Tech Stack
AWSAzureCloudFirewallsGoGoogle Cloud PlatformKubernetesPythonTerraform
About the role
- Lead the design, implementation, and continuous improvement of cloud security operations.
- Build and maintain scalable security monitoring, threat detection, and incident response capabilities.
- Integrate automation and orchestration for rapid remediation and Security as Code (SaC) enforcement.
- Implement, deploy, and integrate cloud security solutions ensuring compliance, scalability, and high availability.
- Apply cloud security best practices across IaaS, PaaS, SaaS, and DaaS environments to protect applications, data, and infrastructure.
- Develop automation scripts and IaC/SaC (e.g., Terraform, CloudFormation, Azure ARM) to enforce policies and manage configurations.
- Collaborate with Solution Architects to design and review secure cloud architectures.
- Act as a trusted security advisor to clients on cloud security, compliance, and risk management.
- Support incident response and threat detection by monitoring environments and responding to vulnerabilities and attacks.
- Contribute to the SecOps practice via knowledge sharing, mentoring, and maintaining security policies, playbooks, and lessons learned.
Requirements
- Bachelor’s degree in computer science, Engineering, or related field.
- Minimum 3 years of hands-on experience in DevOps, with a focus on multi-cloud environments.
- Proficiency in AWS and Azure services.
- Proven experience in cloud security engineering across major hyperscaler platforms (AWS, Azure, GCP).
- Hands-on expertise in cloud security controls (WAF, IAM, SCPs, Secrets Management, KMS, CASB, DLP, SIEM/SOAR).
- Strong proficiency in Infrastructure as Code (IaC) and Security as Code (SaC) tools (Terraform, CloudFormation, Azure ARM, etc.).
- Solid knowledge of network security fundamentals (firewalls, VPNs, IDS/IPS, micro-segmentation, Zero Trust).
- Practical experience with container and Kubernetes security (admission controllers, service mesh, runtime scanning, policy enforcement).
- Experience in cloud compliance frameworks (ISO 27001, SOC 2, GDPR, HIPAA, CIS Benchmarks).
- Strong understanding of incident response, threat modeling, and vulnerability management in cloud environments.
- Proficiency in automation and scripting (Python, Bash, Go, or PowerShell) for security tasks and integrations.
- Excellent problem-solving and troubleshooting skills across cloud, networking, and security stacks.
- Strong communication skills and ability to act as a trusted security advisor to technical and business stakeholders.