← Back to Directory

Cloud Security Engineer – Manchester – National Security West

Clearance Level
SC
Salary Range
Competitive
Employment Type
FULL TIME
Work Style
onsite

// Role Summary

Join BAE Systems Digital Intelligence as a Cloud Security Engineer in Manchester, supporting and developing innovative Security Operations Centre (SOC) capabilities. This role is crucial for unlocking digital advantage in demanding environments.

// Key Responsibilities

  • Design, build, and maintain secure, cloud-native solutions for SOC capabilities.
  • Develop and deploy cloud infrastructure using Infrastructure as Code (IaC).
  • Implement robust security monitoring, alerting, and automated response systems.
  • Integrate cloud platforms with security tooling, including SIEM solutions.
  • Promote AWS security best practices and support incident response activities.
  • Leverage AI and automation to enhance security operations and efficiency.

// Role Specification

Cloud Security Engineer

BAE Systems Digital Intelligence is seeking talented and versatile Cloud Security Engineers to join our Engineering team in Manchester. You will be instrumental in supporting and developing our innovative Security Operations Centre (SOC) capabilities, working collaboratively to collect, connect, and understand complex data for governments, nation states, armed forces, and commercial businesses.

What We're Looking For:

  • Proficiency in a range of AWS services and a commitment to staying current with the latest releases and best practices.
  • Experience with AWS security services and implementing cloud security best practices, including identity management, monitoring, threat detection, and data protection.
  • Understanding of Security Operations, encompassing monitoring, alerting, incident response, threat detection, and SIEM platforms (e.g., Microsoft Sentinel, Splunk).
  • Strong grasp of Identity and Access Management (IAM), least-privilege access principles, and privileged access controls.
  • Knowledge of DevSecOps practices and integrating security controls into CI/CD pipelines.
  • Experience using Infrastructure as Code tools like Terraform, CloudFormation, or AWS CDK.
  • Familiarity with monitoring and observability tools such as CloudWatch, Grafana, or Prometheus.
  • Experience with container orchestration platforms (e.g., Kubernetes, Amazon ECS, OpenShift) and container security best practices.
  • Understanding of networking principles and their application to software-defined networking in cloud environments.
  • Proficiency in scripting (e.g., Python, Bash, Go) and excellent troubleshooting, automation, and problem-solving skills.
  • A collaborative mindset with a passion for learning new technologies and cyber security trends.
  • AWS certifications are desirable but not essential; training and certification opportunities will be provided.

What You Could Be Doing:

  • Designing, building, and maintaining secure, cloud-native solutions to support our SOC capabilities.
  • Developing and deploying cloud infrastructure using Infrastructure as Code (Terraform, CloudFormation, or AWS CDK).
  • Designing and implementing secure AWS architectures aligned with security and compliance requirements.
  • Building and maintaining security monitoring, alerting, and automated response capabilities across cloud environments.
  • Integrating cloud platforms with security tooling, including SIEM solutions like Microsoft Sentinel and Splunk.
  • Leveraging AWS security services and promoting security best practices across engineering and development teams.
  • Supporting incident response investigations, threat hunting activities, and security improvement initiatives.
  • Developing reusable implementation patterns, standards, and automation to enhance consistency and security.
  • Managing software configuration, source code repositories, and CI/CD pipelines in line with DevSecOps principles.
  • Working closely with internal and external stakeholders to deliver secure and innovative cloud solutions.
  • Identifying opportunities to leverage AI and automation to improve security operations and operational efficiency.
  • For Senior Engineers: Leading technical delivery, mentoring engineers, and driving engineering best practices.

How We Support You:

We value work-life balance and offer 25 days of holiday, flexible working around core hours, and the option to buy/sell/carry over holiday. Our flexible benefits package includes private medical and dental insurance, a competitive pension scheme, cycle to work scheme, and more. You'll have a dedicated Career Manager for professional development and access to excellent training courses to help you upskill.

Security Clearance:

Successful candidates will be required to undergo Government SC clearance prior to starting and obtain Developed Vetting once employed. All applicants must achieve Baseline Personnel Security Standard (BPSS) as a minimum. Due to the nature of the work, only those with the permanent and unrestricted right to live and work in the UK will be considered.

Benefits:

In addition to a competitive pension scheme, BAE Systems offers an employee share plan, an extensive range of flexible discounted health, wellbeing, and lifestyle benefits, including a green care scheme, private health plans, and shopping discounts. You may also be eligible for an annual incentive.

Why BAE Systems?

Join an inclusive culture that values diversity, rewards integrity and merit, and empowers you to fulfil your potential. We welcome candidates from all backgrounds and are committed to making our recruitment processes inclusive. Please speak to your recruiter about potential reasonable adjustments if you have a disability or health condition.

Hybrid Working:

We embrace Hybrid Working, allowing for flexibility in when and where you work to better balance work and personal life and enhance well-being. Diversity and inclusion are integral to our success, fostering a culture where varied perspectives lead to excellence.