Design and oversee the implementation of secure, scalable cloud architectures aligned with industry standards such as CSA Cloud Controls Matrix, NIST Cybersecurity Framework, and ISO 27001.- Design Public/Private/Hybrid Cloud Security solutions integrating public cloud into traditional hosting/ delivery models
- Conduct in-depth evaluations of cloud security posture, identify Gaps and establish an actionable roadmap to remediate potential risks.
- Desing and implement cloud security controls across all the security domains (Network, Identity and Access, Vulnerability, Environment Governance, Monitoring and Data Privacy) within Azure and AWS
- Champion the use of Infrastructure as Code (IaC) tools like Terraform, Cloud formation, Azure ARM to ensure secure and automated deployments.
- Oversee the development of automation scripts to streamline security operations, improve system reliability, and enhance monitoring capabilities.
- Keep updated with emerging cloud security trends such as Solutions, Controls, Threats, Vulnerabilities and Compliance standards.
- Successfully led strategic cloud security consulting initiatives, collaborating with senior client security leadership to develop and implement security strategies.
Required
- Minimum 7 years in cloud security roles.
- Proven experience in designing and implementing secure cloud environments, including Landing Zone implementations with guardrails and native controls.
- Deep understanding and hands on experience of cloud security controls and the ability to leverage advanced security tools like CNAPP, CIEM, and CWPP etc. ( PaloAlto Prisma, WIZ, Aqua, Orca, Crowdstrike and etc.)
- Experience on Azure, GCP and AWS platform, with security controls like CSPM (Microsoft Defender for Cloud / Security Hub), CNAPP, EDR (Microsoft Defender CWPP), Key Vault, DDoS ( Azure DDoS/ AWS Shield), Security Groups, VNP, Firewall, SASE, Secure Web Gateway ( FrontDoor / AWS WAF) and Serverless Security, etc.
- Experience to build scalable cloud production systems, creating and designing Azure/ AWS architectures and upholding good security architecture principles.
- Knowledge of cloud security controls including tenant isolation, encryption at rest, encryption in transit, key management, vulnerability assessments, application firewalls, SIEM, etc.
- Understanding in Terraform, Ansible, Chef, or similar tools, with the ability to guide teams in automation practices.
- A firm commitment to keeping up to date with the latest Azure/ AWS / GCP services and offerings and a desire to learn in an ever-evolving landscape
- Proven ability to enhance security posture by leveraging third-party security tools such as Palo Alto Prisma, Hashicorp Vault, WIZ, and CrowdStrike.
- Knowledge on Implementation of Zero Trust principles to minimize the attack surface and protect sensitive data in multi-cloud environments
Preferred
- Knowledge of Automation, scripting Cloud Formation/ Terraform, and DevSecOps
- Experience with multiple platforms, including AWS, Azure, and Google Cloud Platform (GCP).
- Proficiency in scripting and programming languages like Python, Java, or PowerShell.
- Industry-recognized certifications such as AWS Certified Security Specialty, Azure Solutions Architect Expert, Google Cloud Certified Professional, or CCSP.
Personal
Besides the professional qualifications of the candidates we place great importance in addition to various forms personality profile. These include:
- High analytical skills
- A high degree of initiative and flexibility
- High customer orientation
- High quality awareness
- Excellent verbal and written communication skills
Others Skills:
- Managing Customer escalations, vendor management.
- Leadership skills to manage and motivate diverse, high performance teams.
- Preparation of Daily, weekly Monthly Reports with analysis and presenting the same to the customer in weekly call
- Participate in business meetings with various stake holders
- Take corrective actions based on the customer satisfaction surveys
- Drive service improvement programs
- Effort estimation/ reviews on need basis for new and large projects