Hire the Best Cloud Security Framework Specialists

More than 3,000 reviews on G2
Rating is 4.5 out of 5.
4.5/5
of Upwork by G2 peer reviewers
David M.

Tonbridge, United Kingdom

$125/hr
5.0
1 jobs

๐Ÿ”’ You need security that actually works โ€” not a report that says it does. The organisations I work with want to find the vulnerabilities that matter, fix them with confidence, and get on with growing their business without security becoming the thing that stops them. I have delivered over 1,000 commercial penetration tests across 27 years. Not side projects. Not internal assessments. Full mission-critical engagements for high street and investment banks, hedge funds, insurance firms, government departments, police, military, national infrastructure, retailers, law firms, airports and more. I led the security architecture for the Athens 2004 Olympics internet-facing systems. I was lead architect on the UK Cyber Essentials scheme at launch. I have published in commercial security press and guest lectured at universities. There is a difference between someone who does penetration testing and someone who has seen every flavour of environment, every attack pattern, and every way organisations deceive themselves about their security posture. That difference is what you are hiring. ๐ŸŽฏ Where can I help: ๐Ÿ—ก๏ธ Network & Infrastructure Penetration Testing โ€” adversarial testing of internal and external infrastructure, finding exploitable exposures before an attacker does. ๐ŸŒ Application Penetration Testing โ€” web application and API security testing against real attack patterns: authentication, authorisation, input handling and business logic flaws. โ˜๏ธ Microsoft 365 Security Assessment โ€” Entra ID, Conditional Access, PIM, Intune, DLP, sensitivity labelling, Exchange Online and Defender for Office 365. ๐Ÿ”ท Azure Security Assessment โ€” identity and access management, network controls, storage and key management, Defender for Cloud posture, and monitoring coverage. ๐ŸŸข Google Workspace, GCP & AWS Security Assessments โ€” configuration and access control assessments across Google and Amazon cloud environments. ๐Ÿ›๏ธ Security Architecture and Risk Advisory โ€” senior technical input on architecture decisions, control design and risk without a full engagement commitment. ๐Ÿ‘ค Every engagement is delivered directly by me โ€” David Morgan, founder of Metis Security. No account management layer, no junior handoffs, no templated output. You work with the person conducting the analysis and writing the report. ๐Ÿ“‹ How I work is as important as what I find Every finding in my reports is one I will defend as genuinely material to your environment. No padding, no low-hanging fruit included to justify the fee, no default risk ratings copied from a scanner. If your context changes the risk, the rating reflects that. What you receive: โœ… A visually structured report with clear separation between executive summary, findings and remediation roadmap โ€” written to be read by people who are not security specialists โœ… Risk ratings adjusted to your specific environment and context, not defaulted from a tool โœ… A prioritised remediation roadmap so your team knows exactly what to fix first and why it matters commercially โœ… Immediate escalation of any high-risk finding or schedule-affecting issue during the engagement โ€” you are never waiting until the end to hear something important โœ… Daily status updates so you always know where the engagement stands โœ… A debrief call at close to walk through findings, answer questions and finalise the report before it is delivered CISSP | ISSAP | Microsoft Security certifications | 27 years If you need to know whether your environment is genuinely secure โ€” not whether it looks configured โ€” I am worth a conversation.

  • Cloud Security
  • Penetration Testing
  • Web Application Security
  • Network Penetration Testing
  • Office 365
  • Microsoft Azure
  • Network Security
  • Vulnerability Assessment
  • Security Assessment & Testing
  • Security Infrastructure
  • Cybersecurity Management
  • Risk Assessment
  • Zero Trust Architecture
  • Security Analysis
  • Google Cloud Platform
  • Google Workspace
  • Amazon Web Services
  • ISO 27001
  • NIST Cybersecurity Framework
  • NIST SP 800-53
Nandy B.

Lehigh County, Pennsylvania

$85/hr
5.0
280 jobs

๐Ÿ—ฝ U.S. and ๐Ÿ Canada -only clients โ˜‘๏ธ Upwork Expert-Vetted ๐ŸŒŸ | 100% Job Success โœ… | 10,000+ hours ๐Ÿ’ป on 200+ projects Hi there! ๐Ÿ‘‹ Iโ€™m an Upwork veteran with over 10,000 hours delivered, 200+ successful projects, and $1M+ earned helping U.S. companies secure and scale their cloud and hybrid environments. โ˜๏ธ I specialize in Azure, Microsoft 365, and security-focused systems โ€” delivering: โ€ข Secure infrastructure using Zero Trust, IaC (Terraform/Bicep), and DevSecOps pipelines โ€ข Incident response, forensics, and breach containment across regulated industries โ€ข Compliance-ready solutions aligned to SOC 2, HIPAA, ISO 27001, and NIST 800-53 As a certified consultant, I work directly with technical teams to deliver secure cloud transformation, implement controls, and respond to threats โ€” fast. I also collaborate with Microsoftโ€™s internal dev teams, giving me early-access insights and practical fixes 3โ€“4 release cycles ahead of public rollout. Why Choose Me? โœ… $1M+ in security projects delivered across healthcare, fintech, crypto, and gov sectors ๐Ÿ” Architected Azure landing zones, GitOps pipelines, and zero trust cloud environments ๐Ÿšจ Led incident response and forensic investigations for Fortune 500 and defense clients ๐Ÿ“Š Built compliance workflows and policy-as-code enforcement for audit success ๐Ÿช™ Secured crypto CI/CD pipelines and smart contract environments with GitHub, Checkov, GHAS ๐Ÿง  Career Highlights: โ–ช Delivered security modernization and audit readiness for global government contractors and Fortune 500 companies โ–ช Led compliance remediation and data protection initiatives across healthcare, fintech, and public sector clients โ–ช Migrated global users to Microsoft 365 with security-first design โ€” Exchange, Purview, Intune, Defender โ–ช Built hybrid identity strategies (Entra ID, ADFS, GoDaddy 365, Azure AD B2C, custom policy support) โ–ช Managed VMware-to-Azure hardening with conditional access, audit enforcement, and security baselines ๐Ÿ”ง Solutions I Deliver: โ€ข Azure Infra Security: Terraform, Bicep, Azure Policy, RBAC, Defender for Cloud โ€ข DevSecOps: GitHub Actions, tfsec, Checkov, Trivy, GHAS, pipeline reviews โ€ข Microsoft 365 Hardening: Defender, Purview, Compliance Center, Intune, Exchange โ€ข Compliance & Audits: SOC 2, ISO 27001, HIPAA, GDPR, NIST, CIS Benchmarks โ€ข Incident Response & Forensics: Malware analysis, reverse engineering, breach recovery โ€ข Crypto Security: CI/CD for smart contracts, wallet infra hardening, Web3 audits โ€ข Reverse-engineered malware to identify attack vectors and harden systems post-breach โ€ข Hardened Microsoft Exchange Online and Defender for Email in phishing-prone orgs โ€ข Integrated Azure Sentinel analytics with dashboards for cross-cloud visibility ๐Ÿค Retainer & Advisory Support: โ€ข Ongoing guidance for CISOs, security architects, and compliance teams โ€ข Monthly retainers for SOC 2 evidence collection, security tool reviews, and policy automation โ€ข Rapid-response engagements for forensics, malware recovery, and breach root cause analysis ๐Ÿงฐ Platforms & Tools: โ€ข Azure, Microsoft 365, Azure Sentinel, Microsoft Defender (all modules), Intune โ€ข Terraform, Bicep, GitHub, Azure DevOps, GitOps, GHAS โ€ข Splunk, FTK, EnCase, Wireshark, Autopsy, Cisco ASA/Firepower โ€ข Checkov, Trivy, Aqua Security, smart contract security tooling โ€ข Compliance: SOC 2, HIPAA, ISO 27001, CIS, NIST, GDPR ๐Ÿ“… Letโ€™s set up a free 30-minute consultation to explore how I can help you with security transformation, compliance readiness, or urgent recovery โ€” no fluff, just fast, proven results. I bring the calm in chaos โ€” whether you're planning secure growth or cleaning up after a breach, Iโ€™ll steady the course and deliver results. ๐Ÿ“Œ Helped a fintech client pass SOC 2 in under 60 days ๐Ÿ“Œ Responded to ransomware, restored 95% of systems in 48 hours ๐Ÿ“Œ Hardened crypto wallet infra securing $100M+ in assets Thanks again for stopping by. You can invite me to your job post or simply send a message to arrange a quick discovery call โ€” I respond fast, and weโ€™ll keep everything inside Upwork. โ€” Nandy Bo ๐Ÿ—ฃ๏ธโ ๐™„๐™ฉ ๐™๐™–๐™จ ๐™—๐™š๐™š๐™ฃ ๐™– ๐™ฅ๐™ก๐™š๐™–๐™จ๐™ช๐™ง๐™š ๐™ฉ๐™ค ๐™ฌ๐™ค๐™ง๐™  ๐™ฌ๐™ž๐™ฉ๐™ ๐™‰๐™–๐™ฃ๐™™๐™ฎ ๐™™๐™ช๐™ง๐™ž๐™ฃ๐™œ ๐™ฉ๐™๐™š ๐™ฉ๐™ง๐™–๐™ฃ๐™จ๐™ž๐™ฉ๐™ž๐™ค๐™ฃ ๐™ค๐™› ๐˜พ๐™–๐™ก๐™ก๐™˜๐™ค๐™ข. ๐™‰๐™–๐™ฃ๐™™๐™ฎ ๐™ž๐™จ ๐™ซ๐™š๐™ง๐™ฎ ๐™œ๐™š๐™ฃ๐™ช๐™ž๐™ฃ๐™š, ๐™๐™ค๐™ฃ๐™š๐™จ๐™ฉ ๐™–๐™ฃ๐™™ ๐™๐™š๐™ก๐™ฅ๐™›๐™ช๐™ก ๐™ž๐™ฃ ๐™ฃ๐™–๐™ฉ๐™ช๐™ง๐™š. ๐™ƒ๐™š ๐™–๐™ก๐™จ๐™ค ๐™๐™–๐™จ ๐™– ๐™ซ๐™š๐™ง๐™ฎ ๐™ž๐™ฃ-๐™™๐™š๐™ฅ๐™ฉ๐™ ๐™ ๐™ฃ๐™ค๐™ฌ๐™ก๐™š๐™™๐™œ๐™š ๐™ค๐™› ๐™„๐™ ๐™ฌ๐™๐™ž๐™ก๐™š ๐™ข๐™–๐™ž๐™ฃ๐™ฉ๐™–๐™ž๐™ฃ๐™ž๐™ฃ๐™œ ๐™– ๐™ซ๐™š๐™ง๐™ฎ ๐™—๐™ง๐™ค๐™–๐™™ ๐™ฅ๐™ง๐™ค๐™—๐™ก๐™š๐™ข-๐™จ๐™ค๐™ก๐™ซ๐™ž๐™ฃ๐™œ ๐™ค๐™ช๐™ฉ๐™ก๐™ค๐™ค๐™ . ๐™๐™๐™š๐™จ๐™š ๐™›๐™š๐™–๐™ฉ๐™ช๐™ง๐™š๐™จ ๐™ข๐™–๐™ ๐™š ๐™๐™ž๐™ข ๐™ฃ๐™ค๐™ฉ ๐™ค๐™ฃ๐™ก๐™ฎ ๐™– ๐™ฅ๐™ก๐™š๐™–๐™จ๐™ช๐™ง๐™š ๐™ฉ๐™ค ๐™ฌ๐™ค๐™ง๐™  ๐™ฌ๐™ž๐™ฉ๐™ ๐™—๐™ช๐™ฉ ๐™–๐™ก๐™จ๐™ค ๐™ซ๐™š๐™ง๐™ฎ ๐™ž๐™ฃ๐™จ๐™ฅ๐™ž๐™ง๐™–๐™ฉ๐™ž๐™ค๐™ฃ๐™–๐™ก. โž โ€” ๐™…๐™ค๐™ง๐™™๐™ค๐™ฃ ๐˜ฝ๐™ž๐™ก๐™ก - ๐™ˆ๐™–๐™ฃ๐™–๐™œ๐™ž๐™ฃ๐™œ ๐˜ฟ๐™ž๐™ง๐™š๐™˜๐™ฉ๐™ค๐™ง - ๐˜พ๐™–๐™ก๐™ก๐™˜๐™ค๐™ข ๐™„๐™ฃ๐™ฉ๐™š๐™ง๐™ฃ๐™–๐™ฉ๐™ž๐™ค๐™ฃ๐™–๐™ก

  • Cloud Security
  • Solution Architecture Consultation
  • Cloud Implementation
  • Information Security
  • Microsoft Endpoint Manager
  • Risk Assessment
  • Cloud Engineering Consultation
  • Microsoft Azure
  • Office 365
  • Email Security
  • Microsoft Exchange Online
  • Digital Forensics
  • Incident Response Readiness Assessment
  • Information Security Audit
Tajammal H.

Padova, Italy

$50/hr
5.0
18 jobs

๐ˆ ๐ก๐ž๐ฅ๐ฉ ๐จ๐ซ๐ ๐š๐ง๐ข๐ณ๐š๐ญ๐ข๐จ๐ง๐ฌ ๐ข๐๐ž๐ง๐ญ๐ข๐Ÿ๐ฒ ๐ฏ๐ฎ๐ฅ๐ง๐ž๐ซ๐š๐›๐ข๐ฅ๐ข๐ญ๐ข๐ž๐ฌ, ๐ฌ๐ž๐œ๐ฎ๐ซ๐ž ๐ข๐ง๐Ÿ๐ซ๐š๐ฌ๐ญ๐ซ๐ฎ๐œ๐ญ๐ฎ๐ซ๐ž, ๐ข๐ฆ๐ฉ๐ฅ๐ž๐ฆ๐ž๐ง๐ญ ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐œ๐จ๐ง๐ญ๐ซ๐จ๐ฅ๐ฌ, ๐œ๐จ๐ง๐๐ฎ๐œ๐ญ ๐ฉ๐ž๐ง๐ž๐ญ๐ซ๐š๐ญ๐ข๐จ๐ง ๐ญ๐ž๐ฌ๐ญ๐ข๐ง๐ , ๐ฌ๐ญ๐ซ๐ž๐ง๐ ๐ญ๐ก๐ž๐ง ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ฉ๐จ๐ฌ๐ญ๐ฎ๐ซ๐ž, ๐š๐ง๐ ๐ฆ๐ž๐ž๐ญ ๐ซ๐ž๐ ๐ฎ๐ฅ๐š๐ญ๐จ๐ซ๐ฒ ๐œ๐จ๐ฆ๐ฉ๐ฅ๐ข๐š๐ง๐œ๐ž ๐ซ๐ž๐ช๐ฎ๐ข๐ซ๐ž๐ฆ๐ž๐ง๐ญ๐ฌ ๐ญ๐ก๐ซ๐จ๐ฎ๐ ๐ก ๐ฉ๐ซ๐š๐œ๐ญ๐ข๐œ๐š๐ฅ, ๐ก๐š๐ง๐๐ฌ-๐จ๐ง ๐œ๐ฒ๐›๐ž๐ซ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ž๐ฑ๐ฉ๐ž๐ซ๐ญ๐ข๐ฌ๐ž. As a ๐“๐จ๐ฉ ๐‘๐š๐ญ๐ž๐ ๐œ๐ฒ๐›๐ž๐ซ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ฉ๐ซ๐จ๐Ÿ๐ž๐ฌ๐ฌ๐ข๐จ๐ง๐š๐ฅ ๐จ๐ง ๐”๐ฉ๐ฐ๐จ๐ซ๐ค ๐ฐ๐ข๐ญ๐ก ๐Ÿ๐ŸŽ+ ๐ฒ๐ž๐š๐ซ๐ฌ ๐จ๐Ÿ ๐ž๐ฑ๐ฉ๐ž๐ซ๐ข๐ž๐ง๐œ๐ž, I have successfully delivered cybersecurity, compliance, risk assessment, security architecture, infrastructure security, and penetration testing projects for startups, SMBs, and growing organizations across multiple industries. My approach combines technical execution with security best practices to help clients reduce risk, protect critical assets, and build secure environments that support business growth. ๐”๐ง๐ฅ๐ข๐ค๐ž ๐œ๐จ๐ง๐ฌ๐ฎ๐ฅ๐ญ๐š๐ง๐ญ๐ฌ ๐ฐ๐ก๐จ ๐จ๐ง๐ฅ๐ฒ ๐ฉ๐ซ๐จ๐ฏ๐ข๐๐ž ๐ซ๐ž๐œ๐จ๐ฆ๐ฆ๐ž๐ง๐๐š๐ญ๐ข๐จ๐ง๐ฌ, ๐ˆ ๐ฐ๐จ๐ซ๐ค ๐ก๐š๐ง๐๐ฌ-๐จ๐ง ๐ญ๐ก๐ซ๐จ๐ฎ๐ ๐ก๐จ๐ฎ๐ญ ๐ญ๐ก๐ž ๐ฉ๐ซ๐จ๐ฃ๐ž๐œ๐ญ ๐ฅ๐ข๐Ÿ๐ž๐œ๐ฒ๐œ๐ฅ๐žโ€”๐Ÿ๐ซ๐จ๐ฆ ๐š๐ฌ๐ฌ๐ž๐ฌ๐ฌ๐ฆ๐ž๐ง๐ญ ๐š๐ง๐ ๐ฉ๐ฅ๐š๐ง๐ง๐ข๐ง๐  ๐ญ๐จ ๐ข๐ฆ๐ฉ๐ฅ๐ž๐ฆ๐ž๐ง๐ญ๐š๐ญ๐ข๐จ๐ง, ๐ซ๐ž๐ฆ๐ž๐๐ข๐š๐ญ๐ข๐จ๐ง, ๐๐จ๐œ๐ฎ๐ฆ๐ž๐ง๐ญ๐š๐ญ๐ข๐จ๐ง, ๐ญ๐ž๐ฌ๐ญ๐ข๐ง๐ , ๐š๐ง๐ ๐Ÿ๐ข๐ง๐š๐ฅ ๐๐ž๐ฅ๐ข๐ฏ๐ž๐ซ๐ฒ. ๐‚๐จ๐ซ๐ž ๐€๐ซ๐ž๐š๐ฌ ๐จ๐Ÿ ๐„๐ฑ๐ฉ๐ž๐ซ๐ญ๐ข๐ฌ๐ž: โœ” Information Security & Cybersecurity Management โœ” Security Architecture & Security Engineering โœ” Penetration Testing & Vulnerability Assessment โœ” Security Assessment, Testing & Remediation โœ” Risk Assessments & Information Security Audits โœ” Cloud Security & Infrastructure Security โœ” Network Security, Network Engineering & Hardening โœ” System Administration & Infrastructure Management โœ” User Identity Management & Access Control โœ” Incident Response Readiness & Threat Mitigation โœ” DevOps Engineering & Security Best Practices โœ” Security Policies, Procedures & Documentation โœ” OSINT & Digital Forensics ๐‚๐จ๐ฆ๐ฉ๐ฅ๐ข๐š๐ง๐œ๐ž & ๐…๐ซ๐š๐ฆ๐ž๐ฐ๐จ๐ซ๐ค๐ฌ: โœ” ISO 27001 โœ” SOC 2 โœ” PCI DSS โœ” NIST Cybersecurity Framework โœ” HIPAA โœ” GDPR โœ” CMMC ๐–๐ก๐ฒ ๐‚๐ฅ๐ข๐ž๐ง๐ญ๐ฌ ๐–๐จ๐ซ๐ค ๐–๐ข๐ญ๐ก ๐Œ๐ž: โœ” ๐“๐จ๐ฉ ๐‘๐š๐ญ๐ž๐ ๐Ÿ๐ซ๐ž๐ž๐ฅ๐š๐ง๐œ๐ž๐ซ ๐ฐ๐ข๐ญ๐ก ๐ฉ๐ซ๐จ๐ฏ๐ž๐ง ๐ฌ๐ฎ๐œ๐œ๐ž๐ฌ๐ฌ ๐ข๐ง ๐œ๐ฒ๐›๐ž๐ซ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ & ๐œ๐จ๐ฆ๐ฉ๐ฅ๐ข๐š๐ง๐œ๐ž ๐จ๐ง ๐”๐ฉ๐ฐ๐จ๐ซ๐ค โœ” Hands-on technical expertise with end-to-end project ownership โœ” Strong experience across cybersecurity, compliance, infrastructure, and security operations โœ” Practical, business-focused security solutions rather than generic recommendations โœ” Clear communication, reliability, and commitment to quality Whether you need penetration testing, vulnerability assessments, security architecture, compliance implementation, cloud security, network security, system administration, risk assessments, infrastructure hardening, or end-to-end cybersecurity support, I can help deliver secure, practical, and scalable solutions tailored to your requirements. ๐‹๐ž๐ญ'๐ฌ ๐๐ข๐ฌ๐œ๐ฎ๐ฌ๐ฌ ๐ก๐จ๐ฐ ๐ˆ ๐œ๐š๐ง ๐ก๐ž๐ฅ๐ฉ ๐ฌ๐ž๐œ๐ฎ๐ซ๐ž ๐š๐ง๐ ๐ฌ๐ญ๐ซ๐ž๐ง๐ ๐ญ๐ก๐ž๐ง ๐ฒ๐จ๐ฎ๐ซ ๐ž๐ง๐ฏ๐ข๐ซ๐จ๐ง๐ฆ๐ž๐ง๐ญ.

  • Cloud Security
  • Information Security
  • NIST Cybersecurity Framework
  • Information Security Audit
  • Security Engineering
  • Compliance
  • Risk Assessment
  • Penetration Testing
  • Vulnerability Assessment
  • ISO 27001
  • SOC 2
  • PCI DSS
  • Governance, Risk & Compliance Software
  • Network Security
  • User Identity Management
  • IT Compliance Audit
  • Incident Response Readiness Assessment
  • System Administration
  • DevOps Engineering
  • Security Assessment & Testing
Najam U.

Gujranwala, Pakistan

$50/hr
5.0
86 jobs

If you're building on Azure or modern cloud infrastructure and want to ensure itโ€™s secure before attackers find the gaps โ€” I can help. Iโ€™m a cybersecurity consultant and founder of Exfiltra, helping startups and enterprises secure their applications, cloud infrastructure, and DevOps pipelines. I have worked with organizations generating $6B+ in annual revenue and helped companies strengthen security across cloud environments, applications, and compliance programs. I personally lead security engagements and, when needed, bring in specialists from my team at Exfiltra to support larger or complex projects. Most clients hire me when they want to: โœ” Secure Azure / AWS / GCP environments โœ” Perform professional penetration testing โœ” Implement DevSecOps and secure CI/CD pipelines โœ” Prepare for SOC 2, ISO 27001, HIPAA, FedRAMP, or CMMC โœ” Improve security posture using industry frameworks CORE EXPERTISE AZURE & CLOUD SECURITY โ€ข Azure security architecture reviews โ€ข Microsoft Defender for Cloud & Sentinel โ€ข Identity security (Entra ID / Conditional Access) โ€ข Cloud configuration reviews and CIS Benchmark hardening APPLICATION SECURITY & PENETRATION TESTING โ€ข Web application penetration testing โ€ข API security testing โ€ข Mobile application security testing โ€ข Network and cloud penetration testing โ€ข Assessments aligned with OWASP Top 10 and OWASP ASVS DEVSECOPS & SECURITY AUTOMATION โ€ข Secure CI/CD pipelines (Azure DevOps / GitHub Actions) โ€ข Infrastructure as Code security (Terraform / Bicep) โ€ข SAST and DAST integration in pipelines SECURITY TOOLS โ€ข Snyk โ€ข Semgrep โ€ข OWASP ZAP โ€ข Burp Suite โ€ข Wazuh โ€ข CrowdStrike โ€ข Microsoft Sentinel AI & LLM SECURITY โ€ข AI application threat modeling โ€ข Prompt injection and model abuse testing โ€ข Secure architecture for AI-powered applications WHY CLIENTS WORK WITH ME โ€ข Upwork Expert-Vetted (Top 1% of freelancers) โ€ข Founder of Exfiltra โ€“ a cybersecurity services company โ€ข Supported by a team of security specialists for larger engagements โ€ข Contributor to OWASP ZAP โ€ข Experience securing environments for organizations generating $6B+ in revenue โ€ข Background in both software engineering and cybersecurity โ€ข Security research involving organizations like the U.S. Department of Defense NOT A GOOD FIT IF โ€ข You want to hack or recover social media accounts โ€ข You want enterprise-grade security but are not willing to invest in it If your goal is to build secure systems instead of reacting to breaches later, feel free to invite me to your job or send a message describing your project.

  • Cloud Security
  • Network Security
  • Kali Linux
  • Security Assessment & Testing
  • Penetration Testing
  • Information Security Consultation
  • Application Security
  • Vulnerability Assessment
  • Information Security
  • Web Application Security
  • Ethical Hacking
  • Web App Penetration Testing
  • Security Management
  • System Security
  • AI Security
  • Secure SDLC
  • Security Testing
  • Website Security
  • Database Security
  • Cybersecurity Management
Ehteshamuddin M.

Phoenix, Arizona

$35/hr
4.5
73 jobs

๐ŸŽฏ 100% Refund If I set the wrong expectations and canโ€™t deliver. No questions asked. Top-Rated Plus, Upwork Top 1 Percent, Highly recommended. What do I offer: 1- 100% work satisfaction 2- 24/7 Support 3- On-time delivery 4- Enterprise quality 5- 15 Days of free support after completion of the project Cloud Architect with 10+ years of DevOps experience, specializing in scalable, platform-agnostic cloud infrastructures. Proven track record in high-scale environments. Proficient in Infrastructure as Code, automation, and scripting, with expertise in CI/CD, Cloud Services, and Infrastructure Automation. Skilled in building, deploying, and managing applications on AWS, GCP, Azure, and OCI, with a focus on robust monitoring and observability. โžœ Zazmic Inc, San Francisco, CA โ€ข Automation Tools: Terraform, Ansible โ€ข Cloud Platforms: GCP โ€ข Containerization: Docker, Helm charts โ€ข CI/CD: GitLab CI โ€ข Monitoring: HPA, Cloud Armour โ€ข Databases: Different kinds of databases on GCP โžœ Tripleseat, Concord, Massachusetts โ€ข Cloud Platforms: Azure, GCP โ€ข Containerization: Docker โ€ข CI/CD: Azure Pipelines, Azure DevOps โ€ข Monitoring: Grafana, Prometheus โžœ Century Communities, Inc., Greenwood Village, CO โ€ข Cloud Platforms: AWS, Oracle Cloud โ€ข Automation Tools: Lambda functions, Ansible โ€ข Containerization: Docker, AWS ECS, EKS โ€ข CI/CD: CircleCI, GitHub Actions, AWS CodePipeline โ€ข Monitoring: CloudWatch, CloudFront โžœ Summary: โ€ข Proficient in Kubernetes, I architect and manage clusters to facilitate agile and scalable application deployment. โ€ข Skilled in Infrastructure as Code (IaC), I employ Terraform, Ansible, and Chef to automate configuration and ensure uniform environments. โ€ข With hands-on experience in CI/CD pipeline creation and maintenance using Jenkins, GitLab CI, and Azure DevOps, I ensure the efficient and reliable delivery of software products. โ€ข Possessing a robust background in Linux/UNIX system administration, including expertise in managing RHEL environments. โ€ข Armed in scripting with Bash and Python to streamline automation processes and optimize operational efficiency. โ€ข Good Know how of monitoring and logging tools such as Elasticsearch, CloudWatch, Prometheus, and Grafana, enabling proactive monitoring of infrastructure and application health. โ€ข Experienced in VMware virtualization, proficiently managing VMs, executing V-motion operations, and maintaining Snapshots. โ€ข Adaptable to fast-paced 24/7 production environments, providing responsive on-call support, including weekends. โ€ข Successfully deployed and managed scalable microservices on Kubernetes clusters across GCP and AWS platforms. โ€ข Expertise extends to migrating on-premises workloads to the cloud, focusing on performance optimization and cost efficiency. โ€ข Possess proactive problem-solving and troubleshooting skills essential for maintaining high-quality production environments. โ€ข Strong communication and collaboration abilities, facilitating effective bridging of the gap between development and operations teams. โžœ Tools: Git, Ansible, AWS CloudFormation, ELK, GitLab, GitLab CI/CD, Terraform, Docker Compose, Grafana, Telegraf, CircleCI, Traefik, Amazon CloudWatch, Amazon Elastic Container Service (Amazon ECS), GitHub, VPN, AWS Fargate, Amazon CloudFront CDN, AWS IAM, Amazon Virtual Private Cloud, Docker Swarm, NGINX, Puppet, Jenkins, Amazon EKS, Amazon Simple Queue Service, RabbitMQ, Celery, TeamCity, Nagios, Makefile, AWS CodeDeploy, Confluence, AWS CodeBuild โžœ Platforms: Linux, Docker, Amazon Web Services, AWS Elastic Beanstalk, Amazon EC2, Kubernetes, AWS Lambda, Windows, Apache Kafka, JVM, Heroku, Azure, WordPress, New Relic, Windows Server, Google Cloud Platform, Blockchain, Rancher โžœ Storage: Amazon Aurora, Amazon S3, MySQL, MongoDB, InfluxDB, Redis, On-premise, Amazon DynamoDB, Redis Cache, Elasticsearch, MySQL, Databases, PostgreSQL โžœ Languages: Python, Bash, Java, PHP, Markdown, Go, JavaScript, SQL, TypeScript โžœ Frameworks: Flask, Django, Windows PowerShell, .NET, Serverless Framework ------------------------------------------------------------------------------------------------------ #CloudArchitect #DevOps #Kubernetes #Terraform#Azure #GCP #Docker #CI_CD #InfrastructureAsCode #CloudMigration #DevOpsEngineer #Automation #CloudInfrastructure #Microservices #CloudSecurity #NetworkSecurity #AWSCloud #AzureCloud #Serverless #AWSLambda #AzureDevOps #GitLabCI #GitHubActions #Linux #Unix #Bash #Python #GoLang #Java #Git #Ansible #Jenkins #NGINX #ApacheKafka #Databases #SQL #MySQL #PostgreSQL #MongoDB #Redis #DynamoDB #CloudStorage #S3 #CloudWatch #BackendInfrastructure #WebInfrastructure

  • Cloud Computing
  • Kubernetes
  • Terraform
  • Docker
  • DevOps
  • Google Cloud Platform
  • Amazon Web Services
  • Cloud Architecture
  • CI/CD
  • Microsoft Azure
  • DigitalOcean
  • HIPAA
  • SOC 2
  • Ansible
  • Python
  • Data Warehousing & ETL Software
  • Django
  • Linux System Administration
  • AWS CloudFormation
  • Git
Rishabh B.

Bangalore, India

$45/hr
5.0
72 jobs

Your infrastructure breaks at 2 AM. Your deploys take 45 minutes. Your AWS bill climbed 40% and nobody can explain why. I fix all three - and I've done it 100+ times on this platform. Former SRE Lead at Yellow AI (100M+ users, AWS + on-prem). Now I run Skybyte, a DevOps and cloud consulting practice focused on startups and mid-market teams that need senior infrastructure work without the senior hire. What 61+ Upwork jobs and a 100% Job Success Score actually look like: Cloud cost optimization - cut AWS/Azure/GCP spend by 40-60% through right-sizing, Reserved Instances, spot fleets, and architecture cleanup. Not guesswork; I run the cost audit, build the dashboard, and hand you the savings. Kubernetes migration and management - moved production workloads to EKS, AKS, and self-managed clusters on Hetzner. Helm charts, ArgoCD GitOps, zero-downtime cutovers. I've handled clusters running 200+ pods and clusters running 6. CI/CD pipeline engineering - GitHub Actions, GitLab CI, Azure DevOps Pipelines, Bitbucket Pipelines. Took teams from 45-minute manual deploys to sub-5-minute automated releases with rollback built in. Infrastructure as Code with Terraform - full AWS, Azure, and GCP environments defined in Terraform modules. State management, drift detection, and PR-based infrastructure reviews that your team can maintain without me. DevSecOps and compliance - SOC 2 infrastructure from scratch, cloud security audits, Cloudflare WAF and DDoS protection, network security architecture, and DPDP-aligned data handling. I've built the controls and written the documentation auditors actually accept. Monitoring, observability, and SRE - Prometheus, Grafana, OpenTelemetry, Datadog, PagerDuty. Full observability stacks that catch failures before your users file tickets. I set up SLOs, runbooks, and on-call workflows. Beyond core DevOps - SSO/SAML integration, n8n workflow automation, MLOps pipelines, Docker deployments on bare metal and VPS, GCP Cloud Run serverless, and technical documentation your team won't ignore. I work best with funded startups burning money on cloud, engineering teams stuck in deployment hell, and companies scaling past the point where one developer can manage the infrastructure part-time. Stack: AWS (EKS, EC2, Lambda, RDS, S3) ยท Azure (AKS, DevOps, AD) ยท GCP (GKE, Cloud Run) ยท Kubernetes ยท Helm ยท Terraform ยท Docker ยท GitHub Actions ยท GitLab CI ยท ArgoCD ยท Prometheus ยท Grafana ยท OpenTelemetry ยท Datadog ยท Cloudflare ยท n8n Not a "set it up and disappear" contractor. I document everything, train your team, and build systems designed to run without me and scale.

  • Cloud Security Framework
  • Cloud Computing
  • Kubernetes
  • SOC 2
  • Amazon Web Services
  • Python
  • Terraform
  • Deployment Automation
  • Docker
  • Microsoft Azure
  • Automated Deployment Pipeline
  • Git
  • CI/CD
  • System Administration
  • Network Security
  • Google Cloud Platform
  • Cloud Migration
  • DevOps Engineering
  • DevOps
  • AI Security

How it works

Post a job for free Post a job

Tell us what you need. Create your own job post or generate one with AI then filter talent matches.

Hire top talent fast

Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.

Collaborate easily

Use Upwork to chat or video call, share files, and track project progress right from the app.

Payment simplified

Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.

Don't just take our word for it

How do I hire a Cloud Security Framework Specialist on Upwork?

You can hire a Cloud Security Framework Specialist on Upwork in four simple steps:

  • Create a job post tailored to your Cloud Security Framework Specialist project scope. Weโ€™ll walk you through the process step by step.
  • Browse top Cloud Security Framework Specialist talent on Upwork and invite them to your project.
  • Once the proposals start flowing in, create a shortlist of top Cloud Security Framework Specialist profiles and interview.
  • Hire the right Cloud Security Framework Specialist for your project from Upwork, the worldโ€™s largest work marketplace.

At Upwork, we believe talent staffing should be easy.

How much does it cost to hire a Cloud Security Framework Specialist?

Rates charged by Cloud Security Framework Specialists on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.

Why hire a Cloud Security Framework Specialist on Upwork?

As the worldโ€™s work marketplace, we connect highly-skilled freelance Cloud Security Framework Specialists and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Cloud Security Framework Specialist team you need to succeed.

Can I hire a Cloud Security Framework Specialist within 24 hours on Upwork?

Depending on availability and the quality of your job post, itโ€™s entirely possible to sign up for Upwork and receive Cloud Security Framework Specialist proposals within 24 hours of posting a job description.