×
Register Here to Apply for Jobs or Post Jobs. X

Senior Security Engineer - Cloud Infrastructure

Job in Greater London, London, Greater London, W1B, England, UK
Listing for: Ebury
Full Time position
Listed on 2026-02-28
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Cloud Computing, Network Security
Salary/Wage Range or Industry Benchmark: 125000 - 150000 GBP Yearly GBP 125000.00 150000.00 YEAR
Job Description & How to Apply Below
Location: Greater London

Ebury is a global fintech firm dedicated to empowering businesses to expand internationally through tailored and forward‑thinking financial solutions. Since our founding in 2009, we’ve grown to a diverse team of over 1,700 professionals across 40+ offices and 29+ markets worldwide. Joining Ebury means becoming part of a collaborative and innovative environment where your contributions are valued. You’ll play a key role in shaping the future of cross‑border finance, while advancing your own career in a dynamic, high‑growth industry.

Senior

Security Engineer – Cloud Infrastructure

Hybrid (4 days in office) in London

Ebury is investing significantly in its cloud infrastructure security capabilities to ensure the trust and safety of our global financial services. As a Senior Security Engineer specialising in Cloud Infrastructure, you will own and evolve the security posture of our cloud environments across AWS and GCP, with a focus on network security, perimeter defence, and attack surface management.

This hands‑on role requires deep expertise in cloud‑native security controls, network architecture, and defensive security operations. You will design, implement, and maintain security infrastructure that proactively detects and mitigates threats before they impact our business. You will work closely with platform, infrastructure, and security operations teams, embedding security best practices into our cloud foundations.

Key Responsibilities
  • Own cloud security posture and attack surface management:
    Maintain comprehensive visibility and control across AWS and GCP environments. Implement cloud‑native security monitoring, detection, and alerting to proactively identify and mitigate threats before they impact customers or the business. Define and enforce security baselines using policy‑as‑code.
  • Design and maintain web application firewall infrastructure:
    Own WAF configurations across AWS and GCP, developing and tuning detection rules aligned with application threat models and emerging attack patterns. Establish operational processes for rule lifecycle management and incident response integration, collaborating with application teams to implement protections without impacting availability.
  • Architect network segmentation and isolation:
    Design and implement network security strategies ensuring proper separation between development, staging, and production environments. Define consistent patterns across multi‑cloud infrastructure, applying zero‑trust principles to workload communication and documenting reference architectures for engineering teams.
  • Deliver modern secure remote access:
    Architect and implement a scalable remote access solution to meet current network security and environment isolation requirements. Design identity‑aware access controls for infrastructure and cloud resources, ensuring solutions satisfy compliance and audit requirements for regulated financial services.
  • Drive security automation and Dev Sec Ops  adoption:
    Implement Infrastructure as Code for security controls using Terraform and cloud‑native tools. Build automated compliance checking, policy enforcement pipelines, and security tooling that improves detection and response capabilities across infrastructure deployments.
  • Improve team capabilities and cross‑functional collaboration:
    Partner with platform and infrastructure teams to embed security into cloud foundations. Provide technical guidance on network and cloud security best practices, contribute to incident response, and actively share security learnings to elevate engineering capabilities.
About You
  • You understand cloud infrastructure security end‑to‑end, applying frameworks (CIS Benchmarks, NIST CSF, ISO 27001) within a regulated context.
  • You think holistically about defence‑in‑depth, from network perimeter to workload protection.
  • You effectively engage with platform, infrastructure, and engineering teams, clearly explaining the "why" and impact of security controls.
  • You advocate for security‑as‑code and automation, reducing manual processes and improving consistency.
  • You promote a collaborative culture, share knowledge openly, and optimise your contributions for predictable…
Position Requirements
10+ Years work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary