Level

Thought Machine

Senior Cloud Security Engineer

AI in this role

Design and deliver secure products and platforms as part of the cloud security engineering team.

cloud-securitythreat-modeling
security-engineeringcloud-securityapplication-security

Thought Machine's mission is bold – to properly and permanently rid the world's banks of legacy technology. To achieve this, we have developed the foundations of modern banking through core and payments technology which run natively in the cloud. What we are attempting is hard and means we need great people working together to build great technology.

We have grown rapidly in the past few years – growing our team to more than 550 individuals across offices in London, New York, Singapore, Sydney and our newly established Engineering Hub in Lisbon. We have raised more than £500m in funding and our investors include Molten Ventures, Eurazeo, Intesa Sanpaolo, Temasek, Nyca Partners, JPMorgan Chase Strategic Investments, Standard Chartered Ventures, and more.

We have created a culture that enables our team to produce the best work in the industry while ensuring we have fun along the way. We're regularly cited as having a fantastic workplace culture and have been recognised by Sifted magazine as having one of the highest Glassdoor ratings for a UK fintech company and the industry's most generous employee share package. Named one of the world's most innovative fintechs by Global Finance Magazine, we were also recognised by the Financial Times as one of Europe's fastest-growing companies for two consecutive years—and a UK Best Employer for 2026.

This is a full-time, permanent position based in our Lisbon office, requiring four days a week onsite.

A Senior Cloud Security Engineer is a part of the larger Security Engineering team. We desire engineers who are able to lead the engineering, design, and delivery of solutions to security problems. We have a passion for exploring unique solutions and sharing differing perspectives that leads to the development of leading solutions to complex security problems.

The Security Engineering team is cross-functional and made up of diverse people who bring their own unique expertise in either (or both) application security and infrastructure (cloud) security. We allow team members to move from project to project, subject to subject based on their skills, experience, and interests. Each team member brings their own expertise to bear in ways that are collaborative and designed to find the best solutions to complex problems.

The team covers the following areas, and individuals contribute to any of them based on their own expertise:

  • Designs of secure products and platforms

  • Reviews of engineering designs, threat models, and coding practices

  • Threat modelling to identify relevant areas of focus

  • Define the best in class protective and detective security controls

  • Development of security tooling and automation

  • Implement and maintain cutting-edge tools and measures

A large part of the Thought Machine security function is greenfield; we are building the bank of tomorrow with cutting edge technology. To achieve this we need innovative thinking to create security solutions in our products and our infrastructure. We look for people who think outside the box, and outside of traditional silos to find unique solutions and approaches to security that lead the industry.

DUTIES

  • Provide security expertise and mentorship to Thought Machine engineering teams through the stages of planning, design, and testing of new solutions.

  • Lead the design and delivery of cloud native preventative and detective controls that operate at scale

  • Build and maintain automation to actively audit and assess infrastructure-as-code and in-place infrastructure

  • Develop (in code) security tooling, contribute to third-party security products, and develop updates for existing tooling that is in use in our environment

  • Co-develop threat models with engineering teams that identify relevant threats and relevant strategies for mitigation

  • Work with cloud engineering and operations teams to develop tooling that maintains our secure operating state in production

  • Perform security reviews and security testing

  • Lead complex projects to develop security capabilities, tooling, and functionality.

  • Contribute to the overall security strategy, security tooling selection and creation

  • Operate collaboratively with other Thought Machine teams with trust and influence

REQUIREMENTS

Essential

  • Familiarity with building and deploying containerised applications in public cloud using CI/CD frameworks and infrastructure automation

  • Knowledge of cloud networking architecture, cloud operations, security, automation and orchestration

  • Familiarity with performing security threat modelling and design reviews

  • Knowledge of security in distributed systems

  • Familiarity with good security practices with containers and Kubernetes

  • Experience with languages such as Go, Python, or other modern programming languages

  • Coding experience in the creation, automation, and integration of security tools

  • Experience in version control systems such as Git

  • Experience with designing, developing, and maintaining security in public cloud environments such as AWS and GCP

  • Ability to lead and encourage good design skills including creative and critical thinking, collaboration, full evaluation of options, and objective decision making to find a preferred solution.

  • Strong interpersonal and communication skills to support collaboration with other personnel and teams

Desirable

  • Existing experience building and operating distributed systems at scale

  • Awareness and experience with “well-architected” cloud security frameworks or CSA-CCM

  • Contributions to the security community (public research, blogging, presentations, etc)

  • Experience in performing penetration testing and security testing

  • Experience developing tools and interacting with cloud provider APIs

We actively hire candidates who demonstrate technical excellence in their field and welcome people of all ages and backgrounds, providing everyone with equal access to professional development. You are encouraged to apply even if your experience doesn't accurately match the job description. We also encourage applications from those with different abilities, including candidates with ADHD, autism, dyslexia or dyspraxia.

How we rate this

Senior Cloud Security Engineer at Thought Machine rates 0 out of 100 for how much of the daily work is AI. That makes it Little AI (AI Level 1 of 4). The level is about AI in the job, not seniority.

Classification

Little AI. AI is not part of the work.

  1. ●●●● Builds AI80 to 100
  2. ●●●○ Works on AI60 to 79
  3. ●●○○ Uses AI40 to 59
  4. ●○○○ Little AI0 to 39

Levels come from how often the tools, models and workflows of the role are named in the posting itself. Open the description and count.

Prepare for this job

A free preview built only from this posting: what it asks for, what you could be asked in an interview, and how to adjust your resume.

Skills and AI tools this role asks for

Security EngineeringCloud SecurityApplication SecurityThreat Modeling

Questions you could be asked

  1. Tell me about a project where security engineering was part of your work. What did you do?
  2. Tell me about a project where cloud security was part of your work. What did you do?
  3. Tell me about a project where application security was part of your work. What did you do?
  4. What's a project where you used Threat Modeling hands-on?

Adapt your resume

  • List these exact terms on your resume: Security Engineering, Cloud Security, Application Security, and Threat Modeling. An applicant tracking system matches the wording, not the idea.
  • Attach one line of real, concrete experience to at least one of them — a tool named with nothing behind it rarely survives a human read.

Want an expert to read your CV for this job?

Free. Send your CV and the role you want next. We reply by email within 2 to 4 business days.

Get a free CV review

Get new remote cybersecurity jobs by email

One email a week with the new remote cybersecurity jobs, each rated for how much AI is in the work. No recruiter spam, unsubscribe in one click.

Free. One email a week. Unsubscribe in one click.

Similar roles

Security roles that involve little AI, at other companies.

What kind of AI work fits you?

Answer 12 practical questions in about three minutes. Get a simple profile, the work it points to, and live roles to explore next.

Find my next step

More jobs at Thought Machine

More cybersecurity jobs

Related searches

Same AI level