Staff Cyber Security Engineer (AWS Cloud)

Solaris

Berlin

Vor Ort

EUR 90.000 - 130.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Benefits dieser Stelle

Learning & development budget
Remote working allowance
Free online yoga
Referral program
Mental healthcare service
Public transport allowance
Lunch reimbursement
Additional vacation days
Glasses for laptop work
Fruits and drinks at the office
Volunteering days

Zusammenfassung

Solaris is seeking a Cloud Security Engineer to audit and harden AWS environments, refactor resources into secure Terraform code, and collaborate with Cloud Architecture and Engineering teams.

You will design AWS WAF policies, enforce guardrails, optimize IAM strategies, and lead security automations while ensuring compliance with industry standards.

Qualifikationen

  • 5+ years of dedicated professional experience in Cloud Security Engineering.
  • Degree in Computer Science, Cloud Computing, Cyber Security, Information Technology, or equivalent experience.
  • Strong hands-on experience with Terraform and IaC auditing for security drift.
  • Experience with AWS security services (IAM, KMS, Security Hub, GuardDuty).
  • Excellent collaboration with architecture and engineering teams and strong English communication.

Aufgaben

  • Audit AWS environments and refactor legacy resources into secure Terraform code.
  • Design, deploy, tune, and maintain AWS WAF policies and rulesets.
  • Establish cloud security guardrails, multi-account structures, and SCPs.
  • Define and audit IAM strategies toward least privilege.
  • Manage and optimize cloud-native security monitoring and detection tools.

Kenntnisse

AWS Security
Terraform
IaC
Cloud Governance
IAM Strategy
English Proficiency

Ausbildung

Degree in Computer Science or related field

Tools

AWS Security Hub
GuardDuty
CloudTrail
KMS
CloudFront
AWS Organizations

Jobbeschreibung

Partner closely with the existing Cloud Architecture and Engineering teams to audit the current AWS environment, identify security technical debt, and plan the refactoring of legacy resources into secure Terraform code.

  • Design, deploy, tune, and maintain AWS WAF (Web Application Firewall) policies and rulesets to proactively protect corporate applications and APIs against application-layer attacks (OWASP Top 10, bots, and zero-day exploits).
  • Establish and enforce cloud security guardrails, multi-account structures (AWS Organizations/Control Tower), and Service Control Policies (SCPs) in collaboration with the infrastructure team.
  • Help on define and audit AWS Identity and Access Management (IAM) strategies, guiding engineering teams to transition from over-privileged legacy roles toward the principle of least privilege.
  • Manage and optimize cloud-native security monitoring and detection tools (AWS Security Hub, GuardDuty, CloudTrail, Inspector, or KMS).
  • Help on the incident respond for AWS-specific security alerts, performing cloud forensic analysis and coordinating containment strategies.
  • Ensure the AWS cloud ecosystem remains fully compliant with relevant financial regulations, internal policies, and security frameworks (NIST, CIS, BaFin requirements).
  • Lead the security automatizations on the AWS environment.
  • Understanding of AWS native AI capabilities (ie Bedrock or Quick).
Benefits
  • Learning & development budget
  • Remote working allowance
  • Free online yoga
  • Referral program
  • Mental healthcare service
  • Public transport allowance
  • Partial lunch reimbursement
  • Additional vacation days
  • Glasses for laptop work
  • Fruits and drinks at the office
  • Volunteering days
Core Mandates & Mandates

Thinking: Structured and analytical approach to untangling legacy cloud setups and defining clear, secure milestones.

Collaboration with Engineering: Experience working alongside separate, established Cloud Architecture or DevOps teams, acting as a security consultant rather than a solo administrator.

AWS WAF & Edge Security: Deep hands‑on experience designing, implementing, and fine‑tuning AWS WAF, AWS Shield, and CloudFront to protect public‑facing application endpoints.

Highly Valued Certification: AWS Certified Security – Specialty. AWS Certified Solutions Architect (Associate/Professional) is a strong plus.

Proactive peer that helps the growth of the team.

AWS Security Governance: Mastery of AWS native security tools (IAM, KMS, Security Hub, GuardDuty) and multi‑account security architecture.

Technical leadership, cross‑team collaboration, and cloud governance focus.

Mandates based on experience will vary. We don’t care much about fancy titles, but rather about real personal and professional development, as laid out in our learning framework.

Exceptional diplomatic and communication skills to align security requirements with the objectives of the existing Architecture and Engineering teams.

Empathic team player who avoids the “silo” mentality and focuses on enabling other teams to build securely.

Advanced Terraform & IaC: Strong proficiency in Terraform and auditing IaC templates for security drifts.

Business‑proficient written and spoken English.

Curious, constant learner that is willing to share learning with others.

Understands agile workflows and lean principles.

You have spent 5+ years of dedicated professional experience in Cloud Security Engineering, with a proven track record of securing complex AWS environments.

A degree in Computer Science, Cloud Computing, Cyber Security, Information Technology, or equivalent professional experience.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Senior Cloud Security Architect – Terraform
Senior Cloud Security Architect – Terraform

Jobtailor • Deutschland

Hybrid
EUR 90.000 - 130.000
Software Development Engineer, AWS Security
Software Development Engineer, AWS Security

Amazon Web Services (AWS) • Berlin

Vor Ort
EUR 90.000 - 130.000
Senior Security Architect
Senior Security Architect

Jobtailor • Deutschland

Remote
EUR 90.000 - 130.000
Senior Solutions Architect, WWPS Global Defence Partners
Senior Solutions Architect, WWPS Global Defence Partners

Amazon Web Services (AWS) • Berlin

Vor Ort
EUR 110.000 - 140.000
Senior Security Assurance Solutions Architect, AWS Security Assurance Services
Senior Security Assurance Solutions Architect, AWS Security Assurance Services

Amazon Web Services (AWS) • München

Vor Ort
EUR 110.000 - 160.000
Security Assurance Specialist
Security Assurance Specialist

Amazon Web Services (AWS) • Berlin

Vor Ort
EUR 90.000 - 120.000
Software Development Engineer, AWS Security
Software Development Engineer, AWS Security

RxREVU, Inc. • Berlin

Vor Ort
EUR 90.000 - 130.000
Security Assurance Specialist
Security Assurance Specialist

Amazon Web Services (AWS) • München

Vor Ort
EUR 110.000 - 160.000
Security Assurance Specialist
Security Assurance Specialist

Amazon Web Services (AWS) • Frankfurt

Vor Ort
EUR 90.000 - 130.000
Cyber Security Staff Engineer - AWS Cloud
Cyber Security Staff Engineer - AWS Cloud

Solaris • Berlin

Vor Ort
EUR 85.000 - 110.000
Home office budget
Learning budget €1000 per year
Competitive salary and variable pay
+4