Flag job

Report

Senior Security Consultant (Cloud Security)

Location

Hyderabad, Telangana, India

JobType

full-time

About the job

Info This job is sourced from a job board

About the role

Claranet India

Website: claranet.com
Job details:

osition Summary

The Sr. Security Consultant (Cloud Security) has responsibility for everything from client projects to development work and training, dealing with large corporate penetration testing. With a focus on large-scale corporate penetration testing, this role demands both technical excellence and strong client engagement skills. The consultant is passionate about uncovering vulnerabilities and translating findings into actionable improvements, while building strong relationships through clear communication and exceptional customer service.


Our team is growing, and we need inspiring people to join us and help us to continue to build a world leading cyber security operation whilst benefiting from the opportunity to fulfil their potential.


Based in India, this work will lead on penetration testing and have the opportunity to work on projects with worldwide clients, and will form part of our global team of penetration testers who share research, tooling, experience and collaborate freely on projects.


As a respected training provider and the leading provider of training at Black Hat conferences, our penetration testers also have the option of developing training skills and delivering security training, to both private customers, at our own events, and at leading international conferences.


Objectives & Key Results

The Sr. Security Consultant (Cloud Security) is part of the Consultancy Team and represents a trusted advisor and subject matter expert in cybersecurity.

The key objectives will be to:

  • Develop the Cloud Security training content emphasizing mainly Azure/AWS/GCP
  • Deliver high-quality penetration testing and configuration reviews across various cloud technologies such as AWS/Azure/GCP
  • Provide expert guidance and recommendations to clients for improving their security posture
  • Mentor and support junior consultants, helping to grow the team’s overall capabilities

Duties and Responsibilities

Essential Roles & Responsibilities

  • Develop standard operating procedures and conduct comprehensive training sessions for each technology, ensuring a thorough understanding and adherence to best practices
  • A candidate should be willing to deliver the Cloud Security training in various conference remotely or on-site
  • Conduct research and provide new ideas of the training content, as per the market or latest vulnerabilities or misconfigurations
  • Creating comprehensive training materials, including presentations, labs, and documentation
  • Staying updated with the latest trends and developments in cloud security
  • Customizing content to align with industry best practices and specific client needs
  • Continuously improving and expanding training resources
  • Perform cloud penetration testing to identify vulnerabilities or misconfiguration in the client environment
  • Develop documentation, and a knowledge base to be used by penetration tester to conduct review, security assessments
  • Develop and implement the security solution for the current cloud deployment NSS has
  • Develop standard operating procedures and training for each technology
  • Architect and continuously improve security technology stack, process and procedures, support model and cross-function interactions utilizing automation where possible
  • Develop and report Cloud security coverage metrics
  • Define procedures to validate the effectiveness of the design, deployment, and management of security controls that aim to maintain confidentiality, integrity, and availability of Cloud networks and technology platforms
  • Conduct research to stay up to date with the latest advancements in generative AI, machine learning, and deep learning techniques and identify opportunities to integrate them into our products and services
  • Conduct thorough reviews and assessments of the utilization of Cloud security tooling, ensuring optimal performance and alignment with security objectives

Additional Requirements:

  • Conduct comprehensive penetration tests on various systems, applications, and networks to identify vulnerabilities and weaknesses
  • Prepare detailed reports of findings, including risk assessments and remediation recommendations, tailored to technical and non-technical stakeholders
  • Stay updated with the latest cybersecurity threats and trends and apply this knowledge to enhance testing methodologies
  • Possessing relevant industry certifications, such as Offensive Security Certified Professional (OSCP) or CREST certification, would be advantageous

Position Specifications

Key Skills & Requirements

  • A bachelor’s degree in Cybersecurity, International Security Architecture, or related field; or equivalent work experience in a converged security program
  • 4-7 years of hands-on experience, preferably with at least one major cloud provider such as GCP, Azure, or AWS
  • 2+ years of client-facing consulting work experience performing penetration testing
  • Experience with Infrastructure as code (Vagrant, Docker, Ansible, Chef, Terraform, or similar)
  • A deep understanding of industry standards and best practices in Cloud security, including familiarity with CSA CCM, CIS, NIST benchmarks, and more
  • Excellent communication skills (written and verbal) with an ability to explain complex topics in a clear and concise manner to both technical and non-technical audiences
  • Basics to intermediate development and scripting skills in at least one programming language
  • Proven experience in cloud security, including hands-on implementation and management
  • Exceptional communication and presentation skills
  • Strong organizational and time-management abilities
  • Passion for sharing knowledge and facilitating learning
  • Professional certifications in cloud security (e.g., AWS Certified Security - Specialist, Azure Security Engineer)
  • Technical knowledge of Kubernetes and Docker technologies and associated security requirements (Kubernetes, Docker, etc.)
  • Should have at least one associate-level cloud certification, such as AWS Solutions Architect GCP Associate Cloud Engineer, as a testament to specialized knowledge and expertise

Experience Requirement:

  • Candidates must have 4+ years of penetration testing experience
  • GitHub Profile: Possession of a GitHub profile showcasing the development of tools to address cloud-related challenges is preferred

Certifications (Nice to Have):

  • AWS Certified Security – Specialty
  • AWS Certified Solutions Architect Associate
  • AZ-500: Microsoft Azure Security Technologies
  • AZ-104: Microsoft Azure Administrator
Click on Apply to know more.

Skills

penetration testing
AWS
Ansible
Azure
communication skills
customer service
deep learning
Docker
GCP
GitHub
Kubernetes
machine learning
Terraform
Vagrant