- Company Name
- Barclay Simpson
- Job Title
- Security Engineer
- Job Description
-
**Job Title:**
Security Engineer
**Role Summary:**
Design, implement, and enhance technical security controls for cloud infrastructure, applications, and data within a modern AWS environment. Collaborate daily with developers and DevOps to embed secure configurations, continuous monitoring, and secure development practices into the engineering culture.
**Expectations:**
- 2+ years of security engineering experience in AWS.
- Proven ability to deploy and tune security tooling, conduct incident investigations, and implement “shift‑left” security practices.
- Strong understanding of ISO 27001 compliance and cloud security frameworks.
**Key Responsibilities:**
- Develop and maintain secure architecture and configuration baselines for AWS resources.
- Deploy, configure, and manage security tools (e.g., IDS/IPS, vulnerability scanners, SIEM, cloud security posture management).
- Conduct regular security assessments, penetration tests, and threat modeling.
- Investigate and respond to security incidents, documenting findings and remediation steps.
- Work with DevOps to integrate security controls into CI/CD pipelines and enforce secure coding standards.
- Ensure ongoing compliance with ISO 27001 and industry best practices.
**Required Skills:**
- AWS security services (IAM, VPC, KMS, GuardDuty, Security Hub, Macie).
- Scripting/automation (Python, Bash, Terraform, CloudFormation).
- CI/CD integration and DevSecOps tooling (Git, Jenkins, GitHub Actions).
- Incident response, log monitoring, threat hunting.
- Cloud security architecture, secure coding and configuration management.
- Knowledge of regulatory and compliance frameworks (ISO 27001, SOC 2, GDPR).
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or a related field.
- Professional security certifications (CISSP, CISM, CompTIA Security+, or AWS Security Specialty) preferred.
- Demonstrated experience in a security engineering role for a cloud‑native environment.