Skills: AWS security engineer with Python & CDK. About The Role. Seeking a highly skilled and motivated Cloud Security Engineer to join our Enterprise Cloud Services team. The ideal candidate will have strong background in cloud security with a focus on AWS (Preferred), along with Azure, and GCP environments. This role requires proficiency in automating security enforcement and remediation processes through scripting (e g, Python) and DevOps practices. He/she will be responsible for ensuring the security of our cloud infrastructure, implementing security best practices, and collaborating with cross-functional teams to enhance our security posture. Key Responsibilities. Design, manage and secure cloud infrastructure & application workloads. Develop, maintain & enforce cloud security governance frameworks, policies, and procedures. Stay up-to-date with emerging cloud security threats, vulnerabilities, and technologies. Monitor and respond to security incidents and threats. Experience with multiple IAC Methods, such as CDK, CloudFormation, Serverless Framework, SAM, Terraform. Collaborate with development teams to integrate security into the DevOps process. Provide guidance and training on cloud security best practices. Conduct regular security assessments and audits. Automate security tasks using scripting languages, with a preference for Python. Develop automated monitoring, alerting, and incident response mechanisms. Perform security assessments, vulnerability scanning, and penetration testing. Monitor and audit IAM configurations to prevent unauthorized access. Create and drive secure cloud architectures, ensuring they meet regulatory and business requirements. Work with cross-functional teams to design and implement secure solutions for new and existing cloud-based applications. Coordinates, designs and develops new systems, applications, and solutions for cybersecurity platforms. Coordinates the integration of new cyber architectural features into existing infrastructures. Provides architectural analysis of cybersecurity solutions and relates existing systems to future needs and trends. Recommends incident response procedures and researches potential network vulnerabilities. Coordinates identity access management initiatives internally. Participates in internal and external cyber audits. Role Purpose. Seeking a highly skilled and motivated Cloud Security Engineer to join our Enterprise Cloud Services team. The ideal candidate will have strong background in cloud security with a focus on AWS (Preferred), along with Azure, and GCP environments. This role requires proficiency in automating security enforcement and remediation processes through scripting (e g, Python) and DevOps practices. He/she will be responsible for ensuring the security of our cloud infrastructure, implementing security best practices, and collaborating with cross-functional teams to enhance our security posture. Minimum Requirements. Experience with containerization and orchestration tools (Docker, Kubernetes). Familiarity with compliance frameworks (PCI-DSS, HIPAA, GDPR). Strong analytical skills and attention to detail. Experience with encryption, key management, and data protection strategies. Ability to work independently and as part of a team. Experience in designing secure architectures for large-scale cloud environments. Strong understanding of AWS/Azure Well-Architected Framework Security Pillar to design and operate secure workloads. For a Cloud Security Engineer role, proficiency in following services is crucial: AWS (Preferred): AWS Organizations & Service Control Policies (SCPs), IAM, IAM Identity Center, KMS, ACM, Secrets Manager, Security Hub, Security Lake, AWS Config, CloudTrail, AWS Systems Manager, Amazon GuardDuty, Inspector, Security for VPC, Lambda, Containers, RDS, S3. Other Requirements. Azure (Good to have): Azure Resource Manager, Identity Mgmt, Microsoft Entra ID, Azure Key Vault, Microsoft Defender for Cloud, Azure Security Center, Microsoft Sentinel, Audit Logs, App Configuration, Security for Azure App Service, AKS, Database, Azure Blob Storage. GCP (Good to have): Resource Manager, Organization Policy Service, Cloud Identity, Cloud KMS, Certificate Mgmt, Secret Manager, Security Command Center, Google Security Operations SIEM, Audit Logs, Config Management, Security for App Engine, GKE, Cloud SQL, Cloud Storage. Basic Qualifications. Bachelors degree in Computer Science, Information Technology, or a related field. Proven experience as a Cloud Engineer with a focus on cloud security. Strong understanding of cloud platforms (AWS (Preferred), Azure, GCP). Strong understanding of security frameworks such as NIST, CIS, and ISO 27001. Experience with security tools and technologies (firewalls, encryption, IAM, etc). Excellent problem-solving and communication skills. Relevant certifications (e g, AWS Certified Security Specialty, CCSP) are a plus.