Capco Logo

Capco

Cloud Architect – Security & Guardrails (AWS/Azure)

Reposted Yesterday
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in Poland
Senior level
Remote or Hybrid
Hiring Remotely in Poland
Senior level
Design and implement multi-cloud (AWS/Azure) security frameworks, automated compliance guardrails, SIEM/monitoring pipelines, endpoint and workload protection, CSPM and vulnerability management, IAM/zero-trust controls, and integrate enterprise security tooling to enable detection, response, and governance across cloud environments.
The summary above was generated by AI

CAPCO POLAND 

*We are looking for Poland based candidate. 


At Capco, we specialize in management consulting and technology transformation for the financial services industry. We combine innovative thinking with deep industry expertise to help our clients navigate complex change, deliver meaningful outcomes, and build future-ready organizations.

Our culture is entrepreneurial, collaborative, and inclusive. We empower our people to challenge the status quo, take ownership, and make an impact from day one.

As we continue to expand our Cloud and Cybersecurity capabilities, we are looking for an experienced Cloud Architect – Security & Guardrails (AWS/Azure) to help shape and secure enterprise-scale cloud environments.


ROLE OVERVIEW:

We are looking for a highly skilled Cloud Architect to provide cloud security architecture services across enterprise AWS and Azure environments.

This role goes beyond traditional cloud architecture. You will design and implement robust defense-in-depth security frameworks, establish automated compliance guardrails, integrate advanced security platforms, and drive cloud security governance across complex environments.

Working at the intersection of Cloud Engineering, Cybersecurity, Risk, and Security Operations, you will contribute to ensuring cloud platforms remain secure, compliant, resilient, and continuously monitored.


KEY RESPONSIBILITIES:

  • Cloud Security Governance & Guardrails
    • Design, implement, and enforce security baselines and preventative guardrails across AWS and Azure environments.
    • Develop governance frameworks leveraging:
      • AWS Organizations
      • Service Control Policies (SCPs)
      • AWS Control Tower
      • Azure Policy
      • Azure Landing Zones
    • Ensure alignment with internal security standards, regulatory requirements, and industry best practices.
    SIEM, Monitoring & Logging Architecture
    • Design and optimize multi-cloud logging and monitoring strategies.
    • Build scalable telemetry pipelines integrating:
      • AWS CloudTrail
      • Amazon GuardDuty
      • Azure Activity Logs
      • Microsoft Defender for Cloud
    • Enable centralized visibility through enterprise SIEM platforms such as:
      • Microsoft Sentinel
      • Splunk
    • Support real-time threat detection, correlation, investigation, and alerting capabilities.
    Endpoint & Workload Protection
    • Define architecture and deployment strategies for:
      • EDR/XDR solutions
      • Cloud Workload Protection Platforms (CWPP)
    • Secure virtual machines, containers, Kubernetes environments, and serverless workloads across cloud platforms.
    • Collaborate with Security Operations teams to enhance threat detection and response.
    Vulnerability & Security Posture Management
    • Implement and optimize Cloud Security Posture Management (CSPM) capabilities.
    • Establish enterprise vulnerability management processes across cloud assets.
    • Enable continuous security scanning for:
      • Cloud misconfigurations
      • Infrastructure vulnerabilities
      • Container images
      • Operating systems
    • Develop automated remediation workflows and security playbooks.
    Identity & Access Security
    • Design and enforce Zero-Trust security principles.
    • Strengthen Identity and Access Management (IAM) governance across cloud platforms.
    • Implement:
      • Just-In-Time (JIT) access
      • Privileged Access Management (PAM)
      • Role-Based Access Control (RBAC)
      • Federated identity solutions
    • Partner with security stakeholders to reduce privileged access risks.
    Security Technology Integration
    • Evaluate, deploy, and govern best-in-class cloud security technologies.
    • Integrate third-party security platforms including:
      • CyberArk
      • Wiz
      • Palo Alto Prisma Cloud
      • CrowdStrike
      • Other strategic security tooling
    • Drive consistent security controls and operational excellence across the cloud ecosystem.

REQUIRED QUALIFICATIONS:

  • Extensive experience designing and securing enterprise-scale AWS and Azure environments.Deep knowledge of cloud-native security services, controls, and governance frameworks.Hands-on expertise with:
    • SIEM platforms
    • EDR/XDR technologies
    • Vulnerability management solutions
    • CSPM tools
    Strong experience implementing:
    • Azure Policy
    • AWS Control Tower
    • Service Control Policies (SCPs)
    • Cloud governance frameworks
    Advanced Infrastructure as Code (IaC) skills, particularly with Terraform.Experience embedding security controls into CI/CD and cloud deployment pipelines.Strong understanding of:
    • Modern cyber threats
    • MITRE ATT&CK framework
    • Cloud attack vectors
    • Security monitoring and incident response processes
    Proven ability to collaborate effectively with:
    • Cloud Engineering teams
    • Security Operations Centers (SOC)
    • Risk, Compliance, and Audit functions
    Excellent stakeholder management and communication skills.

We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects.

Recruitment Process:

  1. HR Interview with the recruiter
  2. Technical Interview
  3. Client Interview 
  4. Feedback and offer

#LI-HYBRID

Similar Jobs at Capco

6 Hours Ago
Remote or Hybrid
Expert/Leader
Expert/Leader
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Lead delivery and optimization of managed authentication and fraud prevention services across Central and Eastern Europe. Collaborate with clients and partners to implement risk and payments fraud controls, monitor solution performance, analyze emerging fraud trends, support go-to-market activities, and drive adoption through stakeholder engagement and data-driven recommendations.
Top Skills: Endpoint ProtectionFirewallsFraud Management PlatformsIds/IpsIso 27001Managed AuthenticationNistReal-Time Payments (Rtp)SIEM
Yesterday
Remote or Hybrid
Senior level
Senior level
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Lead Murex testing across implementation and upgrade programmes: define testing strategy, design and maintain MxTest cases and regression packs, manage SIT/UAT/regression execution, trace requirements, handle defects and reporting, support cutover and hypercare, and promote testing best practices.
Top Skills: AlmAzure DevopsJIRAMurex Mx.3MxtestSQLUnix
Yesterday
Remote or Hybrid
Mid level
Mid level
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Design and implement scalable core banking solutions, define technical designs, guide architecture decisions, support integration, performance and security, and work with Agile delivery teams across the project lifecycle.
Top Skills: Cloud-Native ArchitecturesCore Banking SystemsMicroservicesPostgresReactRest ApisRust

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account