Cloud Security Engineer

Other Jobs To Apply

No other job posts for this day.

Responsibilities

  • You must design, implement, and maintain cloud security controls and governance frameworks to ensure a secure and compliant cloud environment.
  • You are expected to develop and manage identity and access management (IAM) frameworks, including role-based access control (RBAC) models and access policies aligned with the principle of least privilege.
  • You must establish and enforce cloud security guardrails, policies, and configuration baselines to reduce misconfigurations and strengthen security across cloud environments.
  • You are expected to work closely with platform and engineering teams to integrate security controls into infrastructure automation and deployment processes.
  • You must oversee and monitor cloud security posture, identifying configuration drift, control weaknesses, and policy violations, while coordinating remediation activities with relevant teams.
  • You are expected to manage and facilitate periodic access reviews, ensuring user entitlements, privileged access, and role assignments remain appropriate and compliant.
  • You must define and maintain security baseline standards across infrastructure, operating systems, cloud services, and SaaS platforms, aligned with industry best practices and organizational requirements.
  • You are expected to review and prioritize vulnerability findings, ensuring remediation activities are tracked and completed within agreed timelines.
  • You must conduct technical security assessments on third-party vendors, cloud integrations, and external services, identifying risks and recommending mitigation measures.
  • You are expected to prepare and maintain security governance dashboards, compliance reports, and risk posture metrics for management and audit purposes.
  • You must support compliance initiatives by ensuring cloud environments align with internal security policies, regulatory requirements, and audit expectations.

Job Requirement

  • Bachelor’s degree in Computer Science, Information Technology, Cyber Security, or a related discipline.
  • Minimum 5+ years of hands-on experience in cloud security engineering, preferably within AWS environments.
  • Strong experience in AWS security services, IAM design, and access governance frameworks.
  • Deep understanding of role-based access control (RBAC) and the principle of least privilege.
  • Hands-on experience implementing cloud security guardrails, policy enforcement, and policy-as-code practices.
  • Good knowledge of cloud security posture management and continuous compliance monitoring.
  • Experience in vulnerability management, including reviewing findings, risk prioritization, and remediation governance.
  • Strong understanding of security benchmarks and frameworks such as CIS Benchmarks and cloud security best practices.
  • Experience defining and maintaining security baselines across cloud infrastructure and SaaS platforms.
  • Ability to translate security risks into practical technical controls and operational requirements.
  • Exposure to regulatory and audit environments such as ISO 27001, ISO 27017, or similar frameworks is preferred.
  • Familiarity with DevSecOps practices and integrating security into deployment pipelines is an advantage.
  • Experience with cloud security posture management tools is an added advantage.
  • Professional certifications such as AWS Security Specialty, CISSP, or CCSP are highly advantageous.
  • Strong analytical, problem-solving, and stakeholder communication skills.

Pay: RM10,000.00 - RM11,000.00 per month

Benefits

  • Opportunities for promotion
  • Work from home

Work Location: In person

Back to blog