Overview
Client is seeking a highly skilled Cloud Security Specialist to join the Senior Director of Security's team, focused on securing enterprise-scale cloud environments across Microsoft Azure (primary) and AWS (secondary/bonus). Looking for 5-7 years exp.
This role operates at the intersection of cloud architecture, security engineering, and risk governance, partnering closely with infrastructure, DevOps, and application teams to embed security across all cloud initiatives. Key Responsibilities
Lead the design, implementation, and continuous improvement of cloud security controls across Azure environments, with support for AWS where applicable
Partner with engineering and platform teams to secure cloud-native architectures, including IaaS, PaaS, and SaaS solutions
Implement and manage identity and access security (Azure AD / Entra ID, IAM roles, RBAC, conditional access)
Drive zero trust architecture principles, including segmentation, least privilege, and continuous verification
Oversee cloud security posture management (CSPM) tools such as Microsoft Defender for Cloud, Prisma, or Wiz
Conduct threat modeling, risk assessments, and vulnerability management across cloud workloads
Ensure alignment with enterprise security frameworks (NIST, CIS benchmarks, ISO 27001)
Collaborate with DevOps teams to embed DevSecOps practices (CI/CD pipeline security, IaC scanning, secrets management)
Serve as a key advisor to the Senior Director of Security on cloud risk, strategy, and roadmap
Support incident response efforts specific to cloud-based threats and breachesRequired Qualifications
5–8+ years in cloud security, cybersecurity, or security engineering
Deep hands-on expertise in Microsoft Azure security services, including:
Network Security Groups / Firewall
Key Vault
Azure Policy
Microsoft Defender for Cloud
Strong understanding of:
Encryption, key management, and data protection
Network security architecture (VNETs, segmentation, private endpoints)
Identity & Access Management (IAM)
Experience implementing security controls in cloud-native and hybrid environments
Familiarity with compliance and regulatory environments Preferred / Bonus Skills (AWS)
Experience with AWS security services: o AWS IAM
o GuardDuty
o Security Hub
o CloudTrail
o AZ-500 (Azure Security Engineer)
o AWS Certified Security – Specialty
o CISSP, CCSP