
Foodics
Senior Cloud Security Engineer β Cloud Security & Infrastructure
- Permanent
- Riyadh, Saudi Arabia
- Experience 5 - 10 yrs
Job expiry date: 25/04/2026
Job overview
Date posted
11/03/2026
Location
Riyadh, Saudi Arabia
Salary
SAR 30,000 - 40,000 per month
Compensation
Comprehensive package
Experience
5 - 10 yrs
Seniority
Senior & Lead
Qualification
Bachelors degree
Expiration date
25/04/2026
Job description
The Senior Cloud Security Engineer at Foodics is responsible for securing cloud environments and internal infrastructure, ensuring compliance, resilience, and protection against threats. The role drives zero-trust and defense-in-depth principles, manages secure configurations for compute, storage, databases, and serverless services, and performs ongoing threat monitoring and incident management. The engineer collaborates with Cloud, SRE, and Application Security teams to define guardrails, enforce policies, remediate vulnerabilities, and maintain reference architectures. Responsibilities include PAM/IAM management, WAF and DDoS protection, SAST/DAST analysis, KMS and secrets management, and supporting audits such as ISO27001, NCA ECC, SAMA CSF, PCI-DSS, SOC 2, and GDPR.
Required skills
Key responsibilities
- Implement and maintain zero-trust, least privilege, and defense-in-depth principles
- Configure and enforce secure baseline settings for compute, storage, databases, and serverless platforms
- Monitor threat landscape using OSINT and threat intelligence tools
- Collaborate with Cybersecurity team on attack surface, vulnerability, and patch management
- Assess and reduce identity risks using PAM and IAM platforms
- Review security logs from SIEM, WAF, and CloudTrail; manage incidents with MDR vendors
- Manage cloud WAF, DDoS protection, and secure ingress/egress controls
- Coordinate with Application Security/QA for code-level security findings using SAST/DAST tools
- Manage cloud KMS, key lifecycle, and secrets management
- Define cloud security reference architectures, playbooks, and enforce guardrails
- Support audits and compliance assessments including ISO27001, SAMA CSF, PCI-DSS, SOC 2, GDPR
Experience & skills
- Bachelorβs degree in Computer Science, Engineering, or Cybersecurity
- 6β7 years of combined experience in Information Security, Cloud Security, SOC, or Incident Response roles
- Strong expertise in IAM, network security, and cloud-native security controls
- Experience with containers, Kubernetes, and cloud-native workloads
- Hands-on knowledge in Cloud/VM firewall deployment, AWS/Cloudflare WAF, DDoS, SSL-VPN/IPSEC troubleshooting
- Incident response experience in cloud environments
- Ability to integrate cloud logs into SIEM/SOAR platforms
- Proficiency in scripting and automation using Python, Bash, PowerShell, Go, PHP, and CLI
- Familiarity with CSPM, CWPP, and CNAPP platforms
- Preferred cloud security certifications such as AWS Security Specialty, Azure AZ-500, GCP Professional Cloud Security, CCSK, GPCS, or CCSP
- Experience managing multi-cloud IAM deployments or hybrid identities
- Experience securing multi-cloud environments for Fintech or Financial institutions