Search by job, company or skills

Senior Cloud Security / DevSecOps Specialist (AWS | Azure | GCP)

  • Posted 3 hours ago
  • Be among the first 10 applicants

Job Description

Job Description

We are looking for an experienced Cloud Security / DevSecOps Specialist to strengthen cloud security posture across large-scale multi-cloud environments. You will drive remediation initiatives, improve cloud security governance, and collaborate with engineering teams to eliminate security risks while enabling secure software delivery.

This role is ideal for security professionals who enjoy solving complex cloud security challenges, working with modern cloud-native technologies, and partnering with global engineering teams.

Key Responsibilities

  • Lead end-to-end remediation of cloud security findings across enterprise-scale cloud environments.
  • Ensure remediation activities meet defined SLA targets while maintaining security best practices.
  • Identify, prioritize, and resolve cloud security misconfigurations across AWS, Azure, and GCP.
  • Improve Identity & Access Management (IAM) security through CIEM practices, including:
  • Excessive permission remediation
  • Least privilege implementation
  • Entitlement governance
  • Strengthen Kubernetes security by implementing and maintaining:
  • Admission controllers
  • Policy enforcement
  • Cluster hardening and remediation
  • Improve container security by identifying and remediating vulnerabilities in both container images and running workloads.
  • Detect and remediate security issues within serverless platforms.
  • Collaborate closely with DevOps, Platform Engineering, and Security teams to embed security into cloud delivery pipelines.
  • Support continuous improvement of cloud security posture through automation and security best practices

Requirements

Must Have

  • 5+ years of experience in Cloud Security, DevSecOps, or Cloud Infrastructure Security.
  • Proven experience driving enterprise-scale remediation of cloud security non-compliances.
  • Strong track record delivering remediation activities within SLA commitments.
  • Deep expertise in Cloud Infrastructure Entitlement Management (CIEM), including:
    • IAM risk management
    • Excessive permission analysis
    • Entitlement governance
  • Hands-on experience securing Kubernetes environments (KSPM), including:
    • Admission Controllers
    • Policy Enforcement
    • Cluster remediation
  • Strong understanding of container security, runtime protection, and vulnerability remediation.
  • Experience identifying and remediating serverless security misconfigurations.
  • Strong hands-on experience across multiple cloud platforms:
    • AWS
    • Microsoft Azure
    • Google Cloud Platform (GCP)
  • Experience working with modern DevSecOps and cloud security practices.
Preferred Qualifications

  • Experience using Wiz Cloud Security Platform.
  • Familiarity with Infrastructure as Code (Terraform, CloudFormation, Bicep).
  • Knowledge of CSPM, CNAPP, CWPP, and cloud-native security tooling.
  • Relevant cloud security certifications (AWS Security Specialty, Azure Security Engineer, GCP Security Engineer, CISSP, CCSP) are advantageous.

Benefits

  • Opportunity to work on enterprise-scale cloud security initiatives.
  • Exposure to modern cloud-native security technologies.
  • Collaboration with global engineering and security teams.
  • Hybrid working environment.
  • Competitive compensation and professional development opportunities.
  • Training and career development opportunities.
  • Package: 12 salary month + Performance Bonus + Extra package: 16 Mil /employee/year (Bonus at: Tet, New Year, CMC Corp's birthday, 2/9 and Tet's gift, Middle-Autumn gift, …)
  • Opportunity to approach newest technology trends; development of your career within an international Company
  • 20-day paid annual leave
  • Salary review 2 times/year or on excellent performance
  • Company's labor policy completely pursuant to Vietnamese labor legislation plus other
  • Benefits offered by the company (AON care premium, Company trip, Holiday, Sum-up, etc)
  • Working time: 8h/day (from Monday to Friday)

How To Apply

Please send your application via email: [Confidential Information]

5+ years of experience

  • By submitting your application to [HIDDEN TEXT], you acknowledge that you have read, understood, and agreed to CMC Global's REGULATIONS ON THE PROTECTION OF CANDIDATES PERSONAL INFORMATION.
  • Years of Experience Required
  • Required Education Level

Bachelor's Degree

  • Job Level

Senior

  • Work Form

Fulltime Contract – Hybrid at  Dist 2, HCMC

  • Email: [HIDDEN TEXT]

More Info

Job Type:
Industry:
Employment Type:

Job ID: 153737907

Beware of Scammers

We don’t charge money for job offers