Cloud Security Architect at ELITS designing secure cloud environments and managing cloud security policies for business objectives and compliance requirements.
Responsibilities
Cloud Security Architecture - Design and implement secure cloud infrastructures using Microsoft Azure and Microsoft 365 services, ensuring they meet security, compliance, and business requirements.
Identity and Access Management - Architect and manage secure Azure Active Directory (AAD) solutions, including multi-factor authentication (MFA), conditional access, and identity protection policies to secure user identities and access.
Cloud Security Best Practices - Leverage Azure Security Center, Microsoft Defender, and other tools to establish best practices for securing cloud environments, including vulnerability management, threat detection, and incident response.
Compliance & Governance: Ensure that all cloud architectures comply with industry regulations and internal security policies, including frameworks like GDPR, ISO 27001, SOC 2, HIPAA, and more. Auditing for compliance.
Risk Management: Identify potential security risks in cloud services and design mitigation strategies. Collaborate with risk management teams to assess threats, vulnerabilities, and implement corrective actions.
Cloud Security Tools, Automation, Scripting, and Reporting: Implement cloud security tools such as Azure Sentinel, Microsoft Defender for Identity, and Cloud App Security to monitor and automate threat detection and response. Develop automation solutions using tools such as PowerShell and Azure CLI, or Power BI to streamline cloud resource deployment and management.
Encryption & Secure Data Practices: Ensure the encryption of data at rest and in transit across all cloud environments. Establish secure data storage practices and advocate for zero-trust models within cloud services.
Collaboration & Consultation - Work closely with internal stakeholders, external clients, and vendors to ensure cloud environments are designed with a focus on security and meet business objectives.
Security Incident Response: Provide leadership in identifying, responding to, and remediating security incidents or vulnerabilities within cloud services.
Vulnerability Management: Participation in day-to-day vulnerability management activities and keep improving vulnerability management process.
Security Awareness & Training: Educate teams on cloud security best practices, DLP policies, and compliance requirements, fostering a culture of security awareness across the organization.
Business Continuity Management: Define and agree, together with stakeholders, the BCM process and plans, disaster recovery plans and metrics and goals.
Requirements
Bachelor's Degree or higher in Computer Science or equivalent
5+ years of prior work experience experience in cloud architecture or solution design with a focus on Microsoft Azure and Microsoft 365 security
Proven expertise in cloud security best practices, with strong knowledge of Azure Security Center, Microsoft Defender, and other security tools.
Hands-on experience with Azure Active Directory (AAD)/Entra ID, Conditional Access, Identity Protection, and security policies.
In-depth knowledge of Data Loss Prevention (DLP) strategies and tools within Microsoft 365 and Azure.
Understanding of compliance frameworks and regulatory requirements (e.g., GDPR, SOC 2, ISO 27001, HIPAA).
Strong background in encryption, identity and access management (IAM), and security monitoring tools such as Azure Sentinel, Cloud App Security, Microsoft Defender for Identity, and CrowdStrike Falcon and CS dashboard.
Experience implementing security features such as Zero Trust architecture, threat detection, and vulnerability management.
Familiarity with PowerShell scripting, Azure CLI, and other automation tools for managing cloud resources securely.
Knowledge of Azure Firewall, Azure Front Door, Web Application Firewall (WAF), and other Azure security solutions.
Experience in developing or maintaining security operations centers (SOC) or managing security incident response processes.
Strong analytical and problem-solving skills, with the ability to identify and address security vulnerabilities.
Cybersecurity Intern supporting Keenova's security program through hands - on experiences and mentorship. Engaging in various cybersecurity functions and contributing to meaningful projects.
Senior Security Engineer securing Cloudflare's global network and enterprise infrastructure. Working closely with engineering, IT, and compliance teams to address security risks at scale.
Senior IAM Systems Support Analyst providing L2 support expertise for CyberArk Agentic AI. Collaborating with security and development teams on IAM operations and compliance.
Senior Security Engineer focusing on hardening enterprise endpoints for cyber defense. Collaborating with NetSec and DataSec teams to minimize risks and enforce security protocols.
Security Consultant assessing and implementing security measures for organizations. Collaborating with clients to enhance their security posture and protect sensitive data.
Manager overseeing leadership protection and event security for GEICO. Responsible for security planning, threat analysis, and incident management during company events.
Cybersecurity Consultant managing TDR delivery team to enhance client security posture. Collaborating with clients and leading technical contributions in cybersecurity services.
Cyber Security & Compliance Lead protecting data and systems at Displayr. Responsible for risk management, compliance frameworks, and innovative security solutions using AI.
Lead Engineer in Security Engineering at Allstate overseeing security controls and product security teams. Collaborating with global stakeholders to manage security architecture and meet key performance indicators.
AI Security Architect focusing on AI security and governance for Voya Financial's applications and projects. Leading initiatives in artificial intelligence and securing innovative technology solutions.