
Cloud Security Engineer - EY Global Delivery Services
Ernst and Young12 days ago
Buenos Aires, ArgentinaMid Level
Responsibilities
- Design, engineer, implement, test, maintain, and support security solutions across on-premises, hybrid, and cloud environments.
- Develop organization-wide secure development capabilities, including standardized CI/CD patterns, security tooling, quality gates, reusable templates, and golden paths.
- Provide cloud security engineering across Azure, AWS, and GCP, including CNAPP, CSPM, CWPP, KSPM, and Wiz capabilities.
- Act as the information security subject matter expert for assigned technologies and provide level-four operational support and consulting.
- Lead or technically oversee projects, manage project activities, and drive complex security initiatives through completion.
- Collaborate with Security Architects, Service Delivery, Security Operations, Cyber Defense, service owners, and other technology teams.
- Improve security solutions, drive automation and innovation, maintain documentation, and contribute to relevant standards and service-level compliance.
- Provide technical leadership, articulate technology issues to senior leaders, and train and mentor staff.
- Work flexibly outside regular office hours, including occasional weekend or late-night work during project and early-life-cycle support phases.
Requirements
- At least 4 years of experience in security, DevOps/platform engineering, or software delivery with a strong security focus.
- Hands-on experience designing or operating DevSecOps or secure CI/CD pipelines using tools such as GitHub Actions or Azure DevOps Pipelines.
- Practical experience with SAST, SCA/OSS scanning, secrets scanning, DAST, container image scanning, and secure software supply-chain capabilities.
- Hands-on cloud security experience with one or more of Azure, AWS, or GCP; Azure experience is strongly preferred.
- Experience with CNAPP, CSPM, CWPP, or KSPM capabilities, ideally including Wiz or a comparable platform.
- Proficiency in PowerShell, Bash, Python, or similar scripting and automation languages.
- Experience with infrastructure as code and automation, such as Terraform or Bicep.
- Experience working in teams, managing projects and initiatives, and applying change-control processes.
- Ability and willingness to train and mentor staff in technical processes and best practices.
- Extensive experience in large, global, and virtual environments, with strong written and verbal English skills.
- Preferred experience building reusable secure pipeline templates, golden paths, AI-enabled security workflows, or secure enterprise AI and LLM usage.
- Preferred experience with containers and Kubernetes security, policy as code, cloud guardrails, workflow orchestration, observability, hybrid-cloud connectivity, and service introduction processes.
- Relevant cloud, engineering, or security certifications are preferred, including Azure, AWS, GCP, GSEC, or CISSP.
Benefits
- Flexible working arrangements intended to support lifestyle balance and personal priorities.
- Continuous learning, career development tools, coaching, and leadership development.
- Inclusive and diverse culture with support for physical, emotional, financial, and social well-being.
- Global work environment with opportunities to collaborate across geographically and culturally diverse teams.
- Client-facing professionals may need to travel regularly or work at client sites, depending on assignment.
Tech Stack
Categories
About Ernst and Young
Ernst & Young (EY) provides audit/assurance, tax, consulting, strategy and transactions services to enterprises, financial institutions, and public‑sector clients. Structured as a global network of partner‑owned member firms, it sells professional services on a fee basis, including a dedicated Financial Services Organization for banking, insurance, and capital markets. Headquartered in London, EY was formed in 1989 from the merger of Ernst & Whinney and Arthur Young, and operates in 150+ countries.