Syensqo is all about chemistry. We’re not just referring to chemical reactions here, but also to the magic that occurs when the brightest minds get to work together. This is where our true strength lies. In you. In your future colleagues and in all your differences. And of course, in your ideas to improve lives while preserving our planet’s beauty for the generations to come.
Job Description – Orca Cloud Security Expert (CSPM / CNAPP)
Role Summary
The Orca Cloud Security Expert is responsible for the operation, continuous improvement, and governance of the Orca Security platform across multi-cloud environments (AWS, Azure, GCP).
The role ensures end-to-end security posture management, including alert triage, remediation coordination with IT teams, and ongoing optimization of detection, processes, and coverage.
Key Responsibilities
1. Operate Orca Security Platform (RUN)
Manage day-to-day operations of the Orca platform, ensuring continuous monitoring of cloud environments
Perform triage and analysis of security alerts (Critical/High/Medium)
Conduct incident investigation and risk analysis using Orca capabilities
Maintain dashboards, KPIs, and operational reporting for stakeholders
Ensure service continuity, availability, and SLA adherence
2. Coordinate Remediation with IT Teams
Act as the central interface between security and IT operations teams (Cloud, Infra, App teams)
Translate Orca findings into clear remediation actions and technical recommendations
Create and follow up remediation tickets (e.g., Helix/Jira) and track progress to closure
Drive prioritization based on severity, business risk, and exposure
Ensure proper ownership and accountability of remediation actions across teams
3. Continuous Improvement & Optimization
Continuously optimize detection rules, alert tuning, and vulnerability classification
Reduce false positives and improve signal-to-noise ratio (e.g., tuning “Service Vulnerabilities”)
Enhance and maintain runbooks, processes, and automation workflows
Contribute to shift-left initiatives (integration with DevSecOps, code scanning, IaC scanning)
Improve coverage across cloud assets, applications, and workloads
4. Security Posture & Compliance Management
Ensure continuous visibility of risks, vulnerabilities, and misconfigurations across cloud environments
Support compliance monitoring and reporting (internal policies, standards)
Contribute to gap analysis and policy alignment (Cloud Security Standards)
Produce regular reports on risk posture, remediation progress, and KPIs
5. Stakeholder Coordination & Governance
Collaborate with:
Cloud teams (AWS, Azure, GCP)
SOC / SecOps teams
Application and DevOps teams
Provide regular status communication on risk, remediation, and improvements
Support steering committees and governance reviews
Raise escalations on critical risks or remediation delays
Core Deliverables
Security dashboards and reporting (KPIs, SLA, risk trends)
Remediation tracking and follow-up reports
Orca configuration (alerts, scans, integrations)
Continuous improvement backlog & roadmap
Documented processes (runbooks, remediation workflow, alert management)
Required Skills & Experience
Technical Skills
Strong experience with:
Cloud Security (AWS / Azure / GCP)
CSPM / CNAPP platforms (Orca preferred)
Knowledge of:
Vulnerability management & remediation workflows
Cloud misconfigurations and security best practices
DevSecOps / Shift-left security (IaC scanning, SAST, secrets detection)
Familiarity with:
ITSM tools (ServiceNow / Helix / Jira)
SIEM / SOC integration
Soft Skills
Strong coordination and stakeholder management capabilities
Ability to translate technical risks into actionable remediation
Structured, process-oriented mindset (run, improve, industrialize)
Strong communication skills (technical and executive level)
KPIs / Success Measures
Reduction of critical/high vulnerabilities backlog
Mean time to remediation (MTTR)
% of Orca alerts triaged and resolved within SLA
Coverage of cloud assets monitored by Orca
Reduction of false positives / alert noise
Positioning (Typical Organization)
Reports to: Cloud Security / Cybersecurity Lead
Works closely with:
SOC / SecOps
Cloud Engineering
Application teams
Value Proposition of the Role
Ensures end-to-end control of cloud security posture
Drives operational excellence in vulnerability management
Enables scalable, automated, and standardized security operations
Acts as a bridge between security and IT operations
About us
#
Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.