Senior Cloud Security Engineer - Lead/Founding role
Role details
Job location
Tech stack
Job description
MITM Search have been engaged on an important search for a Senior Cloud Security Engineer (Founding role) by a great Fintech client who are going through major growth.
Here is how the client described the role:
We're a high-growth fintech backed by a major financial group, scaling fast, handling billions in assets, and building our in-house security posture from the ground up. You'll join as the first dedicated cloud security engineer and own much of the technical foundation for how we secure our infrastructure.
We believe security enables speed - you'll work alongside platform, DevOps, and engineering teams to bake security into every layer.
What You'll Do
- Review system and application architectures, identify potential risks, and articulate mitigations using structured frameworks (e.g. STRIDE)
- Examine Terraform / IaC code, spot misconfigurations (IAM, network exposure, state handling, secrets), and propose fixes
- Write scripts or small tools (Python, Bash, etc.) to automate security checks, drift detection, and remediation
- Build and mature the cloud security program: from vulnerability management, guardrails, monitoring, governance, to security maturity evolution
- Partner with engineering and platform teams to integrate security in CI/CD, deployment pipelines, infrastructure changes
- Help hire and mentor future security engineers as the function scales
Requirements
Do you have experience in Terraform?, * 5+ years in cloud security, DevSecOps, or adjacent roles with hands-on exposure
- Fluent with Terraform / IaC - ideally you've authored, debugged, and reviewed modules at scale
- Strong scripting skills (Python, Bash, or equivalent)
- Experience with threat modeling / architecture risk frameworks (STRIDE, PASTA, or equivalent)
- Experience building or scaling a security program (vulnerability mgmt, maturity roadmap, guardrails)
- Familiarity with AWS, Azure, or GCP - GCP is a plus, but you can transfer from other clouds
- Excellent communication skills - you need to clearly explain risks, trade-offs, and decisions under pressure
Nice to Have
- Kubernetes / container infrastructure security
- Experience in fintech, financial services, or regulated environments
- Strong Linux / core OS internals experience, If you're someone who thrives in ambiguity, loves building things that scale, and wants your work to have high visibility - you're exactly who we're looking for.
Benefits & conditions
- Target base salary: up to ~£110,000, plus performance bonus with multipliers
- Hybrid working, flexible benefits
- Opportunities to shape and lead the cloud security function
- Training, certifications, mentorship, and career ownership