Tricentis logo

Senior Cloud Security Engineer

Tricentis

Praha, Prague, Czech RepublicFull-timeNo compensation foundPosted 8mo agoVerified open 5 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Praha, Prague, Czech Republic
Schedule
Full-time
Work Authorization
Not specified

Job overview

Tricentis is hiring a Senior Cloud Security Engineer. The Senior Cloud Security Engineer designs, implements, and maintains cloud security solutions across AWS, Azure, and GCP. This role collaborates with Product Security, DevOps, Infrastructure Engineers, Cloud Infrastructure, and SRE teams to ensure cloud environments meet industry best practices through secure design patterns. The ideal candidate possesses deep expertise in cloud security, automation, and a passion for emerging threats and technologies.

Key focus areas include Design and implement cloud security controls and best practices across AWS, Azure, and GCP, Engineer and maintain cloud security solutions to prevent and protect against threats, and Architect and deploy security solutions including WAF, DDoS protection, and identity management.

Important skills include Cloud Security Solutions Design, Cloud Security Solutions Implementation, Cloud Security Solutions Maintenance, AWS, Azure, and GCP. Preferred (not required): Security Orchestration Platforms, Custom Security Tooling, HashiCorp Vault, and OPA.

Skills & qualifications

RequiredNice to have

Skills

Cloud Security Solutions DesignCloud Security Solutions ImplementationCloud Security Solutions MaintenanceAWSAzureGCPFirewallsDDoS ProtectionIdentity ManagementCloud-Native Security AutomationContainerized Workloads SecurityKubernetes Clusters SecurityCloud Security PrinciplesCloud Security Best PracticesTerraformAWS CloudFormationARM TemplatesPythonPowerShellBashDockerPod Security StandardsIAMSAMLOAuth 2.0OpenID ConnectVulnerability AssessmentPenetration TestingThreat ModelingRisk Assessment MethodologiesSecurity Orchestration PlatformsCustom Security ToolingHashiCorp VaultOPAKyvernoAI in SecuritySelf-AwarenessFinishing TasksCreating MomentumEfficiencyChallenging Status QuoCustomer ServiceProblem SolvingCollaborationGoal Setting

Qualifications

Experience in Cloud SecurityExperience in CybersecurityExperience With AWS Security ServicesExperience With Azure Security ServicesExperience With GCP Security ServicesNot Listed on Government Restricted Party ListsEmployment Not Violating Sanctions or Export Control RegulationsAWS Security Specialty CertificationAzure Security Engineer CertificationGCP Professional Cloud Security Engineer CertificationExperience With Multiple Cloud Platforms

Full job description

As a Senior Cloud Security Engineer, you will be responsible for designing, implementing, and maintaining cloud security solutions across multiple cloud platforms (AWS, Azure, GCP). You will be a part of the Product Security and working with the DevOps, Infrastructure Engineers, Cloud Infrastructure, and SRE teams to ensure our cloud environments meet industry best practices by implementing secure by design patterns. The ideal candidate will have deep expertise in cloud security, automation, and a passion for staying current with emerging threats and technologies.

Key Responsibilities

  • Design and implement cloud security controls and best practices across AWS, Azure, and GCP
  • Engineer and maintain cloud security solutions to prevent and protect against threats
  • Architect and deploy security solutions including WAF, DDoS protection, and identity management
  • Leverage automation to audit and maintain cloud and cloud-native security
  • Secure containerized workloads and Kubernetes clusters using best practices and industry-standard tools Required Qualifications
  • Experience in cloud security, cybersecurity, or related field
  • Hands-on experience with AWS, Azure, or GCP security services
  • Understanding of cloud security principles and best practices
  • Experience with infrastructure-as-code tools (Terraform, CloudFormation, ARM templates)
  • Proficiency in scripting languages (Python, PowerShell, Bash)
  • Experience with container security (Docker, Kubernetes, Pod Security Standards)
  • Knowledge of identity and access management (IAM, SAML, OAuth, OIDC)
  • Experience with vulnerability assessment and penetration testing
  • Understanding of threat modeling and risk assessment methodologies Preferred Qualifications
  • Cloud security certifications (AWS Security Specialty, Azure Security Engineer, GCP Professional Cloud Security Engineer)
  • Experience with multiple cloud platforms (AWS, Azure, GCP)
  • Experience with security automation and orchestration platforms
  • Experience with creating custom security tooling to automate tasks
  • Experience with secrets management solutions (HashiCorp Vault, AWS Secrets Manager)
  • Experience of policy-as-code engines (OPA, Kyverno)
  • Knowledge of AI and its application in security

Tricentis Core Values:

Knowing what we need to achieve and how to achieve it is important. Tricentis core values define our ways of working and the behaviours we model that create an enjoyable and successful Tricentis life.

  • Demonstrate Self-Awareness: Own your strengths and limitations.
  • Finish What We Start: Do what we say we are going to do.
  • Move Fast: Create momentum and efficiency.
  • Run Towards Change: Challenge the status quo.
  • Serve Our Customers & Communities: Create a positive experience with each interaction.
  • Solve Problems Together: We win or lose as one team.
  • Think Big & Believe: Set extraordinary goals and believe you can achieve them.

Tricentis is proud to be an equal opportunity workplace. Qualified applicants will receive consideration for employment without regard to race, color, ethnicity, gender, religious affiliation, age, sexual orientation, socioeconomic status, or physical and mental disability and other statuses protected by law.

Global Sanctions Compliance

We comply with all applicable global sanctions and export control laws. Candidates must not be listed on any government restricted party lists (including OFAC SDN List and U.S. Commerce Department restricted lists) and must certify that their employment would not violate any sanctions or export control regulations. Candidates must notify us of any changes to their status during the application process or subsequent employment.

Tricentis is proud to be an equal opportunity workplace. Qualified applicants will receive consideration for employment without regard to race, color, ethnicity, gender, religious affiliation, age, sexual orientation, socioeconomic status, or physical and mental disability and other statuses protected by law.

Global Sanctions Compliance

We comply with all applicable global sanctions and export control laws. Candidates must not be listed on any government restricted party lists (including OFAC SDN List and U.S. Commerce Department restricted lists) and must certify that their employment would not violate any sanctions or export control regulations. Candidates must notify us of any changes to their status during the application process or subsequent employment.

You've read the whole posting — now see how you match it.