Job no: TFXG3
We are seeking a highly skilled Cloud Security Engineer with deep expertise in Thales Hardware Security Modules (HSM) and Microsoft Azure, preferably with hands-on experience in Azure Payment HSM.
This role is critical in delivering secure cryptographic services and supporting payment operations in cloud-native environments.
Key Responsibilities
- Design, implement, and manage cryptographic solutions using Thales HSMs.
- Configure, deploy, and integrate Azure Payment HSM to support secure key management and payment services.
- Provide subject matter expertise in cryptography, key lifecycle management, and secure digital payments.
- Collaborate with cloud architects, developers, and compliance teams to ensure cryptographic systems are secure and compliant with PCI-DSS, GDPR, and other relevant standards.
- Manage HSM access policies, auditing, and secure interfaces for applications.
- Assist in the migration of on-prem HSM solutions to Azure or hybrid environments.
- Troubleshoot and resolve issues related to HSM performance, integration, and availability.
Key Skills & Experience
- Strong hands-on experience with Thales HSM (preferably Luna or payShield series).
- Solid understanding of cryptographic principles (symmetric/asymmetric encryption, hashing, PKI).
- Demonstrated experience with Microsoft Azure cloud services.
- Preferably experience with Azure Payment HSM offering.
- Familiarity with Azure Key Vault, Managed HSM, and Azure security best practices.
- Experience in secure payment systems, tokenization, and EMV standards is highly desirable.
- Knowledge of integration patterns for secure applications and services.
- Strong troubleshooting and documentation skills.
Preferred Qualifications
- Bachelor's degree in Computer Science, Information Security, or related field.
- Thales HSM and/or Microsoft Azure certifications (e.g., AZ-500, SC-100, Thales Certified Engineer).
- Prior experience in financial services, fintech, or payment gateway environments.
- Published on 26 Jun 2025, 3:03 AM