Senior Infrastructure and Cloud Security Engineer (m/f/d)

ICE Services

Greater London

On-site

GBP 90,000 - 130,000

Full time

7 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Location-based benefits
Flexible working
Wellbeing initiatives
Training & development
Industry events
Enhanced holiday allowance

Job summary

ICE Services, a music technology company, seeks a Senior Infrastructure and Cloud Security Engineer to bolster cloud security across AWS/Azure and drive secure design across production and corporate environments.

The role focuses on building out the Cloud Security pillar, implementing standards, and advising on security best practices, including Terraform-driven automation and IAM controls.

Qualifications

  • Experience in design, documentation, and configuration of secure solutions for AWS and Azure cloud environments.
  • Experience in designing configuring tools and technology to work within or alongside cloud environments.
  • Experience in designing and configuring third party security technologies within a cloud environment (ie, firewalls, IDS/IPS).
  • Experience in design, documentation and configuration of Identity and Access Management solutions.
  • Experience in securing cloud container environments.
  • Working knowledge of cloud security standards including NIST, CIS, and ISO.
  • Performed risk analysis and documented all risks and mitigating controls within cloud environments.
  • Understanding of threat models and their application to aid in securing cloud environments.
  • Act as a role model, engage with the promotion of a culture of good conduct and contribution to maintaining such a culture.
  • Proactivity, transparency and clear accountability for the determination and management of security and risks.
  • Fast learner and critical thinker with excellent skills in problem solving and presentation.
  • Teamwork with peers and management.
  • Exceptional communication skills, both written and oral.

Responsibilities

  • Engaging with key stakeholders to understand the current state of cloud security, develop the strategy of integration with all teams ensuring security is considered with all projects.
  • Perform gap analysis and identify risks across all cloud environments, drive improvements, document remediation steps, and aid in the reduction of risk
  • Design and build secure cloud environments. Working alongside the engineering function this role will assist the team in building an environment that meets the needs to host the applications in a secure manner.
  • Assess technologies for use across all systems, identify new tools to evaluate for use, build requirement documentation, criteria for success and preform the proof of concept assessment.
  • Configuring the corporate cloud functions and the security of AzureAD using policies and tools, this will include all corporate functions such as email, application connections, and stand alone servers.
  • Performing audit and benchmarking across the cloud environments to ensure optimal level of security controls are implemented (such as vulnerability management) and to help drive future initiatives.
  • Prepare and enforce standards and guidelines for cloud security, including standard builds, configurations, and automation processes, in particular the use of Terraform.
  • Drive particular focus on access controls across the environments and data within the cloud infrastructure.
  • Monitor solutions for critical security events and build investigation and incident response plans, including aiding the configuration and use of logging and SIEM tools.
  • Offer consultancy as an SME to all business units in relation to technical projects.

Skills

AWS
Azure
Cloud security
Threat modeling
Risk analysis
Vulnerability management
Stakeholder engagement
SIEM
Terraform
AzureAD

Tools

Terraform
AzureAD
SIEM tools

Job description

Senior Infrastructure and Cloud Security Engineer (m/f/d)

London

About ICE Services

ICE Services is a music technology company built by rightsholders, for rightsholders. We simplify the complexities of the music royalty chain through an innovative suite of licensing, processing, and copyright services, enabling our customers to accurately and efficiently compensate songwriters and composers for the use of their works.

A joint venture between PRS, STIM, and GEMA, ICE Services is the result of a big vision for the industry that harnesses years of combined experience in the multi-territory music market. Serving over 330,000 rightsholders and leveraging a copyright database comprising 55 million musical works, ICE Services’ operations touch 250+ territories to distribute more than €1bn in royalties per year, with a total of over €5bn distributed to date.

We’re based in the UK, Germany, and Sweden.

About the Role

As we build out the IT Security function, we have determined the need for a resource with a specific remit of securing the cloud infrastructure used, both across the production and corporate space. This will encompass both the application hosting environment and the backend support services.

The role will involve aiding in building out the Cloud Security pillar, developing all the processes along with any technology required to make the role a key part of the security strategy.

Key Responsibilities:
  • Engaging with key stakeholders to understand the current state of cloud security, develop the strategy of integration with all teams ensuring security is considered with all projects.
  • Perform gap analysis and identify risks across all cloud environments, drive improvements, document remediation steps, and aid in the reduction of risk
  • Design and build secure cloud environments. Working alongside the engineering function this role will assist the team in building an environment that meets the needs to host the applications in a secure manner.
  • Assess technologies for use across all systems, identify new tools to evaluate for use, build requirement documentation, criteria for success and preform the proof of concept assessment.
  • Configuring the corporate cloud functions and the security of AzureAD using policies and tools, this will include all corporate functions such as email, application connections, and stand alone servers.
  • Performing audit and benchmarking across the cloud environments to ensure optimal level of security controls are implemented (such as vulnerability management) and to help drive future initiatives.
  • Prepare and enforce standards and guidelines for cloud security, including standard builds, configurations, and automation processes, in particular the use of Terraform.
  • Drive particular focus on access controls across the environments and data within the cloud infrastructure.
  • Monitor solutions for critical security events and build investigation and incident response plans, including aiding the configuration and use of logging and SIEM tools.
  • Offer consultancy as an SME to all business units in relation to technical projects.
Requirements and Qualifications:
  • Experience in design, documentation, and configuration of secure solutions for AWS and Azure cloud environments.
  • Experience in designing configuring tools and technology to work within or alongside cloud environments.
  • Experience in designing and configuring third party security technologies within a cloud environment (ie, firewalls, IDS/IPS).
  • Experience in design, documentation and configuration of Identity and Access Management solutions.
  • Experience in securing cloud container environments.
  • Working knowledge of cloud security standards including NIST, CIS, and ISO.
  • Performed risk analysis and documented all risks and mitigating controls within cloud environments.
  • Understanding of threat models and their application to aid in securing cloud environments.
  • Act as a role model, engage with the promotion of a culture of good conduct and contribution to maintaining such a culture.
  • Proactivity, transparency and clear accountability for the determination and management of security and risks.
  • Fast learner and critical thinker with excellent skills in problem solving and presentation.
  • Teamwork with peers and management.
  • Exceptional communication skills, both written and oral.
What we offer:
  • Competitive local benefits based on your location
  • We promote flexible working regarding time and/or place
  • Both mental and physical health initiatives
  • Comprehensive training and development opportunities
  • Industry insider events, team socials and company events
  • Enhanced holiday allowance

We welcome candidates from all backgrounds, regardless of age, disability, gender, gender identity, gender expression, race, religion or belief, sexual orientation, socioeconomic background, and any other protected characteristic.
We are committed to making all stages of our recruitment process accessible to candidates with disabilities. Please speak to our recruitment team and we will work with you to make reasonable adjustments to ensure you can perform at your best throughout your application.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Licensing Manager (New Business Lead)
Senior Licensing Manager (New Business Lead)

ICE Services • Greater London

On-site
GBP 75,000 - 120,000
Head of Cloud Security / Senior Cloud Security Architect
Head of Cloud Security / Senior Cloud Security Architect

G3 Good Governance Group Ltd • Greater London

Hybrid
GBP 120,000 - 180,000
Private medical insurance
Life insurance - 4x annual salary
Cycle to Work Scheme
+3
Senior Security Engineer (Infrastructure)
Senior Security Engineer (Infrastructure)

Eeze • Greater London

Hybrid
GBP 90,000 - 130,000
26 days holiday
Hybrid working
Pension
+4
Cloud Security Engineer
Cloud Security Engineer

Vix Technology • Manchester

On-site
GBP 65,000 - 85,000
Learning and development opportunities
Private healthcare
Cycle to work schemes
AWS DevOps Engineer (Security Cleared)
AWS DevOps Engineer (Security Cleared)

REPLY • Greater London

On-site
GBP 70,000 - 110,000
Competitive Salary
Bonus Scheme
Private Healthcare Insurance
+2
Platform Security Engineer
Platform Security Engineer

Gear4music Ltd. • Manchester

Hybrid
GBP 40,000 - 60,000
Personal development plan
Flexible hours
Health Assured Employee Assistance Programme
+2
Security Architect
Security Architect

Solirius Ltd. • Greater London

On-site
GBP 90,000 - 120,000
Competitive Salary
Bonus Scheme
Private Healthcare Insurance
+2
Security Engineer II
Security Engineer II

United States Digital Space LLC • United Kingdom

Remote
GBP 60,000 - 85,000
Senior Security Engineer (Infrastructure)
Senior Security Engineer (Infrastructure)

Eeze • City Of London

Hybrid
GBP 90,000 - 130,000
26 days holiday + public holidays
Hybrid working
Pension
+5
Cloud Security Engineer
Cloud Security Engineer

Hastings Direct • Bexhill-on-Sea

Hybrid
GBP 70,000 - 110,000
Reward Salary
Flexible Working
Competitive Bonus Scheme
+4