Posted:6 hours ago|
Platform:
Work from Office
Full Time
Position Summary:
We are seeking a highly skilled and experienced Cloud Security Audit Associate to lead and execute comprehensive cloud security and resilience assessments across enterprise environments. This role requires a strong blend of audit methodology, cloud engineering expertise, and risk advisory capabilities to evaluate cloud service provider (CSP) risks, enterprise control effectiveness, and application-level implementations.
Key responsibilitiesLead cloud security and resilience audits across AWS, Azure, and GCP platforms.
Evaluate CSP risk indicators, SLAs, compliance attestations, and shared responsibility matrices.
Assess enterprise control sets for traceability, automation, and alignment with compliance frameworks (e.g., SOC, PCI, HITRUST, CIS, NIST).
Review SDLC, production readiness, and application onboarding processes for control validation.
Conduct sample assessments of critical and non-critical cloud applications to validate control implementation and resilience planning.
Deliver detailed audit reports, executive summaries, and strategic recommendations.
Collaborate with cross-functional teams including Cloud Engineering, DevOps, Risk, and Internal Audit.
Support clients in aligning cloud programs with regulatory requirements and industry best practices.
Required qualificationsBachelors and/or masters degree in information systems, Cybersecurity, or related field.
5+ years of experience in IT audit, cloud security, or risk consulting.
Excellent communication skills, with fluency in Englishboth written and verbalto effectively engage with global clients, present findings, and lead stakeholder discussions.
Professional certifications such as CISA, CISSP, CCSP, CTPRA, or cloud-specific credentials (AWS, Azure, GCP).
Strong understanding of cloud infrastructure components (VMs, containers, serverless, networking).
Familiarity with compliance frameworks and benchmarks (SOC, PCI, HITRUST, CIS, CSA CCM, NIST 800-53).
Flexibility to work in U.S. time zones and support cross-border engagements.
Preferred Skills:
Prior experience in a Big 4 or similar consulting environment.
Experience working in global/multinational teams.
Hands-on experience with Infrastructure as Code (IaC), Policy as Code (PaC), DevSecOps, and cloud automation.
Ability to assess cloud application architecture for security and resilience risks.
Strong analytical, documentation, and stakeholder engagement skills.
RSM US in India
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.
5.0 - 9.0 Lacs P.A.
3.0 - 7.0 Lacs P.A.
hyderābād
Salary: Not disclosed
11.0 - 16.0 Lacs P.A.
navi mumbai, mumbai (all areas)
3.0 - 7.0 Lacs P.A.
bengaluru
2.0 - 7.0 Lacs P.A.
5.0 - 9.0 Lacs P.A.
11.0 - 16.0 Lacs P.A.
hyderabad
3.0 - 6.0 Lacs P.A.
bengaluru
3.0 - 7.0 Lacs P.A.