AWS Cloud Security Engineer

Company: Wipro
Apply for the AWS Cloud Security Engineer
Location: Norwich
Job Description:

Overview

In this role, you will administer and optimize Wiz Cloud Security Posture Management across multi-cloud environments to strengthen posture, policy compliance, and threat detection. You’ll partner with DevOps, SRE, and security teams to embed Wiz into CI/CD and IaC workflows while enabling safe cloud operations. You’ll drive incident response support, posture improvements, and governance reporting to leadership and risk teams. This is a hands-on, platform-focused security role that shapes high-visibility cloud security in a large enterprise.

Responsibilities

  • Own day-to-day administration of the Wiz platform across all cloud environments
  • Maintain Wiz connectors, least-privilege roles, integration points, and scanning configurations
  • Ensure onboarding/offboarding of cloud accounts, subscriptions, and K8s clusters
  • Monitor platform health, ingestion coverage, API integrations, and license utilisation
  • Review, tune, and maintain security policies, controls, and baselines (e.g., CIS, NIST, ISO)
  • Validate and enhance attack path analysis, identity risk detection, and data exposure mapping
  • Prioritise findings using impact-based and exploit-path-based logic
  • Partner with Cloud Platform teams to ensure guardrails align with Wiz detections
  • Work with DevOps/SRE teams to embed Wiz in CI/CD pipelines for IaC scanning
  • Run onboarding sessions for teams on using Wiz Issues, Projects, and Policy-as-Code
  • Validate false positives/negatives and fine-tune policy gates for Terraform, ARM/Bicep, and CloudFormation
  • Support Cloud Security, SOC, and IR teams during investigations involving publicly exposed, exploitable, or high-risk cloud assets
  • Provide expert analysis on Wiz findings and attack paths; propose remediation and compensating controls
  • Contribute to post-incident reviews, root-cause analysis, and long-term posture improvements
  • Maintain integrations with Jira/ADO, SIEM/SOAR, Slack/Teams, and CMDB/GRC
  • Automate workflows for enrichment, prioritisation, ticketing, and reporting
  • Partner with Engineering to build auto-remediation playbooks for safe-to-fix classes (e.g., public S3, permissive IAM)
  • Produce monthly security posture reports for leadership and Risk/Compliance teams
  • Track KPIs (coverage, MTTR, SLA adherence, risk trends)
  • Support external and internal audit requests using Wiz’s evidence and compliance modules
  • Manage exceptions/waivers and ensure they are reviewed and retired on schedule

Key requirements

  • Strong understanding of AWS, Azure, and GCP security controls and architecture
  • Hands-on experience with cloud IAM, network security, logging/monitoring, and workload security
  • Familiarity with Kubernetes security and container image scanning
  • Experience operating cloud security platforms (Wiz preferred; alternatives: Prisma, Lacework, Defender for Cloud)
  • Working knowledge of Infrastructure-as-Code (Terraform strongly preferred)
  • Understanding of identity and entitlements management (CIEM)
  • Ability to analyse cloud attack paths and map misconfigurations to real exploitable risk
  • Collaborative cross-team partnership
  • Analytical thinking for risk prioritization
  • Effective communication for incident reviews and governance reporting
  • Wiz Cloud Security Posture Management
  • Cloud security engineering across AWS/Azure/GCP
  • CIEM and identity governance

Posted: September 14th, 2026