Skip to main content
Hanna Robulets Company
Scraped fromDjinniYesterday
DevopsSenior

Cloud Architect (Security, Guardrails)

AzureAWSTerraformAws OrganizationsAws Service Control Policies (Scps)Azure PolicyMicrosoft SentinelSplunkAws CloudtrailAws GuarddutyAzure Activity LogsAzure DefenderEdrCwppCspmVulnerability ManagementIAMZero-TrustJit AccessPamCyberarkWizPalo Alto PrismaCrowdstrikeAws Control TowerArchitectMitre Att&CkSiemXdr
Work Type
Remote
Job Type
Full Time
Location
Worldwide
Salary
Not specified

About the Position

We are seeking a Cloud Architect with a deep specialization in Multi-Cloud Security Operations and Governance to secure our enterprise AWS and Azure footprints. This role focuses on building resilient defense-in-depth architecture, implementing automated compliance guardrails, and integrating advanced security products.

Responsibilities

  • Design and enforce automated security baselines and preventative guardrails across AWS and Azure using tools like AWS Organizations, Service Control Policies (SCPs), Azure Policy, and landing zones
  • Architect and optimize multi-cloud log aggregation strategies, engineering seamless telemetry pipelines from AWS (CloudTrail, GuardDuty) and Azure (Activity Logs, Defender) into centralized SIEM platforms (e.g., Microsoft Sentinel, Splunk) for real-time correlation and alerting
  • Strategy and deployment oversight for Endpoint Detection and Response (EDR) and Cloud Workload Protection Platforms (CWPP) across multi-cloud virtual machines, containers, and serverless environments
  • Implement and manage Cloud Security Posture Management (CSPM) and Vulnerability Management workflows, operationalize continuous scanning for misconfigurations, OS-level vulnerabilities, and container images, establishing automated remediation playbooks
  • Architect strict Zero-Trust frameworks, implementing robust Identity and Access Management (IAM) governance, Just-In-Time (JIT) access, and Privileged Access Management (PAM) integrations
  • Evaluate, deploy, and manage specialized third-party cloud security products (e.g., CyberArk, Wiz, Palo Alto Prisma, CrowdStrike) to augment native cloud security controls

Requirements

  • Deep architectural knowledge of security services and infrastructure configurations within both AWS and Azure
  • Direct experience engineering and tuning enterprise SIEM solutions, deploying EDR/XDR agents at scale, and managing enterprise vulnerability scanning suites
  • Strong proficiency in implementing cloud governance tools (Azure Policy, AWS Control Tower) and secure Infrastructure as Code (Terraform) utilizing static security analysis
  • Solid understanding of modern attack vectors, the MITRE ATT&CK framework, and how cloud misconfigurations translate into operational security risks
  • Ability to serve as the core technical liaison between Cloud Infrastructure teams, Compliance/Audit units, and the SOC
  • Experience: 3+ years in relevant roles
Cloud Architect (Security, Guardrails)
View Original