- Company Name
- New York Technology Partners
- Job Title
- Senior Lead Cloud Security Engineer
- Job Description
-
**Job Title:** Senior Lead Cloud Security Engineer
**Role Summary:**
Lead the security strategy and execution for a large-scale multi‑cloud migration in a regulated healthcare environment. Design, implement, and continuously improve security controls, IAM, and DevSecOps practices across Azure, AWS, and Google Cloud platforms, ensuring compliance with NIST, HIPAA, PCI‑DSS, ISO 27000, and zero‑trust frameworks.
**Expectations:**
- Deliver enterprise‑grade security architectures that meet regulatory and internal compliance mandates.
- Mentor and grow a team of security engineers, fostering industry‑best‑practice knowledge.
- Serve as the primary security liaison with IT, vendors, and MSPs, driving secure design and operational excellence.
- Own incident response strategy and coordinate tabletop exercises.
**Key Responsibilities:**
- Architect and enforce multi‑cloud security controls, IAM/RBAC models, and automated hardening pipelines (Terraform, PowerShell).
- Lead application scanning, CSPM, SIEM/EDR integration (Sentinel, Splunk, Microsoft Defender, Wiz) to detect and remediate threats.
- Collaborate on network security (firewalls, NAC, encryption) and Active Directory/UNIX security hardening.
- Guide audit preparation, compliance assessments, and risk remediation initiatives.
- Promote DevSecOps principles, embedding security throughout CI/CD processes.
- Mentor junior staff and drive the development of scalable security service lines.
**Required Skills:**
- 12+ years overall IT experience, 6+ years in information security, compliance, and risk management.
- Minimum 3 years in identity & access management, RBAC, and user provisioning.
- Deep expertise in Azure security, with working knowledge of AWS and Google Cloud.
- Proficiency with application scanning tools, CSPM platforms, SIEM/EDR solutions, secure configuration management, and automation pipelines.
- Strong networking foundation (firewalls, NAC, encryption protocols).
- Knowledge of Microsoft Active Directory, UNIX/Linux security, and ERP/clinical systems.
- Familiarity with NIST SP 800‑53, HIPAA, PCI‑DSS, CIS Benchmarks, ISO 27000, and Zero Trust Maturity Model.
- Proven DevSecOps experience and leadership/mentoring background.
**Required Education & Certifications:**
- CISSP certification (mandatory).
- Additional cloud security certifications (e.g., Azure Security Engineer Associate, AWS Certified Security – Specialty, GCP Professional Cloud Security Engineer) preferred.
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
Philadelphia, United states
Hybrid
Senior
09-12-2025