At a Glance
- Tasks: Secure cloud environments and automate security processes using cutting-edge tools.
- Company: Join Atreides, a forward-thinking tech company with a focus on cloud security.
- Benefits: Enjoy competitive salary, health insurance, flexible hours, and hybrid work options.
- Other info: Great career growth opportunities in a dynamic and supportive environment.
- Why this job: Make a real impact in cloud security while working with innovative technologies.
- Qualifications: 3+ years in security engineering, especially with Azure and cloud security.
The predicted salary is between 60000 - 75000 £ per year.
Location: Remote (with 2 days onsite requirement weekly – Gloucestershire Area)
Security Clearance Requirement: Currently have and eligible to maintain an active UK security clearance
Position Overview: Atreides are seeking a motivated and proactive Cloud Security Engineer with a strong focus on Microsoft Azure security to join our growing team. This role is ideal for a security engineer or SecOps professional who understands the critical importance of maintaining a highly secure environment and is eager to work across cloud, endpoint, and infrastructure domains. While the primary focus will be Azure security engineering, experience with hardware and traditional infrastructure security will be considered a strong plus.
Responsibilities:
- Security Engineering & Automation: Design, build, and maintain security automation and tooling to enforce controls and simplify compliance. Build and manage identity & access management controls across cloud platforms and applications. Write and review Infrastructure-as-Code (Bicep/Terraform) for secure cloud configuration. Implement preventative and detective controls in Azure; automate remediation of alerts. Secure CI/CD pipelines, integrating results from SAST/DAST/SCA tools and ensuring supply chain integrity. Engineer solutions for Kubernetes security, focusing on RBAC, network policies, and runtime protection.
- Detection, Monitoring & Incident Response: Perform triage, containment, eradication, and recovery activities as part of incident response, ensuring threats are effectively mitigated. Develop and optimise security detections (Sentinel, KQL, YARA). Manage log sources, ingestion pipelines, and monitoring infrastructure. Conduct threat hunting and analysis to identify emerging risks. Lead and contribute to incident investigations, including post-mortem analysis and remediation actions.
- Vulnerability & Risk Management: Identify, track, and remediate vulnerabilities across cloud, endpoint, and infrastructure. Implement controls from security assessments, audits, and architecture reviews. Support third-party risk assessments and vendor due diligence.
- Governance, Documentation & Projects: Maintain documentation of security standards, runbooks, and procedures. Participate in security-related projects and lead implementation of new security solutions.
Required Qualifications:
- 3+ years in security engineering or security operations, ideally in cloud-first environments.
- Strong understanding of cloud security architecture with hands-on experience securing cloud infrastructure and services.
- Hands-on experience with the Azure security stack, including Microsoft Defender for Cloud (recommendations, alerts, Secure Score), Azure Policy, and related security tooling.
- Proficiency with SIEM platforms (Azure Sentinel preferred), developing detections and alerts, tuning rules, and investigating incidents.
- Proven incident response capability including triage, investigation, containment, eradication, and recovery.
- Practical experience integrating security into software and system development lifecycles.
- Experience with endpoint security solutions and MDM/EMM tools.
- Experience securing containerised environments (Kubernetes) and CI/CD pipelines.
- Proficiency in scripting and automation (PowerShell, Python, KQL, Bicep).
- Strong understanding of network security — protocols, firewalls, IDS/IPS, WAFs, and infrastructure hardening.
- Familiarity with incident response frameworks (NIST, SANS).
- Experience configuring and using cloud-native security logging, monitoring, and detection services.
- In-depth knowledge of security principles, attack vectors (OWASP Top 10, MITRE ATT&CK), and the threat landscape.
Desired Qualifications:
- Azure Security Engineer AZ-500
- Security Operations Analyst SC-200
- Identity and Access administrator SC-300
- GIAC Certified Forensic Analyst
- GIAC Certified Incident Handler
Compensation and Benefits:
- Competitive salary
- Comprehensive health, dental, and vision insurance plans
- Flexible hybrid work environment
- Additional benefits like flexible hours, work travel opportunities, competitive vacation time and parental leave
Eligibility: You must have the right to work in the United Kingdom. Please note that we do not provide visa sponsorship.
Security Clearance: This position requires the successful candidate to be eligible to obtain and maintain an active UK security clearance. While meeting all of these criteria would be ideal, we understand that some candidates may meet most, but not all. If you're passionate, curious and ready to 'work smart and get things done,' we'd love to hear from you.
Cloud Security Engineer (UK) - SC Required employer: Atreides
Atreides is an exceptional employer that prioritises employee growth and well-being, offering a flexible hybrid work environment that allows for a healthy work-life balance. With a strong focus on professional development in the rapidly evolving field of cloud security, employees benefit from comprehensive health plans, competitive vacation time, and opportunities for meaningful contributions to innovative security solutions. Located in the picturesque Gloucestershire area, our team thrives in a collaborative culture that values curiosity and proactive problem-solving.
StudySmarter Expert Advice🤫
We think this is how you could land Cloud Security Engineer (UK) - SC Required
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. A friendly chat can sometimes lead to job opportunities that aren't even advertised.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to Azure security. This gives potential employers a taste of what you can do.
✨Tip Number 3
Prepare for interviews by practising common questions and scenarios specific to cloud security. We recommend doing mock interviews with friends or using online platforms to boost your confidence.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen. Plus, we love hearing from passionate candidates who are ready to dive into the world of cloud security.
We think you need these skills to ace Cloud Security Engineer (UK) - SC Required
Some tips for your application 🫡
Tailor Your CV:Make sure your CV highlights your experience with Azure security and any relevant projects you've worked on. We want to see how your skills align with the role, so don’t be shy about showcasing your achievements!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cloud security and how your background makes you a great fit for our team. Keep it concise but impactful – we love a good story!
Show Off Your Technical Skills:When filling out your application, make sure to mention your hands-on experience with tools like Azure Sentinel and your proficiency in scripting languages. We’re looking for someone who can hit the ground running, so let us know what you bring to the table!
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our awesome team at StudySmarter!
How to prepare for a job interview at Atreides
✨Know Your Azure Security Inside Out
Make sure you brush up on your knowledge of the Azure security stack, especially Microsoft Defender for Cloud. Be ready to discuss how you've used these tools in past roles and how they can help secure cloud environments.
✨Showcase Your Incident Response Skills
Prepare to share specific examples of your incident response experiences. Highlight your ability to triage, investigate, and recover from security incidents, as this is crucial for the role.
✨Demonstrate Your Automation Expertise
Since automation is key in this role, be ready to talk about your experience with Infrastructure-as-Code tools like Bicep or Terraform. Discuss how you've implemented security automation in previous projects.
✨Familiarise Yourself with Governance and Compliance
Understand the importance of documentation and compliance in security. Be prepared to discuss how you've maintained security standards and participated in audits or assessments in your previous roles.