Design, implement, and manage security controls for cloud platforms (IaaS, PaaS, cloud-native workloads)
Secure AI/ML systems including model development environments, training pipelines, APIs, and inference services
Assess and mitigate risks related to cloud misconfigurations, IAM, data exposure, and insecure APIs
Implement and maintain cloud security tooling (CSPM, CWPP, CIEM, container security, API security)
Collaborate with engineering, DevOps, data science, and AI teams to embed security into CI/CD pipelines and ML workflows (DevSecOps/MLOps)
Conduct security architecture reviews, threat modeling, and risk assessments for cloud and AI initiatives
Define and enforce security standards, guardrails, and best practices for cloud and AI environments
Monitor environments for security events, investigate alerts, and support incident response activities
Add/modify Splunk alerts to triage notables
Ensure protection of sensitive data in AI systems (encryption, key management, DLP, privacy controls)
Support compliance with regulatory, contractual, and internal security requirements (SOC 2, ISO 27001, NIST, GDPR)
Stay current on emerging cloud and AI threats, vulnerabilities, and industry best practices
Proven work in security architecture, solutions delivery, and emerging technologies
Designing and implementing security measures for public cloud data protection (authentication, encryption, ACLs, IDS, firewalls)
Understanding of multi-cloud security architectures (infrastructure, tools, application security)
Consulting and engineering in security best practices aligned with business and regulatory requirements
Expertise in cloud security risks (data breaches, hijacking, APTs, DoS, malicious insiders, etc.)
Threat analysis and risk mitigation design
Experience with NIST standards and ISO 27001 frameworks
Strong Splunk experience (alerts, dashboards, executive reports)
Security architecture aligned with organizational strategic goals
Forensic investigations of cyberattacks
Policy/standards creation for public/private/hybrid cloud contexts
Certifications: GSEC, CEH, CISA, CCSP, AWS Solutions Architect, Cloud Security, OpenStack
Endpoint Detection & Response (Crowdstrike, EndGame, CyberReason)
Email Threat Management (Proofpoint, MimeCast, Microsoft)
SIEM tools (Splunk, Rapid7, SumoLogic)
DLP/CASB tools (Symantec, Microsoft, Bitglass, Netskope)
Cloud Enterprise Network Security (Cisco Umbrella, Palo Alto, ZScaler)