Navan Logo

Navan

Sr. Cloud Security Engineer

Posted Yesterday
Be an Early Applicant
Easy Apply
Hybrid
London, Greater London, England
Senior level
Easy Apply
Hybrid
London, Greater London, England
Senior level
The role involves designing and maintaining security for a multi-cloud environment, including CSPM, automation, IAM, and incident response within cloud security.
The summary above was generated by AI

We are seeking a highly skilled Sr. Cloud Security Engineer to join our Security Operations and Engineering team. In this role, you will be a key player in designing, implementing, and maintaining a robust security posture across our multi-cloud environment.

While your primary expertise should lie in Google Cloud Platform (GCP) or Microsoft Azure, you will also leverage your experience in Amazon Web Services (AWS) to ensure consistent security standards across our entire infrastructure. You will be instrumental in automating security controls, conducting deep-dive architectural reviews, and managing our Cloud Security Posture Management (CSPM) lifecycle.

What You'll Do
  • Cloud Security Architecture & Design: Lead and participate in security reviews for new product features and infrastructure changes. Provide actionable recommendations to engineering teams to ensure "secure by design" principles.
  • Posture Management (CSPM): Own the end-to-end CSPM process. This includes configuring tools, monitoring for misconfigurations, prioritizing risks, and working with stakeholders to remediate security gaps across GCP, Azure, and AWS.
  • Security Automation: Utilize basic programming and scripting skills (e.g., Python, Go, or Bash) to automate repetitive security tasks, incident response playbooks, and compliance checks.
  • Infrastructure as Code (IaC) Security: Integrate security scanning into CI/CD pipelines (Terraform, Pulumi, or Bicep) to catch vulnerabilities before they reach production and also write IAC code for security related infrastructure. 
  • Identity & Access Management (IAM): Design and enforce least-privilege access models across multi-cloud environments, managing service accounts, roles, and identity federation.
  • Incident Response Support: Act as a subject matter expert during cloud-related security incidents, providing technical analysis and forensic support.
What We're Looking For
  • Deep Cloud Expertise: 5+ years of experience in cloud security, with extensive, hands-on experience in either GCP (Security Command Center, IAM, VPC Service Controls) or Azure (Microsoft Defender for Cloud, Azure Policy, Sentinel).
  • Multi-Cloud Proficiency: Strong working knowledge of AWS security services (GuardDuty, IAM, Security Hub, Config).
  • CSPM Experience: Proven track record of managing Cloud Security Posture Management tools (e.g., Wiz, Orca, Prisma Cloud, or native cloud tools) to reduce the attack surface.
  • Programming Skills: Ability to write scripts or small applications in Python, Go, or PowerShell to interact with Cloud APIs, automate workflows, and maintain security related IAC code.
  • Security Reviews: Experience performing threat modeling and security architecture reviews for complex, distributed systems.
  • Relevant certifications such as Google Professional Cloud Security Engineer, Microsoft Certified: Azure Security Engineer Associate (AZ-500), or AWS Certified Security – Specialty would be great plus 
  • Experience with container security (Kubernetes/GKE/AKS/EKS).
  • Familiarity with compliance frameworks such as PCI DSS,SOC2, ISO 27001, or NIST.
  • Excellent communication skills with the ability to translate complex security risks into business context for non-technical stakeholders.

Top Skills

Amazon Web Services
Bash
Bicep
Go
Google Cloud Platform
Guardduty
Iam
Azure
Microsoft Defender For Cloud
Pulumi
Python
Security Command Center
Terraform

Similar Jobs at Navan

6 Hours Ago
Easy Apply
Hybrid
London, Greater London, England, GBR
Easy Apply
Mid level
Mid level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Manage the implementation of the Navan travel platform for Mid-Market customers, coordinating with various stakeholders to ensure timely deployments.
Top Skills: Erp SystemsNavan Travel And Expense PlatformNetSuiteOracleSAP
9 Hours Ago
Easy Apply
Hybrid
London, Greater London, England, GBR
Easy Apply
Senior level
Senior level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
The Senior Enterprise Security Engineer will enhance Navan's security posture, focusing on threat detection, identity governance, email security management, and cross-functional collaboration with teams to align security practices with business risks.
Top Skills: AWSAzureAzure AdCrowdstrikeDefenderDemistoEdrElasticGCPIam PrinciplesMaterial SecurityOktaPhantomPingSentinelSiem PlatformsSoarSplunkXdrXsoar
9 Hours Ago
Easy Apply
Hybrid
London, Greater London, England, GBR
Easy Apply
Mid level
Mid level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Manage the sales lifecycle, develop strategies, generate leads, and close deals with companies in the UK/I territory. Achieve monthly quotas.
Top Skills: Salesforce

What you need to know about the Belfast Tech Scene

If asked to name the birthplace of the RMS Titanic, you might not say Belfast. Similarly, if asked to name Europe's leading destination for foreign direct investment in new software development, Belfast might not come to mind. Yet, both are true. The city has emerged as a tech powerhouse, recently ranked among the best in the U.K. for tech careers — especially for software developers. It also leads the U.K. with the highest percentage of software development jobs advertised.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account