, working groups, and training. We encourage our employees to be passionate about sharing information with friends and colleagues.

You may be asked to:

– Actively participate to Special Interest Groups and Technical Advisory Groups with our business partners, collaborators, and friends

– Deliver Kubernetes Security and Kubernetes Threat Modeling training

– Attend conferences and meetups in the UK and abroad

This is a unique job role within a successful start-up company where you will have the chance to make a positive impact, learn, grow and work with great colleagues who consistently challenge the status quo.

Roles, Responsibilities and Requirements of Our Cloud Native Security Consultant:

  • Experience of leading Threat Modelling engagements or designing Cloud Native security architectures (AWS, GCP, Azure)
  • Security Operations and Incident Response experience within a cloud environment, including defining events, SOC engineering and running table top exercises
  • Consulting experience including managing engagements, running workshops and presenting to project security authorities.
  • Kubernetes and container experience (some of EKS, GKE, AKS, OpenShift, and container runtimes)
  • DevSecOps principles and Engineering practices
  • CI/CD experience, automating security tests and hardening pipelines
  • Knowledge of security tooling from enterprise tools such as Aqua, Prisma Cloud, Sysdig, Splunk and Logrythm to Open Source tools such as falco, kube-hunter, and kube-bench.
  • Knowledge and experience of hardening guides, compliance standards and MITRE ATT&CK and Adversary Tools, Techniques and Procedures.
  • Security related qualifications such as OSCP, Cloud Provider Security certifications, or CISSP

A desire to learn, or experience with:

  • CLI tooling in any of the above technologies.
  • Golang or Python
  • Vault, service mesh, in-toto, Tekton Chains, SPIFFE, and/or Sigstore
  • Terraform and cloud infrastructure best practices (IaC, regulated systems)

ControlPlane is a dynamic, cutting edge and passionate business for which to work. Our employees are the heart of our business, which means we care about our company culture and our employees’ wellbeing and progression. Alongside this, as our colleague you will have the following benefits:

  • Generous and competitive salary
  • Bonus
  • 33 days of paid holiday, including paid leave for the standard 8 UK Bank Holidays
  • Cycle to Work scheme
  • Enhanced Parental Leave
  • Private Medical insurance
  • An individual training budget for personal development, including but not limited to:
  • Training (books, courses, coaching, as well as internal training which is of course included beyond budget)
  • Qualifications
  • Conferences
  • 10 days for training
  • 7.5 days to attend and present at conferences
  • 10 days company research and development time

We believe our peers are equally as important as the technology we use. We’re looking for people of the highest personal calibre, quietly confident, with a good work ethic, keenness to learn, emotional maturity and respect, who know that “we” is more than “me”, and who embrace human diversity of all kinds. As we grow you will help us to build a company culture of which we can all be proud. If you espouse these values, we want you!

NOTE FOR RECRUITMENT AGENCIES: Please do not call or email our team speculatively, we do not accept unsolicited CVs.

Apply for this job

*

indicates a required field

First Name *

Last Name *

Preferred First Name

Email *

Phone

Resume/CV

Enter manually

Accepted file types: pdf, doc, docx, txt, rtf

Enter manually

Accepted file types: pdf, doc, docx, txt, rtf

#J-18808-Ljbffr

Principal Cloud Native Security Consultant London - Hybrid (2 days in office per week) employer: Control Plane Limited

ControlPlane is an exceptional employer that prioritises employee growth and well-being, offering a competitive salary, generous holiday allowance, and a robust training budget to foster professional development. With a dynamic work culture that values collaboration and community engagement, employees are encouraged to participate in conferences and special interest groups, making it a rewarding environment for those passionate about cloud-native security. Located in London, this hybrid role allows for a balanced work-life integration while contributing to cutting-edge projects in a rapidly evolving field.
C

Contact Detail:

Control Plane Limited Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Principal Cloud Native Security Consultant London - Hybrid (2 days in office per week)

Tip Number 1

Familiarise yourself with the latest trends in cloud-native security, especially around Kubernetes and container security. Being well-versed in these areas will not only boost your confidence but also demonstrate your commitment to staying ahead in this fast-evolving field.

Tip Number 2

Engage with the open-source community by contributing to projects related to Kubernetes or cloud security. This hands-on experience can set you apart from other candidates and show that you're passionate about the technology and its ecosystem.

Tip Number 3

Network with professionals in the industry by attending relevant meetups and conferences. Building relationships with others in the field can lead to valuable insights and potential referrals, making it easier for you to land the job.

Tip Number 4

Prepare to discuss real-world scenarios during interviews, particularly around threat modelling and incident response. Having concrete examples ready will showcase your expertise and problem-solving skills, which are crucial for a Principal Cloud Native Security Consultant.

We think you need these skills to ace Principal Cloud Native Security Consultant London - Hybrid (2 days in office per week)

Cloud Security Architecture
Threat Modelling
Security Operations
Incident Response
Kubernetes Security
Container Security
DevSecOps Principles
CI/CD Automation
Security Tooling Knowledge
Compliance Standards
MITRE ATT&CK Framework
Consulting Experience
Workshop Facilitation
Presentation Skills
Hands-on Cloud Infrastructure Experience
Programming Skills (Golang or Python)
Infrastructure as Code (IaC)
Service Mesh Knowledge
Terraform Proficiency
Emotional Maturity and Respect

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in cloud-native security, Kubernetes, and incident response. Use specific examples that demonstrate your expertise in these areas, as well as any consulting experience you have.

Craft a Compelling Cover Letter: In your cover letter, express your passion for cloud security and how your values align with those of ControlPlane. Mention specific projects or experiences that showcase your ability to lead engagements and design security architectures.

Highlight Relevant Skills: Clearly list your skills related to container security, DevSecOps principles, and CI/CD practices. Include any certifications you hold, such as OSCP or CISSP, and mention your familiarity with security tools and compliance standards.

Showcase Community Engagement: If you've participated in meetups, conferences, or special interest groups, be sure to include this in your application. ControlPlane values community participation, so demonstrating your involvement can set you apart from other candidates.

How to prepare for a job interview at Control Plane Limited

Showcase Your Technical Expertise

Be prepared to discuss your experience with cloud-native security architectures and threat modelling. Highlight specific projects where you've successfully implemented security measures in cloud environments, particularly with AWS, GCP, or Azure.

Demonstrate Leadership Skills

As a Principal Consultant, you'll need to lead engagements. Share examples of how you've managed teams or projects, and how you’ve guided clients through complex security challenges. Emphasise your ability to communicate effectively with both technical and non-technical stakeholders.

Prepare for Scenario-Based Questions

Expect questions that assess your problem-solving skills in real-world scenarios. Be ready to discuss how you would handle specific security incidents or design security architectures under pressure. Use the STAR method (Situation, Task, Action, Result) to structure your responses.

Express Your Passion for Community Engagement

ControlPlane values community participation. Talk about your involvement in meetups, conferences, or open-source projects. Share any experiences where you've contributed to knowledge sharing or training others in Kubernetes security or DevSecOps practices.

Principal Cloud Native Security Consultant London - Hybrid (2 days in office per week)
Control Plane Limited
C
  • Principal Cloud Native Security Consultant London - Hybrid (2 days in office per week)

    London
    Full-Time
    72000 - 100000 £ / year (est.)

    Application deadline: 2027-07-20

  • C

    Control Plane Limited

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>