Cloud Security & IAM Senior Specialist Hybrid Texas
NTT DATAAbout the role
Req ID: 374091
NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.
We are currently seeking a Cloud Security & IAM Senior Specialist Hybrid Texas to join our team in Plano, Texas (US-TX), United States (US).
The NTT DATA Cloud Security & IAM Senior Specialist works closely with the Information Security Manager (ISM) to ensure the seamless delivery of all information security services that NTT DATA provides to the customer.
Role Responsibilities
- Identify and continually review and recommend cloud security leading practices Obtain and review industry-recognized periodical bulletins regarding cloud security
- Utilize native cloud security solutions or third-party solutions (e.g. CSPM, CNAPP, CIEM, CASB) to secure the cloud environment and individual applications
- Utilize native cloud SIEM or integrate cloud monitoring events into SIEM or other operational solution
- Monitor cloud network security based on best-practice and recommended standards and Customer’s security standards,
- Support and maintain familiarity with modern cloud network architectures, such as Software Defined Networking (SDN), virtual private clouds such as Virtual Subnets (VNETs), and Security Groups where needed
- Maintain virtual private cloud network segregation (i.e., the separation of the VNETs, VPCs, and subnets for production and non-production )
- Monitor cloud VPN gateway; ensure any external connections to the environment utilize secure connectivity methods (such as IPSEC Tunnels); and disablement or blocking any unnecessary or unapproved ports and protocols for cloud workloads;
- Manage multi-factor authentication used for resource access to the cloud console and management network
- Monitor firewall/security group Configurations
- Detect and ensure cloud hosted data I encrypted as required
- Monitor the security posture of the cloud supplier’s DNS / routing configurations and cloud resources
- Continuously assess cloud network configurations against regulatory and organizational standards (e.g., CIS, NIST) and generate automated audit-ready reports.
- Monitor and secure administrative level and root account privileges through following recommended best practices, such as:
- enabling and enforcing multi-factor authentication; and
- support and assist with AD integration, enable and support Azure role-based access control (RBAC), as well as conditional access with privileged accounts (attribute-based access control or context-based access control)
- adhere to cloud best practice standards and procedures for access key management, rotation, and secure storage
- ensure cloud-hosted resources have appropriate security rules and standards for only necessary ports and protocols
- manage and administer the cloud environment role provisioning and de-provisioning based on least-privilege and need-to-know principles.
- Cloud Account Management - Create, modify, delete Accounts; associate and de-associate Cloud Services Resources within defined Tenants; collect and validate all Asset information for
- Customer Cloud Accounts; utilize Public Cloud Services to manage & maintain account standardization and compliance throughout the lifecycle of an Account; and
- Cloud Services Identity and Access Management (IAM) - Management of Identity and Access Management to grant End Users the right to use a service and deny access to unauthorized users.
- Grant End Users the right to use a service and deny access to unauthorized users;
- Define, implement and operate access management protocols, tools and processes that enable access rights and identities to be established, controlled, authorized, administered, reported and audited in adherence with the Identity Management Policy standards;
- Develop and best practices and implement including -Least Privilege Access, Strong Authentication Mechanisms, Role-Based Access Control (RBAC) ,etc
- Develop policies on privacy protection and protective security for access to data, including security, data and records management, and electronic records and data
- Conduct periodic access reviews, detect procedure violation
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s