onsite
Cyber Defense & Engineering - Cloud Security Associate - PwC
Software Engineer
Experienced associate responsible for designing, implementing, and managing security controls for cloud environments (IaaS, PaaS, SaaS) using AWS, Azure, GCP, IaC tools, and scripting to protect client data and workloads.
About the role
Key Responsibilities
- Design and implement security architectures for cloud platforms (AWS, Azure, GCP) across IaaS, PaaS, and SaaS workloads.
- Develop and maintain Infrastructure‑as‑Code (IaC) templates using Terraform to enforce security baselines and automate compliance.
- Conduct threat modeling, vulnerability assessments, and penetration testing of cloud environments, providing remediation guidance.
- Integrate identity and access management (IAM) controls, encryption, and network security measures to protect data in transit and at rest.
- Collaborate with client engineering teams to embed security best practices into CI/CD pipelines and DevSecOps processes.
Requirements
- 2+ years of hands‑on experience securing cloud platforms (AWS, Azure, or GCP) in a consulting or enterprise setting.
- Proficiency with IaC tools, especially Terraform, and scripting languages such as Python.
- Strong understanding of cloud security frameworks, IAM, encryption, network segmentation, and compliance standards (e.g., ISO 27001, NIST, SOC 2).
- Experience performing cloud‑focused threat modeling, vulnerability scanning, and remediation.
- Excellent communication skills to translate technical findings into actionable recommendations for clients.