




Job Description: * Follow the standards and guidelines established by the organization * Proactively, positively, and responsibly participate in achieving team objectives * Rigorous and detail-oriented; deliverables must meet high-quality standards Academic Background: * Bachelor's degree in Computer Engineering, Industrial Engineering, or related fields Specific Knowledge: * Security Design and Architecture * Design secure and scalable cloud security architectures based on frameworks such as AWS Well-Architected Framework (Security Pillar), Azure Security Benchmark, etc. * Define security controls for hybrid and multicloud environments, including network segmentation, encryption, IAM, monitoring, and incident response. * Evaluate integration with security technologies: WAFs, CASB, SIEM/SOAR, posture management tools (CSPM), etc. Governance, Risk, and Compliance (GRC): * Ensure regulatory and compliance adherence, e.g., ISO 27001, NIST, GDPR, PCI-DSS, local regulations in the insurance sector. * Define cloud security policies and standards for the project, including hardening, secret management, access control, etc. Code Security Assessment: * Evaluate security within DevSecOps pipelines. * Code scanning, vulnerability analysis, configuration validation. * Understanding of reports from security scanning tools, e.g., Veracode, Dependency Check, Fortify, Snyk, etc. Technical Consulting: * Advise development, infrastructure, and business teams by translating technical risks into business impacts. * Lead risk assessments and threat modeling analyses using methodologies such as STRIDE, DREAD, or MITRE ATT&CK. Required Work Experience: * 7 years of experience as a Cloud Security Architect Job Type: Contract Contract Duration: 4 months


