At a Glance
- Tasks: Lead cloud security governance and architecture across Azure, AWS, and SaaS platforms.
- Company: Dynamic tech firm focused on innovative cloud security solutions.
- Benefits: Competitive pay, flexible working options, and opportunities for professional growth.
- Why this job: Make a real impact in cloud security while working with cutting-edge technologies.
- Qualifications: Senior-level experience in cloud security governance and strong communication skills.
- Other info: Join a collaborative team with exciting projects and career advancement potential.
The predicted salary is between 43200 - 72000 £ per year.
We are seeking a Senior Cyber Security Cloud Engineer to lead governance, architecture guidance, and assurance for cloud and infrastructure security across Microsoft Azure, AWS, and key SaaS platforms. This role is pivotal in defining technical blueprints, setting security standards, and ensuring regulatory compliance with Cyber Essentials Plus, ISO 27001, and Zero Trust principles.
You will work closely with IT and platform teams to embed best practices, validate implementations, and support audit readiness across IaaS, PaaS, and SaaS environments.
Responsibilities- Define and maintain multi-cloud security standards and reference blueprints (e.g. Azure Policy/Initiatives, AWS Control Tower/SCPs)
- Own security architecture patterns and contribute to HLD/LLD, threat models, and risk assessments
- Set assurance criteria and control evidence requirements for internal teams and third-party vendors
- Establish policy-as-code requirements and maintain an exceptions register with expiry and risk ownership
- Define identity and access control standards (Entra ID Conditional Access, MFA, PIM; AWS IAM federation)
- Govern SaaS security onboarding (SSO, OAuth governance, DLP controls, vendor assessments)
- Specify telemetry and logging requirements for Microsoft Sentinel/SOC and review analytics/reporting
- Lead compliance mapping for ISO 27001 and curate audit-ready evidence packs
- Chair Cloud & Platform Security design reviews and participate in CAB for risk appraisal
- Educate and influence teams through guidance, clinics, and coaching sessions
Familiarity with IaaS, PaaS, SaaS risk models and audit frameworks is essential. Excellent written communication and facilitation skills are required to drive adoption and influence stakeholders.
Additional Skills- Experience with blueprint catalogues and architecture governance processes
- Working knowledge of containers/Kubernetes (AKS/EKS) policy models
While this role focuses on governance and assurance, hands-on use may be required for validation:
- Azure: Policy/Initiatives, Defender for Cloud, Entra ID, PIM
- AWS: Control Tower, SCPs, Security Hub, GuardDuty, IAM
- Senior-level governance and assurance experience in cloud and infrastructure security
- Strong regulatory sector experience
- Familiarity with IaaS, PaaS, SaaS risk models and audit frameworks
- Excellent written communication and facilitation skills
- Hands-on capability with Azure and AWS security services as described above
If this role is of interest please send your CV to review ASAP.
Cyber Security Cloud Engineer - Outside IR35 in Birmingham employer: Experis UK
Contact Detail:
Experis UK Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Cloud Engineer - Outside IR35 in Birmingham
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the cyber security field. Attend meetups, webinars, or even online forums. The more people you know, the better your chances of landing that dream job!
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your projects, especially those related to cloud security. This is your chance to demonstrate your expertise in Azure, AWS, and compliance standards. Make it easy for potential employers to see what you can do!
✨Tip Number 3
Prepare for interviews by brushing up on common questions in the cyber security space. Think about how you would tackle real-world scenarios related to governance and assurance. Practice makes perfect, so get a friend to do mock interviews with you!
✨Tip Number 4
Don’t forget to apply through our website! We’ve got loads of resources to help you along the way. Plus, applying directly gives you a better shot at getting noticed by the right people. Let’s get you that job!
We think you need these skills to ace Cyber Security Cloud Engineer - Outside IR35 in Birmingham
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Cyber Security Cloud Engineer. Highlight your experience with Azure, AWS, and any relevant governance frameworks like ISO 27001. We want to see how your skills align with our needs!
Showcase Your Communication Skills: Since this role requires excellent written communication, don’t shy away from demonstrating this in your application. Use clear, concise language and structure your CV and cover letter well. We love a good, easy-to-read application!
Highlight Relevant Experience: Focus on your past roles that involved cloud security governance and assurance. Mention specific projects or achievements that relate to the responsibilities listed in the job description. We’re keen to see what you’ve accomplished!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications better and ensures you get all the updates directly from us. Don’t miss out on this opportunity!
How to prepare for a job interview at Experis UK
✨Know Your Cloud Security Standards
Make sure you’re well-versed in the multi-cloud security standards mentioned in the job description. Brush up on Azure Policy, AWS Control Tower, and the principles of Cyber Essentials Plus and ISO 27001. Being able to discuss these frameworks confidently will show that you’re not just familiar with them, but that you can apply them effectively.
✨Prepare for Technical Questions
Expect to dive deep into technical discussions about security architecture patterns and risk assessments. Review your past experiences with threat models and compliance mapping. Be ready to provide specific examples of how you've defined assurance criteria or managed identity and access control standards in previous roles.
✨Showcase Your Communication Skills
Since excellent written communication is key for this role, prepare to demonstrate your ability to convey complex information clearly. You might be asked to explain a technical concept or present a past project. Practise articulating your thoughts succinctly and confidently, as this will help you influence stakeholders effectively.
✨Familiarise Yourself with Hands-On Tools
While the role focuses on governance and assurance, hands-on experience is still important. Brush up on tools like Microsoft Sentinel, Defender for Cloud, and AWS Security Hub. If you can share insights from your practical use of these tools during the interview, it’ll highlight your capability to validate implementations and support audit readiness.