Description :
We are looking for an experienced Cloud Security Engineer to safeguard and optimize our cloud environments across AWS, Azure, and GCP.
The ideal candidate will have hands-on expertise in cloud security tools, incident response, compliance frameworks, and DevSecOps practices.
This role requires strong technical knowledge, proactive threat detection, and collaboration with stakeholders to ensure cloud workloads remain secure and compliant.
Key Responsibilities :
- Implement and manage cloud security controls across multi-cloud environments (AWS, Azure, GCP).
- Configure, monitor, and optimize CSPM, CWPP, CNAPP, and CIEM solutions to enforce security policies.
- Design and manage cloud-native security services including IAM, NSG, ASG, WAF, Azure Front Door, DDoS protection, Cloud Firewalls, KMS, etc.
- Conduct incident response, threat detection, vulnerability assessment, and remediation within cloud workloads.
- Ensure compliance with industry standards and frameworks such as ISO 27001, NIST, CIS Benchmarks, GDPR, and other regulatory requirements.
- Monitor identity, access, and audit logs; generate reports and dashboards for security operations.
- Collaborate with DevOps, cloud engineers, and business stakeholders to implement secure cloud practices.
- Develop and maintain technical documentation, security policies, and operational procedures.
- Support integration of cloud workloads with SIEM / SOAR platforms for centralized monitoring and alerting.
Required Skills & Experience :
Proven experience in cloud security across AWS, Azure, and GCP environments.Hands-on expertise with CSPM, CWPP, CNAPP, and CIEM solutions.Strong understanding of cloud-native security services (IAM, NSG, ASG, WAF, DDoS protection, KMS, etc.Experience with incident response, threat detection, and remediation in cloud environments.Knowledge of compliance frameworks including ISO 27001, NIST, CIS Benchmarks, GDPR, etc.Strong coordination, stakeholder management, and technical documentation skills.Preferred Qualifications :
Certifications : Azure Security Engineer (AZ-500), AWS Security Specialty, GCP Professional Cloud Security Engineer, CISSP, CCSP, or equivalent.Experience integrating cloud workloads with SIEM / SOAR platforms.Familiarity with DevSecOps practices, automation, and Infrastructure-as-Code (Terraform, ARM, CloudFormation)(ref : hirist.tech)