Senior Cloud Security Engineer

Asia Recruit

Kuala Lumpur

On-site

MYR 180,000 - 300,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jora Malaysia seeks a senior cloud security professional to manage cloud-network security controls across Azure, AWS, and hybrid environments. You will ensure secure connectivity, enforce least privilege, and drive incident response with SIEM integrations.

The role covers M365 security, endpoint protection, and cross-team collaboration to strengthen identity protection and hybrid deployments. Strong hands-on security experience is required.

Qualifications

  • Bachelor's degree in CS/IT/Cybersecurity or related field.
  • 7+ years of experience in cloud network security and security operations.
  • Experience implementing cloud security controls and frameworks (CIS, NIST, ISO 27001).
  • Hands-on in Azure, AWS or hybrid cloud environments with network security controls.
  • Experience supporting Microsoft 365 security projects, especially secure network access and data protection.

Responsibilities

  • Administer and manage cloud-native network security controls including NSGs and cloud firewall policies.
  • Oversee secure connectivity between cloud and on-premises, including VPN configurations and VNet peering.
  • Ensure cloud configurations follow best practices for least privilege and encryption.
  • Investigate cloud security alerts using Defender for Cloud, GuardDuty, and Sentinel.
  • Ensure log forwarding to SIEMs like Splunk or Sentinel for incident response.
  • Support Zero Trust implementation with JIT access and PIM policies.
  • Implement network segmentation, micro-segmentation, and edge security via WAFs and CDNs.
  • Lead ZTNA/SASE evaluation and VPN gateway configurations across platforms.
  • Collaborate on M365 security controls, DLP, and integration with Defender for Office 365 and Purview.

Skills

Cloud security
Azure NSG
VPN management
M365 security
EDR/XDR
Threat detection
Zero Trust
Hybrid cloud

Education

Bachelor's degree in CS/IT/Cybersecurity

Tools

Azure
AWS
Azure Sentinel
Defender for Cloud
CrowdStrike
Splunk

Job description

Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

  • Administer and manage cloud-native network security controls such as Azure Network Security Groups (NSGs), AWS Security Groups, and cloud firewall policies.
  • Oversee secure network connectivity between cloud and on-premise environments, including VPN configurations, VNet peering, ExpressRoute, and Direct Connect.
  • Ensure cloud network configurations adhere to best practices for traffic segmentation, least- privilege access, and encrypted communications.

2. Threat Detection & Response

  • Investigate cloud-based and network-related security alerts using tools such as Microsoft Defender for Cloud, AWS GuardDuty, and Azure Sentinel.
  • Ensure comprehensive log forwarding from cloud environments to central SIEM platforms (e.g. Splunk, Sentinel) to enable real-time threat correlation and effective incident response.

3. Access Control & Perimeter Security

  • Support Zero Trust Architecture implementation through Just-in-Time (JIT) access, Privileged Identity Management (PIM), and conditional access policies.
  • Implement network segmentation, micro-segmentation, and edge security measures using Web Application Firewalls (WAFs), DDoS protection, and Content Delivery Networks (CDNs).

4. Secure Remote Access & ZTNA Project Support

  • Lead the evaluation, implementation, and operations of Zero Trust Network Access (ZTNA) and SASE solutions to deliver secure, policy-enforced remote access.
  • Manage VPN gateway configurations across multiple platforms, including Azure, AWS, and hybrid infrastructures.

5. Microsoft 365 Security (M365 Project)

  • Support the M365 rollout by implementing network and endpoint security controls across Exchange Online, SharePoint, OneDrive, and Microsoft Teams.
  • Ensure secure access, Data Loss Prevention (DLP), and integration with Defender for Office 365, Microsoft Purview, and cloud app security tools.
  • Collaborate with identity and endpoint teams to ensure secure hybrid deployments, with a focus on identity protection, conditional access, and endpoint hardening.

6. Endpoint Security Controls

  • Implement and monitor endpoint protection on cloud-hosted and hybrid workloads using tools such as Defender for Endpoint, CrowdStrike, or equivalent EDR/XDR solutions.
  • Ensure all virtual machines and containers are onboarded to endpoint security platforms, with anti-malware, exploit protection, and device compliance policies enforced.
  • Collaborate with infrastructure and operations teams to ensure patching and vulnerability remediation processes are consistently applied to cloud workloads.
  • Maintain full visibility of cloud network activity through flow logs (e.g. NSG Flow Logs, VPC Flow Logs, Azure Monitor).
  • Generate audit-ready reports aligned with regulatory and industry frameworks such as PCI DSS, BNM-RMiT, and MAS TRM.
  • Continuously improve monitoring and detection use cases relevant to cloud network and endpoint activity.
  • Provide expert security input during cloud adoption, migration, and hybrid cloud initiatives.
  • Validate secure configuration and deployment of cloud components including transit gateways, NAT gateways, bastion hosts, and proxy servers.

9. Knowledge Sharing & Upskilling

  • Stay current with evolving cloud security technologies and frameworks such as the Microsoft Cloud Adoption Framework (CAF) and AWS Well-Architected – Security Pillar.
  • Mentor junior staff and contribute to the development of internal SOPs, incident playbooks, and operational runbooks.

Job Requirements

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or related field.
  • 7+ years of experience managing cloud network security and related cloud security operations.
  • Experience implementing cloud security controls and frameworks (e.g., CIS, NIST, ISO 27001).
  • Proven experience with Azure, AWS, or hybrid cloud environments with hands-on work in cloud network security controls.
  • Experience supporting Microsoft 365 security projects, especially related to secure network access and data protection.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud - Cyber Security Engineer
Cloud - Cyber Security Engineer

Niaga Prestasi • Kuala Lumpur

On-site
MYR 90,000 - 130,000
Sr. Cloud Engineer (Azure)
Sr. Cloud Engineer (Azure)

Lavu Tech Solutions • Kuala Lumpur

On-site
MYR 90,000 - 130,000
Infra, Security, Network Cloud Engineer
Infra, Security, Network Cloud Engineer

Lavu Tech Solutions • Kuala Lumpur

On-site
MYR 180,000 - 260,000
Senior Cloud Security Engineer: Zero Trust & Cloud Networks
Senior Cloud Security Engineer: Zero Trust & Cloud Networks

Asia Recruit • Kuala Lumpur

On-site
MYR 180,000 - 300,000
Senior-Lead Infrastructure Engineer
Senior-Lead Infrastructure Engineer

Systemsquad Pte Ltd • Kuala Lumpur

On-site
MYR 100,000 - 190,000
Network Security Engineer (Junior Level)
Network Security Engineer (Junior Level)

DIGITAL DEFENSE SOLUTION SDN. BHD. • Selangor

On-site
MYR 48,000 - 72,000
Cell phone reimbursement
Health insurance
Maternity leave
+2
Cloud Administrator - Support - Security
Cloud Administrator - Support - Security

Sotatek • Kuala Lumpur

On-site
MYR 60,000 - 100,000
Competitive compensation package
Performance bonus
Cloud Administrator & Support - Network
Cloud Administrator & Support - Network

Accion Labs • Kuala Lumpur

On-site
MYR 60,000 - 90,000
Managed Security Engineer
Managed Security Engineer

Accenture • Selangor

On-site
MYR 96,000 - 180,000
Cloud Administrator- Network
Cloud Administrator- Network

Accion Labs • Kuala Lumpur

On-site
MYR 100,000 - 140,000