Navan Logo

Navan

Sr. Cloud Security Engineer

Posted 2 Hours Ago
Be an Early Applicant
Easy Apply
Hybrid
London, Greater London, England
Senior level
Easy Apply
Hybrid
London, Greater London, England
Senior level
The role involves designing and maintaining security for a multi-cloud environment, including CSPM, automation, IAM, and incident response within cloud security.
The summary above was generated by AI

We are seeking a highly skilled Sr. Cloud Security Engineer to join our Security Operations and Engineering team. In this role, you will be a key player in designing, implementing, and maintaining a robust security posture across our multi-cloud environment.

While your primary expertise should lie in Google Cloud Platform (GCP) or Microsoft Azure, you will also leverage your experience in Amazon Web Services (AWS) to ensure consistent security standards across our entire infrastructure. You will be instrumental in automating security controls, conducting deep-dive architectural reviews, and managing our Cloud Security Posture Management (CSPM) lifecycle.

What You'll Do
  • Cloud Security Architecture & Design: Lead and participate in security reviews for new product features and infrastructure changes. Provide actionable recommendations to engineering teams to ensure "secure by design" principles.
  • Posture Management (CSPM): Own the end-to-end CSPM process. This includes configuring tools, monitoring for misconfigurations, prioritizing risks, and working with stakeholders to remediate security gaps across GCP, Azure, and AWS.
  • Security Automation: Utilize basic programming and scripting skills (e.g., Python, Go, or Bash) to automate repetitive security tasks, incident response playbooks, and compliance checks.
  • Infrastructure as Code (IaC) Security: Integrate security scanning into CI/CD pipelines (Terraform, Pulumi, or Bicep) to catch vulnerabilities before they reach production and also write IAC code for security related infrastructure. 
  • Identity & Access Management (IAM): Design and enforce least-privilege access models across multi-cloud environments, managing service accounts, roles, and identity federation.
  • Incident Response Support: Act as a subject matter expert during cloud-related security incidents, providing technical analysis and forensic support.
What We're Looking For
  • Deep Cloud Expertise: 5+ years of experience in cloud security, with extensive, hands-on experience in either GCP (Security Command Center, IAM, VPC Service Controls) or Azure (Microsoft Defender for Cloud, Azure Policy, Sentinel).
  • Multi-Cloud Proficiency: Strong working knowledge of AWS security services (GuardDuty, IAM, Security Hub, Config).
  • CSPM Experience: Proven track record of managing Cloud Security Posture Management tools (e.g., Wiz, Orca, Prisma Cloud, or native cloud tools) to reduce the attack surface.
  • Programming Skills: Ability to write scripts or small applications in Python, Go, or PowerShell to interact with Cloud APIs, automate workflows, and maintain security related IAC code.
  • Security Reviews: Experience performing threat modeling and security architecture reviews for complex, distributed systems.
  • Relevant certifications such as Google Professional Cloud Security Engineer, Microsoft Certified: Azure Security Engineer Associate (AZ-500), or AWS Certified Security – Specialty would be great plus 
  • Experience with container security (Kubernetes/GKE/AKS/EKS).
  • Familiarity with compliance frameworks such as PCI DSS,SOC2, ISO 27001, or NIST.
  • Excellent communication skills with the ability to translate complex security risks into business context for non-technical stakeholders.

Top Skills

Amazon Web Services
Bash
Bicep
Go
Google Cloud Platform
Guardduty
Iam
Azure
Microsoft Defender For Cloud
Pulumi
Python
Security Command Center
Terraform

Similar Jobs at Navan

16 Hours Ago
Easy Apply
Hybrid
London, Greater London, England, GBR
Easy Apply
Mid level
Mid level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
The role involves managing the implementation of the Navan travel and expense platform for enterprise customers, collaborating with various teams, maintaining customer relationships, and enhancing onboarding processes. Will require client travel.
18 Hours Ago
Easy Apply
Hybrid
London, Greater London, England, GBR
Easy Apply
Junior
Junior
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
The Integrations Manager will drive customer integration success by applying technical skills, troubleshooting issues, maintaining documentation, and training Account Managers on integrations and migrations.
Top Skills: APIsErp SystemsSftpSQL
Yesterday
Easy Apply
Hybrid
London, Greater London, England, GBR
Easy Apply
Senior level
Senior level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
As a Field Marketing Manager, you'll design and execute regional marketing strategies, manage budgets, collaborate with sales and marketing teams, and optimize campaigns based on data insights.
Top Skills: Data AnalyticsEvent MarketingMarketing Automation

What you need to know about the Edinburgh Tech Scene

From traditional pubs and centuries-old universities to sleek shopping malls and glass-paneled office buildings, Edinburgh's architecture reflects its unique blend of history and modernity. But the fusion of past and future isn't just visible in its buildings; it's also shaping the city's economy. Named the United Kingdom's leading technology ecosystem outside of London, Edinburgh plays host to major global companies like Apple and Adobe, as well as a growing number of innovative startups in fields like cybersecurity, finance and healthcare.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account