Staff Cloud Security Specialist
Core
Design and implement secure cloud architectures, guardrails, and compliance controls for multi-cloud environments (GCP primary, AWS/Azure supporting) serving a healthcare payments organization.
Role type
Staff Cloud Security Architect
Builds
Secure cloud landing zones, reference architectures, and DevSecOps pipelines for IaaS, PaaS, containers, and serverless workloads.
Domain
Cloud Security / Healthcare Payments
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Multi-cloud security architecture, IAM & access control, Infrastructure-as-Code (Terraform/CloudFormation), CI/CD security integration, Threat modeling, Compliance framework mapping (PCI DSS, HIPAA, HITRUST, SOC 2, SOX), Cloud hardening baselines, Data protection (encryption/key management), Vendor/SaaS security reviews.
Preferred skills
CSPM tools, SIEM integrations, Application security tooling (SAST/DAST/SCA), Zero trust patterns, API security, Event-driven architecture.
Technologies
GCP, AWS, Azure, Kubernetes, Terraform, CloudFormation, Bicep, CI/CD pipelines, CSPM, SIEM.
Responsibilities
Design and maintain cloud security reference architectures and standards; Implement secure landing zone controls including network segmentation and IAM boundaries; Partner with engineering to apply security patterns in new and existing workloads; Conduct threat modeling and security design reviews for cloud services; Support audit evidence collection and control validation for regulatory frameworks; Define and maintain cloud hardening baselines and configuration compliance controls.
Seniority
Staff, hands-on IC with strategic guidance