Lead cloud security engineering across AWS/Azure/GCP: manage CSPM/CNAPP platforms, implement policy-as-code and IaC controls, resolve complex cloud security issues, mentor juniors, define requirements, and champion ITIL change/incident/problem processes.
The Senior Cloud Security & DevSecOps Engineer will play a vital role in protecting Cantor's global cloud estate. This hands-on role involves embedding security early in the SDLC, leading complex cloud security issue resolution, and implementing robust controls across identity, workloads, data, and the software supply chain. The successful candidate will collaborate effectively with various teams and vendors, champion ITIL processes, and stay ahead of emerging cloud and DevSecOps technologies.
Responsibilities
- Manage and maintain CSPM/CNAPP platforms, cloud-native security services, and policy-as-code pipelines.
- Perform precise and accountable implementations, configuration changes, and platform upgrades across AWS, Azure, and GCP.
- Work with vendors and cloud service providers to resolve complex technical issues and manage product lifecycles.
- Mentor junior team members, providing technical guidance and support.
- Stay updated with emerging cloud and DevSecOps technologies, adapting quickly to evolving threat landscapes.
- Define cloud security requirements and collaborate on detailed designs and deployment of solutions.
- Manage and support cloud security implementations and configurations across CSPM/CNAPP, native cloud controls, and IAM.
- Perform root cause analysis, provide recommendations, and execute problem resolutions.
- Collaborate with various teams to resolve technical and operational issues, influencing and following through on resolutions.
- Champion ITIL processes for change, incident, and problem management, ensuring efficient and effective practices.
- Bachelor's degree in Computer Science, Information Systems, or related field, or equivalent experience.
- Minimum 7+ years of hands-on experience in cloud security engineering, DevSecOps, or similar technical roles.
- Cloud and security certifications (AWS, Azure, GCP, (ISC)² CCSP, HashiCorp Terraform Associate) are advantageous.
- Expert knowledge of multi-cloud architecture, cloud identity protocols, encryption, and key management.
- Experience with CSPM/CNAPP platforms (Prisma Cloud, Defender for Cloud), cloud-native IAM, and Infrastructure-as-Code (Terraform).
- Ability to develop Cloud Security and DevSecOps policies, procedures, and documentation.
- Strong problem management skills, including risk assessment and corrective action determination.
- Excellent interpersonal and communication skills for effective collaboration with internal and external stakeholders.
- Experience with traditional network security and hybrid connectivity solutions is beneficial.
- Familiarity with Logging and SIEM Solutions (Splunk, Microsoft Sentinel, Google Chronicle) is an asset.
Cantor Fitzgerald London, England Office
London, United Kingdom, 0
Similar Jobs
Healthtech
Design, implement, integrate, and maintain cloud security tooling across Bupa’s cloud environments. Own CSPM, CWPP, CIEM, and CNAPP capabilities; integrate security platforms with cloud and enterprise systems; develop infrastructure-as-code controls, automation, and APIs; monitor platform security and availability; ensure regulatory alignment; and provide technical leadership, coaching, and stakeholder collaboration.
Top Skills:
Active DirectoryCi/CdCisCloud Infrastructure Entitlement Management (Ciem)Cloud Native Application Protection Platform (Cnapp)Cloud Security Posture Management (Cspm)Cloud Workload Protection Platform (Cwpp)DevOpsGdprInfrastructure As Code (Iac)Iso 27001Microsoft Defender For CloudMicrosoft EntraNistPowershellPrisma CloudPythonRest ApisTerraformWell Architected FrameworksWiz
Information Technology • Legal Tech • Analytics
Build and maintain cloud security guardrails, policy-as-code controls, secure CI/CD patterns, and automated remediation workflows. Enable secure adoption of AI through threat modeling, secure design patterns, prompt libraries, validation processes, and auditable AI-assisted security workflows. Partner with architecture, application security, cloud engineering, GRC, legal, privacy, and product teams to embed reusable security guidance, tooling, metrics, and self-service processes across cloud and AI environments.
Top Skills:
Ai ApisAWSAzureCi/CdCloud Security Alliance GuidanceCnappCspmGenerative AiIamInfrastructure As CodeLlmsNist Ai Risk Management FrameworkOwasp Top 10 For Llm ApplicationsPolicy As CodeRagSastScaSecrets ScanningVector Databases
Software • Hospitality
Welcomes and assists hotel guests, escorts arrivals and departures, transports and stores luggage, operates property vehicles for guest transportation, and maintains clean, organized bell carts and work areas. Provides friendly, attentive service in accordance with hotel standards while supporting a positive guest experience during night shifts.
What you need to know about the London Tech Scene
London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.



