Cloud Security & Compliance Engineer
- Full-Time
- On-Site
Job Description:
About the Job
We are seeking a Cloud Security & Compliance Engineer to defend our multi-tenant private cloud. You will architect a Zero Trust environment, ensuring every layer—from hardware to SaaS—is hardened, monitored, and compliant with global standards.
Key Responsibilities
- Security Orchestration: Implement micro-segmentation and SDN security policies.
- Identity & Access Governance: Manage IAM frameworks, enforcing least-privilege and MFA.
- Compliance Framework Management: Ensure alignment with ISO 27001, SOC2, PCI-DSS, GDPR; lead audits.
- Vulnerability & Threat Management: Conduct automated scans and manage patching lifecycle.
- Cloud DevSecOps: Integrate security into CI/CD pipelines for IaC templates.
- Incident Response & Forensics: Lead ITIL-aligned Security Incident Management.
- Data Privacy in SDS: Ensure encryption at rest and in transit for SDS arrays.
Qualifications & Requirements
-
Certifications:
-
CISSP, CCSP, or CISM required.
-
Cloud security certification (e.g., CCNP Security, VMware VCP-NV, Red Hat Security Specialist).
-
ITIL Foundation required.
-
-
Hard Skills:
-
NGFW, WAF, IDS/IPS, VPN technologies in virtualized contexts.
-
Linux hardening (SE-Linux, AppArmor, kernel hardening).
-
Automation: Python or Bash for audits and log analysis.
-
SIEM/SOAR: Splunk, Elastic Security, Wazuh.
-
-
Experience & Soft Skills:
-
5+ years in InfoSec, 2+ in cloud/virtualized environments.
-
Bachelor's in Cybersecurity, CS, or related.
-
High ethical standards and commitment to data privacy.
Work structure
- Full time - Onsite
- Damascus