29 days ago
Bengaluru, IndiaSenior
Responsibilities
- Design, implement, and automate cloud security controls across infrastructure, platforms, containers, and CI/CD pipelines.
- Secure Kubernetes and containerized workloads across multi-cloud environments.
- Implement and manage IAM, cloud networking, encryption, WAFs, secrets management, vulnerability management, and CSPM/CNAPP controls.
- Collaborate with Platform Engineering, DevOps, SRE, and Development teams to integrate security into the cloud lifecycle.
- Build scripting, automation, SIEM/SOAR integrations, automated response workflows, policy-as-code, and runtime protection capabilities.
Requirements
- At least 5 years of experience in cloud security, DevSecOps, infrastructure security, or platform engineering.
- Strong hands-on expertise with AWS security services and familiarity with Azure and/or GCP.
- Experience securing Kubernetes and containerized workloads.
- Strong knowledge of IAM, cloud networking, encryption, WAFs, secrets management, and vulnerability management.
- Experience with Terraform, CloudFormation, or similar infrastructure-as-code tools.
- Proficiency in Python, Bash, or similar scripting and automation languages.
- Experience with CSPM/CNAPP tools such as Prisma Cloud, Wiz, Lacework, or Defender for Cloud.
- Understanding of CI/CD security and DevSecOps practices.
- Preferred: AWS Certified Security – Specialty, Microsoft Security Engineer Associate, Google Cloud Professional Cloud Security Engineer, or ISC2 certification.
- Preferred: experience with SIEM/SOAR integrations, automated response workflows, cloud governance, policy-as-code, and runtime protection.
