Security Engineer – Cloud Migration to AWS
Key details
- Compensation
- $49,000 - $66,000
Job Description
Salary: £49,000 - 66,000 per year
Requirements
- 4+ years in security engineering, cloud security, or infrastructure security.
- Demonstrable hands-on experience securing production AWS environments.
- Proven experience delivering or securing a cloud migration programme.
- Strong scripting and automation ability in Python.
- Experience with infrastructure-as-code in a production setting, using Terraform and/or CloudFormation.
- Comfortable working in a GitLab-based DevSecOps workflow.
- Solid understanding of security frameworks and compliance standards.
- Familiarity with AWS security tooling including Security Hub, GuardDuty, Config, IAM, KMS, ACM, WAF, Shield, Inspector, CloudTrail, Organizations, Secrets Manager, Parameter Store, and Control Tower/Landing Zone.
- Experience with policy-as-code tools such as OPA/Conftest, cfn-guard, Checkov, or tfsec is a strong plus.
- Experience with workload discovery and assessment ahead of migration is desirable.
- Experience with AWS migration tooling such as Application Migration Service, DMS, or Migration Hub is desirable.
- Familiarity with hybrid networking concepts including Direct Connect, VPN, Transit Gateway, VPC design, security groups, and NACLs.
- Operating system security hardening experience on Linux and/or Windows.
- Experience integrating security scanning into CI/CD pipelines, including SAST, DAST, IaC scanning, secrets scanning, SCA, and container image scanning.
- Experience with AWS Organizations and Service Control Policies for multi-account guardrails.
- Experience with AWS security automation using Lambda functions, boto3, custom Config rules, and remediation scripts.
Responsibilities
- Define and implement security controls, guardrails, and the landing zone baseline for workloads migrating to AWS.
- Design and operate AWS-native security tooling across accounts and Organizations.
- Build security automation in Python, including remediation Lambdas, compliance-check scripts, event-driven response, and integrations with ticketing and SIEM systems.
- Author, review, and maintain infrastructure-as-code for security services, guardrails, IAM, networking, and encryption.
- Integrate security into GitLab CI/CD pipelines, including SAST, IaC scanning, secrets detection, dependency and container scanning, and policy-as-code gates.
- Assess the security posture of workloads before, during, and after migration, and identify and remediate misconfigurations and vulnerabilities.
- Design secure network segmentation and connectivity between source environments and AWS.
- Implement least-privilege IAM models, identity federation, and secrets management for migrated workloads.
- Define encryption standards at rest and in transit using KMS, ACM, and TLS policy.
- Support compliance and audit requirements and produce evidence.
- Partner with migration, platform, and application teams to unblock security issues without slowing delivery.
- Contribute to incident detection and response runbooks for the AWS environment.
Technologies
- AWS
- Lambda
- CI/CD
- Cloud
- DMS
- DevSecOps
- GitLab
- IAM
- Support
- Linux
- Network
- Python
- REST
- Security
- Terraform
- VPN
- WAF
- Windows
- EC2
- Embedded
- Git
- Oracle
- OutSystems
- Snowflake
More
We are Version 1, a trusted technology and transformation partner with more than 30 years in business, supporting global brands through cloud and digital change. We are an award-winning employer and a Great Place to Work in Ireland and the UK, with a strong focus on wellbeing, career development, flexibility, and inclusion. We offer a comprehensive benefits package that includes quarterly profit share, career progression and mentorship, flexible and remote working, pension, private healthcare, life assurance, financial advice, employee discounts, wellbeing programmes, generous leave policies, educational assistance, certifications, and award schemes. This is a full-time consulting role at a mid-senior level within our information technology and services business.
last updated 34 week of 2026
Company & context
Evidence is labeled so you can tell internal community data from public sources.
Range from 18 indexed roles at this employer: $34,500 - $66,000(mid ~53667)
Context reflects data collected at crawl time.
Trust-check this listing
Verify scam risk and ghost-job signals before you apply.
Related roles
Browse more remote Security Engineer jobs, or every remote job category.
Frontend Engineer - Java & Open Source
AWS Architect
Technical Lead
Source: DevITJobs • Last updated 5h ago