Senior Cloud Security Engineer - AI Resilience & Security Enhancements (Contract)
Form3 · 100% Remote (Europe*)
What this role requires
2 requirements, read out of the advert rather than guessed from the job title:
Also mentioned, not required: RBAC, container image scanning, vulnerability remediation, English (B2). Worth having, but their absence is not what gets a CV filtered out.
See how often each of these is required across open security roles in Europe.
Free, no card. Tells you which of them your CV evidences and which it only implies.
Job description
THE PROJECT 📝
We're looking for an experienced Senior Cloud Security Engineer to join Form3 on a contract basis to deliver a strategic programme of security enhancements across our cloud-native payments platform.
Focusing on improving cloud security, operational resilience and governance across our engineering ecosystem, you will work closely with our Platform Engineering and Security teams to design and implement practical security improvements that enhance how we build, deploy and operate critical payment infrastructure.
You'll play a key role in strengthening areas such as cloud platform security, software supply chain security, identity and access management, AI governance, cryptographic controls and automated security assurance, ensuring solutions are scalable, production-ready and aligned with regulatory expectations.
Key responsibilities
Assess the current cloud security posture across Form3 environments, identifying risks, control gaps and opportunities for improvement.
Read the full description (79 more sections)Show less
Design and implement scalable cloud security controls that improve the resilience and security of our cloud-native platform.
Enhance perimeter security controls across cloud infrastructure.
Strengthen CI/CD pipeline security through secure build processes, automated security testing, deployment governance and artefact integrity.
Improve production access security, including RBAC, least-privilege implementation, deployment tooling and operational processes.
Enhance software supply chain security through dependency management, container image scanning, provenance, signing and vulnerability remediation.
Contribute to the secure adoption and governance of AI-enabled engineering capabilities, including controls for data protection, auditability and operational resilience.
Provide technical leadership and guidance on cloud security architecture and secure engineering practices.
Produce high-quality technical documentation, including solution designs, implementation plans, operational procedures and security evidence.
Collaborate closely with engineering, platform and security teams to deliver maintainable, production-ready security improvements.
Ensure all deliverables align with operational resilience requirements, regulatory obligations and internal security standards.
Deliver changes using structured, low-risk change management practices while maintaining service availability.
WE’RE LOOKING FOR 🔍
Essential
Extensive experience designing and implementing cloud security solutions within large-scale cloud-native environments.
Strong hands-on experience securing public cloud platforms (AWS preferred).
Expertise in cloud security architecture, identity and access management, workload protection and infrastructure security.
Experience securing CI/CD pipelines and modern software delivery practices.
Strong understanding of software supply chain security, including dependency management, artefact signing, provenance and vulnerability management.
Experience implementing least-privilege access models and RBAC.
Knowledge of security monitoring, risk assessment and security governance.
Experience working within highly regulated or business-critical production environments.
Excellent stakeholder management and communication skills, with the ability to influence engineering teams.
Strong technical documentation and design skills.
Desirable
Experience implementing security controls for AI or machine learning platforms.
Knowledge of cryptographic controls and key management.
Experience with Infrastructure as Code and policy-as-code tooling.
Familiarity with payment platforms or financial services environments.
Understanding of operational resilience frameworks and regulatory requirements affecting critical financial infrastructure.
Relevant cloud or security certifications (AWS Security Specialty, CISSP, CCSP or similar).
TECH STACK ⚙️
AWS – Cloud infrastructure and security controls.
Kubernetes – Container orchestration and workload security.
Terraform – Infrastructure as Code and security automation.
CI/CD tooling – Secure software delivery, build security and deployment governance.
Container security tooling – Image scanning, vulnerability management and runtime protection.
Identity & Access Management (IAM) – Least privilege, RBAC and privileged access controls.
Software Supply Chain Security – Dependency scanning, artefact signing, provenance and integrity controls.
Security monitoring & observability platforms – Detection, auditability and operational visibility.
AI governance and security controls – Supporting secure adoption of AI-enabled engineering capabilities.
INTERVIEW PROCESS ✍️
Stage 1: Screening Call with Talent Team
Stage 2: Kubernetes & Linux Interview
Stage 3: Cloud Security & Engineering Best Practices interview
We always aim to stick to the above process, however there may be occasions when an additional interview stage is needed for us to be sure we’re hiring the right fit for the role.
HIRING LOCATIONS📍
Here are the locations that we are looking to engage with contractors from. Please note, we are not looking to engage with contractors outside of these locations.
Austria
Bulgaria
Croatia
Cyprus
Estonia
Greece
Hungary
Italy
Latvia
Lithuania
Malta
Romania
Slovakia
Slovenia
All contractors start their first day in our office to collect the equipment needed to work remotely.
ABOUT FORM3 💭
Revolutionising the world of payments with our cloud-native, multi-cloud platform. For more information about Form3, check out the following pages:
What we do | Life at Form3 | P ayments Cannot Fail Series | .Tech Podcast
OUR DEI&B COMMITMENT
We hire talented people from a variety of backgrounds and experiences and are committed to a work environment based on diversity, open-mindedness and curiosity. We’re united by our company values (we even created them together!) and we celebrate our unique differences.
Our employee lifecycle processes are designed to embrace equal opportunity and prevent discrimination against our people regardless of personal characteristics. It is our strong belief that the more inclusive and belonging we are as a business, the better our work will be.
As an inclusive employer, we guarantee to interview all neurodiverse and physically disabled applicants who meet the minimum criteria for this role. We also encourage candidates to notify us of any reasonable adjustments that may be required during the recruitment process. This includes providing job adverts in alternative, accessible formats or adjustments required at interview stage.
If you consider yourself to be neurodiverse or physically disabled under the UN definition of disability and would like to be considered under this scheme and/or require any reasonable adjustments please let us know by sending an email to clearly stating your consent for us to process this data.
For more information please refer to our Recruitment Data Policy .
Find more English Speaking Jobs in United Kingdom on Arbeitnow
You will apply. Then you will hear nothing.
And no one will tell you what was wrong. See it before you send: your ATS score, every weak line, and the fix for each.
- 1
Drop in your CV
One PDF, thirty seconds. No card.
- 2
See what is wrong with it
Every weak passage, quoted from your own CV, with the line to replace it.
- 3
Apply where you fit
Every European role ranked against what your CV actually says.
What's actually stopping you?
- I apply and hear nothing backStart with the ATS scan — see what a filter does to your CV before a human sees it.Start here →
- I can't tell which roles I'd getStart with the match scores — every listing here ranked against what your CV actually says.Start here →
- Just browsing for nowKeep looking. Nothing to sign up for.
- Free, no card
- Your CV file is deleted after parsing
- Refreshed every 6 hours