Эта вакансия в архиве
Посмотреть похожие вакансии ↓обновлено 1 месяц назад
Lead Cloud Security Engineer
Описание вакансии
Текст:
TL;DR
Lead Cloud Security Engineer: Owning and improving cloud security posture, detection capabilities, and vulnerability management in a cloud-native, DevOps-only environment with an accent on global standards like NIST CSF and ISO 27001. Focus on engineering and uplifting infrastructure as code and policy as code programs, designing frameworks to secure CI/CD pipelines, and integrating container security on GKE, EKS, or AKS.
Location: Bengaluru
Company
Advertising is a global technology leader helping marketers with its platform reaching over 2 billion people and shaping AI Commerce through Glance AI, reimagining the future of e-commerce.
What you will do
- Own and continuously improve the cloud security posture management (CSPM) program, aligning with global standards.
- Evolve detection policies on CSPM and draft technical standards for vulnerability remediation on the cloud stack.
- Own and manage an integrated vulnerability management dashboard for technical debt visibility.
- Mature the security stack to support a multi-cloud strategy in a high-density containerized environment.
- Engineer and uplift adoption of Infrastructure as Code and Policy as Code programs for continuous monitoring.
- Perform risk assessments of cloud architecture, recommending technical and administrative controls, and design frameworks to secure CI/CD pipelines.
Requirements
- 4-6 years of experience in the cloud security domain.
- Hands-on experience with Azure/AWS/GCP security best practices and services.
- Strong knowledge of virtualization, Docker, containers, and Kubernetes (PSP, N/W policy, admission controller).
- Strong understanding of network concepts and web-related protocols (e.g., TCP/IP, HTTP, TLS).
- Hands-on experience with infrastructure automation tools like Terraform.
- Knowledge of common and industry-standard cloud-native/cloud-friendly authentication mechanisms (OAuth, OpenID).
Nice to have
- Knowledge of Security Operations Centre / Incident Management.
- Associate or Professional-level Cloud and Kubernetes certification(s), GCP/CKA/CKS preferred.
Culture & Benefits
- Culture woven by diverse backgrounds, thriving on challenges and growth.
- Core values: thinking big, passion, accountability, and taking ownership with freedom.
- Nurturing and investing in development through continuous learning and career progression.
- Proud Equal Employment Opportunity employer committed to reasonable accommodations.