Cloud Security Architect; security assessments
Listed on 2026-05-30
-
IT/Tech
Cybersecurity, Cloud Computing, Systems Engineer, Data Security
Join to apply for the Cloud Security Assurance Consultant role at NTT DATA
3 days ago Be among the first 25 applicants
Join to apply for the Cloud Security Assurance Consultant role at NTT DATA
Get AI-powered advice on this job and more exclusive features.
Direct message the job poster from NTT DATA
NTT DATA is one of the world's largest global security service providers, partnering with some of the most recognized security technology brands. We're looking for passionate, curious, and motivated individuals to join our team. Using your advanced expertise in cloud security architecture, assurance methodologies, and multi-cloud environments, you will lead cloud security assessments, validate cloud control implementations, and provide authoritative guidance on cloud security posture while supporting enterprise cloud transformation and modernization initiatives across AWS, Azure, and GCP platforms.
This offers Hybrid flexible working options.
Please note, you will need to be eligible for SC clearance
What you’ll be doing :KEY RESPONSIBILITIES
- Cloud Security Architecture Assurance
- Lead comprehensive security architecture reviews for cloud-native and hybrid cloud solutions
- Validate cloud security designs against industry frameworks including NIST CSF, CIS Benchmarks, and CSA CCM
- Assess cloud architecture patterns for IaaS, PaaS, SaaS, and containerized workloads
- Provide authoritative guidance on secure multi-cloud and hybrid cloud architectures
- Evaluate cloud migration security strategies and transformation roadmaps
- Interface with cloud architects and enterprise architecture teams on security requirements
- Cloud Security Assessment and Testing
- Design and execute cloud security assessments across AWS, Azure, and GCP environments
- Conduct cloud configuration reviews and security posture assessments
- Lead cloud penetration testing engagements following CREST and CHECK methodologies
- Perform container and Kubernetes security assessments
- Assess serverless and microservices security implementations
- Validate Infrastructure as Code (IaC) security controls and deployment pipelines
- Cloud Compliance and Governance
- Lead cloud compliance assessments against ISO 27017, ISO 27018, and SOC 2 requirements
- Conduct cloud security audits for regulatory frameworks including GDPR, NIS2, and DORA
- Assess cloud service provider security controls and shared responsibility models
- Validate cloud governance frameworks and policy enforcement mechanisms
- Review cloud security posture management (CSPM) implementations
- Coordinate cloud security audits with internal and external audit teams
- Cloud Identity and Access Management Assurance
- Assess cloud IAM architectures including Azure AD, AWS IAM, and GCP IAM
- Validate privileged access management and just-in-time access controls
- Review federated identity, SSO, and multi-factor authentication implementations
- Assess service account security and workload identity configurations
- Evaluate cloud entitlement management and least privilege implementations
- Validate identity governance and administration controls
- Cloud Data Protection and Encryption Assurance
- Assess cloud data protection strategies including encryption at rest and in transit
- Validate cloud key management service implementations and BYOK configurations
- Review data residency, sovereignty, and cross-border data transfer controls
- Assess cloud backup, disaster recovery, and business continuity arrangements
- Validate data classification and cloud DLP implementations
- Review cloud database security and secrets management solutions
- Dev Sec Ops and Cloud Pipeline Security
- Assess security integration in cloud CI/CD pipelines and Dev Ops workflows
- Validate shift-left security practices and automated security testing
- Review Infrastructure as Code security scanning and policy as code implementations
- Assess container image security and registry vulnerability management
- Evaluate cloud workload protection platforms and runtime security controls
- Validate secure software supply chain practices for cloud deployments
- Advanced Cloud Security Expertise
- Mastery of cloud security across AWS, Azure, and GCP platforms
- Expert knowledge of cloud security frameworks (CSA CCM,…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: