About the Role
We are seeking a Senior Cloud Security Engineer to join our Cloud and AI Security team within a highly regulated enterprise environment. In this role, you will act as a key contributor in designing, implementing, and improving the organization’s cloud security posture across modern cloud platforms.
You will collaborate with engineering, DevOps, risk, and compliance teams to embed security-by-design principles into cloud infrastructure and application development, ensuring secure, scalable, and compliant cloud environments.
Key Responsibilities
Cloud Security Engineering
- Design and implement secure cloud architectures aligned with enterprise and regulatory standards
- Establish security baselines, guardrails, and governance frameworks for cloud environments
- Apply zero-trust principles and least-privilege access models across cloud platforms
Identity & Access Management
- Implement and manage identity security, including authentication, authorization, and privileged access controls
- Strengthen identity governance, access reviews, and secure workload identities
Threat Detection & Monitoring
- Configure and enhance cloud-native security monitoring, logging, and alerting
- Develop detection rules, automation workflows, and incident response playbooks
- Perform threat modeling and security assessments for cloud applications and infrastructure
Network & Infrastructure Security
- Design and implement secure cloud network architectures, including segmentation and perimeter controls
- Protect workloads through firewall policies, secure connectivity, and private access configurations
Data & Secrets Protection
- Implement encryption, key management, and secrets management best practices
- Ensure secure handling of sensitive data in line with regulatory and organizational requirements
DevSecOps & Automation
- Integrate security into CI/CD pipelines and infrastructure as code (IaC) workflows
- Develop automation for security enforcement, monitoring, and remediation
- Work closely with DevOps teams to embed security throughout the development lifecycle
Risk & Compliance
- Conduct risk assessments and security reviews for cloud-based solutions
- Support internal audits and ensure compliance with applicable frameworks (e.g., PCI-DSS, SOX, NIST)
- Track and report on cloud security posture and control effectiveness
Incident Response
- Investigate and respond to cloud security events
- Perform root cause analysis and implement corrective actions
- Continuously improve detection and response capabilities
Required Qualifications
- 6+ years of experience in information security, including hands-on cloud security experience
- Strong experience securing at least one major cloud platform (Azure or GCP ) in an enterprise environment
- Practical knowledge of cloud security domains, including IAM, network security, data protection, and monitoring
- Experience with cloud-native security tools and services (e.g., CSPM, SIEM/SOAR, workload protection)
- Proficiency in scripting and automation (e.g., Python, PowerShell)
- Experience with Infrastructure as Code tools such as Terraform or equivalent
- Understanding of cloud security best practices and common threat vectors
- Familiarity with regulatory or compliance frameworks in regulated industries
- Bachelor’s degree in Computer Science, Cybersecurity, or equivalent experience
Preferred Qualifications
- Experience with one or more cloud platforms such as Microsoft Azure or Google Cloud Platform (GCP)
- Relevant certifications (e.g., AZ-500, Google Professional Cloud Security Engineer, CISSP, CCSP, CISM)
- Experience implementing zero-trust architectures
- Knowledge of modern cloud security concepts such as container security, API security, or workload identity
- Experience working in regulated environments such as financial services, healthcare, or fintech
Summary
This role is ideal for a cloud security professional with strong expertise in a major cloud platform who is looking to expand their impact in a collaborative, security-first environment supporting modern cloud technologies.