CrawlJobs Logo

Cloud Security Assurance

nttdata.com Logo

NTT DATA

Location Icon

Location:
Romania , Cluj

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Cloud Security Assurance role at NTT DATA involves developing secure architectural patterns, conducting risk assessments, and providing mitigation strategies. Candidates should have a strong background in cloud security and compliance frameworks, with a minimum of 5-10 years of experience. A bachelor’s degree in Information Security or Cybersecurity is required, while a master’s degree is preferred. Key skills include AWS, Azure, GCP, and relevant certifications like CISSP and SABSA.

Job Responsibility:

  • Translate business and compliance requirements into practical, well-documented security architecture designs using recognized frameworks (e.g., ISO 27001, NIST, CIS)
  • Develop, document, and maintain consistent secure architectural patterns with an emphasis on cloud security (AWS, Azure, GCP)
  • Implement threat-informed design principles, integrating zero trust architectures and defensive depth strategies to address security gaps and enhance resilience
  • Maintain alignment between security policies, enterprise architecture principles, and client expectations
  • Conduct comprehensive risk assessments and threat modeling to evaluate existing or proposed architectures for vulnerabilities
  • Provide actionable mitigation strategies informed by a risk-based approach and evolving threat intelligence data
  • Participate in or support incident response initiatives, aiding in root cause analysis and the development of post-incident recommendations
  • Act as a trusted advisor to clients by engaging in technical discussions to inform strategic security decisions
  • Collaborate cross-functionally with development, operations, and engineering teams to validate that security controls are effectively implemented across the development lifecycle
  • Deliver technical insights in presentations, workshops, and reports tailored to both technical and executive audiences
  • Engage in audits, assessments, and reviews to ensure delivery meets strict alignment with industry frameworks
  • Provide clients with guidance on the implementation and enforcement of technical standards and cloud-specific security policies
  • Maintain up-to-date knowledge of regulations and frameworks such as NIS2 and DORA to address compliance risks and initiatives
  • Recommend improvements in security policies based on compliance evaluations and evolving risks
  • Contribute to the development of security roadmaps by delivering expert recommendations tailored to each client’s security objectives
  • Assess emerging technologies and threats, identifying opportunities to evolve architectural strategies through innovation and cutting-edge tools
  • Participate as an SME in pre-sales activities, assisting in defining technical collateral that supports project delivery

Requirements:

  • Bachelor’s degree in Information Security, Cybersecurity, or a relevant IT field (Master’s degree preferred)
  • Minimum 5-10 years experience in security architecture, compliance, and cloud security roles, working with frameworks such as ISO 27001, NIS/NIS2, or NIST CSF
  • Deep understanding of cloud security principles including management on AWS, Azure, and GCP platforms
  • Familiarity with IAM, CASB, SIEM, and container security solutions
  • CISSP or SABSA certifications required
  • Cloud-specific certifications preferred (e.g., AWS Security Specialty, Azure Solutions Architect)
  • Must meet UK SC Clearance eligibility guidelines
  • Proven ability to collaborate across diverse technical teams, influencing senior stakeholders in an advisory capacity
  • Excellent communication and presentation skills for delivering complex technical concepts to non-specialist audiences
  • Strong analytical thinking and the ability to rapidly assess risks in a given architecture framework
  • Previous hands-on experience in developing security frameworks and implementing architectural changes at scale
  • Ability to conduct cloud security posture assessments to identify misconfigurations early
  • Excellent command of both spoken and written English

Nice to have:

Direct experience working in government, military, or intelligence organizations advantageous

What we offer:
  • Smooth integration and a supportive mentor
  • Choose from Remote, Hybrid or Office work opportunities
  • Projects have different working hours to suit your needs
  • Sponsored certifications, trainings and top e-learning platforms
  • Private Health Insurance
  • Individual coaching sessions
  • Accredited Coaching School
  • Epic parties or themed events

Additional Information:

Job Posted:
January 24, 2026

Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cloud Security Assurance

Cloud Security Senior Analyst

The Cloud Security Operations team works in a multi-disciplinary team of teams d...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in a similar, offensive security related role
  • Offensive Security-oriented mindset (threat-modeling, vulnerability assessments, penetration testing, etc.)
  • Hands-on experience with cloud platforms (GCP, AWS)
  • Excellent understanding of cloud security concepts/best practices in various cloud Service Providers (for example: Azure/M365)
  • Familiarity with the current threat landscape which GCP exists in
  • Familiarity with securing containers and container orchestration frameworks (such as Kubernetes)
  • Programming/scripting languages a plus (Python and PowerShell preferred, but not required)
  • Ability to deliver presentations to technical and non-technical individuals
  • Fluency in English
  • Bachelor's Degree or equivalent working experience
Job Responsibility
Job Responsibility
  • Full end to end security assurance activities in GCP including Vulnerability Assessments (preproduction, post-production), Purple Team exercises (Red and Blue team collaboration) to identify areas of risk and ensure any gaps are documented and remediated
  • Provide threat modeling and risk assessment services to characterize the risk and severity posture of various systems and components in the cloud environment
  • Partner with Engineering and Operations teams to create, implement, and apply DevSecOps practices and processes that are consumed by developers across all sectors in Citi
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right

Azure Cloud SRE - Security Specialist II

Quzara seeks a highly skilled Senior Azure Cloud SRE - Platform with a focus on ...
Location
Location
United States
Salary
Salary:
Not provided
quzara.com Logo
Quzara
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor of Science in Computer Science or related field
  • 7+ years of experience in Information Assurance, Cloud Infrastructure, and Security Operations
  • Hands-on expertise with Terraform for IaC, Chef for configuration management, Azure Image Builder for image creation, and Qualys for vulnerability management
  • Advanced certifications preferred: AZ-500 (Azure Security Engineer), MS-500 (Microsoft Security Administrator)
  • Strong scripting skills in PowerShell, Python, or similar languages
  • Proven experience leading technical teams and working in DevSecOps and cloud security environments
  • Strong communication skills
  • adept at collaborating with various stakeholders
  • Leadership or mentoring experience is advantageous
Job Responsibility
Job Responsibility
  • Infrastructure as Code (IaC) with Terraform: Design, implement, and maintain secure and scalable cloud infrastructure using Terraform to automate deployments and manage cloud resources effectively
  • Configuration Management with Chef: Manage and automate system configurations, ensuring consistent security baselines and compliance across environments using Chef
  • Image Management: Create, maintain, and deploy golden images using Azure Image Builder to standardize secure, up-to-date machine images across cloud environments
  • Security & Vulnerability Management: Leverage Qualys to continuously scan for vulnerabilities, track remediation efforts, and ensure compliance with security standards
  • Technical Leadership: Serve as the technical leader of the SRE team, mentoring team members, driving best practices in cloud security, and providing strategic direction on infrastructure initiatives
  • Team Collaboration & Guidance: Lead technical discussions, provide expertise on complex security challenges, and guide the team in implementing secure, scalable, and high-performing cloud solutions
  • Automation & Scripting: Develop automation scripts and workflows to improve security processes, configuration management, and cloud infrastructure deployments
  • Collaboration & Security Best Practices: Collaborate with cross-functional teams to integrate security into infrastructure, CI/CD pipelines, and daily operations, ensuring adherence to security policies and frameworks
What we offer
What we offer
  • Inclusive work environment committed to innovation and teamwork
  • Fulltime
Read More
Arrow Right

Senior Information Assurance Specialist

We’re looking for a highly skilled Senior Information Assurance Specialist to he...
Location
Location
United Kingdom , Oxford or Hampshire
Salary
Salary:
Not provided
datacareers.co.uk Logo
DataCareers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong technical security background (cloud, MS stack, architecture, modern tech risks)
  • Applied IA experience: NIST, security controls, risk assessment
  • Ability to coach others and communicate clearly with non-technical stakeholders
  • Experience in a regulated environment (policing, HMG, MoD or similar)
  • Collaborative, proactive approach with high integrity
  • Act as a visible advocate for high standards of information assurance
  • Relevant professional qualifications (e.g. CISSP, CISMP, Information Security certifications) are also preferred
  • A full UK driving licence is essential due to travel and operational flexibility requirements
  • Five years of continuous UK residency to enable the necessary background checks to be completed
Job Responsibility
Job Responsibility
  • Lead SyAP assessments
  • Produce high-quality assurance evidence
  • Help align policies and standards with national expectations
  • Uplift colleagues through mentoring, translating complex concepts into plain language and supporting a maturing IA function
  • Assess security controls, guide secure-by-design decisions and support the organisation in managing risk across both established and emerging technologies
  • Bring clarity, rigour and practical insight to ensure decisions are safe, proportionate and evidence-based
What we offer
What we offer
  • 30 days annual leave plus bank holidays
  • Hybrid and flexible working arrangements
  • Career development pathways and continuous professional learning
  • A wide range of wellbeing support services and staff networks
  • Lifestyle and discount schemes
  • Local Government Pension Scheme
Read More
Arrow Right

System Information Assurance and Security Engineer

Barbaricum is seeking a highly skilled System Information Assurance and Security...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD TS/SCI Clearance
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (Master’s preferred)
  • 5+ years of experience in enterprise identity and access management architecture
  • Demonstrated expertise with Zero Trust frameworks and DoD ICAM standards
  • Hands-on experience with SAML, OAuth2.0, OpenID Connect, PKI, and certificate management
  • Experience with DoD enterprise solutions such as Radiant Logic, Okta, Ping Identity, SailPoint, ForgeRock, Microsoft Entra ID (Azure AD), or equivalent
  • Deep knowledge of Privileged Access Management and Identity Governance & Administration solutions
  • Strong understanding of DoD cybersecurity compliance frameworks (RMF, NIST SP 800-53, 800-207, 8140/8570)
  • IAM / DoD Certification IAT Level II (e.g., Security+ CE, SSCP, GSEC)
Job Responsibility
Job Responsibility
  • Execute engineering solutions for identity credential and access management for Zero Trust implementation across enterprise systems
  • Design and maintain an enterprise-wide identity and access management strategy aligned with DoD Zero Trust principles, NIST 800-207, and DoD ICAM Reference Design
  • Lead integration of federated identity, single sign-on (SSO), and multi-factor authentication (MFA) across cloud and on-prem environments
  • Develop and maintain policies, standards, and reference architectures to enforce least-privilege and attribute-based access control (ABAC)
  • Conduct the implementation of Privileged Access Management (PAM) and Identity Governance and Administration (IGA) solutions
  • Collaborate with cybersecurity, network, and cloud teams to align ICAM solutions with Zero Trust pillars (identity, device, network, application, and data)
  • Ensure compliance with DoD 8140/8570, RMF, FedRAMP, and other applicable frameworks
  • Lead proof-of-concepts (POCs) and technology evaluations for emerging identity
Read More
Arrow Right

Senior System Information Assurance and Security Engineer

Barbaricum is seeking a highly skilled System Information Assurance and Security...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD TS/SCI Clearance
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (Master’s preferred)
  • 10+ years of experience in enterprise identity and access management architecture
  • Demonstrated expertise with Zero Trust frameworks and DoD ICAM standards
  • Hands-on experience with SAML, OAuth2.0, OpenID Connect, PKI, and certificate management
  • Experience with DoD enterprise solutions such as Radiant Logic, Okta, Ping Identity, SailPoint, ForgeRock, Microsoft Entra ID (Azure AD), or equivalent
  • Deep knowledge of Privileged Access Management and Identity Governance & Administration solutions
  • Strong understanding of DoD cybersecurity compliance frameworks (RMF, NIST SP 800-53, 800-207, 8140/8570)
  • IAM / DoD Certification IAT Level II (e.g., Security+ CE, SSCP, GSEC)
Job Responsibility
Job Responsibility
  • Execute engineering solutions for identity credential and access management for Zero Trust implementation across enterprise systems
  • Design and maintain an enterprise-wide identity and access management strategy aligned with DoD Zero Trust principles, NIST 800-207, and DoD ICAM Reference Design
  • Lead integration of federated identity, single sign-on (SSO), and multi-factor authentication (MFA) across cloud and on-prem environments
  • Develop and maintain policies, standards, and reference architectures to enforce least-privilege and attribute-based access control (ABAC)
  • Conduct the implementation of Privileged Access Management (PAM) and Identity Governance and Administration (IGA) solutions
  • Collaborate with cybersecurity, network, and cloud teams to align ICAM solutions with Zero Trust pillars (identity, device, network, application, and data)
  • Ensure compliance with DoD 8140/8570, RMF, FedRAMP, and other applicable frameworks
  • Lead proof-of-concepts (POCs) and technology evaluations for emerging identity
Read More
Arrow Right

Staff Product Security Engineer

We’re looking for a Staff Product Security Engineer to lead the design and imple...
Location
Location
United States
Salary
Salary:
184000.00 - 252000.00 USD / Year
alpha-sense.com Logo
AlphaSense
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in product, application, or cloud security engineering
  • Deep understanding of secure SDLC, threat modeling, and secure architecture design
  • Proven expertise with AWS cloud security concepts and best practices
  • Strong experience with container security, orchestration, and runtime protection
  • Proficiency in Python, Java, and/or JavaScript for security automation, code review, and tooling
  • Experience securing AI/ML pipelines, data workflows, or model-serving infrastructure
  • Familiarity with DevSecOps and continuous integration/deployment environments
Job Responsibility
Job Responsibility
  • Embed robust security practices throughout the software and AI development lifecycle (SDLC)
  • Lead secure design reviews, threat modeling, and risk assessments for AI-driven products, APIs, and backend services
  • Partner with engineering and product teams to ensure security, privacy, and compliance by design
  • Build and maintain security automation and governance frameworks that integrate seamlessly into development workflows
  • Architect and enforce security controls for AI/ML systems, including model training, data pipelines, and inference environments
  • Identify and mitigate AI-specific attack vectors such as data poisoning, model inversion, prompt injection, and model theft
  • Collaborate with governance and compliance teams to align with ethical AI principles and frameworks like NIST AI RMF and the EU AI Act
  • Implement model provenance, integrity, and auditability controls to ensure responsible and secure AI operations
  • Partner with DevOps and SRE teams to secure service meshes, container networking, and secrets management
  • Drive software supply chain security, including artifact integrity, dependency management, and vulnerability reduction
What we offer
What we offer
  • Competitive compensation, benefits, and career growth opportunities
  • Opportunity to shape and drive product security strategy
  • Collaborative and security-minded engineering culture
  • Work on cutting-edge security challenges in a fast-growing company
  • Performance-based bonus, equity, and a generous benefits program
  • Fulltime
Read More
Arrow Right

Head of Security

We are looking for a hands-on security generalist to build Metronome's security ...
Location
Location
United States , New York City; San Francisco Bay Area
Salary
Salary:
196800.00 - 246000.00 USD / Year
metronome.com Logo
Metronome
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • At least 5+ years of experience in security engineering, with a strong software engineering background before
  • Hands-on experience with SOC 2 audits, compliance frameworks, and customer security assurance
  • Deep understanding of cloud security, modern security architectures and tooling
  • Track record of building relationships with engineering teams and being seen as an enabler
  • Excellent communication skills with experience presenting to customers and executives
  • Self-starter who can work independently and manage multiple security initiatives
Job Responsibility
Job Responsibility
  • Take ownership of Metronome's entire security posture, handling everything from vulnerability management to policy updates
  • Coordinate penetration testing, security assessments, and incident response as the primary security point person
  • Manage security tooling, monitoring, and the day-to-day security work
  • Balance multiple security initiatives and priorities across the organization
  • Own all customer-facing security work: questionnaires, compliance calls, security reviews, and technical due diligence
  • Manage SOC 1 & SOC 2 audits end-to-end and expand compliance framework as customer requirements grow
  • Serve as the definitive security voice for sales calls, customer meetings, and enterprise security discussions
  • Transform our customer assurance process from shared ownership to dedicated, streamlined execution
  • Partner with our engineering team to maintain security excellence while minimizing development friction
  • Review security architecture decisions and provide security guidance that accelerates rather than blocks development
What we offer
What we offer
  • Excellent medical, dental, vision, and life insurance coverage, including a One Medical membership
  • Paid parental leave
  • FSA (Flexible spending account)
  • Retirement planning - Traditional and ROTH 401(k)
  • Flexible time off
  • Employee assistance program (mental health benefits)
  • Culture where personal growth is highly valued
  • Market-benched equity
  • Sales incentive pay (for eligible roles)
  • Fulltime
Read More
Arrow Right

Staff Professional Services Security Engineer - Focused Services

You will work firsthand with our valued customers to address their complex post-...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of hands-on technical knowledge in support, troubleshooting, and customer-facing environments
  • Experience as a Professional Services engineer, handling deployment, implementation, and integration projects for customers
  • Solid understanding of cloud infrastructure, security processes, and core concepts across AWS, Azure, and GCP
  • Strong knowledge of operating systems, virtual machines, and containers
  • Solid understanding of networking fundamentals: TCP/IP, DNS, IP routing, and security protocols/procedures (HTTP/HTTPS, IPSec, NAT)
  • Experience with containers and orchestrators (Openshift, Kubernetes, Docker), CI/CD pipelines, Terraform, Ansible, container registries, serverless environments
  • Basic to intermediate Linux skills, including filesystem navigation, user and permission management, log analysis, networking commands (curl, wget, tcpdump), system monitoring, and basic shell scripting
  • Familiarity with scripting and configuration formats: Python, JSON, YAML, and Bash
  • Strong consulting, project management, time management, and organizational skills
  • Proven ability to act as a trusted advisor, delivering business value and interacting effectively with technical and non-technical stakeholders
Job Responsibility
Job Responsibility
  • Provide customers on-site support, deployment and implementation, knowledge transfer, configurations, troubleshooting, and standard methodologies to customers via phone, e-mail, and web
  • Use fault isolation and root cause analysis skills to diagnose and tackle complicated technical issues
  • Provide post sales technical support, while handling support cases to ensure issues are recorded, tracked, resolved, and follow-ups finished in a timely manner
  • Work to reproduce customer issues and qualify critical issues
  • Publish Technical Support Bulletins and other user documentation in the Knowledge Base
  • Build a positive customer experience by working closely with Development, Sales, Quality Assurance, and Marketing
  • Responsible for reviewing user documentation for training materials, technical marketing collateral, manuals, problem solving guides, etc
  • Provide on-call support 24x7 on an as-needed basis, including travel to customer sites for critical situations to expedite resolution
  • Work shoulder to shoulder with the Sales and Sales Engineering Teams
What we offer
What we offer
  • FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees
  • mental and financial health resources
  • personalized learning opportunities
  • Fulltime
Read More
Arrow Right