Senior Cloud Automation Engineer

Theomnihire

Mumbai

On-site

INR 2,800,000 - 3,600,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Theomnihire in Mumbai seeks a Senior Cloud Automation Engineer to drive end-to-end automation strengthening the corporate security posture. You will craft Terraform modules for Azure security controls and build Sentinel connectors and Logic Apps for automated threat response.

You will work across Azure, GCP and AWS to enable CSPM, asset discovery, and integrated security pipelines while deploying cloud apps and coordinating with ITSM tools.

Qualifications

  • 6–9 years of hands-on experience in cloud security engineering, IaC automation, and cloud-native security development.
  • Strong understanding of Azure, GCP, AWS security posture regimes and CSPM.
  • Experience with Terraform modules for security controls (NSGs, Firewall, WAF, Key Vault).

Responsibilities

  • Write reusable Terraform modules for Azure security controls and manage state/workspaces.
  • Develop Sentinel data connectors and CCP-based integrations.
  • Build Logic Apps for SOAR: alert enrichment, ITSM tickets, and containment actions.
  • Design Azure Monitor dashboards, Data Collection Rules, and App/Function deployments.
  • Centralize security findings from Defender for Cloud, SCC, and Security Hub into unified triage.

Skills

Terraform
IaC
Sentinel
Logic Apps
SOAR
Azure Monitor
Multi-cloud
Python scripting

Education

B.Tech/M.Tech in CS/IT

Tools

Checkov
tfsec
Microsoft Sentinel
Logic Apps

Job description

Job Title: Senior Cloud Automation Engineer

Working Hours: 9:00 AM – 6:00 PM

Mode of Interview: Face-to-Face at Navi Mumbai

Headcount: 2 Positions

Position Summary

The Senior Cloud Automation Engineer is an individual contributor role focused on building end-to-end automation that actively strengthens the enterprise cyber-security posture. The incumbent will write Terraform to deploy security controls, build Logic Apps for automated SOAR workflows, develop custom Sentinel connectors and Azure Monitor-based applications, and contribute to multi-cloud CSPM and asset-discovery pipelines across Azure, GCP, and AWS environments.

Requirements

Key Responsibilities

Terraform & Infrastructure-as-Code (IaC):

Write and maintain reusable, production-grade Terraform modules for Azure security controls—including NSGs, Azure Firewall, App Gateway / WAF, Key Vault, Private Endpoints, and Defender for Cloud.

Manage Terraform state, workspaces, automated plan reviews, and policy-as-code enforcement using tools like Checkov and tfsec.

Sentinel Connectors, Logic Apps & SOAR Automation:

Develop custom Microsoft Sentinel data connectors utilizing Codeless Connector Platform (CCP), Logs Ingestion API, Function App pollers, and Event Hub / Storage pipelines.

Build Logic Apps (Standard & Consumption) for SOAR to handle real-time alert enrichment, ITSM ticketing (ServiceNow, Jira), Teams/email notifications, and automated containment actions.

Engineer Sentinel-as-Code content—including Analytics Rules written in KQL, custom Workbooks, and Watchlists—delivered seamlessly via Terraform.

Design and implement Azure Monitor dashboards, Log Analytics workspaces, Data Collection Rules (DCRs), Azure Monitor Agent (AMA) onboarding, custom alerts, action groups, and Application Insights.

Deploy and operate Azure Web Apps, App Services, and Azure Functions using modern deployment frameworks (ZIP, Run-from-Package, container deployments, and deployment slots with swap).

Embed robust App Service security using Managed Identities, Key Vault references, Private Endpoints, and Easy Auth (Microsoft Entra ID integration).

Contribute to Cloud Security Posture Management (CSPM) pipelines assessing Azure, GCP, and AWS against CIS benchmarks, NIST standards, and internal security frameworks.

Develop automated asset-discovery tools to aggregate subscriptions, projects, accounts, identities, networks, storage, and PaaS inventories.

Centralize security findings from Defender for Cloud, GCP Security Command Center (SCC), and AWS Security Hub into a unified triage workflow.

Candidate Profile & Qualifications

Experience: 6 to 9 years of hands-on experience in cloud security engineering, infrastructure-as-code automation, and cloud-native security development.

Education: B.Tech or M.Tech in Computer Science, Information Technology, Cyber Security, or a related field.

Core Technical Competencies:

Expert-level Terraform skills along with policy-as-code tools (Checkov, tfsec).

Strong mastery of Microsoft Sentinel, KQL, custom data connector development, and Logic Apps for automated threat response.

Practical experience with Azure Monitor, App Services, Azure Functions, and Python/PowerShell/Shell scripting.

Deep understanding of multi-cloud environments (Azure, GCP, AWS) and security posture management frameworks.

Certifications:

HashiCorp Certified: Terraform Associate

AZ-204: Developing Solutions for Microsoft Azure

AZ-500: Microsoft Azure Security Technologies

SC-200: Microsoft Security Operations Analyst

AWS Certified Security – Specialty OR Google Associate Cloud Engineer

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Automation Engineer
Senior Cloud Automation Engineer

TOCUMULUS • Mumbai

On-site
INR 2,500,000 - 4,200,000
Cloud Security Architect Azure And Multi-Cloud 5 - 10 Years Job Location Mumbai
Cloud Security Architect Azure And Multi-Cloud 5 - 10 Years Job Location Mumbai

WNS • Mumbai

On-site
INR 1,800,000 - 3,000,000
Senior Security DevOps Engineer with .Net / Azure skills– Cybersecurity Platform
Senior Security DevOps Engineer with .Net / Azure skills– Cybersecurity Platform

XTGLOBAL INFOTECH LIMITED • Hyderabad

On-site
INR 4,200,000 - 7,000,000
Cyber Security Engineer
Cyber Security Engineer

Futurism Technologies, INC. • Pune District

Hybrid
INR 2,000,000 - 3,400,000
AZURE Platform Security AM
AZURE Platform Security AM

Freelancer • Gurugram District, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Azure Cloud Native Security Engineer(Microsoft Defender Sentinel)
Azure Cloud Native Security Engineer(Microsoft Defender Sentinel)

Alike Thoughts • Bengaluru, Mumbai

On-site
INR 1,200,000 - 1,800,000
Cloud Security Engineer
Cloud Security Engineer

ERM Placement Services • Ernakulam

On-site
INR 1,400,000 - 2,200,000
Cloud Security Engineer
Cloud Security Engineer

ERM Placement Services • Coimbatore District

On-site
INR 1,500,000 - 2,400,000
Cloud Security Engineer
Cloud Security Engineer

ERM Placement Services • Pune District

On-site
INR 1,500,000 - 2,600,000
Cloud Security Engineer
Cloud Security Engineer

ERM Placement Services • Ahmedabad District

On-site
INR 1,200,000 - 1,800,000