CrawlJobs Logo

Cloud Security Assurance

nttdata.com Logo

NTT DATA

Location Icon

Location:
United Kingdom , London

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Cloud Security Assurance role at NTT DATA involves leading security assessments and architecture reviews across AWS, Azure, and GCP. Candidates should have a bachelor's degree in Computer Science, Information Security, or Cybersecurity, along with at least 6 years of experience in information security with a focus on cloud security. Required certifications include CISSP or CCSP, and candidates should possess strong technical skills in cloud security tools and frameworks. The position emphasizes stakeholder communication and cross-functional collaboration.

Job Responsibility:

  • Lead cloud security assessments and architecture reviews across AWS, Azure, and GCP
  • Validate security implementations, provide expert guidance on cloud security posture, and support enterprise cloud transformation initiatives
  • Lead security architecture reviews for cloud-native and hybrid solutions
  • Execute cloud security assessments across AWS, Azure, and GCP environments
  • Validate designs against NIST CSF, CIS Benchmarks, and CSA CCM
  • Conduct cloud penetration testing following (CREST/CHECK methodologies)
  • Assess container/Kubernetes security, serverless and microservices implementations
  • Validate IaC security controls and CI/CD pipeline security
  • Lead compliance assessments: ISO 27017/27018, SOC 2, GDPR, NIS2, DORA
  • Assess cloud governance frameworks and CSPM implementations
  • Coordinate cloud security audits with internal/external teams
  • Assess cloud IAM architectures and privileged access management
  • Validate encryption, key management, and data residency controls
  • Review SSO, MFA, and least privilege implementations

Requirements:

  • Bachelor's degree in Computer Science, Information Security, or Cybersecurity
  • 6+ years in information security with cloud security focus
  • 3+ years conducting cloud security assessments and architecture reviews
  • Proven multi-cloud experience (AWS, Azure, GCP) in production environments
  • Technical Skills: AWS: Security Hub, GuardDuty, IAM Access Analyzer, KMS, CloudTrail
  • Azure: Defender for Cloud, Sentinel, Azure Policy, Key Vault
  • GCP: Security Command Center, Cloud Armor, IAM, Cloud KMS
  • Tools: Prisma Cloud, Wiz, Pacu, ScoutSuite, Prowler, Terraform
  • Cloud penetration testing and threat modeling
  • Mandatory Certifications: CISSP or CCSP
  • AWS Security Specialty, Azure Security Engineer, OR GCP Professional Cloud Security Engineer
  • CREST CRT/CCT (Cloud/Infrastructure) or equivalent
  • Senior-level stakeholder communication and presentation skills
  • Strategic cloud security roadmap development
  • Cross-functional collaboration with DevOps and Platform Engineering teams

Nice to have:

Preferred: Kubernetes security certification (CKS/CKAD)

What we offer:
  • Tailored benefits that support your physical, emotional, and financial wellbeing
  • Continuous growth and development opportunities
  • Flexible work options

Additional Information:

Job Posted:
March 25, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cloud Security Assurance

Cloud Security Senior Analyst

The Cloud Security Operations team works in a multi-disciplinary team of teams d...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in a similar, offensive security related role
  • Offensive Security-oriented mindset (threat-modeling, vulnerability assessments, penetration testing, etc.)
  • Hands-on experience with cloud platforms (GCP, AWS)
  • Excellent understanding of cloud security concepts/best practices in various cloud Service Providers (for example: Azure/M365)
  • Familiarity with the current threat landscape which GCP exists in
  • Familiarity with securing containers and container orchestration frameworks (such as Kubernetes)
  • Programming/scripting languages a plus (Python and PowerShell preferred, but not required)
  • Ability to deliver presentations to technical and non-technical individuals
  • Fluency in English
  • Bachelor's Degree or equivalent working experience
Job Responsibility
Job Responsibility
  • Full end to end security assurance activities in GCP including Vulnerability Assessments (preproduction, post-production), Purple Team exercises (Red and Blue team collaboration) to identify areas of risk and ensure any gaps are documented and remediated
  • Provide threat modeling and risk assessment services to characterize the risk and severity posture of various systems and components in the cloud environment
  • Partner with Engineering and Operations teams to create, implement, and apply DevSecOps practices and processes that are consumed by developers across all sectors in Citi
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right

Azure Cloud SRE - Security Specialist II

Quzara seeks a highly skilled Senior Azure Cloud SRE - Platform with a focus on ...
Location
Location
United States
Salary
Salary:
Not provided
quzara.com Logo
Quzara
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor of Science in Computer Science or related field
  • 7+ years of experience in Information Assurance, Cloud Infrastructure, and Security Operations
  • Hands-on expertise with Terraform for IaC, Chef for configuration management, Azure Image Builder for image creation, and Qualys for vulnerability management
  • Advanced certifications preferred: AZ-500 (Azure Security Engineer), MS-500 (Microsoft Security Administrator)
  • Strong scripting skills in PowerShell, Python, or similar languages
  • Proven experience leading technical teams and working in DevSecOps and cloud security environments
  • Strong communication skills
  • adept at collaborating with various stakeholders
  • Leadership or mentoring experience is advantageous
Job Responsibility
Job Responsibility
  • Infrastructure as Code (IaC) with Terraform: Design, implement, and maintain secure and scalable cloud infrastructure using Terraform to automate deployments and manage cloud resources effectively
  • Configuration Management with Chef: Manage and automate system configurations, ensuring consistent security baselines and compliance across environments using Chef
  • Image Management: Create, maintain, and deploy golden images using Azure Image Builder to standardize secure, up-to-date machine images across cloud environments
  • Security & Vulnerability Management: Leverage Qualys to continuously scan for vulnerabilities, track remediation efforts, and ensure compliance with security standards
  • Technical Leadership: Serve as the technical leader of the SRE team, mentoring team members, driving best practices in cloud security, and providing strategic direction on infrastructure initiatives
  • Team Collaboration & Guidance: Lead technical discussions, provide expertise on complex security challenges, and guide the team in implementing secure, scalable, and high-performing cloud solutions
  • Automation & Scripting: Develop automation scripts and workflows to improve security processes, configuration management, and cloud infrastructure deployments
  • Collaboration & Security Best Practices: Collaborate with cross-functional teams to integrate security into infrastructure, CI/CD pipelines, and daily operations, ensuring adherence to security policies and frameworks
What we offer
What we offer
  • Inclusive work environment committed to innovation and teamwork
  • Fulltime
Read More
Arrow Right

Senior Information Assurance Specialist

We’re looking for a highly skilled Senior Information Assurance Specialist to he...
Location
Location
United Kingdom , Oxford or Hampshire
Salary
Salary:
Not provided
datacareers.co.uk Logo
DataCareers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong technical security background (cloud, MS stack, architecture, modern tech risks)
  • Applied IA experience: NIST, security controls, risk assessment
  • Ability to coach others and communicate clearly with non-technical stakeholders
  • Experience in a regulated environment (policing, HMG, MoD or similar)
  • Collaborative, proactive approach with high integrity
  • Act as a visible advocate for high standards of information assurance
  • Relevant professional qualifications (e.g. CISSP, CISMP, Information Security certifications) are also preferred
  • A full UK driving licence is essential due to travel and operational flexibility requirements
  • Five years of continuous UK residency to enable the necessary background checks to be completed
Job Responsibility
Job Responsibility
  • Lead SyAP assessments
  • Produce high-quality assurance evidence
  • Help align policies and standards with national expectations
  • Uplift colleagues through mentoring, translating complex concepts into plain language and supporting a maturing IA function
  • Assess security controls, guide secure-by-design decisions and support the organisation in managing risk across both established and emerging technologies
  • Bring clarity, rigour and practical insight to ensure decisions are safe, proportionate and evidence-based
What we offer
What we offer
  • 30 days annual leave plus bank holidays
  • Hybrid and flexible working arrangements
  • Career development pathways and continuous professional learning
  • A wide range of wellbeing support services and staff networks
  • Lifestyle and discount schemes
  • Local Government Pension Scheme
Read More
Arrow Right

System Information Assurance and Security Engineer

Barbaricum is seeking a highly skilled System Information Assurance and Security...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD TS/SCI Clearance
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (Master’s preferred)
  • 5+ years of experience in enterprise identity and access management architecture
  • Demonstrated expertise with Zero Trust frameworks and DoD ICAM standards
  • Hands-on experience with SAML, OAuth2.0, OpenID Connect, PKI, and certificate management
  • Experience with DoD enterprise solutions such as Radiant Logic, Okta, Ping Identity, SailPoint, ForgeRock, Microsoft Entra ID (Azure AD), or equivalent
  • Deep knowledge of Privileged Access Management and Identity Governance & Administration solutions
  • Strong understanding of DoD cybersecurity compliance frameworks (RMF, NIST SP 800-53, 800-207, 8140/8570)
  • IAM / DoD Certification IAT Level II (e.g., Security+ CE, SSCP, GSEC)
Job Responsibility
Job Responsibility
  • Execute engineering solutions for identity credential and access management for Zero Trust implementation across enterprise systems
  • Design and maintain an enterprise-wide identity and access management strategy aligned with DoD Zero Trust principles, NIST 800-207, and DoD ICAM Reference Design
  • Lead integration of federated identity, single sign-on (SSO), and multi-factor authentication (MFA) across cloud and on-prem environments
  • Develop and maintain policies, standards, and reference architectures to enforce least-privilege and attribute-based access control (ABAC)
  • Conduct the implementation of Privileged Access Management (PAM) and Identity Governance and Administration (IGA) solutions
  • Collaborate with cybersecurity, network, and cloud teams to align ICAM solutions with Zero Trust pillars (identity, device, network, application, and data)
  • Ensure compliance with DoD 8140/8570, RMF, FedRAMP, and other applicable frameworks
  • Lead proof-of-concepts (POCs) and technology evaluations for emerging identity
Read More
Arrow Right

Senior System Information Assurance and Security Engineer

Barbaricum is seeking a highly skilled System Information Assurance and Security...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD TS/SCI Clearance
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (Master’s preferred)
  • 10+ years of experience in enterprise identity and access management architecture
  • Demonstrated expertise with Zero Trust frameworks and DoD ICAM standards
  • Hands-on experience with SAML, OAuth2.0, OpenID Connect, PKI, and certificate management
  • Experience with DoD enterprise solutions such as Radiant Logic, Okta, Ping Identity, SailPoint, ForgeRock, Microsoft Entra ID (Azure AD), or equivalent
  • Deep knowledge of Privileged Access Management and Identity Governance & Administration solutions
  • Strong understanding of DoD cybersecurity compliance frameworks (RMF, NIST SP 800-53, 800-207, 8140/8570)
  • IAM / DoD Certification IAT Level II (e.g., Security+ CE, SSCP, GSEC)
Job Responsibility
Job Responsibility
  • Execute engineering solutions for identity credential and access management for Zero Trust implementation across enterprise systems
  • Design and maintain an enterprise-wide identity and access management strategy aligned with DoD Zero Trust principles, NIST 800-207, and DoD ICAM Reference Design
  • Lead integration of federated identity, single sign-on (SSO), and multi-factor authentication (MFA) across cloud and on-prem environments
  • Develop and maintain policies, standards, and reference architectures to enforce least-privilege and attribute-based access control (ABAC)
  • Conduct the implementation of Privileged Access Management (PAM) and Identity Governance and Administration (IGA) solutions
  • Collaborate with cybersecurity, network, and cloud teams to align ICAM solutions with Zero Trust pillars (identity, device, network, application, and data)
  • Ensure compliance with DoD 8140/8570, RMF, FedRAMP, and other applicable frameworks
  • Lead proof-of-concepts (POCs) and technology evaluations for emerging identity
Read More
Arrow Right

Staff Product Security Engineer

We’re looking for a Staff Product Security Engineer to lead the design and imple...
Location
Location
United States
Salary
Salary:
184000.00 - 252000.00 USD / Year
alpha-sense.com Logo
AlphaSense
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in product, application, or cloud security engineering
  • Deep understanding of secure SDLC, threat modeling, and secure architecture design
  • Proven expertise with AWS cloud security concepts and best practices
  • Strong experience with container security, orchestration, and runtime protection
  • Proficiency in Python, Java, and/or JavaScript for security automation, code review, and tooling
  • Experience securing AI/ML pipelines, data workflows, or model-serving infrastructure
  • Familiarity with DevSecOps and continuous integration/deployment environments
Job Responsibility
Job Responsibility
  • Embed robust security practices throughout the software and AI development lifecycle (SDLC)
  • Lead secure design reviews, threat modeling, and risk assessments for AI-driven products, APIs, and backend services
  • Partner with engineering and product teams to ensure security, privacy, and compliance by design
  • Build and maintain security automation and governance frameworks that integrate seamlessly into development workflows
  • Architect and enforce security controls for AI/ML systems, including model training, data pipelines, and inference environments
  • Identify and mitigate AI-specific attack vectors such as data poisoning, model inversion, prompt injection, and model theft
  • Collaborate with governance and compliance teams to align with ethical AI principles and frameworks like NIST AI RMF and the EU AI Act
  • Implement model provenance, integrity, and auditability controls to ensure responsible and secure AI operations
  • Partner with DevOps and SRE teams to secure service meshes, container networking, and secrets management
  • Drive software supply chain security, including artifact integrity, dependency management, and vulnerability reduction
What we offer
What we offer
  • Competitive compensation, benefits, and career growth opportunities
  • Opportunity to shape and drive product security strategy
  • Collaborative and security-minded engineering culture
  • Work on cutting-edge security challenges in a fast-growing company
  • Performance-based bonus, equity, and a generous benefits program
  • Fulltime
Read More
Arrow Right

Head of Security

We are looking for a hands-on security generalist to build Metronome's security ...
Location
Location
United States , New York City; San Francisco Bay Area
Salary
Salary:
196800.00 - 246000.00 USD / Year
metronome.com Logo
Metronome
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • At least 5+ years of experience in security engineering, with a strong software engineering background before
  • Hands-on experience with SOC 2 audits, compliance frameworks, and customer security assurance
  • Deep understanding of cloud security, modern security architectures and tooling
  • Track record of building relationships with engineering teams and being seen as an enabler
  • Excellent communication skills with experience presenting to customers and executives
  • Self-starter who can work independently and manage multiple security initiatives
Job Responsibility
Job Responsibility
  • Take ownership of Metronome's entire security posture, handling everything from vulnerability management to policy updates
  • Coordinate penetration testing, security assessments, and incident response as the primary security point person
  • Manage security tooling, monitoring, and the day-to-day security work
  • Balance multiple security initiatives and priorities across the organization
  • Own all customer-facing security work: questionnaires, compliance calls, security reviews, and technical due diligence
  • Manage SOC 1 & SOC 2 audits end-to-end and expand compliance framework as customer requirements grow
  • Serve as the definitive security voice for sales calls, customer meetings, and enterprise security discussions
  • Transform our customer assurance process from shared ownership to dedicated, streamlined execution
  • Partner with our engineering team to maintain security excellence while minimizing development friction
  • Review security architecture decisions and provide security guidance that accelerates rather than blocks development
What we offer
What we offer
  • Excellent medical, dental, vision, and life insurance coverage, including a One Medical membership
  • Paid parental leave
  • FSA (Flexible spending account)
  • Retirement planning - Traditional and ROTH 401(k)
  • Flexible time off
  • Employee assistance program (mental health benefits)
  • Culture where personal growth is highly valued
  • Market-benched equity
  • Sales incentive pay (for eligible roles)
  • Fulltime
Read More
Arrow Right
New

Cloud Security Assurance Architect

The Cloud Security Assurance Architect will lead security assessments and archit...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or Cybersecurity
  • 6+ years in information security with cloud security focus
  • 3+ years conducting cloud security assessments and architecture reviews
  • Proven multi-cloud experience (AWS, Azure, GCP) in production environments
  • Technical Skills: AWS: Security Hub, GuardDuty, IAM Access Analyzer, KMS, CloudTrail
  • Azure: Defender for Cloud, Sentinel, Azure Policy, Key Vault
  • GCP: Security Command Center, Cloud Armor, IAM, Cloud KMS
  • Tools: Prisma Cloud, Wiz, Pacu, ScoutSuite, Prowler, Terraform
  • Cloud penetration testing and threat modeling
  • Mandatory Certifications: CISSP or CCSP
Job Responsibility
Job Responsibility
  • Lead cloud security assessments and architecture reviews across AWS, Azure, and GCP
  • Validate security implementations, provide expert guidance on cloud security posture, and support enterprise cloud transformation initiatives
  • Lead security architecture reviews for cloud-native and hybrid solutions
  • Execute cloud security assessments across AWS, Azure, and GCP environments
  • Validate designs against NIST CSF, CIS Benchmarks, and CSA CCM
  • Conduct cloud penetration testing following (CREST/CHECK methodologies)
  • Assess container/Kubernetes security, serverless and microservices implementations
  • Validate IaC security controls and CI/CD pipeline security
  • Lead compliance assessments: ISO 27017/27018, SOC 2, GDPR, NIS2, DORA
  • Assess cloud governance frameworks and CSPM implementations
What we offer
What we offer
  • We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing
  • Our Learning and Development team ensure that there are continuous growth and development opportunities for our people
  • We also offer the opportunity to have flexible work options
Read More
Arrow Right