Cloud Security Architect
Indexed description
Job Description: Cloud Security SME – CNAPP & Cloud Architecture
Houston, TX & Juno Beach, FL
Contract - 12 Months
W2 Contract
Role Summary
Senior security professional to design cloud security architecture, deploy and operationalize CNAPP platforms, and guide cross-functional teams across a multi-cloud enterprise environment.
Key Responsibilities
- Design and implement cloud security architecture across AWS, GCP and Azure
- Deploy and manage CNAPP platforms (Upwind) including sensors, cloud collectors, CSPM policies, and RBAC/SSO configuration
- Govern S3 bucket security, IAM least-privilege models, and GCP security controls
- Integrate CNAPP with CrowdStrike, Tenable, and SIEM/SOAR tooling
- Drive vulnerability prioritization by correlating runtime context with scan findings
- Define and maintain RBAC frameworks and access governance workflows (e.g., ServiceNow)
- Mentor and guide VM, App Sec, SOC, and BU security teams
Required Qualifications
- 7+ years in cloud security; 3+ years in an SME or architecture role
- Hands-on Upwind, Wiz, or Prisma Cloud deployment experience
- Deep expertise in AWS (IAM, GuardDuty, S3, CloudTrail) and GCP (SCC, VPC Service Controls)
- Strong CSPM and agentless/eBPF sensor deployment experience
- Familiarity with NERC CIP, NIST 800-53, or CIS compliance frameworks
- Experience producing executive-level architecture and governance documentation
Preferred
- Certifications: CCSP, AWS Security Specialty, CISSP
- Exposure to ServiceNow VRM, AI-assisted security workflows, or lab/POC environment buildouts
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search