Senior Cloud Security Engineer
Listed on 2026-09-13
-
IT/Tech
Cybersecurity, Cloud Computing: Infrastructure & Operations, Information Security & Data Protection, Systems Engineer
Senior Cloud Security Engineer Position Summary
Cream City Cyber is seeking a highly skilled Senior Cloud Security Engineer to serve as a key technical resource supporting cloud security initiatives and customer engagements. This role requires advanced expertise in securing Microsoft Azure and Microsoft 365 environments, with significant experience supporting hybrid infrastructures that include both cloud and on-premises technologies.
The Senior Cloud Security Engineer will help define and execute security strategies for customer engagements, design secure cloud and hybrid architectures, identify and reduce cybersecurity risk, and provide technical guidance throughout implementation and transformation initiatives.
This position requires a strong combination of hands-on technical expertise, security architecture experience, customer-facing communication skills, and the ability to translate business and security requirements into practical technical solutions.
Key Responsibilities Cloud Security Strategy & Technical Leadership- Develop and execute cloud security strategies aligned with customer business objectives, risk profiles, and technology environments.
- Serve as a senior technical resource and escalation point for complex cloud and hybrid security matters.
- Provide technical guidance and mentorship to cloud security engineers, analysts, and other project resources.
- Serve as a trusted technical advisor to customers throughout security assessments, implementations, and transformation initiatives.
- Help define technical approaches, priorities, and roadmaps for customer engagements.
- Design, assess, and support the implementation of secure architectures for Microsoft Azure and Microsoft 365 environments.
- Establish, assess, and implement security policies, standards, configurations, and best practices across cloud platforms.
- Evaluate customer cloud environments to identify security gaps, vulnerabilities, configuration weaknesses, and opportunities for improvement.
- Develop practical remediation strategies that balance security, business requirements, operational needs, and technical feasibility.
- Support implementation of identity, access management, logging, monitoring, data protection, network security, and other cloud security controls.
- Design and support the integration of security controls across cloud services and on-premises infrastructure.
- Assess complex hybrid environments and identify security risks across interconnected technologies.
- Support efforts to modernize legacy systems and transition workloads to secure cloud solutions where appropriate.
- Develop transformational security roadmaps using phased and capability-maturity approaches to help customers securely advance their cloud environments.
- Provide security guidance for organizations maintaining substantial on-premises infrastructure alongside cloud environments.
- Identify, assess, prioritize, and communicate cybersecurity risks across cloud and on-premises environments.
- Recommend practical risk mitigation strategies based on business impact, likelihood, technical feasibility, and customer priorities.
- Assess security environments against applicable frameworks, regulations, and industry standards, including NIST, ISO 27001, PCI DSS, and other relevant requirements.
- Support internal and external audits, security assessments, and compliance initiatives.
- Translate technical findings into clear risk statements and actionable recommendations for technical and business stakeholders.
- Develop and enhance incident response procedures for cloud and hybrid environments.
- Participate in investigations of security incidents and support containment, remediation, and recovery activities.
- Analyze security events and technical findings to identify root causes and opportunities for control improvement.
- Incorporate relevant threat intelligence and emerging attack techniques into security recommendations and defensive strategies.
- Collaborate with directors, technical leaders, customer stakeholders, and executive leadership to communicate security strategies, risks, recommendations, and project status.
- Lead and participate in technical discussions, customer meetings, assessments, workshops, and presentations.
- Communicate complex cybersecurity concepts clearly to both technical and non-technical audiences.
- Work collaboratively with…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).