Qube Research & Technologies (QRT) is a global quantitative and systematic investment manager operating across all liquid asset classes. Our innovative approach integrates data, research, technology, and trading expertise to tackle the most complex market challenges. We are seeking an experienced Senior AWS Cloud Security Engineer to implement and enhance our comprehensive cloud security measures in a fast-paced environment.
Your Role at QRT
In this role, you will be responsible for securing and optimising our AWS cloud infrastructure. You will implement critical security controls and enhancements while collaborating with stakeholders across the business from IT and operations to risk management and executive leadership to ensure alignment with our overall security objectives.
- Cloud Security Implementation: Execute and refine our AWS security strategy by applying industry-standard controls and continuously enhancing our cloud security posture.
- IAM & Access Management: Manage and optimise Identity and Access Management (IAM) frameworks, including the application of permission boundaries to enforce least privilege access.
- Policy Enforcement: Implement and maintain Service Control Policies (SCP) and Resource Control Policies (RCP) across AWS accounts to ensure the consistent application of security best practices.
- Security Services Integration: Deploy and manage AWS security services (e.g., GuardDuty, Security Hub, CloudTrail, Config) to monitor, detect, and respond to threats while ensuring continuous security oversight.
- Encryption & Data Protection: Oversee the integration of encryption solutions such as KMS to protect sensitive data and maintain compliance with regulatory standards.
- Security Baselining: Establish and maintain security baselines for AWS environments, continuously monitoring for deviations and ensuring adherence to compliance requirements.
- Automation Frameworks: Develop and deploy robust automation frameworks using Infrastructure as Code (IaC) tools such as Terraform or CloudFormation, enhancing operational efficiency and supporting proactive security improvements.
- Cloud Security Operations: Enhance our cloud security operations by leveraging tools and methodologies across CSPM, CWNP, and ASPM frameworks to continuously monitor, detect, and respond to security issues.
- Stakeholder Management: Engage with a wide range of stakeholders across the business to ensure the integration and alignment of security measures across all operational areas.
Your Skillset
- Experience: Minimum of 5 years in cloud security, platform security, or engineering roles, including related experience in fields such as DevSecOps.
- AWS Expertise: Extensive hands-on experience with AWS cloud services and a deep understanding of AWS security best practices, including expertise in IAM, permission boundaries, SCP, and RCP.
- Technical Proficiency: Proven ability to implement and optimise secure cloud architectures while leveraging AWS security services to mitigate risks and protect critical assets.
- Security Baselining: Demonstrable experience in establishing and maintaining security baselines to ensure consistent and compliant cloud configurations.
- Automation & IaC: Proficiency with Infrastructure as Code (IaC) tools such as Terraform or CloudFormation, with a strong focus on developing and managing stable automation frameworks.
- Python Scripting: Foundational experience in Python scripting to support automation and security tooling.
- Cloud Security Operations: Experience in managing cloud security operations utilising tools such as CSPM, CWNP, and ASPM to maintain continuous compliance and security oversight.
- Stakeholder Engagement: Excellent ability to manage stakeholder relationships and collaborate effectively across various teams to align security initiatives with broader business objectives.
- Analytical & Collaborative: Strong problem-solving and analytical skills, with effective verbal and written communication to thrive in a dynamic, high-paced environment.
QRT is an equal opportunity employer. We value diversity and foster an inclusive environment that promotes collaboration, continuous learning, and a healthy work-life balance.