Senior Cloud Security Engineer – AI Resilience, Security Enhancements

Posted 9hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Senior Cloud Security Engineer strengthening cloud security, resilience and AI governance. Form3 operates a cloud-native, multi-cloud payments platform.

Responsibilities:

  • Assess the current cloud security posture across Form3 environments, identifying risks, control gaps and opportunities for improvement
  • Design and implement scalable cloud security controls to improve cloud-platform resilience and security
  • Enhance perimeter security controls across cloud infrastructure
  • Strengthen CI/CD pipeline security through secure build processes, automated security testing, deployment governance and artefact integrity
  • Improve production access security, including RBAC, least-privilege implementation, deployment tooling and operational processes
  • Enhance software supply chain security through dependency management, container image scanning, provenance, signing and vulnerability remediation
  • Contribute to secure adoption and governance of AI-enabled engineering capabilities, including data-protection, auditability and operational-resilience controls
  • Provide technical leadership and guidance on cloud security architecture and secure engineering practices
  • Produce technical documentation, including solution designs, implementation plans, operational procedures and security evidence
  • Collaborate with engineering, platform and security teams to deliver maintainable, production-ready security improvements
  • Align deliverables with operational resilience requirements, regulatory obligations and internal security standards
  • Deliver changes using structured, low-risk change-management practices while maintaining service availability

Requirements:

  • Extensive experience designing and implementing cloud security solutions within large-scale cloud-native environments
  • Strong hands-on experience securing public cloud platforms (AWS preferred)
  • Expertise in cloud security architecture, identity and access management, workload protection and infrastructure security
  • Experience securing CI/CD pipelines and modern software delivery practices
  • Strong understanding of software supply chain security, including dependency management, artefact signing, provenance and vulnerability management
  • Experience implementing least-privilege access models and RBAC
  • Knowledge of security monitoring, risk assessment and security governance
  • Experience working within highly regulated or business-critical production environments
  • Excellent stakeholder management and communication skills, with the ability to influence engineering teams
  • Strong technical documentation and design skills
  • Desirable: experience implementing security controls for AI or machine learning platforms
  • Desirable: knowledge of cryptographic controls and key management
  • Desirable: experience with Infrastructure as Code and policy-as-code tooling
  • Desirable: familiarity with payment platforms or financial services environments
  • Desirable: understanding of operational resilience frameworks and regulatory requirements affecting critical financial infrastructure
  • Desirable: relevant cloud or security certifications (AWS Security Specialty, CISSP, CCSP or similar)
  • Hiring location restricted to the UK

Benefits:

  • 12 month fixed-term contract
  • Remote working after collecting equipment from the office on the first day
  • Inclusive employer committed to diversity, open-mindedness and curiosity
  • Equal opportunity and anti-discrimination commitment
  • Guaranteed interview for neurodiverse and physically disabled applicants meeting minimum criteria
  • Reasonable adjustments during recruitment, including accessible job adverts and interview adjustments