Jobgether
Senior Technical Consultant - Cloud Security
operationsfull-timeUS
SALARY
Not listed
WORK TYPE
remote
JOB TYPE
full-time
INDUSTRY
general
✦ AutoApply Sick of applying? We apply to roles like this for you, up to 20 a month.
Learn more
About the role
Accountabilities:
- Lead strategy, roadmap, design, and planning workshops for medium to large security and cloud consulting engagements.
- Set and manage customer expectations while guiding engagement teams toward defined objectives, requirements, milestones, and timelines.
- Lead client-facing delivery activities and, when assigned, serve as the Engagement Lead for customer projects.
- Gather requirements, manage dependencies, monitor project status, and ensure consulting engagements are delivered successfully, on time, and in line with business objectives.
- Identify, analyze, and break down project risks and technical issues into manageable components, determining effective approaches to resolution.
- Create, finalize, and peer-review project deliverables, technical collateral, architecture documentation, and other engagement artifacts.
- Present technical deliverables, recommendations, and findings to client stakeholders, including executive management.
- Support business development through client discovery meetings, service offering demonstrations, project scoping, proposal development, and client presentations.
- Assist with engagement scoping and proposal collateral while identifying opportunities for collaboration across security and technology capabilities.
- Maintain subject matter expertise across at least eight security domains or three security solutions.
- Contribute to the development, enhancement, standardization, and delivery of security service offerings and capabilities.
- Stay current on emerging IT trends, cloud technologies, security standards, and industry practices.
- Provide thought leadership, technical mentorship, and guidance to other consultants and team members.
- Promote continuous improvement by proposing and implementing enhancements to consulting methodologies, service offerings, and delivery practices.
- Extensive professional experience in information security, security governance, compliance, cloud security, or a related technical consulting discipline.
- Proven experience reviewing and implementing secure cloud reference architectures and landing zones.
- Ability to translate traditional risk strategies, including lift-and-shift approaches, into effective cloud-native security controls.
- Strong understanding of multi-cloud governance models, including Infrastructure-as-Code (IaC), policy-as-code (PaC), tagging standards, and multi-account strategies.
- 5+ years of hands-on experience with CNAPP platforms, particularly Wiz and Prisma Cloud.
- Proven ability to deploy and implement Prisma Cloud in enterprise environments and integrate Wiz or Prisma Cloud with ServiceNow, CI/CD pipelines, ticketing systems, and alerting workflows.
- Ability to clearly communicate CNAPP findings, including risk, criticality, and remediation recommendations, to both technical and business stakeholders.
- 5+ years of experience working with AWS, Azure, and/or GCP.
- Familiarity with cloud-native security services such as AWS Security Hub, Microsoft Defender for Cloud, and Google Security Command Center.
- Hands-on experience with cloud identity and access management, including IAM, federation, and RBAC across multi-cloud environments.
- Familiarity with identity-as-a-service platforms such as Okta and Entra ID.
- Strong knowledge of security standards and frameworks including CIS Benchmarks, NIST, FedRAMP, ISO 27001, and GDPR.
- Experience designing and mapping cloud-specific security controls for audit and compliance requirements.
- Experience integrating security monitoring with SIEM platforms such as Splunk, Sentinel, or Chronicle and using cloud-native detection capabilities.
- Ability to read, understand, and apply Infrastructure-as-Code using Terraform, Bicep, and/or CloudFormation.
- Familiarity with policy-as-code tools such as OPA and Sentinel, as well as IaC scanning within CI/CD pipelines.
- Proficiency in scripting with Python, PowerShell, and/or Bash to automate security tasks and workflows.
- Experience with Docker, Kubernetes, and securing containerized workloads at scale.
- Strong consulting, communication, problem-solving, and stakeholder management skills, with the ability to operate effectively across technical and business audiences.
- Medical, dental, and vision insurance.
- 401(k) retirement plan.
- Paid company holidays.
- Paid time off.
- Paid parental and caregiver leave.
- Professional development and continued learning opportunities.
- Sponsored certifications and professional credentials.
- Access to advanced technology and a multi-million-dollar technology lab.
- Cross-department training and development opportunities.
- Employee initiatives and groups supporting diversity, inclusion, and professional growth.
- Compensation structured around On-Target Earnings (OTE), including base salary and any applicable target bonus; the range may vary based on experience, qualifications, and geographic location.
Requirements:
Benefits:
✦ Sick of applying to 40 jobs a month?
I rewrite your resume for ATS by hand first. Once you sign off on it, AutoApply applies to up to 20 roles like this a month, cover letter in your own voice each time. From $14.99/mo, cancel anytime.
Get AutoApply