- Company Name
- Booking.com
- Job Title
- Security Engineer II - Cloud Security
- Job Description
-
**Job Title**
Security Engineer II – Cloud Security
**Role Summary**
Design, implement, and maintain cloud‑centric security controls for large production environments on AWS, GCP, and Azure. Deliver threat detection, incident response, and automation of remediation. Collaborate with platform, product, and compliance teams to embed security into architecture and DevSecOps pipelines.
**Expectations**
• Apply advanced security engineering to protect user data and infrastructure.
• Balance security rigor with business need and regulatory mandates.
• Validate controls through pentests, audits, and continuous monitoring.
• Serve on on‑call rotation and provide timely incident resolution.
**Key Responsibilities**
- Architect and evolve cloud security for multi‑cloud environments.
- Configure and maintain security monitoring tools and incident‑response workflows.
- Ensure controls meet NIST, PCI DSS, GDPR, SOX, and contractual requirements.
- Conduct threat and risk assessments, produce mitigation plans, and implement IaC security.
- Review cloud‑based applications, services, and CI/CD pipelines for security gaps.
- Mentor teams on security best practices and drive adoption of secure coding.
- Communicate risks and recommendations to technical and non‑technical stakeholders.
- Participate in the security on‑call rotation and incident response.
**Required Skills**
- Deep knowledge of cloud security and Linux system hardening.
- Experience with AWS, GCP, Azure security services and configurations.
- Container security expertise (Docker, Kubernetes) and RBAC, image scanning, runtime protection.
- Proficiency in IaC tools (Terraform, CloudFormation).
- Scripting/automation in Bash, Python, Go, or similar.
- Familiarity with DevSecOps, CI/CD pipelines, and automated vulnerability scanning.
- Strong communication, documentation, and stakeholder‑management skills.
- Ability to conduct security reviews, audits, pentests, and produce clear evidence.
**Required Education & Certifications**
- Bachelor’s degree or equivalent in Computer Science, Information Technology, or Cybersecurity (preferred).
- Relevant certifications are a plus: AWS Security Specialty, GCP Professional Cloud Security Engineer, CompTIA Security+, CISSP, or similar.
Manchester, United kingdom
Hybrid
29-01-2026