Now hiring

TC-CS-CDR-Cloud Security Specialist-Senior (Hyderabad, TG, IN, 500081) @ EY Global Services

Hyderabad, TG, IN, 500081OnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

<div style="font-family:Arial;font-size:1.0em"> <p>At EY, we’re all in to shape your future with confidence. </p> <p>We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. </p> <p>Join EY and help to build a better working world. </p> </div> <div style="font-family:Arial;font-size:1.0em"> </div><p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Job Title: Senior Cloud Security Specialist</strong></span></p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Role Overview:</strong></span></p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">The Senior Cloud Security Specialist will serve as a technical leader in cloud security operations, responsible for designing and implementing advanced threat detection and mitigation strategies across multi-cloud environments. This role demands deep expertise in cloud-native and CNAPP technologies, incident response, and forensic investigation. The SME will collaborate with Security Engineering &amp; Architecture, CSOC, and governance teams to ensure a resilient and compliant cloud security posture.</span></p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Key Responsibilities:</strong></span></p> <ul> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Threat Detection &amp; Investigation</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Deploy and optimize cloud-native and third-party threat detection platforms (e.g., AWS GuardDuty, Azure Defender, GCP SCC).</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Investigate alerts using telemetry, behavioral analytics, and AI/ML-based anomaly detection.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Align detection logic with MITRE ATT&amp;CK, NIST SP 800-53, and CSA CCM frameworks</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Rule Creation &amp; CNAPP Integration</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Author and tune detection rules leveraging CNAPP platforms (e.g., Wiz, Prisma Cloud, Orca).</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Integrate CNAPP telemetry into SIEM/SOAR workflows for automated response</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Mitigation Strategy Development</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Design and implement dynamic playbooks for threat containment and remediation.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Collaborate with DevOps and product teams to embed security controls into CI/CD pipelines.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Incident Response &amp; Forensics</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Lead incident triage and root cause analysis across cloud environments.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Conduct forensic investigations using cloud-native tools and third-party platforms.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Document findings and contribute to post-incident reviews and continuous improvement</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Security Architecture &amp; Governance</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Provide guidance on secure cloud architecture, access controls, and data protection.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Ensure compliance with ISO 27001, HIPAA, GDPR, and internal governance policies</span></li> </ul> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Required Skills &amp; Abilities:</strong></span></p> <ul> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Deep expertise in AWS, Azure, GCP, and OCI cloud security services.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Hands-on experience with CNAPP platforms (e.g., Wiz, Prisma Cloud, Orca).</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Proficiency in threat detection rule creation, tuning and alert response leveraging tools such as CrowdStrike, Wiz Defend, AWS GuardDuty, etc.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Respond to Kubernetes and Cloud Container threat alerts (e.g., unusual API invocations) and tune detection rules accordingly</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Strong knowledge of SIEM/SOAR platforms (e.g., Splunk, Sentinel, Elastic, Tines).</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience in cloud forensics and incident response workflows.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Familiarity with infrastructure-as-code (IaC) tools (Terraform, CloudFormation).</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Strong analytical, investigative, and documentation skills.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Excellent communication and leadership abilities.</span></li> </ul> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Preferred Qualifications:</strong></span></p> <ul> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">8+ years in cybersecurity, with 3+ years focused on cloud security.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Certifications: CISSP, CCSP, AWS Security Specialty, Azure Security Engineer, GCIH, GCIA.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience in a 24x7 SOC or threat management environment.</span></li> <li style="line-height:115%;font-size:10.0pt;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Proven track record of mentoring and leading technical teams.</span></li> </ul> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p><div style="font-family:Arial;font-size:1.0em"> <p><b>EY | Building a better working world </b></p> <p>EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.</p> <p>Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.</p> <p>EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.</p> </div>

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores