Seeking career advice: pivoting from cloud engineering to infosec with a CISSP and experience
I've been in IT for 24 years. The last 8 years have been pretty much all Azure cloud engineering. I'm thinking of pivoting into infosec since I have a couple of current CISSP holders who can vouch for me and the security related projects I've worked on in those last 8 years. I also recently got my MS Certified Azure Cybersecurity Architect cert and have an older Security+ that's still active.
I'm studying for the exam but I'm curious for how others have made this kind of career change. My hope is to be hands-on-keyboard in Azure, not so much a "thought leader". I want to be the one who says "look, this has to happen for our compliance requirements, I'll help with the work, let's get it done" and actually work on the Azure parts. It's what I do well, but since it's getting tougher to find Azure cloud engineering roles, this seems like a natural move.
Has anyone else done this? What was your pivot like? I'm guessing I'll have some serious resume re-architecting to do in order to highlight what I did for infosec projects as opposed to business as usual, but what else should I be prepared to do? Is it realistic to go from senior cloud engineer to senior cloud security engineer or am I facing pay cuts to start from junior level?