Cloud Security Engineer
Core
Cloud Security Engineer responsible for Identity and Access Management (IAM), cloud key management, secrets management, and security automation across multi-cloud environments (Azure, AWS, GCP) and Fortigate firewalls.
Role type
Senior IC Cloud Security Engineer
Builds
IAM policies, KMS configurations, cloud security baselines, Terraform modules, Ansible playbooks, and firewall rules.
Domain
Cloud Security, Identity Governance, Network Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Terraform, Ansible, IAM protocols (SAML, OAuth2, OIDC, LDAP, Kerberos), Azure AD/Entra ID, AWS IAM, GCP IAM, HashiCorp Vault, Azure Key Vault, AWS KMS, Kubernetes RBAC, PKI/TLS, Linux administration, Fortigate firewall management
Preferred skills
Azure Security Engineer, AWS Security, GCP Security, Fortinet NSE (NSE4+)
Technologies
Terraform, Ansible, Azure AD/Entra ID, AWS IAM, GCP IAM, HashiCorp Vault, Azure Key Vault, AWS KMS, Kubernetes, Fortigate, Wiz, Prisma, FortiAnalyzer
Responsibilities
Execute IAM operations including provisioning, RBAC/ABAC configurations, and access recertifications; Manage AWS SCPs and Azure Policies for governance; Operate cloud KMS platforms for key rotation and PKI; Implement cloud security baselines and compliance controls; Configure and troubleshoot cloud-native firewalls and network segmentation; Manage Fortigate firewalls including security policies, NAT, VPN, and IPS/IDS; Develop Terraform modules and Ansible playbooks for automation; Maintain SOPs, runbooks, and compliance documentation.
Seniority
Senior, hands-on IC
