- Mid Valley City, Kuala Lumpur, Kuala Lumpur Mid Valley City WP Kuala Lumpur Malaysia

Working Location
Job Description
Responsibilities
Role Summary
We are looking for a Cloud Security Engineer to take ownership of cloud security across our enterprise platforms. You will work hands‑on to identify risks, respond to security incidents, and improve our overall cloud security posture in collaboration with global teams.
Key Responsibilities
Manage cloud security controls and security posture across Microsoft Azure and AWS hybrid-cloud environments. Use Microsoft Defender for Cloud, Secure Score, attack-path analysis, vulnerability findings, and Azure Policy to identify risks, improve security posture, and coordinate remediation with relevant stakeholders.
Manage and maintain Microsoft Entra ID security controls aligned with Zero Trust principles, including Conditional Access, MFA, PIM, Azure RBAC, managed identities, and access reviews.
Develop and tune cloud threat detection within Microsoft Sentinel and Microsoft Defender XDR by onboarding relevant data sources, writing KQL queries and analytics rules, reducing false positives, improving dashboards, and maintaining automation rules and response playbooks.
Manage security protection for Azure workloads and data—including virtual machines, containers, storage, databases, App Service, APIs, and serverless services—by applying appropriate Defender plans, network controls, encryption, secrets management, logging, and vulnerability remediation.
Embed security into DevOps by reviewing Terraform and Bicep templates, applying CI/CD security controls, and helping engineering teams resolve issues before deployment.
Build and maintain security automation using PowerShell, Python, Azure CLI, APIs, Logic Apps, and Microsoft Security Copilot. Support cloud security incident response through alert enrichment, investigation, containment, remediation, evidence collection, and reporting.
Maintain cloud security standards, procedures, and technical documentation. Support security assessments, third-party risk management, audit activities, risk remediation and compliance requirements including ISO 27001, NIST CSF, GDPR, and NIS2.
Core Skills and Tools
Cloud Security: Microsoft Defender for Cloud, CSPM, Azure security controls, and workload protection.
Identity Security: Microsoft Entra ID, Conditional Access, MFA, PIM, Azure RBAC, and Zero Trust.
Threat Detection & Response: Microsoft Sentinel, Defender XDR, KQL, threat intelligence, threat hunting, and incident response.
Azure Network & Data Security: Azure Firewall, WAF, Private Link, network security groups, Key Vault, and encryption.
DevSecOps & Automation: Terraform, Bicep, PowerShell, Python, Azure CLI, Logic Apps, CI/CD security, and Microsoft Security Copilot.
Governance & Compliance: BitSight, Azure Policy, Microsoft Cloud Security Benchmark, vulnerability management, risk assessments, ISO 27001, NIST CSF, GDPR, and NIS2.
Personal Skills
Experience in Multinational Companies: Excellent communication skills in English for both speaking and writing as well as a strong customer orientation.
Team Player with a Positive Attitude: Ability to collaborate in a modern Cyber Security Department.
Problem-Solving: Strong analytical skills with a practical approach to resolving cloud security issues.
Education and Certifications:
Degree or equivalent practical experience in Cybersecurity, Computer Science, Information Technology, or a related field.
Professional Certification: Microsoft Cloud and AI Security Engineer Associate, Microsoft Azure Security Engineer Associate, CCSP, CISSP, or equivalent certifications are advantageous.
Important Information
Never provide your bank or credit card details when applying for jobs. Do not transfer any money or complete unrelated online surveys. If you see something suspicious, Report this Job ad.