Cloud Security Governance Specialist
We are looking for a technically experienced Cloud Security Governance Specialist to support the ISO Team in evaluating cloud environments against Information Security (IS) Practices. In this role, you will assess cloud account configurations against requirements covering areas such as Technical Cloud Security, Cryptography, and Privileged Access Management (PAM). You will identify gaps and risks, work directly with technical stakeholders to define pragmatic remediation measures, and help ensure that security and governance requirements are embedded sustainably within IT teams. This is a hands-on role for someone who combines strong cloud technical knowledge with excellent communication and stakeholder management skills. You will act as a credible counterpart to cloud and infrastructure teams and be comfortable explaining, challenging, and gaining acceptance for security governance requirements even where there is initial resistance or limited familiarity with the applicable practices. Key Responsibilities:Perform technical evaluations of cloud accounts against applicable Information Security Practices, including Technical Cloud Security, Cryptography, and PAM.Identify configuration gaps, deviations, security risks, and areas of non-compliance.Work closely with cloud account owners, IT teams, infrastructure teams, and security stakeholders to validate findings and clarify technical details.Translate security and governance requirements into clear, actionable technical remediation measures.Coordinate and follow up on remediation activities across multiple cloud account owners and technical teams.Build awareness and stakeholder buy-in for security governance requirements through clear, pragmatic, and technically credible communication.Support the development and continuous improvement of assessment criteria, checklists, and repeatable cloud evaluation processes.Track and report assessment status, identified findings, risks, remediation activities, and outstanding actions.Prepare technical documentation, status reports, and management/steering inputs.Support the escalation and resolution of findings that remain unresolved or are contested by technical stakeholders.Contribute to the sustainable integration of security governance practices into the affected teams and processes. Ideal Profile:Several years of experience working with cloud platforms and cloud accounts, such as AWS, Microsoft Azure, or similar.Solid understanding of cloud security and governance principles.Knowledge of information security practices in areas such as:Technical Cloud SecurityCryptographyPrivileged Access Management (PAM)Access control and security configurationAbility to independently assess technical configurations against security, governance, or compliance requirements.
