
Senior Cloud Security Engineer
Skylo Technologies3 days ago
Bengaluru, IndiaSenior
Responsibilities
- Design, implement, and maintain cloud security architecture across AWS and GCP, including IAM, network segmentation, workload security, secrets management, and encryption.
- Build and tune CSPM, workload protection, cloud-native detection, vulnerability management, and security automation capabilities.
- Embed security into CI/CD pipelines and infrastructure-as-code in partnership with platform and DevOps engineering.
- Own vulnerability management and hardening for cloud workloads, containers, and Kubernetes environments.
- Support cloud security incident response, forensics, threat detection, and monitoring across SIEM, EDR/XDR, firewalls, and security platforms.
- Conduct security assessments, vulnerability assessments, architecture reviews, threat modeling, audits, and compliance initiatives.
- Identify, document, prioritize, and track security risks and remediation or accepted exceptions through closure.
- Monitor asset and vulnerability coverage, resolve scanning and integration gaps, and maintain exposure, remediation, inventory, and program-health metrics.
- Own cybersecurity initiatives from identification through implementation and closure.
- Partner cross-functionally with Engineering, DevOps, Cloud and Infrastructure, Product, GRC, and leadership teams.
Requirements
- 6+ years of experience in security engineering, including 3+ years specifically focused on cloud security.
- Deep hands-on experience with IAM design, VPC and network security, container and Kubernetes security, and secrets or key management.
- Experience securing AWS and/or GCP environments and cloud services such as EC2, virtual machines, GKE, EKS, networking, identity, and managed services.
- Working knowledge of infrastructure-as-code security using Terraform and policy-as-code tools such as OPA or Sentinel.
- Experience with CSPM or CNAPP platforms such as Wiz, Prisma Cloud, Orca, or native cloud tooling.
- Scripting and automation ability with Python, Go, Java, or similar languages.
- Working knowledge of vulnerabilities affecting cloud infrastructure, operating systems, networks, web applications, and enterprise technologies.
- Understanding of MITRE ATT&CK, FiGHT, D3FEND, IOC analysis, and threat detection.
- Familiarity with NIST, ISO 27001, or CIS security frameworks.
- Exposure to DevSecOps, CI/CD security, SOAR, CSPM, threat hunting, or security automation.
- Strong communication skills and the ability to work with engineering, GRC, and leadership in a small, fast-moving team.
- Experience in telecommunications, satellite, or regulated critical-infrastructure environments is a bonus.
- Relevant AWS or GCP certifications, security specialty certifications, or CCSP certification are preferred.
Benefits
- Competitive compensation package with a stock-option equity program.
- Comprehensive benefits plan.
- Monthly wellness and education reimbursement allowances.
- Generous time off policy and holidays, with an opportunity to temporarily work abroad.
- Opportunity to work on the world's first commercial live direct-to-device satellite network and service.
- Access to teams and talent across software, hardware, chipsets, telecom, satellite, and network virtualization.
- Inclusive and flexible global work culture.
- Located in Bangalore, India, with onsite work required three days per week.