- Experience
- 3+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 1 week ago
- Work mode
- In office
- Education
- Bachelor's degree
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Job Overview
We are inviting an experienced Cloud Security Engineer / Analyst to become a part of our Cybersecurity Practice. In this capacity, you will collaborate closely with cloud, infrastructure, and security teams to architect, execute, and uphold security controls that safeguard clients' cloud environments.
Key Responsibilities
- Evaluate cloud architectures across public, private, and hybrid platforms to detect security vulnerabilities and devise suitable security controls. Perform comprehensive security reviews covering cloud services, configurations, and deployments for services like compute, storage, networking, and identity.
- Develop and sustain cloud security governance frameworks including policies, standards, baselines, and control structures congruent with organizational and regulatory demands. Define roles via RACI models and aid in creating security operating procedures promoting consistency, repeatability, and traceability.
- Deploy and manage cloud security monitoring tools to identify misconfigurations, vulnerabilities, and abnormal activities, analyzing alerts and incidents to facilitate prompt correction maintaining system confidentiality, integrity, and availability.
- Oversee secure implementation of identity and access management, focusing on role-based access, least privilege principles, authentication, and authorization mechanisms.
- Ensure compliance of cloud environments with internal security policies, regulatory guidelines, and established security standards through continuous monitoring and remediation of policy breaches.
- Partner with DevOps and cloud engineering to integrate security within CI/CD pipelines and infrastructure-as-code practices, enhancing security automation and scalability.
- Assess, deploy, and manage Cloud-Native Application Protection Platforms (CNAPP) including third-party (Palo Alto Prisma Cloud) and native solutions such as Microsoft Defender, overseeing posture management, threat detection, workload protection, and identity security.
- Produce and upkeep detailed documentation of cloud security architectures, assessments, controls, and operational protocols. Prepare various security reports and dashboards for stakeholders.
- Contribute to security awareness by providing training and knowledge-sharing for cloud, infrastructure, and development teams on secure cloud practices and current threats.
Candidate Profile & Qualifications
- Possesses a Bachelor's or equivalent degree in Computer Science, Information Security, or related discipline.
- Minimum three years’ experience in cloud security, cloud infrastructure, or cybersecurity operations.
- Holds or is pursuing relevant professional certifications such as Oracle Cloud Infrastructure Security Professional, Microsoft Azure Security Engineer Associate (AZ-500), AWS/GCP certifications, CSA/GIAC cloud security certifications, or general cybersecurity credentials like CompTIA or ISC2.
- Expertise with cloud security tools and platforms including Microsoft Defender for Cloud, Azure Policy, Entra ID, OCI Cloud Guard, with hands-on experience configuring IAM, network security controls (NSGs, route controls, security lists), encryption and key management (Azure Key Vault, OCI Vault), and logging/monitoring (Azure Monitor, Log Analytics, OCI Logging).
- Familiarity with Infrastructure as Code technologies such as Terraform, ARM templates, or Bicep and experience embedding security checks within automation and deployment pipelines.
- In-depth understanding of cloud security concepts encompassing shared responsibility models, identity governance, network segmentation, hardening strategies, vulnerability management, and incident response. Knowledge of standards and frameworks including CIS Benchmarks, NIST, ISO 27001, CSA Cloud Controls Matrix, alongside compliance and security governance principles. Experience or awareness of DevSecOps practices and CI/CD pipelines, plus knowledge of Qatar National Information Assurance (NIA) is advantageous.
About Malomatia
Malomatia is a premier Qatar-based IT services and solutions company merging elite Qatari and international expertise to deliver comprehensive, cutting-edge technology solutions facilitating strategic success for clients. Since 2008, Malomatia has propelled Qatar’s digital transformation via innovative, ISO-certified IT services across public and private sectors. The company specializes in cloud computing, cybersecurity, artificial intelligence, and contact center solutions, playing a pivotal role in Qatar’s sustainable technological advancement.
The Team
Founded in 2008, Malomatia stands as a leading Qatari IT service and digital transformation provider serving government, healthcare, education, customs, and transportation sectors. The organization emphasizes delivering tailored, high-impact digital solutions driven by a talented and diverse team committed to digital excellence, innovation, and trustworthy partnerships aimed at building a smarter future society.
Core values include ownership, integrity, empathy, teamwork, transparency, agility, excellence, trust, and innovation.
Minimum education
Bachelor's Degree