Job Description
Our client is seeking a skilled Cloud Security Engineer to join our team. The candidate will be responsible for securing our cloud infrastructure, services, and applications across multiple environments, ensuring the confidentiality, integrity, and availability of cloud-based resources. This role is instrumental in safeguarding our cloud ecosystems and enabling secure business innovation.
- Design and implement security controls and solutions across public, private, and hybrid cloud environments (e.g., AWS, Azure, GCP).
- Apply and maintain cloud security baselines, guardrails, reference architectures, and security blueprints aligned with industry best practices.
- Perform cloud security assessments using recognized frameworks, identifying risks and developing mitigation and remediation roadmaps.
- Collaborate with engineering and DevOps teams to integrate security into CI/CD pipelines and enable secure DevOps practices.
- Contribute to enabling monitoring, detecting, and responding to cloud-based security threats and misconfigurations.
- Contribute to cloud security strategy and roadmap by identifying emerging threats, opportunities for automation, and process improvements.
- Contribute to maintaining compliance with regulatory and industry standards such as ISO 27001, NIST, SOC 2, CIS Benchmarks, and GDPR.
- Support cloud architecture and application teams by providing security guidance on architecture reviews, threat modeling, and risk assessments.
- Evaluate and implement cloud security technologies, including workload protection, data loss prevention (DLP), encryption, container security, and secrets management.
- Collaborate with internal stakeholders to create and enforce cloud-specific security policies, standards, and procedures.
- Stay current with evolving cloud security trends, threat landscapes, and vendor roadmaps to ensure proactive risk management.
Education & Experience
- You hold a Bachelor’s or Master’s degree in Computer Science, Information Technology, or a related cybersecurity field.
- You bring at least 7 years of experience in cybersecurity, with 5+ years specifically in cloud security across enterprise-scale environments.
- Experience working with multi-cloud and hybrid infrastructures is highly valued.
- Exposure to automated security tooling, cloud-native logging, and infrastructure-as-code (IaC) security is a plus.
Qualifications
- Strong hands-on knowledge of at least one major cloud provider (AWS, Azure, or GCP) and its security capabilities.
- Familiarity with cloud security frameworks and compliance standards, including NIST, ISO 27017/27018, CSA CCM, and CIS Cloud Benchmarks.
- Proficiency in implementing and managing IAM policies, firewall rules, network segmentation, and data encryption in the cloud.
- Experience with cloud-native security tools such as AWS Security Hub, Azure Defender, GCP Security Command Center, or third-party platforms like Prisma Cloud, Wiz, Lacework, etc.
- Working knowledge of container and Kubernetes security is considered a strong advantage.
- Relevant certifications are a plus: AWS Certified Security – Specialty, Microsoft Azure Security Engineer Associate, GCP
- Professional Cloud Security Engineer, CCSP, CISSP, or GIAC Cloud Security Essentials (GCLD).
Soft Skills
- You are detail-oriented, analytical, and proactive in identifying and resolving cloud security issues.
- You bring strong collaboration and communication skills, working seamlessly with cross-functional teams including DevOps, infrastructure, and compliance.
- You are adaptable, able to thrive in a fast-paced, cloud-first environment.
- You demonstrate strong problem-solving capabilities.
- You can prioritize work effectively, managing time and competing demands efficiently.
- You are fluent in English, and French language is a plus.