Go interactive logo

Cloud Architect – Security & Guardrails (AWS/Azure)

Go interactive·Salary not specified

Primary stack

AWSAzure

Nice to have's

Threat & Incident ContextPolicy-as-CodeCollaboration

Job description

Description language:

About the Position

Our client is an insurance company, and we are seeking a Cloud Architect with a deep specialization in Multi-Cloud Security Operations and Governance to secure our enterprise AWS and Azure footprints. This role focuses on moving beyond basic infrastructure design to build a resilient defense-in-depth architecture. You will be responsible for implementing automated compliance guardrails, integrating advanced security products (SIEM, EDR), and managing cloud-native vulnerability lifecycles. You will bridge the gap between cloud engineering and the Security Operations Center (SOC) to ensure our platforms are continuously monitored, defended, and compliant.

Responsibilities

  • Cloud Security Guardrails & Governance: Design and enforce automated security baselines and preventative guardrails across AWS and Azure using tools like AWS Organizations, Service Control Policies (SCPs), Azure Policy, and landing zones.
  • SIEM & Logging Engineering: Architect and optimize multi-cloud log aggregation strategies. Engineer seamless telemetry pipelines from AWS (CloudTrail, GuardDuty) and Azure (Activity Logs, Defender) into centralized SIEM platforms (e.g., Microsoft Sentinel, Splunk) for real-time correlation and alerting.
  • EDR & Workload Protection: Strategy and deployment oversight for Endpoint Detection and Response (EDR) and Cloud Workload Protection Platforms (CWPP) across multi-cloud virtual machines, containers, and serverless environments.
  • Vulnerability & Posture Management: Implement and manage Cloud Security Posture Management (CSPM) and Vulnerability Management workflows. Operationalize continuous scanning for misconfigurations, OS-level vulnerabilities, and container images, establishing automated remediation playbooks.
  • Identity & Access Security: Architect strict Zero-Trust frameworks, implementing robust Identity and Access Management (IAM) governance, Just-In-Time (JIT) access, and Privileged Access Management (PAM) integrations.
  • Security Product Integration: Evaluate, deploy, and manage specialized third-party cloud security products (e.g., CyberArk, Wiz, Palo Alto Prisma, CrowdStrike) to augment native cloud security controls.

Requirements

  • Multi-Cloud Architecture: Deep architectural knowledge of security services and infrastructure configurations within both AWS and Azure.
  • SecOps Toolkit Expertise: Direct experience engineering and tuning enterprise SIEM solutions, deploying EDR/XDR agents at scale, and managing enterprise vulnerability scanning suites.
  • Automated Policy-as-Code: Strong proficiency in implementing cloud governance tools (Azure Policy, AWS Control Tower) and secure Infrastructure as Code (Terraform) utilizing static security analysis.
  • Threat & Incident Context: Solid understanding of modern attack vectors, the MITRE ATT&CK framework, and how cloud misconfigurations translate into operational security risks.
  • Collaboration: Ability to serve as the core technical liaison between Cloud Infrastructure teams, Compliance/Audit units, and the SOC.
  • Language: Upper-intermediate level of English.

Nice to Have

  • AWS Certified Security – Specialty / Certified Solutions Architect – Professional
  • Microsoft Certified: Azure Security Engineer Associate / Cybersecurity Architect Expert
  • CISSP (Certified Information Systems Security Professional) or CCSP (Certified Cloud Security Professional)

We Offer

  • Fully remote work
  • A professional, supportive, and friendly team.
  • Long-term employment with competitive compensation, based on experience.
  • Continuous knowledge sharing with engaged co-workers.

© Go interactive. This job description was sourced from the employer's public career page. TheJob is not the employer — we index the posting and route candidates to the source. All content rights and hiring decisions belong to the employer.

Привіт!Ти маєш дещо знати проGoInteractive. Ми — американська компанія, що створює команди девелоперів в Україні для наших західних партнерів.На відміну від аутсорсу, де завдання приходять від різних замовників, у нас ти станеш повноцінним членом їх команди і працюватимеш виключно з їх продуктом.Ми співпрацюємо зі стартапами та компаніями з США, Великобританії та інших країн, що створюють продукти у таких сферах, поміж інших:CybersecurityHealthcareInsuranceTravel technologiesCustomer supportAssessment tools and more.Як це працює?Ти працюватимеш безпосередньо зі своєю командою; будеш брати участь у прийнятті важливих рішень; пропонувати і втілювати свої ідеї. Коротше, станеш важливою частиною корисного для користувачів та цікавого для розробників продукту.Ми не втручатимемось у процес, а будемо займатись всіма логістичними, адміністративними та бухгалтерськими питаннями, щоб позбавити тебе зайвого головного болю та щоб атмосфера у офісі давала можливість зосередитися на роботі або релакснути, коли це потрібно.Які ми?Ми делікатні і поважаємо кожну людину, її думки та потреби. Ми прагнемо бути кращими у всьому, що ми робимо. Ми любимо влаштовувати чемпи з тенісу та футболу, грати в настільні ігри, блефувати в покері та співати на вечірках.У нас ти не знайдеш монотонної роботи, бюрократії чи зайвих ланок менеджменту.We are the people company.Join us!

More at Go interactive

All 28 roles

Similar jobs

Popular searches