Cloud Security Architect

Minfytech

Full Time12+ yearsPosted about 18 hours ago

Let the right jobs find you

Get personalised suggestions from verified company career pages, matched to your role, location, level, and skills.

Overview

Position Type

Full Time

Experience

12+ years

Job Description

Job Description: Cloud Security Architect & Lead

The Cloud Security Architect & Lead will own the security architecture, governance, compliance, and operational security posture across Minfy's multi-cloud environments spanning AWS, Microsoft Azure, and Google Cloud Platform (GCP). This leadership role is responsible for establishing security standards, driving cloud security transformation initiatives, enabling DevSecOps practices, and ensuring secure, compliant, and resilient cloud operations for both Minfy-managed and customer-managed environments.

The individual will work closely with SRE, Cloud Engineering, FinOps, Product Engineering, AI/ML teams, Customer Success, and Strategic Account teams to embed security into every aspect of cloud service delivery.

Key Responsibilities

Multi-Cloud Security Architecture

  • Define and maintain enterprise cloud security architecture standards across AWS, Azure, and GCP.
  • Develop secure landing zones, reference architectures, and cloud security guardrails.
  • Establish architecture patterns for:
    • Multi-cloud deployments
    • Hybrid cloud environments
    • SaaS platforms
    • AI/ML workloads
    • Kubernetes platforms
  • Review and approve security designs for new cloud initiatives and customer engagements.
  • Drive Zero Trust Architecture adoption across all cloud platforms.

Cloud Security Engineering & DevSecOps

  • Embed security controls into CI/CD and Infrastructure-as-Code pipelines.
  • Implement Security-as-Code and Policy-as-Code frameworks.
  • Automate compliance validation and security posture assessments.
  • Establish secure software supply chain controls.
  • Drive secure container, Kubernetes, and serverless security practices.
  • Integrate automated vulnerability and misconfiguration detection into engineering workflows.

Security Operations & Threat Management

  • Define and oversee cloud security monitoring, detection, and response capabilities.
  • Establish multi-cloud threat detection strategies.
  • Lead security incident response and forensic investigations.
  • Drive vulnerability management programs across cloud platforms.
  • Implement cloud-native threat intelligence and proactive threat hunting capabilities.
  • Develop operational runbooks and security response automation.

Governance, Risk & Compliance

  • Develop cloud security governance frameworks and policies.
  • Establish cloud risk management and control assessment processes.
  • Lead compliance initiatives including:
    • ISO 27001
    • SOC 2
    • PCI DSS
    • GDPR
    • HIPAA
    • NIST CSF
    • CIS Benchmarks
  • Support customer security reviews and regulatory audits.
  • Build continuous compliance monitoring capabilities.

Identity, Access & Data Security

  • Define enterprise IAM strategy across AWS, Azure, and GCP.
  • Implement Zero Trust and least-privilege access models.
  • Standardize:
    • MFA
    • SSO
    • Federated Identity
    • Privileged Access Management
  • Lead secrets management and encryption strategy.
  • Define enterprise data classification and protection controls.

AI & Emerging Security

  • Secure GenAI and AI/ML platforms deployed in cloud environments.
  • Establish governance controls for AI workloads.
  • Define security standards for LLM deployments and AI-assisted operations.
  • Assess risks associated with AI services and third-party integrations.
  • Collaborate with AI engineering teams to implement secure AI architectures.

Leadership & Organizational Responsibilities

  • Build and lead a Cloud Security Center of Excellence within SRE.
  • Mentor Cloud Security Engineers and Security Analysts.
  • Partner with Strategic Account Directors, TAMs, Cloud Architects, and Delivery Leaders.
  • Provide executive-level reporting on security posture, risks, and remediation plans.
  • Support customer-facing security discussions and solution reviews.

Required Skills

AwsAzureGcpCloud Native ArchitectureKubernetesDevsecopsIdentity SecurityCompliance FrameworkCloud Security OperationsCode SecurityPolicy As CodeSecurity AutomationThreat IntelligenceVulnerability ManagementSecurity Operations Incident Response

About the Company

Minfytech

Hyderabad, India

Share This Job