6 months ago
Responsibilities
- Own and continuously improve the cloud security posture management program against standards including NIST CSF, ISO 27001, ISO 31000, and Cloud Security Alliance guidance.
- Develop CSPM detection policies and technical remediation standards for cloud vulnerabilities and misconfigurations.
- Own an integrated vulnerability management dashboard to provide visibility into technical debt.
- Mature the security stack for multi-cloud environments and high-density containerized workloads.
- Customize CIS benchmark hardening standards as the technology stack evolves.
- Advance infrastructure-as-code pre-provisioning and policy-as-code continuous monitoring.
- Assess proposed and existing cloud architectures and recommend technical and administrative risk controls.
- Design and develop solutions to secure CI/CD pipelines.
- Test, review, and implement container security on GKE, EKS, and AKS.
- Define baseline security configurations and improve remediation practices with infrastructure and product engineering teams.
- Analyze, assess, develop, and evaluate security solutions for applications, operating systems, databases, and networks.
- Coordinate with cloud vendors and external security researchers to resolve cloud security gaps.
- Develop and monitor cloud performance, hygiene, and security metrics including KCI, KPI, and KRI.
- Deliver security training and awareness activities for engineering teams.
Requirements
- 4–6 years of experience in cloud security.
- Hands-on experience with Azure, AWS, or GCP security best practices and services.
- Strong knowledge of virtualization, Docker, containers, and container orchestration.
- Hands-on Kubernetes knowledge, including PSP, network policies, and admission controllers.
- Strong understanding of networking and web protocols, including TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols, TLS, and DDoS detection and prevention.
- Hands-on experience with Terraform and infrastructure automation.
- Knowledge of cloud-native authentication mechanisms such as OAuth and OpenID.
- Experience reviewing cloud architecture and applying security best practices.
- Ability to work independently with limited supervision and communicate effectively across organizational levels.
- Associate- or Professional-level cloud and Kubernetes certifications are preferred, with GCP, CKA, and CKS preferred.
- Degree in Information Systems, Information Technology, Computer Science, or Engineering from an accredited college or university.
- Knowledge of Security Operations Centre and incident management is beneficial but not mandatory.
Benefits
- Continuous learning and career progression through the InMobi Live Your Potential program.
- Equal employment opportunity and reasonable workplace accommodations.
- Global, collaborative workplace with offices across San Mateo, New York, London, Singapore, Tokyo, Seoul, Jakarta, Bengaluru, and other locations.
Categories
About InMobi
Founded in 2007, InMobi is a global consumer technology company that leverages AI to drive growth through innovative consumer-focused digital platforms and end-to-end mobile advertising solutions. We have grown InMobi Advertising to one of the largest platforms for advertisers and publishers to reach their customers on mobile devices. In 2019, InMobi built Glance, a platform that is helping consumers around the globe discover everything they love on their lock screen and other surfaces. Tomorrow, we see a convergence of AI, Advertising, Entertainment, and Shopping to create personal mobile experiences on a mass scale, ushering in the Surface Economy.