- Company Name
- Techfellow Limited
- Job Title
- Cyber Security Engineer (AWS Focus) | Leading European Investment Company
- Job Description
-
**Job Title:**
Cyber Security Engineer (AWS Focus)
**Role Summary:**
Independent technical lead responsible for designing, implementing, and continuously improving AWS security controls, tooling, and processes in a regulated, cloud‑first investment environment. Works closely with engineering, DevOps, and security teams to embed security into CI/CD, IaC, and cloud workflows, while driving incident response, regulatory readiness, and threat modelling.
**Expectations:**
- Own end‑to‑end AWS security posture, from prevention to detection and monitoring.
- Deliver measurable improvements in GuardDuty tuning, cost efficiency, and alert quality.
- Evaluate, recommend, and migrate security tooling (EDR, XDR, SIEM, CSPM).
- Serve as the technical authority on cloud security design for new services and infra changes.
- Support SOX/SOC 2 compliance, evidence generation, and regulatory assurance activities.
- Mentor junior analysts on cloud security concepts and investigations.
- Operate autonomously in a lean team, prioritizing actions that reduce risk and enhance controls.
**Key Responsibilities:**
1. Own AWS security engineering, including preventative controls, detection, and monitoring.
2. Mature GuardDuty configuration, reduce noise, improve signal and cost.
3. Lead assessment, selection, and migration of security tooling (EDR, XDR, SIEM, CSPM).
4. Act as the cloud‑security point of reference for engineering and DevOps.
5. Provide deep technical expertise during incident investigations and triage.
6. Integrate security into CI/CD pipelines, IaC, and cloud‑native workflows.
7. Conduct cloud security architecture reviews and threat modelling for new services.
8. Participate in regulatory and assurance programs (SOX, SOC 2).
9. Develop scalable security standards, patterns, and documentation.
10. Mentor the security analyst on tooling and investigations.
**Required Skills:**
- 3–6+ years of hands‑on AWS security engineering in production.
- Deep knowledge of AWS security services (GuardDuty, IAM, logging, CloudTrail, CloudWatch).
- Experience evaluating and improving EDR/XDR/SIEM/CSPM solutions.
- Familiarity with regulated environments (financial services, insurance, legal).
- Practical understanding of audit, compliance, and control frameworks.
- Strong delivery mindset; proven ownership of security projects.
- Excellent written and verbal communication; ability to influence stakeholders.
- (Preferred) Scripting/automation (Python).
- (Preferred) IaC experience (Terraform, CloudFormation).
- (Preferred) Exposure to crypto/digital‑asset or highly cloud‑native microservices environments.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or equivalent, or substantial equivalent experience.
- 3–6+ years in security engineering roles.
- (Preferred) Relevant certifications such as AWS Certified Security – Specialty, CISSP, or equivalent.