Platform Security Engineer
Carbon3.ai United Kingdom
Technology, Information and Internet · 11-50 employees
About the role
The Platform Security Engineer will design and implement security controls across cloud infrastructure, Kubernetes environments, and CI/CD pipelines. They are responsible for vulnerability management, threat detection, and automating security workflows to ensure a robust security posture.
What they look for
Requirements
Candidates must have extensive experience in cloud security, Kubernetes, and DevSecOps practices. Strong scripting skills in Python or Bash and familiarity with security assessment methodologies are essential for this role.
Full description
We are seeking a Platform Security Engineer to design, implement, and continuously improve security controls across our cloud infrastructure, applications, and development lifecycle. This role focuses on protecting Kubernetes-based and cloud-native environments, strengthening security posture, identifying and mitigating risks, and enabling secure software delivery practices.
You will work closely with engineering, platform, and operations teams to integrate security into cloud infrastructure, CI/CD pipelines, containerized workloads, and AI/ML platforms. The successful candidate will combine hands-on technical expertise with a proactive approach to threat detection, vulnerability management, and security automation.
Key Responsibilities:
Cloud & Infrastructure Security:
- Design, implement, and maintain security controls for Kubernetes, cloud infrastructure, and workloads.
- Develop and enforce security standards, policies, and hardening baselines for cloud and on-premises environments.
- Review infrastructure architectures and perform security assessments to identify risks and recommend mitigations.
- Manage identity and access controls, including RBAC, IAM, secrets management, and privileged access.
- Conduct threat modelling and security reviews for new applications, services, and infrastructure changes.
- Integrate security controls into CI/CD pipelines, including SAST, DAST, dependency scanning, container image scanning, and secrets detection.
Vulnerability & Risk Management:
- Lead vulnerability identification, prioritization, remediation, and reporting activities across infrastructure and applications.
- Develop processes for continuous security assessment and compliance monitoring.
- Track security metrics and drive remediation efforts with engineering teams.
Detection & Response:
- Develop and maintain security monitoring, alerting, and detection capabilities.
- Investigate security incidents, perform root cause analysis, and coordinate remediation activities.
- Create and maintain incident response playbooks and procedures.
Security Automation:
- Build automation to improve security monitoring, compliance validation, vulnerability management, and incident response workflows.
- Leverage Infrastructure as Code and policy-as-code frameworks to enforce security standards at scale.
Required Qualifications & Experience:
- Expertise in Security Engineering, Cloud Security, DevSecOps, or Infrastructure Security.
- In depth knowledge of cloud security principles and experience securing Kubernetes environments.
- Experience with container security, workload protection, and cloud-native security tooling.
- Hands-on experience with vulnerability management platforms and security assessment methodologies.
- Familiarity with CI/CD security controls, secure software development practices, and supply chain security.
- Experience with SIEM, logging, monitoring, and security analytics platforms.
- Strong scripting and automation skills using Python, Bash, or similar languages.
Preferred Qualifications:
- Experience securing AI/ML or GPU-based infrastructure.
- Familiarity with compliance frameworks such as SOC 2, ISO 27001, NIST CSF, CIS Benchmarks, or PCI DSS.
- Experience with threat modelling, penetration testing, or red team engagements.
Why Join Era4:
You’ll be joining a mission-driven start-up building critical national infrastructure, where operational excellence directly enables growth. This role offers high visibility with leadership, real autonomy, and the chance to shape how a next-generation company operates at scale.
Diversity & Inclusion:
Era4 is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Similar roles
-
Senior IT Manager-Cloud, Cybersecurity & AI
New Wave Design Eden Prairie, Minnesota, United States · $130K–$183K/yr
-
Automotive Cybersecurity Architect
NXP Semiconductors Barcelona, Catalonia, Spain
-
Senior Information Security Engineer - Incident Response
LinkedIn United States · $129K–$212K/yr
-
Cyber Security Engineer – Product & OT Security
Knightec Group Sweden Solna, Sweden
-
Security Engineer
Sundt Tempe, Arizona, United States
-
Sr. Information Security Engineer - AppSec
EverBank Jacksonville, Florida, United States