Job Description Cloud Security Consultant
Role Overview
Our client is looking for a
Cloud Security Consultant to embed security into products and platforms from the ground up. The role focuses on cloud security (with emphasis on Azure), application security, and DevSecOps practices, ensuring secure and innovative digital solutions.
Key Responsibilities
- Promote a Shift Left security mindset by integrating security from early stages of development.
- Perform cloud/application security assessments, gap analysis, and recommend remediations.
- Conduct code reviews, API security checks, and configuration reviews (Azure, AWS).
- Work with DevOps teams to integrate SAST, DAST, IAST tools into CI/CD pipelines.
- Review security of containers, WAF rules, microservices, and infrastructure.
- Provide guidance on Azure security policies, RBAC, PIM, CASB, ATP, AIP, Intune, and O365 security controls.
- Collaborate with stakeholders and influence adoption of secure design practices.
Skills & Experience
- 4+ years of information security experience, with at least 3 years in cloud-native environments.
- Strong expertise in Azure cloud security; knowledge of AWS/GCP desirable.
- Hands-on with tools like Azure Security Center, Burp Suite, Nessus, Checkmarx, Kubernetes, Docker, Jenkins, GitHub, OpenShift.
- Strong application security experience (code review, IAST, SAST, DAST).
- Relevant certifications (CISSP, OSCP, CEH, CCSK/CCSP, Azure/AWS/GCP security certifications).
- Excellent communication, influencing, and stakeholder management skills