Cloud Security Engineer (Penetration Testing & TEE Focus)
Basingstoke, England, United Kingdom
InfoSum
The InfoSum Data Clean Room powers fast, easy, and effective first-party data collaboration that maximizes marketing performance in a privacy-first world.We are seeking a skilled and proactive Cloud Security Engineer to conduct white-hat security testing on our SaaS-based application, which is deployed across multiple cloud providers. You will be responsible for identifying vulnerabilities, assessing risks, and helping us implement secure practices, including the integration of Trusted Execution Environments (TEEs).
Key Responsibilities:
● Perform white-hat (ethical) penetration testing on our cloud-hosted SaaS appliance.
● Identify and report vulnerabilities across application layers, APIs, and infrastructure.
● Collaborate with development teams (Go and Node.js) to remediate security issues.
● Evaluate and Test TEE solutions (e.g., AWS Nitro Enclaves, Azure Confidential Computing and Google Confidential Computing.).
● Conduct threat modeling and risk assessments.
● Develop and maintain security testing tools and automation scripts.
● Stay current with emerging security threats, vulnerabilities, and mitigation techniques.
Requirements
● Proven experience in penetration testing and ethical hacking.
● Strong understanding of cloud security (AWS, Azure, GCP).
● Familiarity with Go and Node.js application security.
● Experience with TEE technologies or confidential computing.
● Knowledge of OWASP Top 10, CVEs, and secure coding practices.
● Proficiency with tools like Burp Suite, Metasploit, Nmap, Wireshark, etc.
● Certifications such as OSCP, CEH, or GIAC are a plus.
Nice to Have:
● Experience with Kubernetes and container security.
● Familiarity with CI/CD security integration.
● Familiarity with Snowflake and Databricks
● Red Team experience
Benefits
As well as working as part of an amazing, engaging and collaborative team, we offer our staff a wide range of benefits to motivate them to be the best they can be! Here’s an overview of everything we offer right now!
You will receive:
- A competitive salary based on your experience and ability to perform in role
- 25 days annual leave (excluding bank holidays)
- 8% pension contribution
- Private health care via Vitality
- Fantastic corporate discounts and mental wellbeing support via Perkbox, including a top of line EAP.
- Salary sacrifice schemes
We have fantastic offices in Basingstoke and London complete with a fully stocked fridge / snacks and catered lunches 2 times a week.
We also reward our teams with monthly socials, half day Fridays during the summer months of July and August, 3 extra days off during the Christmas holidays and a culture built on recognition, collaboration and success.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Application security Automation AWS Azure Burp Suite CEH CI/CD Cloud Databricks Ethical hacking GCP GIAC Kubernetes Metasploit Nmap Node.js OSCP OWASP Pentesting Red team Risk assessment SaaS Snowflake Vulnerabilities
Perks/benefits: Competitive pay Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.