Design, build, and maintain a multi-cloud environment across AWS, Azure,
and GCP using Infrastructure as Code (Terraform or equivalent).
Create and manage realistic non-human identity ecosystems including
service accounts, API keys, managed identities, service principals, and
federated credentials.
Develop and maintain a ground-truth identity manifest to validate
discovery accuracy and governance controls.
Implement security controls, isolation standards, monitoring, cost
optimization, and lifecycle management for cloud environments.
Build and support cloud discovery connectors across AWS, Azure, GCP, and
Microsoft Entra ID.
Support audit readiness, compliance evidence generation, and security
governance initiatives aligned with SOC 2 and ISO 27001 requirements.
Develop automation and tooling using Python and collaborate with
architects, engineering teams, and stakeholders to enhance cloud security
capabilities.
Skills Required
Cloud Security Engineering (AWS, Azure, GCP)
Identity & Access Management (IAM) and Non-Human Identity Security
Microsoft Entra ID, Service Principals, Managed Identities, App
Registrations
Infrastructure as Code (Terraform or equivalent)
Python Development and Automation
Secrets Management, Credential Rotation, and Workload Identity Federation
Cloud Discovery, Governance, CSPM, CIEM, and Identity Correlation