Pracuj.pl Praca zdalna Senior New

Senior Cloud Security Engineer

Cyclad

⚲ Warszawa

135 zł netto (+ VAT) / godz.

Wymagania

  • Microsoft Azure
  • AWS
  • Google Cloud Platform
  • Oracle Cloud Infrastructure
  • IBM Cloud
  • Microsoft Sentinel
  • Microsoft Defender XDR
  • PowerShell
  • Python

Opis stanowiska

Nasze wymagania:
Minimum 7 years of hands-on experience in cloud security, with strong expertise in Microsoft Azure.
Deep operational experience with Microsoft Defender for Cloud, including Defender plans and Cloud Security Posture Management (CSPM).
Strong knowledge of the CIS Azure Benchmark and Microsoft Cloud Security Benchmark (MCSB).
Hands-on experience with Azure Policy, Entra ID, RBAC, Key Vault, and Azure network security controls.
Proven experience managing security audit findings and working with internal and external auditors.
Working knowledge of at least one additional cloud platform, such as AWS, GCP, Oracle Cloud Infrastructure (OCI), or IBM Cloud.
Experience with Microsoft Sentinel or Microsoft Defender XDR, including Kusto Query Language (KQL).
Strong communication skills and the ability to collaborate effectively with engineering teams and stakeholders.

Mile widziane:
Industry certifications such as SC-100, AZ-500, CISSP, or CCSP.
Experience securing environments across two or more public cloud platforms.
Knowledge of policy-as-code tools, including OPA, Checkov, or tfsec.
Familiarity with security and compliance frameworks such as SOC 2, ISO 27001, NIST 800-53, and PCI DSS.
Scripting experience with PowerShell or Python.

O projekcie:
In Cyclad we work with top international IT companies in order to boost their potential in delivering outstanding, cutting edge technologies that shape the world of the future. Currently, we are looking for a Senior Cloud Security Engineer to strengthen the security posture of a multi-cloud environment spanning Microsoft Azure, AWS, Google Cloud Platform (GCP), Oracle Cloud Infrastructure (OCI), and IBM Cloud. While the role covers multiple cloud platforms, Microsoft Azure will be the primary focus, as the majority of workloads are hosted there.
In this position, you will operate Microsoft Defender for Cloud, drive remediation of security findings, support audit activities, and work closely with engineering teams to embed secure-by-default practices across cloud environments.
Location: 100% remote
Type of employment: B2B contract
Remuneration: 135 PLN net + VAT per hour on B2B
Project languages: English

Zakres obowiązków:
Operate Microsoft Defender for Cloud across Azure subscriptions, including monitoring secure score, alerts, recommendations, and Defender plans.
Improve compliance with the CIS Azure Benchmark and Microsoft Cloud Security Benchmark (MCSB).
Triage security recommendations and coordinate remediation with application, platform, and infrastructure teams.
Manage the end-to-end resolution of security audit findings, including tracking, evidence collection, and closure.
Oversee security exceptions and risk acceptance processes, ensuring appropriate documentation and periodic reviews.
Define and enforce Azure Policy, RBAC, and security guardrails to prevent cloud misconfigurations.
Review and strengthen the security of Azure services, including Entra ID, networking, Key Vault, storage, compute, and container platforms.
Provide security oversight across AWS, GCP, Oracle Cloud, and IBM Cloud, including onboarding supported environments into Microsoft Defender for Cloud CSPM where applicable.
Manage vulnerability findings and drive timely remediation across cloud workloads.
Collaborate with platform and engineering teams to integrate security controls into Infrastructure-as-Code (IaC) and CI/CD pipelines.
Prepare reports on security posture, remediation progress, and compliance status for leadership and audit teams.

Oferujemy:
Private medical care with dental care (covering 70% of costs). Family package option possible
Multisport card (also for an accompanying person)
Life insurance
Work with talented engineers on large-scale, technically challenging projects

🔍 Dekoder Ogłoszenia

🟡
boost their potential in delivering outstanding, cutting edge technologies that shape the world of the future.
Firma pracuje z dużymi klientami nad innowacyjnymi projektami, co może oznaczać pracę nad nowymi, ale potencjalnie niestabilnymi technologiami.
🔴
Minimum 7 years of hands-on experience in cloud security, with strong expertise in Microsoft Azure.
Oczekiwane jest bardzo głębokie i praktyczne doświadczenie, które może być trudne do znalezienia i potwierdzenia.
🔴
Deep operational experience with Microsoft Defender for Cloud, including Defender plans and Cloud Security Posture Management (CSPM).
Wymagane jest bardzo szczegółowe i praktyczne opanowanie konkretnych narzędzi Microsoftu, co może ograniczać elastyczność.
🟡
Strong communication skills and the ability to collaborate effectively with engineering teams and stakeholders.
Oprócz technicznych umiejętności, oczekuje się dużej zdolności do interakcji i współpracy z różnymi grupami osób.
🟡
Working knowledge of at least one additional cloud platform, such as AWS, GCP, Oracle Cloud Infrastructure (OCI), or IBM Cloud.
Chociaż główny nacisk jest na Azure, firma może oczekiwać pewnej elastyczności i umiejętności pracy z innymi chmurami.