Docebo

Docebo

London

Senior Security Engineer

Full-Time£45,000 - 80,000 per yearhace 3 díasUnited Kingdom
IT

Job Description

Salary: £45,000 - 80,000 per year

Requirements:
  • 5+ years of relevant work experience in cybersecurity, with a strong focus on cloud security in production AWS environments.
  • Deep hands-on experience with AWS security services, including IAM, SCPs, CloudTrail, GuardDuty, Config, KMS, and VPC security.
  • Good knowledge of Kubernetes security, including RBAC, pod security standards, network policies, admission controllers, and secrets management.
  • Experience with cloud security posture management (CSPM) and cloud workload protection (CWPP/CNAPP) tools.
  • Experience securing IaC pipelines (Terraform, CloudFormation) and integrating security scanning into CI/CD workflows.
  • Good experience with container and image security, including scanning, runtime protection, and supply chain risk.
  • Experience with SIEM and detection engineering, including building and tuning cloud-native detection rules and threat hunting across CloudTrail and application logs.
  • Familiarity with automation platforms and AI-driven security tools to streamline detection, enrichment, and response.
  • Experience with Infrastructure as Code (IaC) and scripting such as Python, Bash, or similar to develop custom security tooling and automate workflows.
  • Strong IAM fundamentals, including least privilege, cross-account roles, permission boundaries, federated identity, and privileged access management.
  • Comfortable working across Azure/GCP in addition to AWS; multi-cloud exposure is a plus.
  • In-depth knowledge of information security principles and cybersecurity frameworks relevant to cloud environments, including MITRE ATT&CK for Cloud, CIS Benchmarks, AWS Well-Architected Security Pillar, NIST CSF, SOC 2, and ISO 27001.
  • Willingness and ability to participate in an on-call rotation, including after-hours response.
  • Ability to produce clear, comprehensive, and well-structured documentation and to communicate complex technical issues effectively to non-technical stakeholders.
  • Security-related certifications from ISC2, ISACA, SANS, or CompTIA, and cloud architecture certifications such as AWS Security Specialty or AWS Solutions Architect, will significantly enhance effectiveness in this role.
Responsibilities:
  • Own the security posture of our AWS environments.
  • Define and enforce secure account structures, service control policies (SCPs), guardrails, and baseline configurations across multi-account setups.
  • Evaluate and improve network segmentation, IAM boundaries, and data protection controls.
  • Identify and remediate misconfigurations using CSPM tooling and manual review.
  • Partner with Cloud Infrastructure to integrate security controls into IaC workflows.
  • Define guardrails to catch insecure configurations before deployment.
  • Own security scanning in CI/CD pipelines and promote a shift-left approach to cloud security across engineering teams.
  • Participate in the on-call rotation for security incidents, including triage, containment, and escalation for after-hours events.
  • Lead investigation and root cause analysis for cloud security incidents with clear written post-mortems.
  • Leverage automation and AI tooling to reduce mean time to detect and respond.
  • Build and maintain detection coverage for cloud-native threats such as privilege escalation, unusual API activity, lateral movement, and data exfiltration.
  • Leverage CloudTrail, GuardDuty, and SIEM integrations to maintain visibility across our AWS estate.
  • Align detection logic with MITRE ATT&CK for Cloud.
  • Own vulnerability management for cloud workloads, prioritizing findings from cloud configuration assessments and runtime protection tools.
  • Drive remediation with Engineering and Infrastructure teams, and build automated enforcement where manual review does not scale.
  • Define and enforce least-privilege principles across AWS IAM, service accounts, and federated identity.
  • Review and improve IAM policies, permission boundaries, cross-account roles, and access patterns.
  • Reduce standing access and enforce JIT access where appropriate.
  • Develop and document best practices, policies, and procedures for cloud security.
  • Provide guidance and training to engineering and infrastructure teams to promote a security-aware culture.
  • Maintain relationships with security vendors for technical issues and ensure smooth operations of security tools and services.
  • Escalate problems or incidents to vendors when required.
Technologies:
  • AI
  • API
  • AWS
  • Architect
  • Azure
  • Bash
  • CI/CD
  • Cloud
  • GCP
  • IAM
  • Kubernetes
  • Network
  • Python
  • RBAC
  • Security
  • Terraform
  • Support
  • REST

More:

We are Docebo, an AI-powered learning platform helping organizations create, deliver, and manage training in one place. Our mission is to help teams move faster, work smarter, and focus on the work that truly matters by using intelligent tools that personalize learning, eliminate busywork, and improve results for businesses. We are a global company with more than 900 Docebians worldwide and offices across North America, EMEA, APAC, and beyond. This Senior Security Engineer role is based in London, UK, and is hybrid, with three days a week in the office (Tuesday to Thursday). We offer competitive pay, eligibility for a discretionary bonus, health benefits, paid vacation, two company-wide Docebo Days, floating holidays, your birthday off, family coverage, an Employee Share Purchase Plan at a 15% discount, and access to Employee Resource Groups and company-wide events. We are committed to diversity, inclusion, and equal employment opportunity, and we value trust, positive intent, and collaboration through our Docebo Heart and core company values.

last updated 36 week of 2026

Interested in this role?

Submit your application now

How to Apply

Ready to apply for this position? Here's what you need:

  • An updated resume highlighting relevant experience
  • A compelling cover letter (if required)
  • Portfolio or work samples (for relevant positions)

About Docebo

Docebo

Docebo

London

IT

Skills & Technologies

PythonGoRustScalaRailsAWSAzureGCPKubernetesTerraformCI/CDREST

Inferred from job description

Salary Insight

£62,500

This role

£75,000

UK median

This salary is 17% below the UK median for Senior roles75,000/yr).

Based on 2024–2025 UK technology sector benchmarks

Explore More UK Opportunities

Thousands of tech jobs across the United Kingdom