About the job
About the Role
The Cloud Security Tech Lead plays a pivotal role in overseeing and executing daily cloud security operations across platforms such as Google Cloud Platform (GCP), Amazon Web Services (AWS), Microsoft Azure, and Oracle Cloud Infrastructure (OCI). This position blends technical acumen with leadership, ensuring that cloud security risks are effectively identified, prioritized, and addressed in accordance with business risks, Zero Trust principles, and regulatory standards.
As the Cloud Security Tech Lead, you will provide direct technical guidance to cloud security engineers and analysts, collaborating closely with Security Operations, IT, Engineering, and Application teams to foster accountability for remediation and promote continuous improvement. Working within a global framework, this role serves as a critical execution and escalation point for cloud security strategies, optimization of tools, automation, and analytics.
Roles and Responsibilities
Lead and supervise cloud security operations across GCP (primary), AWS, Azure, and OCI.
Manage cloud security operations, including configuration reviews, misconfiguration detection, prioritization, remediation tracking, and validation.
Act as a key partner and escalation point for cloud security initiatives, ensuring alignment with enterprise security strategies and priorities.
Design, enhance, and maintain cloud security review and monitoring strategies utilizing native cloud security tools, CSPM platforms, and integrating with SIEM and SOAR systems.
Convert extensive cloud security findings into actionable insights via dashboards, metrics, and executive reports, integrating threat intelligence and identifying emerging vulnerabilities.
Drive the risk-based prioritization of cloud security issues leveraging threat intelligence, asset criticality, exposure, and business impact.
Collaborate with application owners, DevOps, and platform teams to provide clear remediation guidance and influence timely risk reduction decisions.
Ensure the secure deployment and ongoing improvement of IAM, network segmentation, encryption, logging, and monitoring controls across cloud platforms.
Lead and support secure architecture and design reviews for new and existing cloud workloads, advocating for Zero Trust principles and security-by-design practices.
Develop, refine, and maintain automation, scripting, runbooks, and operational documentation to identify misconfigurations and enforce cloud security baselines.
Mentor and develop cloud security engineers and analysts, enhancing their technical proficiency and operational maturity.
Provide advanced support for complex cloud security findings, tooling issues, and remediation challenges.

