- Company Name
- Cloud People
- Job Title
- Senior Cloud Security Consultant
- Job Description
-
Job Title: Senior Cloud Security Consultant
Role Summary
Senior Cloud Security Consultant leads secure cloud adoption and transformation for enterprise and public sector customers across Microsoft Azure and Amazon Web Services. The role acts as a trusted advisor, conducting security assessments, designing compliant architectures, and guiding governance, compliance, and risk management while collaborating with SOC, engineering, and operations teams to ensure aligned, resilient cloud environments.
Expectations
- Deliver high‑impact security consultancy engagements, shaping service offerings and technical direction.
- Mentor junior staff and contribute to methodology development.
- Maintain up‑to‑date knowledge of cloud security tools, frameworks, and regulatory requirements.
- Bridge technical solutions and business objectives, ensuring clear communication with stakeholders.
Key Responsibilities
1. Lead cloud security posture assessments, architecture reviews, and gap analyses on Azure and AWS platforms.
2. Design, document, and validate secure cloud architectures aligned with NCSC, CIS Benchmarks, ISO 27001, NIST, and CSA CCM standards.
3. Advise on identity & access management, network segmentation, encryption, monitoring, and incident response in cloud environments.
4. Facilitate workshops defining cloud security strategies, governance models, and control frameworks for clients.
5. Support incident response and remediation activities related to cloud assets.
6. Collaborate with SOC and engineering teams to enhance detection, telemetry, and operational visibility.
7. Provide compliance guidance for regulated industries such as finance, healthcare, and public sector (ISO 27001, NIST, Cyber Essentials Plus, NHS DSPT).
8. Mentor junior consultants and aid in developing internal cloud security methodologies.
Required Skills
- ≥4 years cloud security consulting, architecture, or engineering experience.
- Deep technical expertise in Azure and AWS security services (e.g., Microsoft Defender for Cloud, AWS Security Hub, GuardDuty).
- Proficiency in IAM, network security, encryption, monitoring, and incident response.
- Applied knowledge of NIST, CIS Benchmarks, ISO 27001, CSA CCM, and other relevant frameworks.
- Strong stakeholder engagement and communication skills, able to translate technical concepts to business audiences.
- Experience working in regulated environments (Finance, Healthcare, Public Sector).
- Understanding of zero‑trust architecture, hybrid connectivity, and secure migration strategies.
Desirable: DevSecOps practices, CI/CD security, IaC (Terraform, ARM, CloudFormation); GCP multi‑cloud exposure.
Required Education & Certifications
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Preferred certifications: CISSP, CISM, CISA, CCSP, AWS Security Specialty, Azure Security Engineer Associate; DevSecOps or IaC certifications are advantageous.