Cloud Security Architect

Freelance Cloud Security Architect (AWS) for a CISO Office in Brussels, hybrid, 3-month renewable contract.

Bekijk en reageer bij vividresourcing.com (externe link)

Eisen

  • Hands-on experience designing and securing AWS environments
  • Familiarity with NIS2, ISO 27001, CIS and NIST CSF
  • Strong communication and stakeholder management skills
  • Strong understanding of secrets management, cryptography, logging, monitoring and security detection
  • Proven experience defining and operating a Cloud Security Control Framework
  • Strong experience with AWS IAM, VPC, Transit Gateway, Security Groups and NACLs
  • Experience with Infrastructure as Code technologies such as Terraform and CloudFormation
  • Proven experience designing cloud security patterns, blueprints and reference architectures for AWS
  • Experience reviewing solution architectures and conducting security assessments for complex projects
  • Experience with security automation and DevSecOps
  • 5+ years of hands-on experience in cloud security architecture
  • Fluent English is essential
  • Knowledge of AWS security services including GuardDuty, Security Hub, Inspector, WAF and KMS
  • 10+ years of experience across IT and cybersecurity
  • Strong AWS architecture and security experience is essential
  • Experience with threat modelling and cloud-based security risk assessments
  • Knowledge of container security, particularly EKS and ECS

Wensen

  • Dutch and/or French is advantageous
  • Azure security architecture experience is advantageous
  • AWS Security Specialty certification is highly desirable
Volledige omschrijving

About the role: Our client is looking for an experienced Cloud Security Architect to join its CISO Office in Brussels. Working within the Security Architecture team, you will play a key role in securing the organisation’s ongoing cloud transformation initiatives. You will act as a technical authority on cloud security, providing practical guidance to engineering teams, reviewing architecture decisions and challenging technical designs where required.

You will also assess security risks and ensure these are addressed through appropriate controls or formal risk acceptance processes. The role has a strong focus on AWS, with responsibility for developing cloud security frameworks, reusable security patterns and reference architectures while embedding Security by Design across cloud transformation projects.

Main responsibilities: Define and maintain cloud security policies, standards, guardrails, design patterns and reference architectures across AWS and Azure environments. Develop reusable security blueprints and architectural building blocks for cloud and cloud-native technologies. Define security requirements for cloud platforms and services, ensuring alignment with business, regulatory and security requirements. Design secure patterns covering IAM, networking, encryption and key management, logging and monitoring, containers, Kubernetes and DevSecOps.

Promote Security by Design and Zero Trust principles across cloud initiatives. Provide hands-on security expertise during architecture workshops, proof of concepts and implementation activities. Review cloud solution designs and projects, identifying security risks, weaknesses and control gaps. Conduct threat modelling and architecture risk assessments to identify potential attack paths and required mitigating controls. Assess the security implications of emerging cloud technologies and AI services.

Define remediation measures and support formal risk acceptance processes. Review and challenge security exception requests. Participate in architecture governance and review boards. Work with Security Risk Managers to ensure identified risks are properly documented, assessed and tracked. Collaborate with Security Operations teams to ensure cloud security controls can be effectively monitored and operated. Support improvements to cloud detection, monitoring and response capabilities.

Promote cloud security best practice and support engineering teams in adopting secure cloud patterns and controls. Contribute to the continuous improvement of the organisation’s Cloud Security Control Framework.

Requirements: 10+ years of experience across IT and cybersecurity. 5+ years of hands-on experience in cloud security architecture. Proven experience defining and operating a Cloud Security Control Framework. Strong AWS architecture and security experience is essential. Proven experience designing cloud security patterns, blueprints and reference architectures for AWS. Azure security architecture experience is advantageous. Hands-on experience designing and securing AWS environments.

Experience reviewing solution architectures and conducting security assessments for complex projects. Strong experience with AWS IAM, VPC, Transit Gateway, Security Groups and NACLs. Knowledge of container security, particularly EKS and ECS. Experience with Infrastructure as Code technologies such as Terraform and CloudFormation. Strong understanding of secrets management, cryptography, logging, monitoring and security detection. Experience with security automation and DevSecOps.

Knowledge of AWS security services including GuardDuty, Security Hub, Inspector, WAF and KMS. Experience with threat modelling and cloud-based security risk assessments. Familiarity with NIS2, ISO 27001, CIS and NIST CSF. AWS Security Specialty certification is highly desirable. Strong communication and stakeholder management skills. Fluent English is essential. Dutch and/or French is advantageous.

The offer: Location: Brussels, Belgium.

Working pattern: Hybrid.

Contract: Full-time.

Initial duration: 3 months, renewable. Opportunity to work within a CISO Office and Security Architecture function on large-scale cloud transformation initiatives. A technically focused role with significant responsibility for cloud security architecture, governance and Security by Design.

Je CV en reacties

Gegevens automatisch overgenomen uit de oorspronkelijke publicatie; controleer de details bij de bron. Wij zijn geen partij bij de aanvraag. Hoe wij werken.