H
Hanna Robulets Company
DevopsSenior
Cloud Architect (Security, Guardrails)
AzureAWSTerraformAws OrganizationsAws Service Control Policies (Scps)Azure PolicyMicrosoft SentinelSplunkAws CloudtrailAws GuarddutyAzure Activity LogsAzure DefenderEdrCwppCspmVulnerability ManagementIAMZero-TrustJit AccessPamCyberarkWizPalo Alto PrismaCrowdstrikeAws Control TowerArchitectMitre Att&CkSiemXdr
About the Position
We are seeking a Cloud Architect with a deep specialization in Multi-Cloud Security Operations and Governance to secure our enterprise AWS and Azure footprints. This role focuses on building resilient defense-in-depth architecture, implementing automated compliance guardrails, and integrating advanced security products.
Responsibilities
- Design and enforce automated security baselines and preventative guardrails across AWS and Azure using tools like AWS Organizations, Service Control Policies (SCPs), Azure Policy, and landing zones
- Architect and optimize multi-cloud log aggregation strategies, engineering seamless telemetry pipelines from AWS (CloudTrail, GuardDuty) and Azure (Activity Logs, Defender) into centralized SIEM platforms (e.g., Microsoft Sentinel, Splunk) for real-time correlation and alerting
- Strategy and deployment oversight for Endpoint Detection and Response (EDR) and Cloud Workload Protection Platforms (CWPP) across multi-cloud virtual machines, containers, and serverless environments
- Implement and manage Cloud Security Posture Management (CSPM) and Vulnerability Management workflows, operationalize continuous scanning for misconfigurations, OS-level vulnerabilities, and container images, establishing automated remediation playbooks
- Architect strict Zero-Trust frameworks, implementing robust Identity and Access Management (IAM) governance, Just-In-Time (JIT) access, and Privileged Access Management (PAM) integrations
- Evaluate, deploy, and manage specialized third-party cloud security products (e.g., CyberArk, Wiz, Palo Alto Prisma, CrowdStrike) to augment native cloud security controls
Requirements
- Deep architectural knowledge of security services and infrastructure configurations within both AWS and Azure
- Direct experience engineering and tuning enterprise SIEM solutions, deploying EDR/XDR agents at scale, and managing enterprise vulnerability scanning suites
- Strong proficiency in implementing cloud governance tools (Azure Policy, AWS Control Tower) and secure Infrastructure as Code (Terraform) utilizing static security analysis
- Solid understanding of modern attack vectors, the MITRE ATT&CK framework, and how cloud misconfigurations translate into operational security risks
- Ability to serve as the core technical liaison between Cloud Infrastructure teams, Compliance/Audit units, and the SOC
- Experience: 3+ years in relevant roles
Cloud Architect (Security, Guardrails)
View Original