About the Role
Senior Cloud Security Engineer – Cloud Platform Security and Automation
Krakow
Hybrid
Ali Cloud
Ansible
AWS
Azure
Bash
GCP
Git
Gitlab
Jenkins
Powershell
Python
Terraform
English
Senior
Banking, Corporate Banking
Security Specialist
Unleash the future of cloud security — drive innovation, automation, and resilience at scale!
Krakow-based opportunity with hybrid work model (up to 3 remote days per week).
As a Senior Cloud Security Engineer, you will be working for our client, a leader in cloud platform security and automation. You will play a pivotal role in designing, building, and maintaining scalable CNAPP (Cloud Native Application Protection Platform) services, ensuring the integrity, performance, and security of cloud environments. Join a forward-thinking organization committed to pioneering security solutions in the cloud era.
Your main responsibilities:
Provide expert security architecture and design reviews for applications migrating to cloud platforms (AWS, Azure, GCP, or Ali Cloud).
Develop and deploy Cloud Native Detective and Responsive controls across cloud providers, integrating open source and vendor tools to enforce security baselines.
Automate infrastructure audits for security misconfigurations on cloud platforms utilizing CSPM and CNAPP tools such as Wiz.
Collaborate with vendors, clients, and stakeholders to implement and optimize cloud security solutions.
Develop API integrations and suggest configuration modifications to enhance cloud security tools’ performance and usability.
Conduct technical assessments of existing cloud security architectures, evaluating new solutions and supporting deployment readiness.
Support compliance initiatives by creating dashboards, reports, and artifacts aligned with regulatory and contractual standards.
Work with cloud operations teams to develop monitoring use cases, troubleshoot issues, and design scripts for security and compliance resolutions.
Stay current on cloud security threats and trends, advocating for continuous improvement of security practices.
Manage the cloud security engineering function, reviewing exemption requests, and ensuring security outcomes are met before workloads go live.
Drive automation and innovation in cloud security processes, participating in the evolution of security patterns and best practices.
You're ideal for this role if you have:
5+ years of experience in software engineering or security-focused roles within cloud environments.
Strong expertise in designing, managing, and securing AWS, Azure, or GCP cloud platforms.
Deep knowledge of cloud networking, security, automation, and orchestration tools.
Hands-on experience with CI/CD frameworks and infrastructure automation tools such as Terraform, Ansible, and Jenkins.
Proficiency in scripting languages like Python, Bash, PowerShell.
Familiarity with version control systems (Git, GitLab).
Understanding of security compliance standards including FISMA, CJIS, PCI, HIPAA, NIST, FedRAMP, GDPR.
Knowledge of Cloud Security Alliance (CSA) controls.
Experience with container security, distributed systems, web applications, and security best practices in access and network security.
It is a strong plus if you have:
CSP security certifications such as AWS Certified Security – Specialty, GCP or Azure Security certifications.
Language Required for the role:
Fluent English.
Eligibility for the role:
Only candidates with an existing legal right to work in the European Union will be considered for this role.
Tech Stack
AWSAzureGCPTerraformAnsibleJenkinsPythonBashGitGitLabCNAPPCSPM