Menu

Sorry, applications for this particular Job have now closed.

Cloud Security Consultant

GRC Jobs
  • Hybrid - WFH/London 1 day a week
  • Outside IR35

Cloud Security Consultant required for public sector client. You will be designing, implementing, and enhancing security capabilities across AWS and Azure environments. The ideal candidate will have hands-on expertise with cloud-native security and governance tools, Cloud Adoption and Assurance Frameworks, and Well-Architected Reviews.

This role will focus on assessing current security posture, defining cloud assurance frameworks, and advising on best practices to achieve secure, scalable, and compliant multi-cloud operations.

Key Responsibilities

  • Define and implement Cloud Assurance and Adoption Frameworks aligned with AWS and Microsoft best practices.
  • Conduct and lead Well-Architected Reviews (AWS & Azure) to assess and enhance cloud workloads.
  • Recommend improvements for governance, automation, and security orchestration across both platforms.
  • Evaluate IaC templates (Terraform, ARM/Bicep) for compliance, security, and efficiency.
  • Design and enhance secure landing zones aligned with Microsoft CAF and AWS best practices.
  • Integrate and optimize use of native cloud security tools including CSPM solutions.
  • Support compliance and control validation automation using AWS and Azure native services.
  • Provide strategic recommendations to improve identity, access, and network security within cloud ecosystems.
  • Collaborate with engineering and DevSecOps teams to embed security by design.

Required Skills and Experience

AWS Expertise:

  • AWS Audit Manager
  • AWS Control Tower & SCPs
  • AWS Macie, Firewall Manager, Access Analyzer
  • AWS Network Reachability Analyzer
  • AWS Cloud Adoption Framework
  • AWS SHARR
  • AWS Well-Architected Reviews

Azure Expertise:

  • Azure Defender for Cloud
  • Azure Well-Architected Reviews & Advisor
  • Azure Blueprints & Policy Assignments
  • Azure Landing Zones (CAF-aligned)
  • Azure Policy automation for control validation
  • IaC assessment and optimization (Terraform/ARM)
  • CSPM and continuous compliance monitoring

We seek individuals from a diverse talent pool and encourage applicants from underrepresented groups to apply to our vacancies. Our commitment to fair recruitment processes means that we welcome applicants from all backgrounds, regardless of their lived experience or personal characteristics. We also invite applicants who meet most of the listed requirements, even if not all, to apply. If you require any adjustments to the application process, please let us know.

Barclay Simpson acts as an Employment Agency for permanent positions and an Employment Business for temporary/contract engagements.

Jeff Mayger – Interim Security

Executive Consultant

View my profile Looking to hire?

Other jobs I manage