| Job Summary | - We are seeking an experienced Cloud Security Architect / Multi-Cloud Infrastructure Architect to design, implement, and govern secure, scalable, and resilient cloud infrastructure across AWS, Azure, and Google Cloud Platform (GCP).
- The role focuses on developing enterprise cloud security architectures, implementing zero-trust and defense-in-depth controls, securing networks and workloads, and ensuring compliance with organizational and regulatory requirements.
- The architect will collaborate with security, infrastructure, DevOps, application, and engineering teams to establish cloud security standards, automate security controls, and support large-scale cloud migrations and modernization initiatives.
|
| Key Responsibilities | - Design and lead secure multi-cloud architectures across AWS, Azure, and GCP, incorporating scalability, availability, resilience, and security best practices.
- Develop enterprise cloud security reference architectures, standards, patterns, and governance frameworks.
- Implement Zero Trust security principles across cloud infrastructure, identities, applications, networks, and workloads.
- Design secure VPC/VNet architectures, network segmentation, private connectivity, firewalls, WAF, VPN, routing, and hybrid-cloud connectivity.
- Establish IAM and privileged-access controls, including RBAC/ABAC, MFA, SSO, service identities, workload identities, and least-privilege access.
- Secure cloud workloads using CSPM, CWPP, CIEM, CNAPP, vulnerability management, and cloud-native security services.
- Integrate security into DevSecOps and CI/CD pipelines, implementing automated security scanning, policy enforcement, infrastructure validation, and compliance checks.
- Design and govern Infrastructure as Code (IaC) using Terraform, CloudFormation, ARM/Bicep, or equivalent technologies.
|
| Required Qualifications | - Architect and implement secure enterprise-grade, multi-cloud infrastructure across AWS and Azure.
- GCP is a plus, ensuring alignment with benchmark and corporate security policies.
- Good Knowledge of Python and Scripting.
- Adopt complex hybrid connectivity solutions to link on-premises and cloud-based test systems.
- Establish scalable IAM hierarchies across trust relationships and organizational units across multiple cloud tenants.
- Infrastructure resiliency and disaster recovery: Architect high-level disaster-recovery topologies across disparate cloud providers to eliminate single points of failure.
- Develop, document, test, and automate failover mechanisms for critical enterprise workloads to ensure zero-downtime objectives.
- Infrastructure as code and automation: Define, build, and maintain the IaC repository using automation platforms.
- Implement secure CI/CD deployment pipelines.
- Technical advisory and collaboration: Serve as the primary SME on cloud infrastructure for the core cybersecurity team, translating security objectives into concrete cloud configurations.
- Collaborate with traditional on-premises network and systems administration teams to systematically migrate or extend legacy workloads to the cloud without disrupting active operations.
|