Cloud Security Engineer
SKILLS
FULL DESCRIPTION
Cloud Security Engineer at [Employer hidden — sign up to reveal] – London (Hybrid)
500M+ downloads. 80M+ monthly users. Backed by $200M investment. [Employer hidden — sign up to reveal] is the world's #1 health & fitness app, now building the next generation of digital health.
The Scale of the Challenge
At [Employer hidden — sign up to reveal] we don't just have users, we have a global community. We are the #1 women's health app. When millions trust you with their most personal health data, security isn't a feature — it's a foundation. We are looking for a Cloud Security Engineer to join Velocity, our Internal Platform team. Your mission is to ensure that every system, pipeline, and tool our engineers rely on is secure by default.
What You Will Do
- Own and continuously strengthen [Employer hidden — sign up to reveal]'s AWS security posture using tools like GuardDuty, Inspector, Security Hub, and SSM Patch Manager.
- Harden container image security end-to-end — patch vulnerabilities automatically with Copacetic, sign and verify images with Cosign/Sigstore, and enforce policies at admission with Kyverno.
- Manage CI/CD security across the organisation using policy-as-code tooling (Kyverno, Checkov).
- Build visibility into security performance by measuring and visualising actionable metrics using tools like Databricks Dashboards or Looker.
- Support the infrastructure for industry-leading privacy features, such as our TIME-recognised 'Anonymous Mode'.
- Shape [Employer hidden — sign up to reveal]'s broader security culture through proactive engagement, documentation, and cross-team collaboration.
What You Bring
- 7+ years in Infrastructure Security, Cloud Security, or Security Engineering roles.
- Deep expertise in AWS security services and best practices.
- Proficient in Terraform and Terragrunt — you run everything as code.
- Strong knowledge of Kubernetes security, image hardening, and admission control.
- Solid understanding of identity management principles — SSO, OAuth, JWT, SAML.
- Comfortable scripting in Python, Bash, or similar to automate security workflows.
- Understanding of modern network security principles.
- Experience building Secure Software Development Lifecycle phases into engineering workflows.
Why Join [Employer hidden — sign up to reveal]?
- High Impact: Your work directly protects the health data of millions.
- Autonomy: We hire experts and empower you to deliver.
- Cutting-Edge Stack: Work with modern security tooling (GuardDuty, Kyverno, Cosign, Elastic Cloud Security) deployed on real production infrastructure at massive scale.
What You'll Get
- Competitive salary and annual reviews
- Opportunity to participate in [Employer hidden — sign up to reveal]'s performance incentive scheme
- Paid holiday, sick leave, and female health leave
- Enhanced parental leave and pay
- Accelerated professional growth
- Hybrid model with 3 days per week in the office
- 5-week fully paid sabbatical at 5-year Floversary
- [Employer hidden — sign up to reveal] Premium for friends & family, plus more health, pension and wellbeing perks
Diversity, Equity and Inclusion
At [Employer hidden — sign up to reveal], hiring is based on merit. We are proud to be an equal opportunity employer. Read our privacy notice for job applicants.