Cloud Security Engineer

Confidential

Dubai

Hybrid

AED 350,000 - 550,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Confidential seeks a Cloud Security Engineer (DevSecOps) to strengthen security across hybrid cloud and on‑prem environments. You will design and enforce cloud security architectures, governance, and controls across Azure, AWS, and Microsoft 365, while managing IAM, SIEM, EPP, and email security/XDR platforms.

The role emphasizes identity governance, zero trust, and secure network designs, with active incident response and continuous improvement across our security programs.

Qualifications

  • Experience in cloud security architecture across Azure, AWS, and Microsoft 365.
  • Hands-on administration of IAM, PAM, SIEM, and EPP platforms.
  • Experience with email security and XDR configurations.
  • Implement identity governance, MFA, and conditional access in hybrid environments.
  • Knowledge of Zero Trust and secure hybrid connectivity.

Responsibilities

  • Design, implement, and maintain cloud security frameworks across Azure, AWS, and Microsoft 365 environments.
  • Develop and maintain cloud security architecture standards and governance.
  • Ensure secure deployment of cloud infrastructure, services, and applications.
  • Prepare and maintain security architecture diagrams, policies, and documentation.
  • Administer ManageEngine security suite and enterprise security platforms.
  • Configure and manage email security platforms and XDR telemetry integrated with SIEM.
  • Implement and enforce SSO, MFA, and conditional access policies across hybrid environments.
  • Design secure cloud network architectures and manage firewall and WAF controls.
  • Monitor security alerts, respond to incidents, and coordinate remediation.

Skills

Cloud security
DevSecOps
Identity security
MFA
Zero Trust
SIEM
Email security
PAM
EPP
XDR

Education

CISSP
Microsoft SC-200/SC-300
AWS Security Specialty

Tools

ManageEngine
Microsoft Defender
Mimecast
Proofpoint
Azure Firewall
AWS WAF
Barracuda
Check Point

Job description

Role & responsibilities
Job Description

Position: Cloud Security Engineer Department: IT Security / Cloud Governance

Role Overview

We are seeking a highly skilled Cloud Security Engineer (DevSecOps) responsible for strengthening the organization's cloud, network, and enterprise security posture across hybrid environments.

The role will focus on cloud security architecture, identity governance, network security controls, and enterprise security operations across Microsoft Azure, Amazon Web Services, Microsoft 365, and on-premises infrastructure.

The ideal candidate will have strong experience in security platform administration, hybrid infrastructure security, and enterprise security governance, with the ability to support ongoing security operations, risk mitigation, and cloud security optimization initiatives.

Key Responsibilities
Cloud Security Architecture & Governance
  • Design, implement, and maintain cloud security frameworks across Microsoft Azure, AWS, and Microsoft 365 environments.
  • Develop and maintain cloud security architecture and governance standards.
  • Ensure secure deployment of cloud infrastructure, services, and applications.
  • Prepare and maintain security architecture diagrams, policies, and technical documentation.
Security Platform Administration
  • Perform end-to-end administration of the ManageEngine security suite.
  • Manage and administer enterprise security platforms including: IAM (Identity & Access Management)
  • PAM (Privileged Access Management)
  • SIEM monitoring platforms
  • Endpoint Protection Platform (EPP)
  • Email Security / Extended Detection & Response (XDR)
Email Security & XDR
  • Administer and manage email security platforms (e.g., Microsoft Defender for Office 365, Mimecast, Proofpoint, or equivalent), including anti-phishing, anti-malware, and safe attachments/links policies.
  • Configure and maintain email authentication protocols (SPF, DKIM, DMARC) to prevent spoofing, phishing, and business email compromise (BEC).
  • Deploy, tune, and manage XDR platforms to correlate threat signals across endpoint, identity, email, and cloud workloads for unified detection.
  • Investigate and respond to advanced/multi-stage threats using XDR-driven analytics, correlation rules, and automated response playbooks.
  • Integrate email security and XDR telemetry with SIEM for centralized visibility and reporting.
Identity & Data Security
  • Implement and manage enterprise identity security solutions including: Single Sign-On (SSO)
  • Multi-Factor Authentication (MFA)
  • Conditional Access policies
  • Manage and enforce Data Loss Prevention (DLP) policies across enterprise systems.
  • Administer and secure Mobile Device Management (MDM) platforms.
  • Implement identity governance controls across hybrid environments.
Cloud & Network Security
  • Design and implement secure cloud network architectures across Azure and AWS environments.
  • Configure and manage cloud network security controls including: Azure Network Security Groups
  • Azure Firewall
  • AWS Security Groups
  • AWS Web Application Firewall
  • Implement Zero Trust security architecture principles.
  • Secure hybrid connectivity between on-premises environments and cloud infrastructure.
  • Monitor and analyze network security events and traffic patterns.
On-Premises Infrastructure Security
  • Design and manage secure on-premises network security architecture.
  • Configure and maintain enterprise firewalls and network security policies.
  • Support and secure core switching infrastructure and network segmentation.
  • Implement network access control policies and secure routing architectures.
  • Configure and maintain site-to-site VPNs and secure connectivity between data center and cloud environments.
  • Monitor firewall logs, network security alerts, and intrusion detection systems.
Security Operations & Incident Response
  • Monitor and respond to security alerts and incidents across cloud and enterprise environments.
  • Support vulnerability management, patch management, and asset security monitoring.
  • Conduct security investigations and coordinate remediation activities.
Security Optimization & Continuous Improvement
  • Identify opportunities for security automation and operational improvements.
  • Strengthen security governance frameworks and operational resilience.
  • Work closely with infrastructure and DevOps teams to ensure secure system deployments.
Required Skills & Experience
Cloud Security Platforms

Strong hands-on experience with:

  • Microsoft 365 Security & Compliance
  • Microsoft Azure security services
  • AWS security controls
Security Platform Administration

Proven experience with:

  • ManageEngine security solutions
  • SIEM platforms
  • Endpoint Protection Platforms (EPP)
Identity & Access Security

Expertise in:

  • IAM and PAM solutions
  • Single Sign-On (SSO)
  • Multi-Factor Authentication (MFA)
  • Conditional Access
  • Identity governance frameworks
Network & Infrastructure Security

Strong knowledge of:

  • Enterprise firewall administration
  • Core switching security architecture
  • Network segmentation and secure routing
  • VPN technologies and hybrid connectivity
  • Zero Trust network architecture
Cloud Network Security

Experience securing cloud networking using:

  • Azure Network Security Groups
  • Azure Firewall
  • AWS Security Groups
  • AWS WAF
  • Secure hybrid cloud networking architectures
Endpoint & Data Protection

Knowledge of:

  • Endpoint security platforms
  • MDM solutions
  • Data Loss Prevention (DLP)
  • Patch management and asset security monitoring
Email Security & XDR

Hands-on experience with:

  • Email security platforms (Barracuda, Checkpoint, Microsoft Defender, Mimecast, Proofpoint, or equivalent)
  • Email authentication protocols (SPF, DKIM, DMARC)
  • Extended Detection and Response (XDR) platforms (e.g., Microsoft Defender XDR, CrowdStrike Falcon, SentinelOne Singularity, or equivalent)
  • Threat correlation, alert triage, and automated response/playbook design
Documentation & Architecture

Ability to create technical security architecture diagrams and documentation.

Experience developing security policies and governance frameworks.

Preferred Certifications

Security certifications such as:

  • CISSP
  • Microsoft Security Certifications (SC-200 / SC-300)
  • AWS Security Specialty
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Engineer
Cloud Security Engineer

HUMAN-AI-Z Nexus Technology • Dubai

On-site
AED 250,000 - 450,000
Cloud Security Engineer
Cloud Security Engineer

Good co India • United Arab Emirates

On-site
AED 240,000 - 420,000
Cloud Security Engineer - Hybrid Platforms
Cloud Security Engineer - Hybrid Platforms

AlFuttaim • Dubai

Hybrid
Cloud Security Specialist
Cloud Security Specialist

iConnect IT Business Solutions DMCC • Dubai

On-site
AED 300,000 - 420,000
Cyber Security Lead
Cyber Security Lead

Good co India • United Arab Emirates

On-site
AED 420,000 - 840,000
Security Architect
Security Architect

Good co India • United Arab Emirates

On-site
AED 350,000 - 600,000
Cloud Security & SIEM Engineer (SOC)
Cloud Security & SIEM Engineer (SOC)

ITHR Technologies Consulting LLC • Dubai

On-site
AED 250,000 - 420,000
Senior Security Engineer – Cloud Security
Senior Security Engineer – Cloud Security

Delivery Hero • Dubai

On-site
AED 360,000 - 540,000
Cloud Security & SIEM Engineer (SOC)
Cloud Security & SIEM Engineer (SOC)

Qode • Dubai

On-site
AED 312,000 - 502,000
Cloud Security Engineer
Cloud Security Engineer

APPIT Software Inc. • Dubai

On-site
AED 100,000 - 130,000