
Cloud Security Engineer - EY GDS
Ernst and Young5 days ago
Buenos Aires, ArgentinaMid Level
Responsibilities
- Design, engineer, implement, test, document, and support security solutions and services across on-premises, hybrid, Azure, AWS, and GCP environments.
- Develop organization-wide secure development capabilities, including standardized CI/CD patterns, embedded security tooling, quality gates, reusable templates, and secure-by-default practices.
- Serve as a subject matter expert for cloud security technologies and provide consulting, technical oversight, and level-four operational support.
- Implement and improve cloud security, CNAPP, CSPM, CWPP, KSPM, container, policy, and automation capabilities.
- Partner with Security Architecture, Service Delivery, Security Operations, Cyber Defense, service owners, and technology teams.
- Lead technical activities and manage project work toward successful completion while driving compliance with security and design standards.
- Drive automation and innovation, communicate technical risks to senior leaders, and mentor staff on technical processes and best practices.
Requirements
- 4+ years of experience in security, DevOps/platform engineering, or software delivery with a strong security focus.
- Hands-on experience designing or operating DevSecOps and secure CI/CD pipelines with security controls and gate checks.
- Experience with application and software supply-chain security capabilities such as SAST, SCA/OSS scanning, secrets scanning, DAST, and container image scanning.
- Hands-on cloud security experience with one or more major cloud providers, with strong Azure experience preferred.
- Experience with CNAPP, CSPM, CWPP, or KSPM capabilities, ideally including Wiz or comparable platforms.
- Proficiency in PowerShell, Bash, Python, or similar scripting languages, plus Infrastructure as Code and automation using Terraform, Bicep, or equivalent tools.
- Experience working in teams, managing projects and initiatives, using change-control processes, mentoring staff, and operating in large global virtual environments.
- Preferred experience includes reusable secure pipeline templates, AI or LLM security workflows, Kubernetes and container security, policy-as-code, workflow orchestration, observability platforms, hybrid cloud connectivity, and service introduction processes.
- Relevant cloud, engineering, or security certifications are preferred, including Azure, AWS, GCP, GSEC, or CISSP.
- Strong written and verbal English communication skills and the ability to collaborate across culturally diverse teams are required.
Benefits
- Continuous learning, coaching, career development, and tools to support professional growth.
- Flexible working arrangements and an inclusive, diverse culture focused on physical, emotional, financial, and social well-being.
- The role involves collaboration across global and geographically dispersed teams; occasional evening, late-night, or weekend work may be required during projects and early life-cycle support.
- Client-facing professionals may be required to travel or work at client sites, with flexible arrangements intended to support work-life balance.
Tech Stack
Categories
About Ernst and Young
Ernst & Young (EY) provides audit/assurance, tax, consulting, strategy and transactions services to enterprises, financial institutions, and public‑sector clients. Structured as a global network of partner‑owned member firms, it sells professional services on a fee basis, including a dedicated Financial Services Organization for banking, insurance, and capital markets. Headquartered in London, EY was formed in 1989 from the merger of Ernst & Whinney and Arthur Young, and operates in 150+ countries.