Principal Cloud Security Architect
CEI Group
Waltham, MA
Apply
JOB DETAILS
JOB TYPE
Full-time, Employee
SKILLS
Access Control, Amazon Web Services (AWS), Applications Security, Cloud Architecture, Cloud Computing, Communication Skills, Computer Security, Cross-Functional, DevOps, Environmental Monitoring, Establish Priorities, GCP (Good Clinical Practices), Incident Response, Information/Data Security (InfoSec), Leadership, Microsoft Windows Azure, Network Architecture/Engineering, Network Security, Operations Management, Python Programming/Scripting Language, Risk Analysis, Risk Management, Scripting (Scripting Languages), Security Analysis, Security Architecture, Security Attacks, Software Engineering, Supervisory Control and Data Acquisition (SCADA), Threat Modeling, U.S. National Institute of Standards and Technology (NIST), Windows PowerShell
LOCATION
Waltham, MA
POSTED
2 days ago
Principal Cloud Security Architect (Azure)
Hybrid (90% Remote | Quarterly Onsite)
Locations: Waltham, MA | Brooklyn, NY | Hicksville, NY
Salary: Up to $210K Base + Bonus
About the Role
We are seeking a Principal Cloud Security Architect with deep expertise in Azure cloud engineering and security architecture. This is a highly visible, hands-on leadership role where you will own the security posture of cloud environments, drive risk reduction, and implement scalable security solutions across the enterprise.
This position offers a flexible hybrid model (90% remote) with quarterly in-person collaboration.
What You’ll Do
- Design and implement secure Azure cloud architectures (network segmentation, identity, access controls, subscriptions)
- Lead implementation of cloud security solutions across Azure (primary), AWS, and other platforms
- Own and manage CNAPP tools, including configuration, prioritization of findings, and remediation efforts
- Monitor cloud environments and conduct security assessments and risk analysis
- Automate security policies and workflows using Python, PowerShell, and cloud-native tools
- Support incident response for cloud-related security events
- Develop and promote cloud security standards, frameworks, and best practices
- Partner with engineering, DevOps, and business teams to embed security into cloud deployments
What You Bring
- Strong hands-on Azure cloud engineering and security architecture experience (REQUIRED)
- Experience with multi-cloud environments (AWS, GCP) and security tools (e.g., Security Center, Security Hub, CNAPP)
- Deep understanding of cloud security principles (identity, data protection, network security, threat modeling)
- Background in security operations, vulnerability management, and application security
- Scripting/automation skills (Python, PowerShell)
- Strong communication skills and ability to work cross-functionally
- Familiarity with security frameworks (NIST, CIS, CSA CCM, NERC CIP)
- Exposure to ICS/SCADA/OT environments is a plus
Compensation & Benefits
- Base Salary up to $210,000
- 15% target bonus (up to 200% based on performance)
- Flexible, remote-first work environment
- High-impact role with strong visibility across the organization
About the Company
C