GR
Job Description
Position Summary:
We are seeking a strategic and hands-on Cloud Cybersecurity Architect to lead the design, implementation, and evolution of secure cloud architectures across Microsoft Azure and AWS environments. This role plays a pivotal part in enhancing the organization's security posture, ensuring secure cloud adoption, and embedding security into enterprise workloads and DevOps practices.
Key Responsibilities:
Cloud Security Architecture & Strategy
- Design and maintain secure cloud infrastructure using Microsoft Sentinel, Defender for Cloud, Intune, Entra ID (Azure AD), and AWS native security tools.
- Develop and enforce cloud security standards, architecture patterns, and reference implementations for hybrid and multi-cloud environments.
- Define cloud security architecture roadmaps aligned with business goals and compliance needs.
Threat Detection & Incident Response
- Lead development of threat detection and response strategies using SIEM/SOAR platforms.
- Collaborate with SOC teams to ensure effective monitoring and alerting for cloud-native and hybrid workloads.
- Provide technical leadership during incident response, forensics, and post-incident analysis.
Identity & Device Management
- Architect secure identity and access management (IAM) policies, conditional access, and privilege access management for both Microsoft and AWS platforms.
- Design and enforce endpoint protection and device management strategies using Microsoft Intune and Entra ID.
Security Governance & Risk Management
- Perform cloud architecture security reviews and risk assessments for new projects and third-party integrations.
- Collaborate with compliance and audit teams to ensure adherence to regulatory standards (e.g., NIST, ISO 27001, HIPAA, GDPR).
DevSecOps & CI/CD Security Integration
- Partner with DevOps and IT teams to embed security throughout the CI/CD pipeline and infrastructure lifecycle.
- Enable secure design and deployment of cloud-native and containerized workloads (e.g., EKS, AKS).
Innovation & Continuous Improvement
- Stay current on evolving cloud threat landscapes and security technologies.
- Recommend and implement security enhancements based on industry trends and internal assessments.
Required Qualifications & Skills:
- Bachelor's degree in Computer Science, Cybersecurity, or a related field (Master's preferred).
- 7+ years of experience in IT security, with at least 3+ years in cloud security architecture.
- Deep expertise in Microsoft Sentinel, Defender for Cloud, Intune, Entra ID (Azure AD).
- Strong hands-on experience with AWS security tools (e.g., IAM, GuardDuty, Security Hub, CloudTrail, WAF).
- Solid understanding of Zero Trust architecture, endpoint security, and identity governance.
- Experience with securing cloud-native and container workloads (Kubernetes/EKS/AKS).
- Familiarity with regulatory frameworks (NIST, ISO 27001, HIPAA, CIS, GDPR).
- Relevant certifications such as:
- Microsoft Azure Security Engineer Associate
- AWS Certified Security – Specialty
- CISSP, CCSP (preferred)
Preferred Qualifications:
- Experience with Infrastructure as Code (IaC) tools like Terraform, CloudFormation, ARM.
- Scripting and automation proficiency in PowerShell, Python, or equivalent.
- Familiarity with additional Microsoft tools like Purview, Defender for Endpoint, and Cloud DLP.
