39 минут назад
Security Engineer (Cloud Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Engineer (Cloud Security): Securing cloud and container infrastructure while maintaining vulnerability management, incident response, and information security governance with an accent on AWS/EKS hardening, security monitoring, and audit readiness. Focus on integrating security tooling, driving remediation of vulnerabilities, maintaining ISMS controls, and supporting ISO 27001, SOC 2, RBI, and data protection compliance.
Location: Bangalore, India
Company
provides a unified risk decisioning platform for compliance, fraud, and transaction risks, using a large identity knowledge graph to help banks, fintechs, retailers, and digital platforms verify identities and prevent fraud.
What you will do
- Harden and monitor AWS/EKS cloud, container, endpoint, and network infrastructure, including IAM, VPC, KMS, S3, RDS, security groups, and infrastructure-as-code.
- Own or co-own endpoint, cloud, container, logging, monitoring, SIEM, and alerting security tools.
- Run vulnerability scans, triage findings by risk, coordinate remediation, and manage pentests and bug bounty follow-up.
- Support incident response by investigating alerts, gathering evidence, contributing to root-cause analysis and corrective actions, and maintaining runbooks.
- Maintain the ISMS, risk register, control evidence, audit trails, vendor security records, and compliance documentation.
- Support access reviews, asset inventory, configuration assurance, security training, and audits covering ISO 27001, SOC 2, RBI/CERT-In, GDPR, and DPDP.
Requirements
- Bachelor’s degree in Computer Science, IT, Cybersecurity, or a related discipline.
- Approximately 4 years of experience in security engineering, cloud security, GRC, or compliance, with hands-on technical involvement.
- Knowledge of Linux, networking, IAM, encryption, least privilege, AWS security services, ISO 27001, SOC 2, risk management, and audit processes.
- Ability to write and debug basic Bash or Python scripts for automation and data extraction.
- Experience with Jira, Confluence, Excel/Sheets, and at least one GRC or security platform.
- Strong documentation and collaboration skills when working with engineering and non-technical stakeholders.
Nice to have
- AWS Security or AWS Cloud Practitioner certification.
- ISO 27001 Lead Auditor/Implementer, CompTIA Security+, or ISC2 CC certification.
- Experience with EDR/XDR, CSPM/CNAPP, SIEM, WAF, runtime/container security, or data protection regulations.
Culture & Benefits
- Work across security engineering and GRC rather than focusing exclusively on one track.
- Collaborate with DevOps, backend, data, HR, and legal teams to implement security controls.
- Self-motivated working environment emphasizing speed, ownership, performance, and impact.
- Competitive salary with potential equity.
- Health benefits, flexible PTO, and a learning budget.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
9 часов назад
Cloud Infrastructure Security Engineer (AWS)
150 000 - 200 000$
16 часов назад
Security Engineer (AI)
150 000 - 300 000$
11 часов назад
Head of Security (Fintech)
275 000 - 325 000$
10 часов назад
Security Engineer
180 000 - 300 000$
3 дня назад
Security Architect (Cloud Security)
175 000 - 200 000$
15 часов назад