Seeking skilled and proactive Cloud Security Engineer to oversee and enhance our cloud security posture. The ideal candidate will be responsible for monitoring, reporting, reviewing architecture and ensuring compliance with cloud security policies and guidelines. This role involves working with CSPM tools, identifying security gaps, and implementing best practices to maintain a secure and resilient cloud infrastructure.
Key Responsibilities:
A). Cloud Security Compliance & Reporting:
Ø Prepare and deliver monthly reports on cloud security compliance posture.
Ø Conduct Monthly, Quarterly & half-yearly reviews of cloud security infrastructure and architecture (both AWS & Azure).
Ø Report and track cloud security compliance metrics and improvement actions.
Ø Develop and enforce cloud security policies, standards, and best practices.
Ø Conduct threat modelling, risk assessments, and vulnerability management.
B). CSPM Tool Management:
Ø Administer and manage Cloud Security Posture Management (CSPM) tools.
Ø Monitor and respond to alerts from Security Hub (AWS) or Security Center (Azure).
C). Security Monitoring & Incident Response:
Ø Continuously monitor cloud environments for security alerts and take necessary remediation actions.
Ø Ensure adherence to MSIL cloud security policy and cloud security checklists.
D). Security Architecture & Recommendations:
Ø Identify and recommend security improvements aligned with cloud security guidelines and best practices.
Ø Suggest and implement architectural enhancements for security, high availability, data protection, and data leak prevention.
Ø Design and implement secure cloud architectures for Azure and AWS environments.
Ø Implement and manage security controls such as IAM, encryption, WAF etc.
E). Policy & Baseline Enforcement:
Ø Ensure cloud environments meet minimum security baselines.
Ø Drive implementation of security controls and compliance with internal and external standards.
Ø Cloud certifications (e.g.,AZ-500 , AWS Certified Security –are highly desirable).
Ø Experience with multi-cloud security strategies.
Ø Familiarity with container security (Kubernetes, Docker).
Ø Experience in incident response and digital forensics.
Excellent communication and documentation abilities
Ø Should be BE/B.Tech /MCA/BCA with minimum 5-8 years of expiration in cloud security or cloud infrastructure roles.
Ø Must have hands-on experience with AWS Security Hub, Azure Security Center, Microsoft Defender for Cloud, AWS Security Hub, IAM, KMS, WAF, etc..
Ø Proficiency in CSPM tools such as Prisma Cloud, Wiz, or Microsoft Defender for Cloud.
Ø Strong understanding of cloud security frameworks and best practices (e.g., CIS Benchmarks, NIST, ISO 27001).
Ø Experience with security incident response and remediation in cloud environments.