Overview
Skills
Job Details
Job Title : Senior Cloud Assurance Specialist/Engineer
Location : Charlotte, NC (hybrid)
Duration : 12 Month
This is a backfill for someone on the team, would like to identify a person before moving on from the existing talent. (Dont have a sample Resume)
Internal Notes
This is for an Azure Implementation Project. Candidate should be Azure focused. Will be the compliance expect for this group as they continue to implement Azure across the org. Will be working closely with Moody's compliance, assurance and corporate control teams to ensure project success and smooth outcomes.
Job Description
We are seeking a Senior Cloud Assurance Specialist / Engineer to contribute to a critical project focused on implementing and establishing robust assurance and auditability for our new Microsoft Azure cloud platform. This initiative is fundamental to providing cloud hosting for AI/ML-related applications. We have a strategic vision to leverage automation to significantly streamline our audit processes and ultimately make audits a more seamless, "business as usual" activity. The selected candidate will contribute directly to this vision by bridging the gap between our corporate control requirements and the technical implementation in Azure, and by helping to lay the groundwork for automated audit evidence within this key project.
Job Responsibilities
Key Responsibilities:
As a key contributor to the AI Cloud Engineering team, interpret and apply relevant corporate Risk and Control Self-Assessments (RCSAs) to the Azure cloud environment being implemented.
Collaborate closely with the Internal Compliance team to clarify RCSA requirements and ensure alignment with the strategic assurance vision for the project.
Partner with Azure/Terraform/GitHub Actions engineers to analyze cloud configurations, determine how controls are satisfied, and define technical requirements for control implementation.
Define clear requirements for automating the collection and production of audit evidence from Azure using tools like Azure built-in capabilities, Datadog, and Grafana, directly contributing to the strategic vision of streamlined audits.
Support the Internal Compliance team in preparing for various audits by providing necessary documentation and technical context related to the Azure platform and the progress made on automation.
Contribute to establishing repeatable processes for demonstrating compliance and auditability within the new Azure environment, aligned with the strategic objective of enhanced assurance.
Apply knowledge of well-known compliance frameworks (e.g., NIST, DORA) to the Azure implementation context and our assurance automation strategy.
Utilize collaboration tools such as Microsoft Teams, Jira, Confluence to coordinate tasks and share information effectively.
Required Skills and Experience:
5+ years of experience in a role related to assurance, compliance, IT Audit, or Risk Management.
At least 3 years of focused experience in cloud assurance or compliance across any major cloud platform (AWS, Google Cloud Platform, Azure).
Proven ability to communicate compliance and audit requirements effectively to cloud engineering teams, translating control needs into actionable technical tasks.
Experience interpreting and applying complex control requirements.
Strong understanding of audit evidence requirements and methodologies.
Experience working with a well-known compliance framework (e.g., NIST, DORA).
Preferred Skills and Experience:
Familiarity with Microsoft Azure services and their security/compliance configurations.
Understanding of Infrastructure as Code (Terraform) and CI/CD pipelines (GitHub Actions) from a control perspective.
Experience defining requirements for automation related to compliance evidence collection.
Familiarity with tools like Datadog or Grafana for reporting/dashboards.
Prior experience in a project-based or contractor role focused on cloud compliance and/or automation initiatives.
Experience working in a regulated industry.
Experience working with the Wiz cloud scanning compliance tool.
Qualifications
Familiarity with Microsoft Azure services and their security/compliance configurations.
Understanding of Infrastructure as Code (Terraform) and CI/CD pipelines (GitHub Actions) from a control perspective.
Experience defining requirements for automation related to compliance evidence collection.
Familiarity with tools like Datadog or Grafana for reporting/dashboards.
Prior experience in a project-based or contractor role focused on cloud compliance and/or automation initiatives.
Experience working in a regulated industry.
Experience working with the Wiz cloud scanning compliance tool