Role Overview
We are seeking a proactive and detail-oriented Cloud Security Engineer to join our Cloud team. In this role, candidate will be responsible for ensuring our cloud infrastructure (AWS/Azure/GCP) remains secure, compliant with global standards, and aligned with our internal governance frameworks and policy.
Responsibilities
- Utilize CSPM (Cloud Security Posture Management) tools to fix misconfigurations.
- Collaborate with DevOps and Engineering teams to integrate security "guardrails" into the CI/CD pipeline. Secure Kubernetes container workloads.
- Review cloud resource encryption, logging, and monitoring configurations (e.g., CloudTrail, GuardDuty, Azure Monitor) and remediate any misconfigurations.
Requirements
- Experience: 3–5 years of professional experience in Cybersecurity, specifically focusing on Cloud Security, or GRC (Governance, Risk, and Compliance).
- Cloud Proficiency: Hands-on experience with at least one major cloud provider (AWS, Azure, or GCP).
- Compliance Knowledge: Deep understanding of industry frameworks such as NIST CSF, ISO 27001, SOC2, HIPAA or CIS Benchmarks.
- Technical Skills: Familiarity with Infrastructure as Code (Terraform, CloudFormation).
- Experience with security scanning and auditing tools (e.g., Crowdstrike, Wiz,).
- Communication: Ability to translate complex technical risks into "business-speak" for non-technical stakeholders.
Preferred Certifications
- Any Cloud Security Certification from AWS/Azure/GCP