Staff Cyber Security Engineer (AWS Cloud)
Solaris · Berlin, Germany
About The Role
Join our team as a Staff Cyber Security Engineer specializing in AWS Cloud. In this role, you will partner with the Cloud Architecture and Engineering teams to audit the current AWS environment, identify security technical debt, and plan the refactoring of legacy resources into secure Terraform code. You will design, deploy, tune, and maintain AWS WAF policies and rulesets, establish and enforce cloud security guardrails, and help define and audit AWS Identity and Access Management strategies. Additionally, you will manage and optimize cloud-native security monitoring and detection tools, assist in incident response for AWS-specific security alerts, and ensure compliance with relevant financial regulations and security frameworks.
- Partner closely with Cloud Architecture and Engineering teams to audit the AWS environment, identify security technical debt, and plan the refactoring of legacy resources into secure Terraform code.
- Design, deploy, tune, and maintain AWS WAF policies and rulesets to proactively protect corporate applications and APIs against application-layer attacks.
- Establish and enforce cloud security guardrails, multi-account structures, and Service Control Policies in collaboration with the infrastructure team.
- Thinking: Structured and analytical approach to untangling legacy cloud setups and defining clear, secure milestones
- Collaboration with Engineering: Experience working alongside separate, established Cloud Architecture or DevOps teams, acting as a security consultant rather than a solo administrator
- AWS WAF & Edge Security: Deep hands-on experience designing, implementing, and fine-tuning AWS WAF, AWS Shield, and CloudFront to protect public-facing application endpoints
- Highly Valued Certification: AWS Certified Security - Specialty. AWS Certified Solutions Architect (Associate/Professional) is a strong plus
- Proactive peer that helps the growth of the team
- AWS Security Governance: Mastery of AWS native security tools (IAM, KMS, Security Hub, GuardDuty) and multi-account security architecture
- Technical leadership, cross-team collaboration, and cloud governance focus
- Depending on your level of experience, your responsibilities and scope of role will range. We don’t care much about fancy titles, but rather about real personal and professional development, as laid out in our learning framework. Let’s figure together out how you can contribute to our team
- Exceptional diplomatic and communication skills to align security requirements with the objectives of the existing Architecture and Engineering teams
- Empathic team player who avoids the "silo" mentality and focuses on enabling other teams to build securely
- Advanced Terraform & IaC: Strong proficiency in Terraform and auditing IaC templates for security drifts
- Business proficient written and spoken English
- Curious, constant learner that is willing to share learning with others
- Understands agile workflows and lean principles
- You have spent 5+ years of dedicated professional experience in Cloud Security Engineering, with a proven track record of securing complex AWS environments
- A degree in Computer Science, Cloud Computing, Cyber Security, Information Technology, or equivalent professional experience
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring