company logo

Senior Cloud Security Engineer (Vice President)

Jefferies

Office

London, United Kingdom

Full Time

Jefferies is seeking a Senior Cloud Security Engineer (Vice President) to join our Information Security team. This hands-on engineering role is responsible for researching, designing, implementing, and supporting cloud security solutions in a complex multi-cloud environment. You will work directly with engineering and application development teams to ensure secure cloud architectures, align on security requirements, and protect the company’s assets. In this role you will build relationships across the organization and clearly communicate security strategies and architectures to both technical and non-technical audiences.

 

The ideal candidate is highly technical, adaptable to a fast-paced financial services environment, and self-motivated. You should be an excellent team player who can work with minimal supervision and effectively prioritize multiple projects. We value strong problem-solving abilities and the skill to articulate complex security issues clearly. You will be expected to drive cloud security initiatives to completion and consistently deliver effective, innovative solutions that enhance Jefferies’ security posture.

 

Key Responsibilities & Tasks

 

  • Drive the cloud security strategy and hands-on implementation of security controls and policies across all cloud service models (IaaS, PaaS, SaaS, FaaS).
  • Partner with Cloud Engineering to establish, manage, and operate within technical governance processes for cloud services, ensuring compliance with internal policies and industry standards.
  • Conduct security architecture reviews for third-party vendors and in-house applications, identifying risks in designs and recommending improvements.
  • Work closely with application developers, Cloud Engineering, and other infrastructure teams to design and implement security at every level of the cloud environment (network, platform, application).
  • Define and develop reusable secure configurations and Infrastructure-as-Code templates (CloudFormation/Terraform) that enforce cloud security best practices (“shift-left” on security).
  • Optimize the use of security tools and automation in the cloud. Deploy and manage cloud security solutions (e.g. container/Kubernetes runtime sensors, agentless scanning), and automate security controls and monitoring where possible.
  • Identify emerging cloud threats and vulnerabilities, and partner with SecOps to drive the implementation of both preventive and reactive controls (alerts, incident response playbooks) to address them in our multi-cloud environment.
  • Manage relationships with cloud security vendors and service providers to ensure we leverage the best capabilities cost-effectively.

 

Qualifications/ Experience

 

  • Deep knowledge of AWS and Azure core services and security features. Experience securing cloud infrastructure and SaaS applications in a highly regulated environment.
  • Solid understanding of servers, networking, storage, databases, and how they integrate in cloud and hybrid environments.
  • Proficiency in Infrastructure as Code (CloudFormation, Terraform) and ability to automate tasks using scripting (Python or PowerShell) and REST APIs.
  • Hands-on experience with cloud security platforms or tools (cloud-native security services, CSPM, or CNAPP solutions).
  • Strong understanding of application security principles and practices – knowledge of SAST/DAST tools and common web vulnerabilities (OWASP Top 10) and their remediation.
  • Familiarity with security frameworks such as NIST CSF and the Cloud Security Alliance’s Cloud Controls Matrix (CCM).
  • Experience supporting developers and integrating security into the SDLC (CI/CD pipelines, code reviews, artifact scanning).
  • Ability to identify and communicate security risks and solutions clearly to both senior management and technical teams.
  • Proven ability to manage multiple initiatives simultaneously and adapt to changing business priorities.
  • Effective working in cross-functional, global teams and coordinating across different time zones.
  • Self-starter who can take initiative and also mentor others on best practices. Capable of leading incident response efforts and driving projects to completion.
  • Excellent analytical skills with the ability to assess complex problems and propose practical, effective security solutions that align with business objectives.

Jefferies Financial Group Inc. (‘‘Jefferies,’’ ‘‘we,’’ ‘‘us’’ or ‘‘our’’) is a U.S.-headquartered global full service, integrated investment banking and securities firm. Our largest subsidiary, Jefferies LLC, a U.S. broker-dealer, was founded in the U.S. in 1962 and our first international operating subsidiary, Jefferies International Limited, a U.K. broker-dealer, was established in the U.K. in 1986. Our strategy focuses on continuing to build out our investment banking effort, enhancing our capital markets businesses and further developing our Leucadia Asset Management alternative asset management platform. We offer deep sector expertise across a full range of products and services in investment banking, equities, fixed income, asset and wealth management in the Americas, Europe and the Middle East and Asia.

At Jefferies, we believe that diversity fosters creativity, innovation and thought leadership through the infusion of new ideas and perspectives. We have made a commitment to building a culture that provides opportunities for all employees regardless of our differences and supports a workforce that is reflective of the communities where we work and live. As a result, we are able to pool our collective insights and intelligence to provide fresh and innovative thinking for our clients.

Jefferies is an equal employment opportunity employer, and takes affirmative action to ensure that all qualified applicants will receive consideration for employment without regard to race, creed, color, national origin, ancestry, religion, gender, pregnancy, age, physical or mental disability, marital status, sexual orientation, gender identity or expression, veteran or military status, genetic information, reproductive health decisions, or any other factor protected by applicable law. We are committed to hiring the most qualified applicants and complying with all federal, state, and local equal employment opportunity laws. As part of this commitment, Jefferies will extend reasonable accommodations to individuals with disabilities, as required by applicable law.

Senior Cloud Security Engineer (Vice President)

Office

London, United Kingdom

Full Time

August 19, 2025

company logo

Jefferies

Jefferies