Disclaimer: Hunt UK Visa Sponsors aggregates job listings from publicly available sources, such as search engines, to assist with your job hunting. We do not claim affiliation with La Fosse. For the most up-to-date job details, please visit the official website by clicking "Apply Now."
The Cloud Security Lead is responsible for maintaining secure cloud architectures, policies, and practices to protect critical business data and operations. This role requires in-depth knowledge of cloud service providers, security frameworks, and threat landscapes to ensure enterprise-grade protection across cloud platforms.
This role reports to a BISO and will work closely with IT teams and Group Security teams to prioritise and coordinate vulnerability remediation across the cloud estate. You will be experienced in cyber vulnerability detection, remediation, and reporting processes. You will be responsible for triaging and prioritising detected vulnerabilities as well as coordinating and driving remediation activity to reduce our cyber risk profile.
There will be no hands on technical work but you will be required to join very technical conversations and advise on a broad range of risks and technologies associated with cloud security.
Skills and Experience Specification:
- 6+ years of experience in a technical cyber role (e.g., threat and vulnerability analyst, security engineer, SOC analyst).
- Minimum 3–5 years of hands-on experience in cloud environments.
- Proven experience with Microsoft Azure (multi-cloud knowledge, especially AWS, is a plus).
- Experience with security operations, incident response, and cloud compliance.
- Working knowledge of vulnerability scanning and detection technologies.
- Practical experience in triage and remediation of vulnerabilities.
- Deep understanding of and ability to articulate the risk associated with security vulnerabilities.
- Ability to coordinate and chair regular meetings and workshops with multiple stakeholders to provide guidance, collaboration and oversight of vulnerability remediation initiatives.
- Excellent understanding of MITRE ATT&CK framework, adversary tactics and techniques.
- Confidence in presenting information and acting as a source of cloud security SME knowledge and guidance.
- Result orientated and able to manage to measurable targets and desired outcomes.
- A passion to champion a cyber security culture and continuous learning of latest cyber threat trends.
- Strong understanding of cloud architectures and shared responsibility models.
- Strong communication skills with the ability to explain complex security issues to non-technical stakeholders.