Network Security Cloud Engineer
Indexed description
Responsibilities
- Design, develop, and implement secure cloud network architectures across public and private cloud platforms.
- Engineer and automate network security controls including:
- Cloud firewalls
- Security Groups
- Network ACLs
- On-premises firewalls
- Cloud-native security services
- Develop and maintain Infrastructure-as-Code using Terraform, CloudFormation, or similar tools.
- Implement secure hybrid connectivity between on-premises data centers and cloud environments.
- Configure and support:
- VPN
- AWS Direct Connect
- Azure ExpressRoute
- Transit Gateway
- VPC/VNet Peering
- Private Link
- Service Mesh technologies
- Partner with Cloud Engineering, Network Engineering, and Security teams to implement enterprise security standards.
- Improve network visibility through logging, monitoring, SIEM integration, and threat detection.
- Evaluate emerging cloud networking and security technologies through Proof of Concepts (POCs).
- Participate in architecture and security reviews.
- Drive automation and operational efficiency through scripting and security orchestration.
Required Skills
- 5+ years of experience in Network Security, Cloud Security, or Infrastructure Security.
- Hands-on experience securing AWS, Azure, Google Cloud, or Oracle Cloud environments.
- Strong understanding of:
- VPCs & VNets
- Routing
- Network Segmentation
- Load Balancing
- Private Connectivity
- Identity-Aware Access
- Encryption
- Network Policy Enforcement
- Experience with Infrastructure-as-Code:
- Terraform
- CloudFormation
- Experience with:
- Firewall policy automation
- Cloud-native security controls
- Hybrid cloud networking
- Knowledge of SIEM, logging, monitoring, and network telemetry.
- Experience with enterprise security technologies:
- Next-Generation Firewalls (NGFW)
- Web Application Firewalls (WAF)
- IDS/IPS
- Secure Web Gateways
- DNS Security
- Zero Trust Network Access (ZTNA)
- Experience securing SaaS environments and integrations.
- Hands-on knowledge of:
- CASB
- SSE
- SASE
- ZTNA
- Experience integrating SaaS applications with:
- Azure AD / Entra ID
- Okta
- Ping Identity
- Experience with:
- SAML
- OAuth
- OpenID Connect (OIDC)
- Experience supporting enterprise cloud migration initiatives.
- Experience leveraging AI tools to automate engineering tasks and improve operational efficiency.
Preferred Certifications
- AWS Certified Security – Specialty
- AWS Advanced Networking – Specialty
- Azure Network Engineer Associate
- Azure Security Engineer Associate
- Google Professional Cloud Network Engineer
- Google Professional Cloud Security Engineer
- CCNP Security or equivalent
Nice to Have
- Experience with multi-cloud environments.
- Strong scripting and automation skills.
- Experience working in large enterprise infrastructure environments.
- Excellent troubleshooting, communication, and collaboration skills.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search