Role Overview
We are looking for a Cloud Security Architect to lead and elevate our cloud security posture across the BU with a strong emphasis on Microsoft Azure. The ideal candidate is deeply experienced in cloud security principles tooling and governance while also bringing a solid understanding of cloud architecture and development best practices to ensure secure-by-design cloud solutions. This role is crucial in aligning cloud security strategy with business requirements guiding secure cloud adoption and collaborating with product teams cloud engineers and external consultants.
Key Responsibilities
As a Cloud Security Engineer you will be responsible for the technical security of applications as well as the definition of the requirements for new security features.
Lead the design implementation and governance of Azure cloud security controls aligned with industry standards (e.g. CIS NIST ISO 27001)
Continuously strengthen Azure security posture using tools such as Defender for Cloud Sentinel Azure Policy RBAC and PIM
Develop and maintain cloud security policies standards and secure configuration baselines.
Coordinate the identification prioritization and remediation of cloud vulnerabilities and misconfigurations.
Support security assessments threat modeling and risk analysis for cloudbased solutions.
Provide guidance during cloud security incidents and contribute to incident response processes and root cause analysis.
Collaborate with cloud architects and development teams to ensure secure-bydesign patterns and reference architectures.
Provide architectural security input on Azure services identity models network design and application deployment patterns.
Support the creation of reusable secure infrastructure templates (e.g. Pulumi Terraform) and DevSecOps automation.
Translate technical security risks into clear business impacts for stakeholders.
Willingness to grow into taking care of overarching Security Management topics. Support audits compliance initiatives and risk assessments. Serve as a key liaison between engineering teams security consultants and business stakeholders.
Qualifications :
Educational qualification:
Bachelors degree in computer science mathematics or a comparable qualification
Experience:
5 years of experience in Cloud Security.
Strong interpersonal and intercultural skills agile mindset team minded
Structured and independent way of working good communication and coordination skills
Fluent in English (written and spoken) German skills are a plus
Must-Have
Proven hands-on experience with Azure cloud security engineering and architecture.
Strong understanding of cloud security frameworks controls and regulatory requirements.
Experience with Azure security tooling (Defender for Cloud Sentinel Azure Policy RBAC PIM logging/monitoring).
Familiarity with application and API security principles (e.g. OWASP Top 10).
Experience working with cross-functional teams and external security vendors.
Nice to Have
Background in cloud architecture platform engineering or solution architecture (Azure preferred).
Experience with infrastructure-as-code (Terraform Bicep) and CI/CD security integration.
Knowledge of DevSecOps practices and cloud-native security toolchains.
Cloud incident response experience in hybrid or cloud-native environments.
Additional Information :
Certifications (Preferred Not Required)
AZ-500 Microsoft Azure Security Engineer Associate
SC-100 Microsoft Cybersecurity Architect Expert
AZ-305 Azure Solutions Architect Expert
CISSP CCSP or similar cloud/security certifications
Remote Work :
No
Employment Type :
Full-time
Bosch first started in Vietnam with a representative office in 1994. Bosch has its main office in Ho Chi Minh City, with branch offices in Hanoi and Da Nang, and a Powertrain Solutions plant in the Dong Nai province to manufacture pushbelt for continuously variable transmissions (CVT) ... View more