Cloud Info Security Engineer
ValueMomentum
About the role
Role
Cloud Security Engineer
Location
Hyderabad, Pune, Coimbatore
Experience
5 - 8 years of experience
Working Mode
5 Days Work From Office
Job Summary
We are looking for a Cloud Security Engineer with a minimum of 5 years of experience in Amazon Web Services (AWS) to join our dynamic team. The ideal candidate will have a deep understanding of cloud infrastructure and architecture, coupled with expertise in deploying, managing, and optimizing AWS services. As a Cloud Platform Engineer, you will play a crucial role in designing, implementing, and maintaining our cloud-based solutions to meet the evolving needs of organization and client.
Role Objective
We are hiring for a role that supports our client’s Cloud Security Operations within the Enterprise Information Security function. The position is focused on ensuring secure access management, effective secrets management, incident detection and response, and the continuous improvement of the AWS cloud security posture. This role plays a key part in strengthening the organization’s cloud security framework and supporting a proactive security operations approach in a dynamic cloud environment.
Key Responsibilities
Cloud Security Operations
- Manage and govern AWS cloud accounts and resources.
- Oversee IAM (Identity & Access Management) — role provisioning, access approvals, and policy design.
- Architect and implement access management models for new cloud environments (migration from Cloud 1.0 → Cloud 2.0).
Incident Response & Remediation
- Monitor cloud-native security tools (AWS Security Hub, Inspector, CloudTrail, GuardDuty).
- Respond to and remediate misconfigurations or exposed resources.
- Work closely with CloudOps and App teams to close vulnerabilities.
Secrets Management
- Implement and maintain AWS Secrets Manager and centralized secrets solutions.
- Enable secure credential management in CI/CD pipelines.
Governance & Policy
- Redefine policies and controls for new networking and infrastructure setups (Cloud 2.0 migration).
- Collaborate with architects and InfoSec teams to ensure compliance with enterprise standards.
Tooling & Automation
- Evaluate and onboard centralized security monitoring platforms (e.g., Wiz, CloudKnox, or similar).
- Automate access reviews, provisioning, and security checks where possible.
Core Technical Skills Required
| Category | Skills / Tools |
|---|---|
| Cloud Platform | AWS (primary focus) |
| Security Operations | Incident detection, remediation, and posture management |
| IAM & Governance | AWS IAM, SCPs, Roles, Federation, AD/SSO integration |
| Secrets Management | AWS Secrets Manager, centralized vault solutions |
| Monitoring & Compliance | AWS Security Hub, Inspector, GuardDuty, Config, Wiz (preferred) |
| Automation | Python/Shell scripting for automation of security controls |
| Networking & Cloud Migration | Understanding of AWS networking, VPC design, and secure configurations |
Soft & Functional Skills
- Strong understanding of security principles and zero-trust frameworks.
- Ability to collaborate across App, DevOps, and InfoSec teams.
- Hands-on troubleshooting and decision-making for access and security issues.
- Good documentation and incident-handling discipline.
Requirements
- Minimum of 5 years of experience in Amazon Web Services (AWS).
- Deep understanding of cloud infrastructure and architecture.
- Expertise in deploying, managing, and optimizing AWS services.
- Strong understanding of security principles and zero-trust frameworks.
- Ability to collaborate across App, DevOps, and InfoSec teams.
- Hands-on troubleshooting and decision-making for access and security issues.
- Good documentation and incident-handling discipline.
Responsibilities
- Manage and govern AWS cloud accounts and resources.
- Oversee IAM (Identity & Access Management) — role provisioning, access approvals, and policy design.
- Architect and implement access management models for new cloud environments (migration from Cloud 1.0 → Cloud 2.0).
- Monitor cloud-native security tools (AWS Security Hub, Inspector, CloudTrail, GuardDuty).
- Respond to and remediate misconfigurations or exposed resources.
- Work closely with CloudOps and App teams to close vulnerabilities.
- Implement and maintain AWS Secrets Manager and centralized secrets solutions.
- Enable secure credential management in CI/CD pipelines.
- Redefine policies and controls for new networking and infrastructure setups (Cloud 2.0 migration).
- Collaborate with architects and InfoSec teams to ensure compliance with enterprise standards.
- Evaluate and onboard centralized security monitoring platforms (e.g., Wiz, CloudKnox, or similar).
- Automate access reviews, provisioning, and security checks where possible.
Skills
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free