1 month ago
Hyderābād, IndiaSenior
Responsibilities
- Own cloud security operations and posture management across the firm’s multi-cloud environment.
- Partner with cloud platform, development, operations, IT, and security leadership teams as a cloud security subject matter expert.
- Integrate security requirements into architecture reviews, Infrastructure as Code pipeline checks, predeployment guardrails, and build processes.
- Configure cloud security posture management findings, drive remediation, and maintain accurate exposure reporting.
- Enforce cloud security policies and guardrails across identity, network security, data access, and resource configuration.
- Conduct threat hunting, maintain detection coverage, investigate alerts and incidents, and use findings to strengthen security controls.
- Evaluate business and system requirements, identify integrations, and recommend security technologies, architectures, and products.
- May lead daily security operations center functions and may manage a team of direct reports.
- Support information security compliance, privacy, governance, and protection of confidential information and company records.
Requirements
- Eight or more years of progressive information security experience, including four to six years of direct, hands-on cloud security experience.
- Production experience operating a cloud security posture management platform or cloud-native application protection platform.
- Hands-on experience with at least two major cloud platforms and the ability to interpret and prioritize cloud security posture findings independently.
- Experience enforcing cloud security policies through guardrails, baseline controls, or policy as code in a live environment.
- Security operations experience including alert triage, event investigation, and incident response.
- Experience partnering with engineering or development teams to integrate security into delivery processes.
- Clear written communication skills for technical and nontechnical audiences and a highly self-motivated, self-directed approach.
- Preferred experience with Microsoft Azure, Amazon Web Services, Google Cloud Platform, Kubernetes, container security, Infrastructure as Code pipeline security, predeployment misconfiguration checks, or CI/CD-integrated security controls.
- Knowledge of relevant compliance requirements such as HIPAA, HITECH, ISO 27001/27002, SOC 1/2, SOX, and PCI.
- Microsoft AZ-500, AWS Certified Security – Specialty, or CCSP certification is preferred; CISSP is a plus but not required.
Benefits
- Flexible work environment.
- Generous paid time off.
- World-class benefits and compensation.
- Company-sponsored two-way transportation.
- Rapid and exponential career growth opportunities.
- Standard indoor working environment with less than 10% travel and occasional extended computer-based work.
