Senior Cloud Security Engineer
Summary
Design and implement Policy-as-Code frameworks and cloud security guardrails using OPA, Azure Policy, and Terraform to automate compliance and secure CI/CD pipelines for enterprise cloud environments.
Project info:
We are seeking a highly experienced, hands-on Senior Cloud Security Engineer to join a strategic Policy-as-Code (PaC) initiative focused on building enterprise cloud security guardrails, compliance automation, and secure cloud deployment standards.
We require seasoned professionals who can contribute immediately, work independently, and help establish the foundational architecture, automation, and governance capabilities that will support large-scale cloud modernization efforts.
The ideal candidate possesses deep expertise across Policy as Code, Infrastructure as Code (IaC), cloud security automation, CI/CD integration, and enterprise cloud platforms.
Responsibilities:
Design, implement, and operationalize Policy-as-Code frameworks across enterprise cloud environments.
Develop and maintain security guardrails using technologies such as: Open Policy Agent (OPA), Azure Policy, Policy validation frameworks, Compliance-as-Code
Translate security requirements, control frameworks, and regulatory requirements into machine-readable policies.
Integrate policy enforcement into CI/CD pipelines to validate infrastructure before deployment.
Develop reusable Infrastructure-as-Code modules and deployment templates.
Implement cloud security controls within: Terraform, Bicep, ARM Templates (where applicable)
Establish automated compliance validation and continuous assurance capabilities.
Partner with Cloud Engineering, Platform Engineering, DevOps, and Security teams to embed security controls into cloud delivery processes.
Develop automation and scripting solutions to improve deployment consistency and compliance enforcement.
Contribute to enterprise cloud governance, platform standardization, and security architecture initiatives.
Support migration and modernization of CI/CD processes across GitHub and Azure DevOps environments.
Create technical documentation, standards, patterns, and implementation guidance.
Job requirements:
8+ years of experience in Cloud Engineering, Cloud Security, DevSecOps, Platform Engineering, or related disciplines.
Demonstrated experience designing and implementing Policy-as-Code solutions in enterprise environments.
Advanced knowledge of: Terraform, Bicep, Infrastructure as Code (IaC), Policy as Code (PaC)
Strong experience with cloud platforms, including: Microsoft Azure, Multi-cloud experience preferred (AWS and/or GCP)
Hands-on experience with: Azure Policy, Open Policy Agent (OPA), Compliance automation, Security guardrails
Experience integrating security controls into: GitHub Enterprise, GitHub Actions, Azure DevOps, CI/CD pipelines
Strong scripting and automation skills using one or more: PowerShell, Python, Bash
Experience implementing security and compliance frameworks such as: SOC 2, NIS2, CIS Benchmarks, NIST
Preferred Qualifications
Experience building enterprise cloud landing zones and platform engineering solutions.
Experience creating and maintaining reusable Terraform module libraries.
Knowledge of cloud security posture management (CSPM) and continuous compliance monitoring.
Familiarity with Zero Trust architecture and cloud security best practices.
Experience supporting large-scale cloud transformation programs.
Ideal Candidate Profile
Ready-to-go senior consultant with minimal onboarding required.
Strong communicator who can work across security, engineering, and operations teams.
Self-directed and capable of driving complex technical workstreams independently.
Comfortable operating in fast-moving environments with multiple concurrent initiatives.
Able to translate security requirements into practical engineering solutions.
Proven track record delivering enterprise-scale cloud automation, governance, and security outcomes.
Must possess a legal work permit in Poland
Benefits:
General benefits - depends on the form of employment
Hybrid work model or remote work
Attractively located office with collaboration spaces
Onsite parking space for employees
Referral program with financial bonus
Life Insurance
Budget for development (including language courses and others), clear career path with the possibility to gain experience in international environment
Access to internal Learning Platform with multiple trainings oriented for professional growth
Lifestyle benefits:
Access to MyBenefit platform (Multisport included)
Team Building activities
Charity initiatives
Working environment promoting diversity and inclusion
Health benefits:
Private medical care - Platinum Package