This is not a governance or advisory role. Your deepest strength is the ability to own outcomes end-to-end: triaging Wiz findings by real-world exploitability, shipping policy-as-code gates that catch misconfigurations before they hit.
Cloud Security Engineer – Cloud Foundations | SEB, Solna
📜 Description
- Develop and maintain landing zones and capabilities in SEB's public cloud platforms, focusing on security and compliance.
- Lead security investigations and decisions, acting as the main contact for IT security.
- Build preventive and detective controls, including policies and automated compliance checks.
- Collaborate with SOC to create log pipelines and detections for high data volumes.
- Review architecture and threat model new platform services before production.
🛠️ Requirements
- Several years of cloud security work in GCP, AWS or Azure. The role's center of gravity is GCP, so if your background is mainly in another cloud, we expect you to want to grow into it.
- Hands-on with Infrastructure as Code, automation and CI/CD in tools such as Terraform and GitHub Actions.
- Scripting and development in PowerShell and Python.
- Identity and access management, network security, encryption and key management in the cloud.
- Log management, SIEM, detection or incident response.
- Observability tools such as Prometheus, Grafana or the cloud providers' native tooling.
- Fluent English, spoken and written.
- Offensive security, penetration testing or security assessments.
- Experience in Financial services or another regulated industry.
- Certifications in cloud or application security, such as SANS/GIAC or CCSP.
✨ Benefits
- A technical team of around twenty people where you have real influence over the platform.
- Hands-on work across three cloud platforms, not just one.
- A hybrid workplace with a balance between office and home.
- SEB staff banking and our wider benefits package.
- An office next door to Mall of Scandinavia in Solna.
Full job description
Join Cloud Foundations and help shape the secure cloud platforms that enable development across SEB. You will build guardrails, landing zones and best practices that allow our developers to move quickly while meeting the bank’s security and compliance requirements.
In this hands-on and analytical role, you will write code, build controls and solve the security challenges that come with them, working closely with the teams that use the platform. Most of the hands-on work sits in GCP, while your analysis, decisions and advice reach across all three of our clouds: AWS, Azure and GCP.
What you will be doing
-
Develop and maintain our landing zones and underlying capabilities in SEB's public cloud platforms together with the team, with GCP as your primary platform and security, compliance and control as your focus.
-
Take the lead on security questions, investigations and decisions.
-
Act as the main point of contact for IT security: towards the group security organization, our stakeholders and our sister departments within infrastructure.
-
Build preventive and detective controls: policies, guardrails and automated compliance checks used across the bank.
-
Build log pipelines and detections together with our SOC, for large data volumes and high throughput.
-
Review architecture, solve complex security problems and threat model new platform services before they reach production.
-
Advise architects and development teams on the platform, and make it easy for them to do the right thing.
-
Take part in incident response and investigations in our cloud environments.
Who you are
You are a driven, proactive and collaborative engineer who takes ownership and enjoys solving complex problems. You continuously look for better ways of working, value knowledge sharing, and contribute to an open and transparent team environment where learning and improvement are part of everyday work.
Skills and experience
-
Several years of cloud security work in GCP, AWS or Azure. The role's center of gravity is GCP, so if your background is mainly in another cloud, we expect you to want to grow into it.
-
Hands-on with Infrastructure as Code, automation and CI/CD in tools such as Terraform and GitHub Actions.
-
Scripting and development in PowerShell and Python.
-
Identity and access management, network security, encryption and key management in the cloud.
-
Log management, SIEM, detection or incident response.
-
Observability tools such as Prometheus, Grafana or the cloud providers' native tooling.
-
Fluent English, spoken and written.
Nice to have
-
Offensive security, penetration testing or security assessments.
-
Experience in Financial services or another regulated industry.
-
Certifications in cloud or application security, such as SANS/GIAC or CCSP.
What we offer
-
A technical team of around twenty people where you have real influence over the platform.
-
Hands-on work across three cloud platforms, not just one.
-
A hybrid workplace with a balance between office and home.
-
SEB staff banking and our wider benefits package.
-
An office next door to Mall of Scandinavia in Solna.
Similar jobs
Search more Cloud Engineer jobsAs a Cloud Engineer within the Cloud Tribe, you will develop and maintain services on public cloud platforms, ensuring technical governance and compliance while collaborating with a dedicated team.
As a Cloud Platform Engineer, you will own and manage Mercor's internal IT infrastructure as code, focusing on identity, cloud, and SaaS systems to support organizational growth.
Cloud Infrastructure Engineer / クラウドインフラエンジニア
As a Cloud Infrastructure Engineer, you will architect and build robust, scalable, and secure cloud infrastructure to support mission-critical financial systems at PayPay Bank.
As a Cloud and Systems Administrator, you will manage Active Directory, support Windows and Linux environments, and ensure operational continuity through effective troubleshooting and administration.
