Cloud Security Engineer

You will perform threat modeling for cloud architectures and Kubernetes deployments, design and implement security controls across GCP and AWS, and develop secure Infrastructure as Code using Terraform. You will manage cloud security monitoring with DataDog, implement Just-in-Time access for elevated privileges, and lead cloud incident response. You will collaborate with infrastructure and development teams to embed security best practices, research emerging cloud threats and mitigations, deliver training, maintain security standards and documentation, conduct vulnerability assessments, and support audit and compliance evidence requests.

Responsibilities

  • Perform threat modelling of architectural infrastructure changes and new cloud and Kubernetes deployments
  • Design, implement, and manage security controls and configurations for GCP and AWS environments
  • Develop and maintain secure Infrastructure as Code using Terraform and related tools
  • Implement and enhance cloud security monitoring using DataDog, including alert configuration and response procedures
  • Implement and manage Just-in-Time access solutions for elevated privilege access
  • Establish and manage the cloud incident management process and lead incident response activities
  • Collaborate with infrastructure and development teams to integrate cloud security best practices
  • Research and evaluate emerging cloud security threats and develop mitigation strategies
  • Develop and deliver cloud security training and awareness programs
  • Contribute to and maintain cloud security standards, policies, and documentation
  • Conduct vulnerability assessments and drive remediation for cloud infrastructure
  • Support requirements and evidence requested from auditors, compliance, and regulators

Requirements

  • Extensive experience in cloud security with deep expertise in GCP and AWS
  • Strong understanding of threat modelling principles applied to cloud infrastructure
  • Hands-on experience with DataDog for security monitoring and Terraform for Infrastructure as Code
  • Proven experience designing, implementing, and managing cloud security controls and configurations
  • Experience with Identity and Access Management in cloud environments and implementation of JIT access solutions
  • Proven ability to establish and manage incident response programs for cloud environments
  • Proficiency in scripting or programming languages relevant to cloud automation and security such as JavaScript, Python, or Go
  • Ability to explain technical security concepts and mitigations to diverse audiences
  • Self-motivated and able to work independently in a remote setting while maintaining a team-focused mindset
  • Skilled in documenting security processes and configurations and sharing knowledge with other teams
  • Good understanding of cryptography and its applications in cloud security (nice to have)
  • Contributions to the security community such as open source projects, talks, or CTFs (nice to have)
  • Relevant security certifications such as GCP Professional Cloud Security Engineer, AWS Certified Security - Specialty, or SANS (bonus)
  • Background experience in FinTech, SaaS, or Crypto (bonus)

Benefits

  • Competitive salary package
  • Equity package for employees
  • Pay for performance equity bonus
  • Moonshot award equity grant
  • Unlimited holidays
  • Hybrid working schedule (work fully remotely or at nearest Moonbase)
  • Private healthcare benefits
  • Enhanced parental leave
  • Annual training budget
  • Home office setup allowance
  • Remote working allowance
  • Monthly budget for company products and zero fee crypto transactions
  • Employee referral programme with 10K in USDC
  • Regular remote company offsites