Cloud Security & Application Security Engineer at Cellulant enhancing security across cloud-native platforms and applications. Working in a hybrid role to support a leading payment service provider in Africa.
Responsibilities
Architect, deploy, and maintain cloud-native security controls across AWS environments
Implement and optimize CSPM, CIEM, CWPP, CDP, and container security tools
Define/Enhance secure cloud patterns for compute, network, storage, IAM, secrets management, and multi-account strategies
Build/enhance and enforce least-privilege IAM policies, service roles, and credential lifecycle management
Support cloud hardening (OS-level and service-level), encryption, key management (KMS), and network segmentation
Perform threat modeling, secure code reviews, architecture reviews, and security assessments across multiple codebases
Partner with engineering teams to continually embed security into SDLC, CI/CD pipelines, and DevSecOps workflows
Secure APIs, microservices, backend services, and distributed systems using best practices and industry frameworks
Enhance secure coding standards, patterns, and reusable security modules
Support API security design, testing, and governance across internal and external integrations
Perform security reviews for REST, event-driven, and payment-processing APIs
Ensure strong authentication (OAuth2, OIDC, mTLS) and secure token design
Harden and secure workloads, containers, and orchestration platforms (Docker, Kubernetes)
Review/enhance runtime detection & response (EDR/XDR) for cloud-native environments
Ensure secure configurations, kernel-level protections, logging, and monitoring
Automate cloud and application security tasks using Python, Bash, Terraform, CloudFormation and/or CI/CD workflows
Develop automated guardrails, policy-as-code, and security-as-code pipelines
Support the SOC team to develop and maintain security detection rules, alerts, and response playbooks
Perform deep technical investigation of cloud, application, and API security incidents
Collaborate with the SOC team to improve signals, automate responses, and reduce MTTD and MTTR
Ensure alignment with PSP security requirements including PCI DSS and BFSI-grade controls
Support security testing, continuous monitoring, and continuous assurance for payment platforms
Partner with the Infosec GRC team during audits, pentests, and regulatory assessments
Advise product, engineering, and DevOps teams on secure architectures and design choices
Provide training and champion a “secure-by-default” engineering culture
Operate as a senior technical security expert without direct managerial responsibilities
Requirements
6+ years experience in information security, with at least 4+ years focused on cloud and application security
Strong hands-on expertise with AWS (preferred)
Deep experience securing Linux-based cloud workloads
Strong understanding of: API security architectures, Microservices and container ecosystems, CI/CD pipelines, DevSecOps principles, Infrastructure as code (Terraform, CloudFormation), Security as code
Practical experience remediating vulnerabilities identified through SAST/SCA/DAST/container scanning tools
Strong programming or scripting skills (Python, Bash, or Go preferred)
Experience with Kubernetes, container hardening, and runtime security solutions
Prior work in fintech, PSPs, BFSI, or other high-compliance environments is highly desirable, but not mandatory.
Benefits
Generous personal time off
Medical and life insurance benefits (markets permitting)
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.
Principal Systems Engineer - Cybersecurity role in protecting our nation's products as part of Integrated Platform Solutions team. Develop solutions utilizing RMF, Anti - Tamper, Software Assurance, and more.
Agent de Sécurité assurant la sécurité des usagers du réseau de transport TBM. Rattaché au Manager de Proximité Sûreté, garantissant la qualité de service public de transport en commun.