Cyber Security Analyst, Cloud
London, United Kingdom
Heathrow
Heathrow is the UK’s biggest airport, located 14 miles west of Central London and serving hundreds of destinations across the world.The Cyber Security Analyst specialising in Cloud Security will be responsible for safeguarding our cloud infrastructure, applications and services. They will work as part of the Cyber Security Solutions Team ensuring security is integrated into the design, deployment, and operations of cloud-based systems. This role will involve identifying and mitigating cloud-related security risks, ensuring compliance with industry standards, and driving continuous improvement in cloud security practices. They will help to ensure that the organisation's cloud environments are designed, managed, and configured according to the highest Cyber Security principles and that Cloud environments are configured to comply with industry good practice, standards and regulatory requirements. The individual will work closely with cloud specialists across the organisation to provide technical expertise, validate cloud security configurations, and support the overall Cyber Security posture.
- Cloud Security Strategy and Design: Help develop and implement cloud security frameworks, ensuring that security best practices are integrated into all aspects of cloud infrastructure and services.
- Cloud Security Operations: Ensure appropriate monitoring, detection, and response to security threats and vulnerabilities within cloud environments is embedded from the outset. Conduct risk assessments and security audits to identify areas of improvement and ensure compliance with regulatory requirements.
- Incident Response & Forensics: Support incident response efforts in cloud environments, including identifying and investigating security incidents and breaches. Provide technical input and support to root cause analysis and recommend corrective actions.
- Automation & Optimisation: Automate security controls, monitoring, and response processes to improve operational efficiency and reduce risk in cloud environments.
- Collaboration & Communication: Work closely with development teams, DevOps, and other stakeholders to implement security controls in cloud infrastructure. Provide clear and concise communication to both technical and non-technical stakeholders regarding security risks, incidents, and resolutions.
- Compliance & Governance: Ensure adherence to regulatory requirements and industry standards within cloud environments. Assist with audits and ensure security governance is in place.
- Continuous Improvement: Stay up-to-date with emerging cloud security trends and vulnerabilities. Continuously evaluate and enhance security practices to keep up with evolving cloud technologies and threats.
- Strong experience of hands-on technical experience in Cloud security engineering, with a proven track record of securing cloud environments.
- Solid experience with cloud architecture, security protocols, and secure cloud configurations.
- Proven track record of providing Cyber Security guidance on cloud application design, implementation, and ongoing management.
- Experience in ensuring compliance with industry standards and regulations related to cloud security (e.g., NIST, ISO 27001, PCI-DSS, GDPR).
- Experience working with cross-functional teams and collaborating with development engineers, Cyber Security specialists, and other internal stakeholders to ensure cloud security.
- Deep knowledge of cloud platforms and services (Azure, Google Cloud).
- Experience of security Cloud platforms including Salesforce.
- Expertise in cloud security tools and technologies (e.g., Shield, Azure Security, SCCP, Wiz, Guard).
- Strong understanding of web application and cloud firewalls, encryption, identity and API security.
- Experience with automation tools (e.g., Terraform, Ansible, CloudFormation) for securing cloud infrastructure.
Ideally, you’ll have:
- Experience with network security in cloud environments (e.g., AWS, Azure) and hybrid network configurations.
- Experience with DevSecOps practices, secure coding, and cloud-native application security.
- Familiarity with containerisation technologies (e.g., Docker, Kubernetes) and their security implications.
There’s something so special about working at the world’s most iconic airport. Its sights. Its sounds. Its constant air of excitement. Heathrow is an amazing backdrop to a career filled with unique opportunities.
Every day, you’ll discover a world full of fresh possibilities and end the day buzzing with stories to tell, as you encounter people from all cultures, nationalities and experiences. A world full of pride for what we do and no end of exciting career prospects to explore.
It brings out the best in all of us. And inspires everyone to deliver on our ambitious plans. Together, we’re working to welcome millions more passengers while ensuring aviation can continue to be a force for good by leading global efforts in sustainability.
Join us on that journey and we'll help you achieve your ambitions too. Supporting you to learn, encouraging you to be yourself, backing you to achieve more than you might ever have imagined. Because there’s no place like Heathrow.
Our rewards
We offer competitive salaries and excellent benefits that will support you now and in the future. As well as performance-based annual bonuses and our longer-term Share in Success Bonus plans, we also offer generous annual leave allowances and market-leading pensions. With family friendly policies, access to private health insurance and a wide range of wellbeing tools, we’ll support you to be at your best inside and outside work. And of course, we’ll provide varied learning and development opportunities too. Here you’ll find everything you need for a fulfilling career journey that can take you in exciting directions.
Working Location
Our Hybrid working approach offers the opportunity for colleagues in some roles to work from home for an average of two days a week, providing the flexibility to work in an agile way whilst ensuring we deliver for the operational needs of Heathrow. Working arrangements vary from team to team and will be confirmed during the recruitment process. You’ll need to be based in the UK and within a commutable distance to Heathrow.
Sustainable Travel to work
Heathrow’s Sustainable Travel Guide sets out easy and sustainable travel options that everyone can access.
Equal Opportunities
As an equal opportunities employer, we encourage applications from all. We believe that diverse talent makes us stronger – not least because we welcome passengers from all corners of the globe, every single day. Heathrow is an accessible place to work. With five diversity networks, we champion inclusivity and celebrate individuality.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Ansible APIs Application security Audits Automation AWS Azure Cloud Compliance DevOps DevSecOps Docker Encryption Firewalls Forensics GCP GDPR Governance Incident response ISO 27001 Kubernetes Monitoring Network security NIST Risk assessment Security strategy Strategy Terraform Vulnerabilities
Perks/benefits: Career development Equity / stock options Health care Salary bonus
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.