This role involves reviewing and evaluating secure cloud architectures, managing cloud-native security services, and monitoring for threats across AWS, Azure, and GCP. Key responsibilities include defining and enforcing IAM policies, ensuring compliance with industry frameworks, and integrating security into CI/CD pipelines using Infrastructure as Code. The role also requires providing security guidance, staying updated on emerging threats, and leading continuous improvement initiatives in cloud security.
Good To Have:- CCSP – Certified Cloud Security Professional
- CISSP – Certified Information Systems Security Professional
- Microsoft Certified: Azure Security Engineer Associate
- AWS Certified Security – Specialty
- Google Professional Cloud Security Engineer
- CISM, CEH, or equivalent
- Microsoft Azure AZ-104
- Strong communication and stakeholder management skills
- Ability to lead security discussions with technical and non-technical audiences
- Analytical and problem-solving mindset with attention to detail
- Ability to work independently, lead projects
- Mentor junior engineers
Must Have:- Review and evaluate secure architectures for IaaS, PaaS, and SaaS environments.
- Configure and manage cloud-native security services.
- Monitor cloud environments for threats, misconfigurations, and vulnerabilities.
- Perform threat modeling, risk assessments, and incident response.
- Define and enforce least-privilege access models using RBAC, ABAC, and policy-as-code.
- Ensure secure integration with Identity Providers and MFA enforcement.
- Implement and monitor controls for compliance with frameworks such as ISO 27001, SOC 2, NIST, CIS, HIPAA, or PCI-DSS.
- Integrate security into CI/CD pipelines and DevOps workflows.
- Write and review secure IaC templates.
- Implement automated security testing and vulnerability scanning pipelines.
- Provide security guidance to development, infrastructure, and DevOps teams.
- Stay up to date with emerging threats, vulnerabilities, and cloud platform changes.