Senior Cloud Security Engineer
Brak informacji o wynagrodzeniu
SeniorFull-time·B2B
#434242·Dodano wczoraj·1
Źródło: CycladTech Stack / Keywords
Microsoft AzureMicrosoft Defender for CloudAWSGoogle Cloud PlatformOracle Cloud InfrastructureIBM CloudAzure PolicyEntra IDKey VaultMicrosoft Sentinel
Firma i stanowisko
Cyclad works with top international IT companies, focusing on delivering cutting edge technologies in multi-cloud environments including Microsoft Azure, AWS, Google Cloud Platform (GCP), Oracle Cloud Infrastructure (OCI), and IBM Cloud.
Wymagania
- Minimum 7 years of hands-on experience in cloud security with strong expertise in Microsoft Azure.
- Deep operational experience with Microsoft Defender for Cloud, including Defender plans and Cloud Security Posture Management (CSPM).
- Strong knowledge of the CIS Azure Benchmark and Microsoft Cloud Security Benchmark (MCSB).
- Hands-on experience with Azure Policy, Entra ID, RBAC, Key Vault, and Azure network security controls.
- Proven experience managing security audit findings and collaborating with internal and external auditors.
- Working knowledge of at least one additional cloud platform such as AWS, GCP, OCI, or IBM Cloud.
- Experience with Microsoft Sentinel or Microsoft Defender XDR, including Kusto Query Language (KQL).
- Strong communication skills and ability to collaborate effectively with engineering teams and stakeholders.
Nice to have:
- Industry certifications such as SC-100, AZ-500, CISSP, or CCSP.
- Experience securing environments across two or more public cloud platforms.
- Knowledge of policy-as-code tools, including OPA, Checkov, or tfsec.
- Familiarity with security and compliance frameworks such as SOC 2, ISO 27001, NIST 800-53, and PCI DSS.
- Scripting experience with PowerShell or Python.
Obowiązki
- Operate Microsoft Defender for Cloud across Azure subscriptions, monitoring secure score, alerts, recommendations, and Defender plans.
- Improve compliance with the CIS Azure Benchmark and Microsoft Cloud Security Benchmark (MCSB).
- Triage security recommendations and coordinate remediation with application, platform, and infrastructure teams.
- Manage end-to-end resolution of security audit findings including tracking, evidence collection, and closure.
- Oversee security exceptions and risk acceptance processes with documentation and reviews.
- Define and enforce Azure Policy, RBAC, and security guardrails to prevent cloud misconfigurations.
- Review and strengthen security of Azure services including Entra ID, networking, Key Vault, storage, compute, and container platforms.
- Provide security oversight across AWS, GCP, Oracle Cloud Infrastructure (OCI), and IBM Cloud, including onboarding into Microsoft Defender for Cloud CSPM.
- Manage vulnerability findings and drive remediation across cloud workloads.
- Collaborate with platform and engineering teams to integrate security controls into Infrastructure-as-Code (IaC) and CI/CD pipelines.
- Prepare reports on security posture, remediation progress, and compliance status for leadership and audit teams.
Benefity
- Private medical care with dental care covering 70% of costs, with family package option.
- Multisport card including for an accompanying person.
- Life insurance.
- Opportunity to work with talented engineers on large-scale, technically challenging projects.
Opieka zdrowotna
Karta sportowa
Ubezpieczenie
Cyclad
321 aktywnych ofert