Senior Cloud Security Engineer

Tenarai Europe

Poland

On-site

PLN 180,000 - 300,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Office located in Poland
Onsite parking
Referral program with financial bonus
Life Insurance
Development budget (languages and more
Learning Platform access
MyBenefit Multisport
Team Building activities
Charity initiatives
Diversity and inclusion culture

Job summary

Tenarai Europe seeks a Senior Cloud Security Engineer to join a strategic Policy-as-Code initiative, building guardrails, compliance automation, and standard cloud deployment patterns across enterprise environments.

The role requires deep PaC/IaC expertise, strong scripting skills, and hands-on experience with Azure/AWS/GCP. You will collaborate across Security, Platform, DevOps, and Engineering teams to advance governance and secure cloud modernization.

Qualifications

  • 8+ years of experience in Cloud Engineering, Cloud Security, DevSecOps, Platform Engineering.
  • Experience designing and implementing Policy-as-Code solutions in enterprise environments.
  • Advanced knowledge of Terraform, Bicep, IaC, PaC.
  • Strong experience with Azure, AWS and/or GCP.
  • Hands-on with Azure Policy, OPA, Compliance automation, security guardrails.
  • Experience integrating security controls into GitHub Enterprise, GitHub Actions, Azure DevOps, CI/CD pipelines.
  • Strong scripting using PowerShell, Python, or Bash.
  • Experience with SOC 2, NIS2, CIS Benchmarks, NIST.

Responsibilities

  • Design, implement, and operationalize Policy-as-Code frameworks across enterprise cloud environments.
  • Develop and maintain security guardrails using OPA, Azure Policy, and Compliance-as-Code.
  • Translate security requirements into machine-readable policies.
  • Integrate policy enforcement into CI/CD pipelines for pre-deployment validation.
  • Develop reusable IaC modules and deployment templates.
  • Implement cloud security controls with Terraform, Bicep, and ARM templates.
  • Establish automated compliance validation and continuous assurance capabilities.
  • Partner with Cloud, Platform, DevOps, and Security teams to embed security into delivery processes.
  • Develop automation and scripting solutions for deployment consistency and compliance.
  • Contribute to enterprise cloud governance and platform standardization initiatives.
  • Support migration and modernization of CI/CD across GitHub and Azure DevOps environments.
  • Create technical documentation, standards, and implementation guidance.

Skills

Policy as Code
Infrastructure as Code (IaC)
Cloud security
CI/CD integration
Scripting
Automation

Tools

Terraform
Bicep
ARM Templates
Open Policy Agent (OPA)
GitHub Actions
Azure DevOps

Job description

We are seeking highly experienced, hands-on Senior Cloud Security Engineer to join a strategic Policy-as-Code (PaC) initiative focused on building enterprise cloud security guardrails, compliance automation, and secure cloud deployment standards.

We require seasoned professionals who can contribute immediately, work independently, and help establish the foundational

architecture, automation, and governance capabilities that will support large-scale cloud modernization efforts.

The ideal candidate possesses deep expertise across Policy as Code, Infrastructure as Code (IaC), cloud security automation, CI/CD integration, and enterprise cloud platforms.

Responsibilities
  • Design, implement, and operationalize Policy-as-Code frameworks across enterprise cloud environments.
  • Develop and maintain security guardrails using technologies such as: Open Policy Agent (OPA), Azure Policy, Policy validation frameworks, Compliance-as-Code
  • Translate security requirements, control frameworks, and regulatory requirements into machine-readable policies.
  • Integrate policy enforcement into CI/CD pipelines to validate infrastructure before deployment.
  • Develop reusable Infrastructure-as-Code modules and deployment templates.
  • Implement cloud security controls within: Terraform, Bicep, ARM Templates (where applicable)
  • Establish automated compliance validation and continuous assurance capabilities.
  • Partner with Cloud Engineering, Platform Engineering, DevOps, and Security teams to embed security controls into cloud delivery processes.
  • Develop automation and scripting solutions to improve deployment consistency and compliance enforcement.
  • Contribute to enterprise cloud governance, platform standardization, and security architecture initiatives.
  • Support migration and modernization of CI/CD processes across GitHub and Azure DevOps environments.
  • Create technical documentation, standards, patterns, and implementation guidance.
Job requirements
  • 8+ years of experience in Cloud Engineering, Cloud Security, DevSecOps, Platform Engineering, or related disciplines.
  • Demonstrated experience designing and implementing Policy-as-Code solutions in enterprise environments.
  • Advanced knowledge of: Terraform, Bicep, Infrastructure as Code (IaC), Policy as Code (PaC)
  • Strong experience with cloud platforms, including: Microsoft Azure, Multi-cloud experience preferred (AWS and/or GCP)
  • Hands-on experience with: Azure Policy, Open Policy Agent (OPA), Compliance automation, Security guardrails
  • Experience integrating security controls into: GitHub Enterprise, GitHub Actions, Azure DevOps, CI/CD pipelines
  • Strong scripting and automation skills using one or more: PowerShell, Python, Bash
  • Experience implementing security and compliance frameworks such as: SOC 2, NIS2, CIS Benchmarks, NIST
  • Preferred Qualifications
  • Experience building enterprise cloud landing zones and platform engineering solutions.
  • Experience creating and maintaining reusable Terraform module libraries.
  • Knowledge of cloud security posture management (CSPM) and continuous compliance monitoring.
  • Familiarity with Zero Trust architecture and cloud security best practices.
  • Experience supporting large-scale cloud transformation programs.
  • Ideal Candidate Profile
  • Ready-to-go senior consultant with minimal onboarding required.
  • Strong communicator who can work across security, engineering, and operations teams.
  • Self-directed and capable of driving complex technical workstreams independently.
  • Comfortable operating in fast-moving environments with multiple concurrent initiatives.
  • Able to translate security requirements into practical engineering solutions.
  • Proven track record delivering enterprise-scale cloud automation, governance, and security outcomes.
Must possess a legal work permit in Poland
General benefits - depends on the form of employment
  • Attractively located office with collaboration spaces
  • Onsite parking space for employees
  • Referral program with financial bonus
  • Life Insurance
  • Budget for development (including language courses and others), clear career path with the possibility to gain experience in international environment
  • Access to internal Learning Platform with multiple trainings oriented for professional growth
  • Access to MyBenefit platform (Multisport included)
  • Team Building activities
  • Charity initiatives
  • Working environment promoting diversity and inclusion
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Azure Cloud Engineer
Senior Azure Cloud Engineer

GFT Technologies Poland • Łódź

Hybrid
PLN 180,000 - 260,000
Hybrid work in Poland locations
Medical and life insurance
Lunch subsidy
+3
Senior Cloud Engineer
Senior Cloud Engineer

PSI Software – Polska & CEE • Poznań

On-site
PLN 180,000 - 240,000
Private medical care
Group insurance
Benefits platform
+1
Senior Azure Cloud Engineer
Senior Azure Cloud Engineer

GFT Technologies Poland • Warszawa

Hybrid
PLN 180,000 - 240,000
Hybrid work
Office in Poland
Medical benefits
+3
Senior Azure Cloud Engineer
Senior Azure Cloud Engineer

GFT Technologies Poland • Kraków

Hybrid
PLN 180,000 - 260,000
Hybrid work
Medical care
Lunch subsidy
+1
Senior Azure Cloud Engineer
Senior Azure Cloud Engineer

GFT Technologies Poland • Wrocław

Hybrid
PLN 240,000 - 360,000
Hybrid work in Poland (2 days in the W
Medical insurance
Sport subsidy
+5
Junior Infrastructure Security Engineer
Junior Infrastructure Security Engineer

Shiji Group • Katowice

On-site
PLN 140,000 - 210,000
Glasses subsidy
Free parking near office
Private medical care
+8
Cloud Strategy Architect - Enterprise Cloud Transformation
Cloud Strategy Architect - Enterprise Cloud Transformation

Michael Page • Wrocław

Hybrid
PLN 312,000 - 379,000
Comprehensive medical care
Multisport card
Senior Cyber Security Engineer
Senior Cyber Security Engineer

HeadHR • Warszawa

On-site
PLN 250,000 - 350,000
Private healthcare with rehabilitation
Extra parental days (6/yr)
Cafeteria
+1
Senior Cloud & Security Engineer
Senior Cloud & Security Engineer

DAC.digital Group • Województwo pomorskie

Hybrid
Possibility to work 100% remotely
On-site work option in Gdańsk
SENIOR AZURE DEVOPS ENGINEER (AZURE | NETWORKING | SECURITY)
SENIOR AZURE DEVOPS ENGINEER (AZURE | NETWORKING | SECURITY)

Reply Group • Katowice

Hybrid
Medical care package
Benefits platform with a budget of 550 PLN monthly
Meal tickets
+3