
Enable job alerts via email!
Generate a tailored resume in minutes
Land an interview and earn more. Learn more
A cloud security solutions provider in Selangor is looking for a Cloud Security Manager to oversee the organization's cloud security posture. The successful candidate will lead cloud security governance, incident response, and ensure compliance with best practices. Responsibilities include designing secure AWS architectures and collaborating with cross-functional teams to embed security throughout all cloud operations. This position requires strong leadership skills and expertise in cloud security management and compliance standards.
Role Mission: The Cloud Security Manager is responsible for leading and managing the security posture of the organization’s cloud environments. This role oversees cloud security architecture, governance, compliance, incident response, and cloud security operations to ensure secure design, implementation, and ongoing management of cloud workloads. The manager will work closely with cloud engineering, DevOps, cybersecurity, infrastructure, and application teams to embed security-by-design across all cloud deployments.
Establish, maintain, and enforce cloud security policies, standards, and governance frameworks to ensure secure cloud adoption across the organization.
Review and approve cloud solution designs, ensuring secure-by-design principles, threat modeling, and compliance with best practices and reference architectures.
Own and govern cloud IAM strategy, enforcing least privilege, strong authentication, privileged access control, and periodic access reviews.
Oversee continuous monitoring of cloud environments, ensuring timely detection and remediation of misconfigurations, vulnerabilities, and security threats.
Ensure cloud environments meet regulatory, legal, and internal compliance requirements; manage risk assessments, audits, and cloud security reporting.
Lead cloud security incident response, including investigation, containment, recovery, and root cause analysis for cloud-related security events.
Provide cloud security expertise to stakeholders, lead security teams, manage security tools/vendors, and drive cloud security capability enhancements.
Develop and maintain AWS cloud security policies, standards, and frameworks; lead security strategy aligned with business and regulatory requirements; enforce AWS Well‑Architected, CIS, and Zero Trust principles.
Design, review, and approve secure AWS architectures; guide secure cloud‑native implementations; govern IAM (RBAC, least privilege, automated remediation); oversee network security controls including WAF, Shield, and service mesh.
Manage continuous monitoring with AWS‑native tools and SIEM; oversee vulnerability management and misconfiguration remediation; lead incident response including detection, investigation, containment, and recovery; automate security guardrails and remediation workflows.
Ensure compliance with regulatory and internal requirements (SOC 2, GDPR, MAS TRM, PDPA); conduct cloud risk assessments and threat modeling; coordinate penetration testing; prepare documentation and evidence for audits.
Ensure effective protection of sensitive data through encryption, access governance, classification, and DLP controls; manage cloud data exposure risks and ensure secure storage and handling of information across AWS services.
Serve as AWS cloud security SME; collaborate with Cloud, DevOps, Network, and Cybersecurity teams to embed security‑by‑design; mentor teams and promote a strong security culture through training and stakeholder engagement.