Senior Cloud Security Engineer

extra holidays - extra parental leave - work from home - fully flexible
Remote: 
Full Remote
Contract: 

Offer summary

Qualifications:

Proficient in Linux command line and Kubernetes security expertise., Experience with public cloud security features and hardening practices., Background in software engineering and good engineering practices., Interest in offensive security and experience with threat modeling..

Key responsibilities:

  • Build and maintain defensive security controls for multi-cloud payment systems.
  • Advise engineering teams on security features and risk management.
  • Participate in on-call rota for security incident response.
  • Collaborate with R&D team to enhance security across platforms.

FORM3 logo
FORM3 Financial Services Scaleup https://form3.tech
501 - 1000 Employees
See all jobs

Job description

THE ROLE 📝 

You will build and run defensive security controls for highly-available multi-cloud payment systems running the latest technology. You understand current threats, exploitation paths and risk tradeoffs in order to advise engineering teams on beneficial security features as well as prioritise management of defensive controls. 

 

WE’RE LOOKING FOR  🔍 

Essential 

  • You live on the linux command line 
  • Your current research and experience back up your opinionated views on security practices and tradeoffs, which you love to openly debate and willingly share 
  • You’re sought after for your Kubernetes security expertise and have developed complex heavily customised multi-cluser environments 
  • Your security expertise extends to at least one public cloud, including essential security features and long-term security hardening practices 
  • You appreciate building systems with good engineering practices and may have a background in software engineering at scale 
  • You’re open to being a part of our on-call rota, ready to respond if we have a severe, platform-impacting security tooling failure or need second-line security incident response assistance 

 

Desirable 

  • You have an interest in offensive security, potentially including participation in CTFs and past experience as a red team operator or pen tester 
  • You’ve developed security configurations in multiple public and private clouds 
  • You’re a confident presenter and have accelerated appreciation of security across engineering teams 
  • You regularly support building and analysis of threat models using a well defined process 
  • You have experience securing data centers and networking devices 
  • You’re terrified by supply chain and CI/CD security, but have good patterns for reducing the risks 
  • Your engineering experiences matches Form3’s tech stack – including Golang and Terraform 

 

TECH STACK ⚙️ 

  • AWS, GCP, Azure and private Data Centers 
  • Kubernetes, Helm, Flux 
  • Distributed systems, mostly Golang based with CockroachDB and NATS 
  • SIEM/SOAR, EDR, CNAPP, and a suite of open source tools with custom integrations 

 

THE TEAM 👥 

You will join a team of defensive security engineers directly maintaining and expanding security controls as well as advising the wider platform and application engineers within our R&D team. We report into the CISO and work alongside the other functional pillars of InfoSec. 

 

INTERVIEW PROCESS ✍️ 

Stage 1: Screening Call with Talent Team 

Stage 2: Technical Interview – Kubernetes and Linux Security, including a short pre-interview research topic 

Stage 3: Technical Interview – Building secure cloud architectures & team alignment 

We always aim to stick to the above process, however there may be occasions when an additional interview stage is needed for us to be sure we’re hiring the right person! 

 

HIRING LOCATIONS 📍 

We are a remote-first organisation and are able to accept applications from the following countries; Germany, Netherlands, Spain, Portugal & UK 

 

ABOUT FORM3 💭 

Revolutionising the world of payments with our cutting-edge technology and innovative solutions. For more information about life at Form3 check out the following pages: 

What we do | Life at Form3 | Benefits | Flexa-verified employer | Podcasts 

 

 

OUR DEI&B COMMITMENT 

We hire talented people from a variety of backgrounds and experiences and are committed to a work environment based on diversity, open-mindedness and curiosity. We’re united by our company values (we even created them together!) and we celebrate our unique differences. 

Our employee lifecycle processes are designed to embrace equal opportunity and prevent discrimination against our people regardless of personal characteristics. It is our strong belief that the more inclusive and belonging we are as a business, the better our work will be. 

As an inclusive employer, we guarantee to interview all neurodiverse and physically disabled applicants who meet the minimum criteria for this role. We also encourage candidates to notify us of any reasonable adjustments that may be required during the recruitment process. This includes providing job adverts in alternative, accessible formats or adjustments required at interview stage. 

If you consider yourself to be neurodiverse or physically disabled under the UN definition of disability and would like to be considered under this scheme and/or require any reasonable adjustments please let us know by sending an email to careers@form3.tech clearly stating your consent for us to process this data.

For more information please refer to our Recruitment Data Policy. 

Required profile

Experience

Industry :
Financial ServicesComputer Software / SaaS
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Teamwork
  • Communication
  • Problem Solving

Cloud Security Engineer Related jobs