At a Glance
- Tasks: Join us as a Cloud Security Engineer, focusing on AWS GuardDuty for secure cloud environments.
- Company: SR2 is a leading tech firm driving digital initiatives for central government projects.
- Benefits: Enjoy flexible working options and a chance to work on impactful government projects.
- Why this job: Be at the forefront of cloud security, shaping the future of digital safety in government.
- Qualifications: Must have extensive cloud security experience, especially with AWS GuardDuty and related services.
- Other info: SC clearance required; ideal for those passionate about security in regulated environments.
The predicted salary is between 48000 - 72000 £ per year.
SR2 is seeking two SC-cleared Cloud Security Engineers with deep expertise in AWS GuardDuty to support the delivery of secure and scalable cloud environments for a high-priority central government digital initiative. This role will place you at the centre of cloud-native threat detection and response, with a specific focus on deploying, tuning, and operationalising GuardDuty. You will act as the subject matter expert for integrating GuardDuty across multiple AWS accounts and ensuring that detection capabilities are aligned to threat models, incident response playbooks, and compliance objectives.
Key Responsibilities:
- Act as SME for AWS GuardDuty: deployment, configuration, alert tuning, and integration with downstream response processes
- Work with platform, architecture, and SOC teams to embed GuardDuty into security operations and agile delivery workflows
- Define detection rules and thresholds aligned to business risk and threat profiles
- Advise on triage processes, integration with SIEM tooling, and use of GuardDuty findings for incident investigation
- Support wider AWS security efforts including posture management, governance, and compliance monitoring
Essential Skills & Experience:
- Extensive experience in cloud security engineering with a specific focus on AWS GuardDuty
- Strong understanding of AWS-native security services including IAM, KMS, CloudTrail, Security Hub, Config, and Macie
- Demonstrable experience in setting up governance frameworks using AWS Config Rules, SCPs, and AWS Organizations
- Familiarity with automating security controls using Python, Bash, or Infrastructure-as-Code tools (e.g., Terraform)
- Ability to operate effectively within government or highly regulated environments, and to articulate security risk in context
- Excellent documentation and communication skills with experience presenting findings and recommendations to technical and non-technical stakeholders
Desirable:
- Hands-on experience integrating AWS logs into SIEM platforms (e.g., Splunk, ELK) for correlation and alerting
- Familiarity with containerised workloads and security for EKS or similar environments
- Relevant AWS certifications (e.g., AWS Certified Security – Specialty, Solutions Architect)
Cloud Security Engineer - SC Cleared - Inside IR35 employer: SR2 | Socially Responsible Recruitment | Certified B Corporation
Contact Detail:
SR2 | Socially Responsible Recruitment | Certified B Corporation Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cloud Security Engineer - SC Cleared - Inside IR35
✨Tip Number 1
Make sure to showcase your hands-on experience with AWS GuardDuty in any conversations or networking opportunities. This role requires deep expertise, so being able to discuss specific projects where you've deployed and tuned GuardDuty will set you apart.
✨Tip Number 2
Connect with professionals in the cloud security field, especially those who have worked on government projects. They can provide insights into the nuances of working in regulated environments and may even refer you to opportunities at StudySmarter.
✨Tip Number 3
Stay updated on the latest trends and updates in AWS security services. Being knowledgeable about IAM, KMS, and other AWS-native services will not only help you in interviews but also demonstrate your commitment to continuous learning.
✨Tip Number 4
Prepare to discuss how you've integrated security tools like SIEM platforms with AWS logs. This is a desirable skill for the role, and having concrete examples ready will show your capability to enhance security operations effectively.
We think you need these skills to ace Cloud Security Engineer - SC Cleared - Inside IR35
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your extensive experience in cloud security engineering, particularly with AWS GuardDuty. Use specific examples that demonstrate your expertise in deploying, configuring, and operationalising GuardDuty.
Craft a Strong Cover Letter: In your cover letter, emphasise your understanding of AWS-native security services and your ability to operate within government or highly regulated environments. Mention how your skills align with the key responsibilities outlined in the job description.
Showcase Relevant Skills: Clearly list your technical skills related to AWS security services, automation using Python or Bash, and experience with SIEM platforms. This will help the hiring team see your fit for the role at a glance.
Prepare for Technical Questions: Be ready to discuss your experience with integrating GuardDuty across multiple AWS accounts and how you have defined detection rules aligned to business risk. Prepare examples of how you've communicated findings to both technical and non-technical stakeholders.
How to prepare for a job interview at SR2 | Socially Responsible Recruitment | Certified B Corporation
✨Showcase Your AWS GuardDuty Expertise
Make sure to highlight your deep knowledge of AWS GuardDuty during the interview. Be prepared to discuss specific instances where you've deployed, configured, or tuned GuardDuty, and how these experiences align with the role's requirements.
✨Demonstrate Your Understanding of Security Frameworks
Familiarise yourself with governance frameworks and compliance monitoring relevant to cloud security. Be ready to explain how you've implemented AWS Config Rules or SCPs in past roles, as this will show your ability to operate effectively in regulated environments.
✨Prepare for Technical Questions
Expect technical questions related to AWS-native security services like IAM, KMS, and CloudTrail. Brush up on your knowledge of these services and be ready to discuss how they integrate with GuardDuty and contribute to overall cloud security.
✨Communicate Clearly with Examples
Your ability to communicate complex security concepts to both technical and non-technical stakeholders is crucial. Prepare examples of how you've presented findings or recommendations in the past, as this will demonstrate your strong documentation and communication skills.