Role Summary
Senior security professional to design cloud security architecture, deploy and operationalize CNAPP platforms, and guide cross-functional teams across a multi-cloud enterprise environment.
Key Responsibilities
- Design and implement cloud security architecture across AWS, Google Cloud Platform and Azure
- Deploy and manage CNAPP platforms (Upwind) including sensors, cloud collectors, CSPM policies, and RBAC/SSO configuration
- Govern S3 bucket security, IAM least-privilege models, and Google Cloud Platform security controls
- Integrate CNAPP with CrowdStrike, Tenable, and SIEM/SOAR tooling
- Drive vulnerability prioritization by correlating runtime context with scan findings
- Define and maintain RBAC frameworks and access governance workflows (e.g., ServiceNow)
- Mentor and guide VM, App Sec, SOC, and BU security teams
Required Qualifications
- 7+ years in cloud security; 3+ years in an SME or architecture role
- Hands-on Upwind, Wiz, or Prisma Cloud deployment experience
- Deep expertise in AWS (IAM, GuardDuty, S3, CloudTrail) and Google Cloud Platform (SCC, VPC Service Controls)
- Strong CSPM and agentless/eBPF sensor deployment experience
- Familiarity with NERC CIP, NIST 800-53, or CIS compliance frameworks
- Experience producing executive-level architecture and governance documentation
Preferred
- Certifications: CCSP, AWS Security Specialty, CISSP
- Exposure to ServiceNow VRM, AI-assisted security workflows, or lab/POC environment buildouts