Provide strategic leadership on cloud security through the design and delivery of scalable, cloud-native security architectures
Develop and maintain cloud security reference architectures, patterns, and guardrails leveraged across the enterprise
Define and govern cloud security standards, policies, and procedures
Partner with Application Architects, Platform Engineers, and DevOps teams to embed security by design into cloud-native architectures and CI/CD pipelines
Build and maintain cloud security strategic roadmaps
Evaluate cloud platform and infrastructure projects for alignment with security, compliance, and cloud-native best practices
Lead cloud architecture and design reviews
Drive cloud security technology evaluations and proof-of-concept efforts
Partner with vendor management to assess the cloud security posture of existing and prospective vendors and SaaS providers
Lead cloud security assessments for mergers and acquisitions
Requirements
Bachelor's degree in information technology, Computer Science, or equivalent experience
CCSP, CISSP, AWS Security Specialty, or equivalent cloud security certification
Demonstrated experience designing and securing cloud environments at enterprise scale across one or more major cloud providers (AWS, Azure, GCP)
Strong understanding of cloud-native security services — identity and access management, data protection, network security, workload protection, and logging/monitoring
Experience with cloud security posture management (CSPM), cloud workload protection (CWPP), and CNAPP platforms
Familiarity with infrastructure-as-code security (Terraform, CloudFormation) and DevSecOps pipeline integration
Deep knowledge of cloud identity architectures including IAM, federated identity, Privileged Access Management, and Zero Trust principles
Experience with container and Kubernetes security in cloud-native deployments
Working knowledge of compliance frameworks applicable to cloud environments — PCI-DSS, HIPAA, NIST CSF, CIS Cloud Benchmarks
Knowledge of data privacy and protection regulations and how they apply to cloud data residency and handling
Excellent written, verbal, and presentation skills — able to communicate cloud risk clearly to technical and executive audiences
Strong ability to manage and prioritize multiple concurrent initiatives in a fast-paced environment
Knowledge of the vacation or hospitality industry a plus
5+ years of information security experience
Tech Stack
AWS
Azure
Cloud
Google Cloud Platform
Kubernetes
Terraform
Benefits
Medical
Dental
Vision
Flexible spending accounts
Life and accident coverage
Disability
Paid time off
Parental leave
Holidays
Wish day paid time to volunteer at an approved organization of your choice
401k with employer match
Legal and identify theft plan
Voluntary income protection benefits
Wellness program
Employee Assistance Program
Cloud Security Architect at Travel + Leisure Co. | JobVerse