APN Consulting, Inc. is a progressive IT staffing and services company offering innovative business solutions to improve client business outcomes. We focus on high impact technology solutions in ServiceNow, Fullstack, Cloud & Data, and AI / ML. Due to our globally expanding service offerings we are seeking top-talent to join our teams and grow with us.
Direct Client Requirement
Role: Senior Cloud Security Engineer
Location: India Remote potential to work in the office in the future (Pune or Hyderabad)
Duration: Full Time
Work hours: 2-11 pm India hours
Summary of Position
Key member of the Cloud Security team, this role focuses on implementing, managing, and automating security controls across multi-cloud environments with emphasis on AWS and Azure platforms. The Senior Cloud Security Engineer will work hands-on with Wiz platform, CrowdStrike, Microsoft Sentinel, and cloud-native security services to detect threats, respond to incidents, and build automated security solutions. This role demands strong technical expertise in cloud security operations, DevSecOps practices, security automation using serverless technologies, and the ability to architect and implement scalable security solutions across enterprise cloud environments.
Essential Duties and Responsibilities
- Implement and manage security controls for multi-cloud environments using Microsoft Sentinel, Wiz, and cloud-native security services (AWS GuardDuty, Security Hub, Azure Defender for Cloud).
- Design and implement security automation workflows using Azure Functions, AWS Lambda, Azure Logic Apps, and other serverless technologies for incident response and remediation.
- Conduct security assessments and threat hunting activities across cloud environments using Wiz platform, Crowdstrike and other security tools.
- Build and maintain automated security response playbooks and runbooks for common cloud security scenarios.
- Investigate and respond to security incidents in cloud environments, including forensic analysis and root cause determination.
- Create and maintain security dashboards, metrics, and reports using Power BI, Azure Workbooks, or similar visualization tools.
- Implement Infrastructure as Code security scanning and policy enforcement in development pipelines.
- Define, document, and implement security standards and best practices for cloud services and workloads.
- Continuously seek opportunities for automation to improve detection capabilities, reduce manual effort, and accelerate response times.
Qualifications Expected for Position
- 5+ years of experience in information security with a focus on cloud security, security operations, or DevSecOps.
- 3+ years of hands-on experience with cloud security monitoring, threat detection, and incident response in AWS and Azure environments.
- 2+ years experience with Microsoft Sentinel including KQL query development, analytics rules, workbooks, and playbook automation.
- 2+ years experience with cloud security posture management tools (Wiz, Prisma Cloud, or similar platforms).
- Strong experience implementing security automation using serverless technologies (Azure Functions, AWS Lambda, Logic Apps).
- Deep understanding of cloud security principles and practical experience with cloud-native security services across AWS and Azure.
- Proficiency with scripting and programming for security automation (Python, PowerShell, Bash).
- Experience with DevSecOps practices and integrating security into CI/CD pipelines.
Preferred Qualifications
- Hands-on experience with Wiz security graph, Defender for Cloud, vulnerability prioritization, and cloud inventory management.
- Experience with policy-as-code frameworks (Azure Policy, AWS Service Control Policies, OPA, Sentinel).
- Proficiency with Infrastructure as Code tools (Terraform, Bicep, ARM Templates, CloudFormation) for security automation deployment.
- Experience building dashboards and reports using Power BI, Azure Workbooks, Grafana, or similar visualization tools.
- Understanding cloud identity and access management security (Azure AD/Entra ID, AWS IAM, PIM, Conditional Access).
- Experience with container security monitoring and serverless security best practices.
- Knowledge of CI/CD tools and security integration (Azure DevOps, GitHub Actions, GitLab CI, Jenkins).
- Advanced proficiency with KQL (Kusto Query Language) for threat detection, investigation, and analytics.
We are committed to fostering a diverse, inclusive, and equitable workplace where individuals from all backgrounds feel valued and empowered to contribute their unique perspectives. We strongly encourage applications from candidates of all genders, races, ethnicities, abilities, and experiences to join our team and help us build a culture of belonging.