Cloud Security Engineer in London

Cloud Security Engineer in London

London Full-Time 70000 - 90000 £ / year (est.) Home office (partial)
Flo Health Inc.

At a Glance

  • Tasks: Secure cloud infrastructure and automate security processes for a leading health app.
  • Company: Join Flo, the world’s #1 health & fitness app transforming female health.
  • Benefits: Competitive salary, flexible work, generous leave, and professional growth opportunities.
  • Why this job: Make a real impact on millions of users' health data security.
  • Qualifications: 7+ years in cloud security with expertise in AWS and automation.
  • Other info: Dynamic team culture focused on innovation and collaboration.

The predicted salary is between 70000 - 90000 £ per year.

500M+ downloads. 80M+ monthly users. A decade of building – and we’re still accelerating. Flo is the world’s #1 health & fitness app worldwide on a mission to build a better future for female health. Backed by a $200M investment led by General Atlantic, we became the first product of our kind to reach a $1B valuation in 2024 – and we’re not slowing down. With 7M paid subscribers and the highest-rated experience in the App Store’s health category, we’ve spent 10 years earning trust at scale. Now, we’re building the next generation of digital health – AI-powered, privacy-first, clinically backed – to help our users know their body better.

The Scale of the Challenge At Flo we don’t just have users, we have a global community. We are the #1 women’s health app, in the last month alone, we saw 8.6M new installs and a 2.8M increase in active users. When millions of people trust you with their most personal health data, security isn’t a feature — it’s a foundation. We are looking for a Cloud Security Engineer to join Velocity, our Internal Platform team. Your mission is to ensure that every system, pipeline, and tool our engineers rely on is secure by default — so they can ship fast without ever compromising trust.

The Mission: Velocity The Velocity team exists to eliminate friction. We build and own the foundation everything else runs on: cloud infrastructure, developer tooling, and SRE practices.

You will:

  • Embed Security Into the Platform: Bake security, compliance, and best practices into the core stack so they’re invisible to developers and impossible to skip.
  • Automate Everything: Drive security-as-code across infrastructure, CI/CD pipelines, and container lifecycles — making manual gates a thing of the past.

What You Will Do

  • Cloud Security Posture: Own and continuously strengthen Flo's AWS security posture using tools like GuardDuty, Inspector, Security Hub, and SSM Patch Manager.
  • Container & Supply Chain Security: Harden container image security end-to-end — patch vulnerabilities automatically with Copacetic, sign and verify images with Cosign/Sigstore, and enforce policies at admission with Kyverno.
  • Policy as Code: Manage CI/CD security across the organisation using policy‑as‑code tooling (Kyverno, Checkov), ensuring standards are enforced programmatically.
  • Security Observability: Build visibility into security performance by measuring and visualising actionable metrics using tools like Databricks Dashboards or Looker.
  • High‑Scale Privacy: Support the infrastructure for industry‑leading privacy features, such as our TIME‑recognised "Anonymous Mode."
  • Culture & Thought Leadership: Shape Flo's broader security culture through proactive engagement, documentation, and cross‑team collaboration.

What You Bring

  • Experience: 7+ years in Infrastructure Security, Cloud Security, or Security Engineering roles.
  • Cloud Native Mastery: Deep expertise in AWS security services and best practices is essential.
  • Infrastructure as Code: Proficient in Terraform and Terragrunt — you run everything as code.
  • Container Security: Strong knowledge of Kubernetes security, image hardening, and admission control.
  • Identity & Access: Solid understanding of identity management principles — SSO, OAuth, JWT, SAML.
  • Automation Mindset: Comfortable scripting in Python, Bash, or similar to automate security workflows.
  • Network Security: Understanding of modern network security principles and their practical application.
  • SSDLC: Experience building Secure Software Development Lifecycle phases into engineering workflows.

Bonus Points

  • Experience with security monitoring and event correlation systems (IDS/IPS, SIEM, AWS‑native tooling).
  • Knowledge of Zero Trust Architecture and its implementations (e.g., Cloudflare).
  • Familiarity with secret management processes and tools.
  • Experience in multi‑cloud environments (AWS and preferably GCP).
  • Understanding of business continuity principles (BIA, DRP).
  • Professional accreditations such as AWS Security Specialty, CKS, or CISSP.

Why Join Flo?

  • High Impact: Your work directly protects the health data of millions - Flo is rewriting women's health, and you’ll make sure it’s done securely.
  • Autonomy: We hire experts and empower you to deliver.
  • Cutting‑Edge Stack: Work with modern security tooling (GuardDuty, Kyverno, Cosign, Elastic Cloud Security) deployed on real production infrastructure at massive scale.

How we work We’re a mission‑led, product‑driven team. We move fast, stay focused and take ownership – from brief to build to impact. Debate is encouraged. Decisions are shared. We care about craft, ship with purpose, and always raise the bar. You’ll be working with people who take their work seriously, not themselves. It takes commitment, resilience, and the drive to keep going when things get tough. Because better health outcomes are worth it.

What you’ll get We support impact with meaningful reward. Here’s what that looks like:

  • Competitive salary and annual reviews
  • Opportunity to participate in Flo’s performance incentive scheme
  • Paid holiday, sick leave, and female health leave
  • Enhanced parental leave and pay for maternity, paternity, same‑sex and adoptive parents
  • Accelerated professional growth through world‑changing work and learning support
  • In‑person collaboration and work in a hybrid model, with 3 days per week spent in the office
  • 5‑week fully paid sabbatical at 5‑year Floversary
  • Flo Premium for friends & family, plus more health, pension and wellbeing perks

Diversity, equity and inclusion Our strength is in our differences. At Flo, hiring is based on merit, skill and what you bring to the role – nothing else. We’re proud to be an equal opportunity employer, and we welcome applicants from all backgrounds, communities and identities.

Cloud Security Engineer in London employer: Flo Health Inc.

At Flo, we pride ourselves on being a mission-driven employer that empowers our team members to make a significant impact on women's health. With a competitive salary, generous leave policies, and a commitment to professional growth, we foster a collaborative and inclusive work culture where innovation thrives. Join us in our state-of-the-art environment, where your expertise in cloud security will help protect the health data of millions while enjoying unique benefits like a fully paid sabbatical and a supportive hybrid work model.
Flo Health Inc.

Contact Detail:

Flo Health Inc. Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cloud Security Engineer in London

✨Tip Number 1

Network like a pro! Reach out to current employees at Flo on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing a role in the Velocity team.

✨Tip Number 2

Show off your skills! Prepare a portfolio or a project that highlights your expertise in cloud security, especially with AWS tools. This can really set you apart during interviews.

✨Tip Number 3

Practice makes perfect! Get ready for technical interviews by brushing up on your knowledge of security-as-code and container security. Use mock interviews to build confidence.

✨Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in being part of the Flo community.

We think you need these skills to ace Cloud Security Engineer in London

AWS Security Services
Infrastructure Security
Cloud Security
Security Engineering
Terraform
Terragrunt
Kubernetes Security
Identity Management Principles
Python Scripting
Bash Scripting
Secure Software Development Lifecycle (SSDLC)
Security Monitoring Systems
Zero Trust Architecture
Secret Management Processes
Business Continuity Principles

Some tips for your application 🫡

Show Your Passion for Security: When you're writing your application, let your enthusiasm for cloud security shine through! We want to see how your experience aligns with our mission to keep user data safe. Share specific examples of projects you've worked on that demonstrate your commitment to security.

Tailor Your CV and Cover Letter: Make sure to customise your CV and cover letter for the Cloud Security Engineer role. Highlight relevant skills like AWS security services and automation practices. We love seeing how your unique background fits into our team, so don’t hold back!

Be Clear and Concise: Keep your application straightforward and to the point. Use bullet points where possible to make it easy for us to read. We appreciate clarity, especially when it comes to technical skills and experiences that relate to the job.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen to join our community at Flo!

How to prepare for a job interview at Flo Health Inc.

✨Know Your Cloud Security Inside Out

Make sure you brush up on your AWS security services and best practices. Be ready to discuss how you've strengthened cloud security in previous roles, and have specific examples of tools like GuardDuty or Inspector that you've used.

✨Showcase Your Automation Skills

Prepare to talk about your experience with Infrastructure as Code, especially Terraform and Terragrunt. Highlight any projects where you've automated security workflows using scripting languages like Python or Bash.

✨Demonstrate Your Understanding of Container Security

Familiarise yourself with Kubernetes security and image hardening techniques. Be prepared to explain how you've managed container security in the past, including any tools you've used for patching vulnerabilities.

✨Engage with the Company Culture

Flo values a proactive security culture, so think about how you can contribute to that. Prepare examples of how you've collaborated across teams or documented security processes in previous positions to foster a strong security mindset.

Cloud Security Engineer in London
Flo Health Inc.
Location: London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>