Remote (Global) Full-time

NASTAD is hiring a CLOUD SECURITY ASSURANCE TEAM LEAD

About the Role

Fivestone Studios is looking for a Cloud Security Assurance Team Lead to lead comprehensive security assessments and architecture reviews across AWS, Azure, and GCP. You will validate security implementations against industry best practices, provide expert guidance to strengthen cloud security posture, and collaborate with key stakeholders to support secure, enterprise-wide cloud transformation initiatives.

What You'll Do

  • Lead security architecture and assessment reviews for cloud-native and hybrid solutions.
  • Validate solution designs against industry frameworks such as NIST CSF, CIS Benchmarks, and CSA CCM.
  • Conduct cloud penetration testing following CREST and CHECK methodologies.
  • Validate Infrastructure as Code (IaC) security controls and CI/CD pipeline security.
  • Lead compliance assessments including ISO 27017, ISO 27018, SOC 2, GDPR, NIS2, and DORA.
  • Assess cloud governance frameworks and Cloud Security Posture Management (CSPM) implementations.
  • Coordinate cloud security audits with internal and external stakeholders.
  • Assess cloud IAM architectures and privileged access management controls.
  • Validate encryption standards, key management processes, and data residency controls.
  • Review SSO, MFA, and least-privilege implementations.

What We're Looking For

  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field.
  • 6+ years of experience in information security with a strong focus on cloud security.
  • 3+ years of hands-on experience conducting cloud security assessments and architecture reviews.
  • Proven multi-cloud experience across production environments, including AWS, Microsoft Azure, and Google Cloud Platform (GCP).
  • CCSP or CCSK certification (mandatory).
  • Strong senior-level stakeholder communication and executive presentation skills.
  • Demonstrated ability to develop and drive strategic cloud security roadmaps.
  • Proven cross-functional collaboration experience with DevOps and Platform Engineering teams.
  • Strong analytical mindset with a risk-based decision-making approach.

Technical Stack

  • AWS
  • Microsoft Azure
  • Google Cloud Platform (GCP)
  • Infrastructure as Code (IaC)
  • CI/CD

Benefits & Compensation

  • Compensation: €4,500 - €7,000 (GROSS) per month.
  • Learning opportunities with compensated certificates, learning lunches, and language lessons.
  • Chance to switch projects after one year.
  • Team building twice a year.
  • Office in Vilnius, Lithuania that offers themed lunches and a pet-friendly environment.
  • Remote work opportunities.
  • Flexible time off depending on a project.
  • Seasonal activities with colleagues.
  • Additional health insurance and loyalty days for Lithuanian residents.
  • Referral bonuses.
  • Recognition of important occasions of your life.

Work Mode

This is a remote position.

Fivestone Studios is an equal opportunity employer.

Required Skills
AWSMicrosoft AzureGoogle Cloud Platform (GCP)Infrastructure as Code (IaC)CI/CDCloud SecurityTeam LeadershipRisk ManagementCompliance FrameworksSecurity AuditingScripting/AutomationIncident ResponseSecurity ArchitecturePolicy DevelopmentStakeholder Communication
Relocating to Thailand?

Visa and work permit handled by experts

SVBL manages your entire visa process — from application to approval. Work permits, extensions, and compliance all covered. One partner for legal, immigration, and settling in.

Work permit processing
Visa extensions & renewals
Immigration compliance
Banking & housing guidance
Get free consultation
Free initial consultation
About company
NASTAD

NASTAD is a leading non-partisan, non-profit association that represents public health officials who administer HIV and hepatitis programs in the U.S. It represents public health officials in all 50 U.S. states, the District of Columbia, Puerto Rico, the U.S. Virgin Islands, seven local jurisdictions, and the U.S. Pacific Island jurisdictions.

Job Details
Category management
Posted a month ago