Role: Lead Cloud Security Engineer:
Total: 8 to 12 Years
Location: Hyderabad
Work Mode: Remote
Work type: FTE
Position Summary:
We are seeking an experienced Lead Cloud Security Engineer with 10+ years of experience in Information Security and at least 5+ years in Cloud Security implementation, and governance of security controls across multi-cloud environments (Azure, OCI, AWS, GCP). The role focuses on cloud security architecture, compliance, security operations, threat management, and continuous improvement of the organization's cloud security posture.
Key Responsibilities:
- Design and govern secure, scalable cloud architectures, security standards, policies, guardrails, and landing zones across multi-cloud environments.
- Own and enhance the Cloud Security Posture Management (CSPM) program, ensuring alignment with NIST, ISO 27001, CIS Benchmarks, SOC 2, PCI-DSS, GDPR, and Cloud Security Alliance frameworks.
- Perform threat modeling, security architecture reviews, risk assessments, and defining remediation strategies.
- Implement and manage cloud security controls including IAM, MFA, PAM, SSO, Zero Trust, CSPM, and Cloud Workload Protection (CWPP).
- Monitor cloud environments for threats, vulnerabilities, and misconfigurations, drive remediation with platform and application teams.
- Investigate and respond to cloud security incidents, support forensic investigations, and integrate cloud logs into SIEM platforms.
- Detect, investigate, and respond to cloud-based security incidents.
- Analyze logs from cloud-native services such as Defender for Cloud, OCI Cloud Guard, AWS CloudTrail, Azure Monitor, and GCP Logging.
- Support vulnerability management (Tannable), EDR (Sentinel One), Stellar XDR and Cyber AI Behavior Analytics , Defender for Office 365 email security monitoring solutions.
- Ensure audit readiness, compliance reporting, and maintenance of cloud security documentation, standards, and procedures.
- Provide technical leadership, mentor security engineers, and collaborate with business and technology stakeholders to strengthen cloud security capabilities.
Required Skills & Experience:
- Strong hands-on experience securing Azure, OCI, and AWS and GCP environments.
- Expertise in IAM, cloud-native security services, CSPM, CWPP, SIEM, Zero Trust, and cloud security operations.
- Experience with threat modeling, security architecture reviews, incident response, vulnerability management, and compliance assessments.
- Knowledge of ISO 27001, NIST, CIS Benchmarks, SOC 2, PCI-DSS, and GDPR.
- Experience with Tenable, SentinelOne, cloud logging, and security monitoring platforms.
- Strong communication, stakeholder management, and leadership skills.
Education Preferred Qualifications:
- UG/PG: Any Graduate / Post Graduate
- Certifications such as CCSP, CCSK, AWS Security Specialty, Azure Security Engineer, or Google Professional Cloud Security Engineer.
- Certified Ethical Hacker (CEH)
- Experience with hybrid/multi-cloud environments.