Get more replies from employers
Send a job-specific resume in minutes.
Pierce is seeking a seasoned cloud security leader to envision and drive a multi-cloud program across AWS, Azure, and GCP. You will embed security into the SDLC and design secure architectures that strengthen posture and governance.
You will partner with Platform, DevOps, and Engineering teams to advance security initiatives, migrate to best practices, and ensure robust controls and compliance across environments.
Multi-Cloud Security Leadership:Built and managed comprehensive cloud security programs across AWS, Azure, and GCP, establishing baseline security standards, policies, and governance procedures.
Secure Architecture & Zero Trust:Designed, implemented, and validated secure cloud architectures applying Zero Trust principles across network, infrastructure, and identity access models.
Vulnerability & Posture Management:Leveraged CSPM tools (Wiz, AWS Security Hub) and automated remediation workflows to continuously detect, prioritize, and resolve cloud misconfigurations and vulnerabilities.
Detection Engineering & Monitoring:Developed automated continuous monitoring and alerting systems while partnering with the SOC to strengthen cloud detection engineering capabilities.
Shift-Left Security & Cross-Team Collaboration:Embedded security into the SDLC by partnering directly with Platform, DevOps, and Engineering teams to promote secure development practices and deliver shared security initiatives.
AWS & Cloud Security Architecture:6–10 years of hands‑on experience designing and securing AWS environments, backed by strong knowledge of native security tools (IAM, KMS, Config, GuardDuty, CloudTrail) and industry certifications (AWS Security/Architect, CISSP, CCSP).
Identity & Access Management (IAM):Proven expertise architecting cloud identity solutions, including SSO/federation (Okta), RBAC, ABAC, and robust service‑to‑service authentication models.
Infrastructure as Code (IaC) & Automation:Skilled in provisioning secure infrastructure via Terraform, AWS CDK, or CloudFormation, using Python and Bash to build custom security tooling and automated workflows.
Container Security & DevOps:Hands‑on experience securing containerized workloads (Docker, Kubernetes, AWS EKS) integrated directly with modern CI/CD pipelines (GitLab CI, Jira).
Governance, Compliance & Influence:In‑depth knowledge of translating frameworks (NIST CSF, CIS Benchmarks, ISO 27001, SOC 2) into cloud controls, with strong communication skills to influence stakeholders and drive security initiatives.