Cloud Security Architect - Senior Consultant

This role focuses on cloud security architecture and implementation for enterprise clients, involving governance, identity, application security, and data protection across major cloud platforms like AWS, GCP, and Azure. It requires expertise in security tooling and frameworks, client interaction, and technical guidance for security projects.

What you'd actually do

  1. Lead/provide technical guidance and solutioning for the delivery of Cloud Cyber Risk projects in a project manager and or architect role, overseeing the activities of onsite and offshore engineers and architects across 8 key cyber domains: Governance, Identity, Application Security, PaaS security, Infrastructure security, Security Monitoring, Resilience and Data protection
  2. Assist in business development activities such as defining scope of services, building resource estimates and related pricing, packaging proposals and supporting the delivery of the proposal to the client for AWS, GCP, Azure and/or Oracle Cloud services
  3. Function as key client point of contact interface building rapport and trust with the client
  4. Function as a technical specialist in CNAPP, CWPP and CSPM technologies and security risk frameworks relevant to cloud as well as the industry leading benchmarks
  5. Lead the generation of all project deliverables such as assessment reports, system designs/ architectures and risk/security recommendations

Skills

Required

  • Cloud security strategy and architecture
  • Cloud security planning, deployment, and review
  • Technical guidance and solutioning for Cloud Cyber Risk projects
  • Project management and architect roles in cyber domains (Governance, Identity, AppSec, PaaS, Infra, Monitoring, Resilience, Data Protection)
  • Business development support (scoping, estimates, pricing, proposals)
  • Client interface and relationship building
  • Expertise in CNAPP, CWPP, CSPM technologies
  • Knowledge of cloud security risk frameworks and industry benchmarks
  • Generation of project deliverables (assessment reports, system designs, risk recommendations)
  • Domain knowledge of multi-hyperscaler cloud solutions and security concepts
  • Assisting clients with security frameworks, cloud configuration standards, and vulnerability resolution
  • Execution of cloud security engagements (assess, design, implement)
  • Technical health checks for cloud platforms
  • Support for AWS, GCP, Azure, Oracle cyber services
  • Cloud security analysis, recommendations, and configurations
  • Experience with leading cyber tooling (Wiz, Snyk)
  • Proof of concept and production deployments of cloud technologies
  • Client transitions to cloud services (tenant setup, service configuration)
  • Deployment of third-party security technologies (firewall, WAF, PAM)
  • Configuration and delivery of cloud security and compliance reports
  • Implementation of industry best practices for cloud security
  • Designing and developing cloud-specific security policies and standards
  • Troubleshooting system-level problems in multi-vendor environments
  • Documenting technical issues, analysis, and resolutions
  • Post-implementation reviews
  • Internal cloud and devsecops security technical training
  • Subject matter expertise on cloud cyber risk

Nice to have

  • DevSecOps
  • CI/CD pipelines
  • MFA, SSO, Conditional Access, PIM
  • Security Operations tooling
  • Scanning solutions

What the JD emphasized

  • Cloud Security Architect
  • Cloud Cyber Risk
  • AWS, GCP, Azure