# Senior Cloud Native Security Engineer

[Controlplane](https://gurify.com/jobs?q=Controlplane) · London · Posted yesterday

Remote

Full-time

Senior

[Security](https://gurify.com/jobs/security)

[Apply on the original posting → (opens in a new tab)](https://job-boards.greenhouse.io/controlplane/jobs/4975626101)

## Job description

### Report To: Delivery Manager

Job Location: Remote and/or London (right to work in UK or EU required)

### Employment Status: Full Time

### Who is ControlPlane?

ControlPlane is a London headquartered consultancy specialising in cloud-native, Kubernetes, and open source solutions. Our expertise lies in helping organisations adopt and secure complex cloud infrastructures by implementing security measures that are "secure-by-design" and "secure-by-default." This engineering excellence has driven ControlPlane deeper into cybersecurity providing services like threat modelling, penetration testing, and supply chain security to ensure robust protection against cyberattacks in containerised and cloud-native environments.

We are acclaimed for our contributions to securing highly regulated industries, such as finance, healthcare, and national infrastructure. We help businesses improve their security posture through services like DevSecOps consulting, zero-trust architectures, and platform engineering. ControlPlane also focuses on advancing best practices in the Kubernetes ecosystem, offering specialised training and community engagement.

Our clients range from multinational banks to tech giants and public clouds, where we assist with both security and operational needs. In addition to consulting, we are active in the open source community, supporting projects like Flux CD and providing security tools for Kubernetes environments.

Over the coming years you’ll see us retain our focus on solving difficult problems for clients with intense security controls using pragmatic, real world solutions. Taking our extensive R&D to help organisations consume next generation and open source projects safely and securely - that might be extending our work with FINOS AI Readiness or the overhaul of open source supply chain security.

### What We're Looking For in a Senior Cloud Native Security Consultant

We are looking for Senior Cloud Native Security consultants to represent the technical and cultural values of ControlPlane, leading our customers by example in the complex and fast-changing world of cloud native technology. You will perform a mix of client consulting, working on internal labs projects, and contributing to Open Source projects on ControlPlane’s behalf.

There is no perfect candidate for this role. As we look to extend our cloud native security team we welcome engineers and architects with a diverse range of capabilities, experiences and backgrounds.

We are SANS authors (SEC584) and believe strongly in team learning and collaboration. Candidates with an aptitude to learn are preferred, and we provide full training for the newest cloud technologies that our customers rely on.

This is a unique job role within a successful start-up company where you will have the chance to make a positive impact, learn, grow and work with great colleagues who consistently challenge the status quo.

### Roles, Responsibilities and Requirements of Our Senior Cloud Native Security Consultant:

- Experience of Threat Modelling and Cloud Native Security architectures (AWS, GCP, Azure)

- Kubernetes and container experience (some of EKS, GKE, AKS, OpenShift, and container runtimes)

- Experience of software supply chain security

- DevSecOps principles and Engineering practices

- Any Vault, service mesh, in-toto, Tekton Chains, SPIFFE, and/or Sigstore experience is a plus

- CI/CD experience, automating security tests, and hardening pipelines

- Knowledge of security tooling from enterprise tools such as Aqua, Prisma, Sysdig, Lacework, etc to Open Source tools such as falco, kube-hunter, and kube-bench.

- Knowledge and experience using hardening guides, compliance and risk management standards

- Security related qualifications such as OSCP, Cloud Provider Security certifications, or CISSP

### A desire to learn, or experience with:

- CLI tooling in any of the above technologies.

- Golang or Python

- Terraform and cloud infrastructure best practices (IaC, regulated systems)

### Benefits

ControlPlane is a dynamic, cutting edge and passionate business for which to work. Our employees are the heart of our business, which means we care about our company culture and our employees’ wellbeing and progression. Alongside this, as our colleague you will have the following benefits:

- Generous and competitive salary

- Bonus

- 33 days of paid holiday, including paid leave for the standard 8 UK Bank Holidays

- Enhanced Parental Leave

- Private Medical insurance

- An individual training budget for personal development, including but not limited to:

- Conferences

- Training (books, courses, coaching, as well as internal training which is of course included beyond budget)

- Qualifications

We believe our peers are equally as important as the technology we use. We’re looking for people of the highest personal calibre, quietly confident, with a good work ethic, keenness to learn, emotional maturity and respect, who know that “we” is more than “me”, and who embrace human diversity of all kinds. As we grow you will help us to build a company culture of which we can all be proud. If you espouse these values, we want you!

NOTE FOR RECRUITMENT AGENCIES: Please do not call or email our team speculatively, we do not accept unsolicited CVs.

**Live in Controlplane’s hiring system.** Read from the company's own applicant tracking system, not reposted from a job board — so it's a real, open requisition rather than an ad that outlived the role.

We remove it as soon as it disappears at source.

## More jobs like this

- CO [Security Engineer](https://gurify.com/job/security-engineer-at-conduct-354c5d006329) Conduct · London, United Kingdom · 5 days ago
- HA [Senior Security Engineer, Detection and Response](https://gurify.com/job/senior-security-engineer-detection-and-response-at-hackerone-45f09130ce13) Hackerone · London · last week
- CC [Cyber Security Engineer I](https://gurify.com/job/cyber-security-engineer-i-at-checkout-com-b3744d8ed0a5) Checkout Com · London · last week
- AS [Senior Security Engineer (London, Hybrid)](https://gurify.com/job/senior-security-engineer-london-hybrid-at-assetreality-c53268ac7123) Assetreality · London, United Kingdom · 2 weeks ago
- AS [Senior Security Engineer (London, Hybrid)](https://gurify.com/job/senior-security-engineer-london-hybrid-at-assetreality-4c01e5b83fa2) Assetreality · London, United Kingdom · 2 weeks ago
- MO [Senior Developer Experience Security Engineer](https://gurify.com/job/senior-developer-experience-security-engineer-at-motorway-8088847ce3c6) Motorway · London · 2 weeks ago

```json
{"@context":"https://schema.org/","@type":"JobPosting","title":"Senior Cloud Native Security Engineer","description":"\u003Ch3\u003EReport To: Delivery Manager\u003C/h3\u003E\u003Cp\u003EJob Location: Remote and/or London (right to work in UK or EU required)\u003C/p\u003E\u003Ch3\u003EEmployment Status: Full Time\u003C/h3\u003E\u003Ch3\u003EWho is ControlPlane?\u003C/h3\u003E\u003Cp\u003EControlPlane is a London headquartered consultancy specialising in cloud-native, Kubernetes, and open source solutions. Our expertise lies in helping organisations adopt and secure complex cloud infrastructures by implementing security measures that are \u0026quot;secure-by-design\u0026quot; and \u0026quot;secure-by-default.\u0026quot; This engineering excellence has driven ControlPlane deeper into cybersecurity providing services like threat modelling, penetration testing, and supply chain security to ensure robust protection against cyberattacks in containerised and cloud-native environments.\u003C/p\u003E\u003Cp\u003EWe are acclaimed for our contributions to securing highly regulated industries, such as finance, healthcare, and national infrastructure. We help businesses improve their security posture through services like DevSecOps consulting, zero-trust architectures, and platform engineering. ControlPlane also focuses on advancing best practices in the Kubernetes ecosystem, offering specialised training and community engagement.\u003C/p\u003E\u003Cp\u003EOur clients range from multinational banks to tech giants and public clouds, where we assist with both security and operational needs. In addition to consulting, we are active in the open source community, supporting projects like Flux CD and providing security tools for Kubernetes environments.\u003C/p\u003E\u003Cp\u003EOver the coming years you\u2019ll see us retain our focus on solving difficult problems for clients with intense security controls using pragmatic, real world solutions. Taking our extensive R\u0026amp;D to help organisations consume next generation and open source projects safely and securely - that might be extending our work with FINOS AI Readiness or the overhaul of open source supply chain security.\u003C/p\u003E\u003Ch3\u003EWhat We\u0026#39;re Looking For in a Senior Cloud Native Security Consultant\u003C/h3\u003E\u003Cp\u003EWe are looking for Senior Cloud Native Security consultants to represent the technical and cultural values of ControlPlane, leading our customers by example in the complex and fast-changing world of cloud native technology. You will perform a mix of client consulting, working on internal labs projects, and contributing to Open Source projects on ControlPlane\u2019s behalf.\u003C/p\u003E\u003Cp\u003EThere is no perfect candidate for this role. As we look to extend our cloud native security team we welcome engineers and architects with a diverse range of capabilities, experiences and backgrounds.\u003C/p\u003E\u003Cp\u003EWe are SANS authors (SEC584) and believe strongly in team learning and collaboration. Candidates with an aptitude to learn are preferred, and we provide full training for the newest cloud technologies that our customers rely on.\u003C/p\u003E\u003Cp\u003EThis is a unique job role within a successful start-up company where you will have the chance to make a positive impact, learn, grow and work with great colleagues who consistently challenge the status quo.\u003C/p\u003E\u003Ch3\u003ERoles, Responsibilities and Requirements of Our Senior Cloud Native Security Consultant:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EExperience of Threat Modelling and Cloud Native Security architectures (AWS, GCP, Azure)\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EKubernetes and container experience (some of EKS, GKE, AKS, OpenShift, and container runtimes)\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EExperience of software supply chain security\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EDevSecOps principles and Engineering practices\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAny Vault, service mesh, in-toto, Tekton Chains, SPIFFE, and/or Sigstore experience is a plus\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ECI/CD experience, automating security tests, and hardening pipelines\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EKnowledge of security tooling from enterprise tools such as Aqua, Prisma, Sysdig, Lacework, etc to Open Source tools such as falco, kube-hunter, and kube-bench.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EKnowledge and experience using hardening guides, compliance and risk management standards\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESecurity related qualifications such as OSCP, Cloud Provider Security certifications, or CISSP\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EA desire to learn, or experience with:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003ECLI tooling in any of the above technologies.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EGolang or Python\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ETerraform and cloud infrastructure best practices (IaC, regulated systems)\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EBenefits\u003C/h3\u003E\u003Cp\u003EControlPlane is a dynamic, cutting edge and passionate business for which to work. Our employees are the heart of our business, which means we care about our company culture and our employees\u2019 wellbeing and progression. Alongside this, as our colleague you will have the following benefits:\u003C/p\u003E\u003Cul\u003E\u003Cli\u003EGenerous and competitive salary\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EBonus\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003E33 days of paid holiday, including paid leave for the standard 8 UK Bank Holidays\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EEnhanced Parental Leave\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EPrivate Medical insurance\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAn individual training budget for personal development, including but not limited to:\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EConferences\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ETraining (books, courses, coaching, as well as internal training which is of course included beyond budget)\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EQualifications\u003C/li\u003E\u003C/ul\u003E\u003Cp\u003EWe believe our peers are equally as important as the technology we use. We\u2019re looking for people of the highest personal calibre, quietly confident, with a good work ethic, keenness to learn, emotional maturity and respect, who know that \u201Cwe\u201D is more than \u201Cme\u201D, and who embrace human diversity of all kinds. As we grow you will help us to build a company culture of which we can all be proud. If you espouse these values, we want you!\u003C/p\u003E\u003Cp\u003ENOTE FOR RECRUITMENT AGENCIES: Please do not call or email our team speculatively, we do not accept unsolicited CVs.\u003C/p\u003E","identifier":{"@type":"PropertyValue","name":"Gurify","value":"senior-cloud-native-security-engineer-at-controlplane-1a80f4fea92c"},"url":"https://gurify.com/job/senior-cloud-native-security-engineer-at-controlplane-1a80f4fea92c","datePosted":"2026-09-14","validThrough":"2026-10-30T23:59:59Z","hiringOrganization":{"@type":"Organization","name":"Controlplane","sameAs":"https://job-boards.greenhouse.io/controlplane"},"directApply":false,"jobLocationType":"TELECOMMUTE","applicantLocationRequirements":{"@type":"Country","name":"United Kingdom"},"employmentType":"FULL_TIME"}
```

```json
{"@context":"https://schema.org/","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Jobs","item":"https://gurify.com/jobs"},{"@type":"ListItem","position":2,"name":"United Kingdom","item":"https://gurify.com/jobs/united-kingdom"},{"@type":"ListItem","position":3,"name":"Senior Cloud Native Security Engineer","item":"https://gurify.com/job/senior-cloud-native-security-engineer-at-controlplane-1a80f4fea92c"}]}
```
