Cloud Security Engineer
Job Description We are seeking a highly skilled and analytical Cloud Security Engineer In this role, you will be responsible for ensuring the robustness, integrity, and compliance of our multi-cloud ecosystems. You will work closely with security architecture and engineering teams to design, validate, and maintain technical security controls that protect critical digital assets
Key Responsibilities Control Validation: Perform regular security control validation and effectiveness testing across cloud platforms and services. Implementation & Maintenance: Develop, implement, and maintain cloud security controls in alignment with approved security architecture designs. Security by Design: Support the implementation of security-by-design principles across cloud infrastructure and business applications. Compliance & Frameworks: Assess cloud environments against internal security policies, security baselines, and local/international regulatory requirements. Security Tooling: Configure and manage cloud-native security services, advanced monitoring capabilities, and security automation tools. Weakness Identification: Systematically review cloud configurations to identify security vulnerabilities, misconfigurations, and compliance gaps. Cross-Team Collaboration: Collaborate with Security Architects to translate high-level security requirements into technical controls and practical operational procedures. Vulnerability Management: Support comprehensive vulnerability management activities, including remediation tracking and technical validation of corrective actions. Risk Assessments: Participate actively in cloud security risk assessments and recommend appropriate risk mitigation measures. Deployments Review: Conduct security control reviews for new cloud services, infrastructure deployments, and emerging technology implementations. Documentation: Develop technical security standards, operational procedures, and technical architecture documentation related to cloud security. Incident Support: Support security incident investigations and provide technical expertise during threat containment and remediation activities. DevSecOps Automation: Automate routine security checks, continuous compliance monitoring, and reporting metrics wherever practical. Threat Intelligence: Monitor emerging cloud security threats, zero-day vulnerabilities, and industry best practices, proactively recommending security stance improvements