Cloud & Compliance Security Specialist

6 years

0 Lacs

Posted:3 days ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Cloud & Compliance Security Specialist (4–6 Years Experience)

 

Job Title: Cloud & Compliance Security Specialist

Experience Required: 4–6 Years

Location: Noida

Job Type: Full-Time

Department: Cyber Security

Reporting to: Head/CISO Cyber Security.


Role Overview:


Key Responsibilities:



1. Security Technology & Operations – 50%

·    Design and implement cloud-native security controls and architectures (e.g., IAM, encryption, firewalls, WAFs, SIEM, CSPM, CWPP).

·    Monitor and respond to cloud security incidents using industry-standard tools and platforms for threat detection and analysis.

·    Integrate DevSecOps practices into CI/CD pipelines to ensure secure code deployment.

·    Perform threat modeling, vulnerability assessments, and penetration testing of cloud infrastructure.

·    Collaborate with DevOps and IT teams to ensure secure configuration and hardening of cloud resources.

2. Governance, Risk & Compliance (GRC) – 35%

·      Develop, implement, and maintain overall organizational security policies, standards, and procedures including Cloud security aligned with industry frameworks (e.g., ISO 27001, NIST, CIS, CSA).

·      Conduct risk assessments and cloud security audits to identify gaps and recommend mitigation strategies.

·      Ensure compliance with regulatory requirements such as DPDP, GDPR, HIPAA, PCI-DSS, and local data protection laws.

·      Collaborate with internal audit and legal teams to manage third-party risk assessments and vendor security reviews.

·      Lead security awareness and training programs across the organization.


3. Reporting & Documentation – 15%

·      Prepare detailed security reports, dashboards, and metrics for executive leadership and stakeholders.

·      Maintain comprehensive documentation of cloud security architecture, incident response plans, and audit findings.

·      Track and report on remediation efforts and risk mitigation progress.

·      Support internal and external audits with accurate and timely documentation.


Required Skills & Qualifications:


Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.

4–6 years of experience in cybersecurity with at least 4 years in cloud security.

Strong knowledge of AWS, Azure, and/or GCP security services.

Hands-on experience with security tools: Next Gen Firewalls, SIEM, WAF, CSPM, EDR, etc.

Hands-on experience with DevSecOps, container security (Kubernetes, Docker), and Infrastructure as Code (Terraform, CloudFormation).

Hands-on experience with various VA/PT tools including open source like OpenVas/OWASP Zap/Veracode/Nessus/Qualys etc.

Certifications (Preferred):

  • Cloud Security:

     CCSP, AWS Security Specialty, Azure Security Engineer Associate, GCP Professional Cloud Security Engineer (any one of them)
  • General Security & Compliance:

     CISA/ISO 27001 Lead Implementer/Auditor (any one of them)


Mock Interview

Practice Video Interview with JobPe AI

Start DevOps Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You