Cloud Security Architect (Hybrid)
Indexed description
What you’ll do
Design and maintain cloud security architectures across Azure, AWS, and/or GCP environments
Define cloud security standards, reference architectures, and design patterns aligned with Zero Trust principles
Partner with platform, infrastructure, and application teams to embed security into cloud solutions from design through deployment
Lead security design reviews, threat modeling, and risk assessments for cloud-based initiatives
Architect identity-centric security models covering IAM, least-privilege access, conditional access, and workload identity
Define and guide implementation of network security, segmentation, and secure connectivity in cloud and hybrid setups
Establish security controls for cloud workloads, data protection, logging, monitoring, and incident readiness
Ensure cloud security architectures align with frameworks such as NIST, ISO 27001, and industry best practices
Advise stakeholders on security trade-offs, risks, and design decisions in clear and practical terms
Support governance activities including architecture documentation, risk acceptance, and compliance alignment
What we’re looking for
Proven experience as a Cloud Security Architect or senior cloud-focused security engineer
Strong hands-on knowledge of cloud security services and controls in Azure, AWS, or GCP
Solid experience designing Zero Trust and identity-first security models in cloud environments
Deep understanding of IAM, cloud networking, encryption, logging, and workload security
Ability to translate high-level security concepts into structured, implementable cloud architectures
Experience working closely with engineering teams, architects, and business stakeholders
Familiarity with security frameworks such as NIST CSF, ISO 27001, PCI DSS, or similar
Strong communication skills, with the ability to clearly explain complex cloud security designs
Nice to have
CISSP, CCSP, or relevant cloud security certifications
Experience with cloud-native security platforms (e.g., CSPM, CNAPP, cloud SIEM)
Background in DevSecOps or secure CI/CD pipeline design
Other details
Start date: Immediate or short notice preferred
Work setup: Hybrid (details to be discussed)
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search