Назад
Company hidden
39 минут назад

Security Engineer (Cloud Security)

Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
India
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (Cloud Security): Securing cloud and container infrastructure while maintaining vulnerability management, incident response, and information security governance with an accent on AWS/EKS hardening, security monitoring, and audit readiness. Focus on integrating security tooling, driving remediation of vulnerabilities, maintaining ISMS controls, and supporting ISO 27001, SOC 2, RBI, and data protection compliance.

Location: Bangalore, India

Company

hirify.global provides a unified risk decisioning platform for compliance, fraud, and transaction risks, using a large identity knowledge graph to help banks, fintechs, retailers, and digital platforms verify identities and prevent fraud.

What you will do

  • Harden and monitor AWS/EKS cloud, container, endpoint, and network infrastructure, including IAM, VPC, KMS, S3, RDS, security groups, and infrastructure-as-code.
  • Own or co-own endpoint, cloud, container, logging, monitoring, SIEM, and alerting security tools.
  • Run vulnerability scans, triage findings by risk, coordinate remediation, and manage pentests and bug bounty follow-up.
  • Support incident response by investigating alerts, gathering evidence, contributing to root-cause analysis and corrective actions, and maintaining runbooks.
  • Maintain the ISMS, risk register, control evidence, audit trails, vendor security records, and compliance documentation.
  • Support access reviews, asset inventory, configuration assurance, security training, and audits covering ISO 27001, SOC 2, RBI/CERT-In, GDPR, and DPDP.

Requirements

  • Bachelor’s degree in Computer Science, IT, Cybersecurity, or a related discipline.
  • Approximately 4 years of experience in security engineering, cloud security, GRC, or compliance, with hands-on technical involvement.
  • Knowledge of Linux, networking, IAM, encryption, least privilege, AWS security services, ISO 27001, SOC 2, risk management, and audit processes.
  • Ability to write and debug basic Bash or Python scripts for automation and data extraction.
  • Experience with Jira, Confluence, Excel/Sheets, and at least one GRC or security platform.
  • Strong documentation and collaboration skills when working with engineering and non-technical stakeholders.

Nice to have

  • AWS Security or AWS Cloud Practitioner certification.
  • ISO 27001 Lead Auditor/Implementer, CompTIA Security+, or ISC2 CC certification.
  • Experience with EDR/XDR, CSPM/CNAPP, SIEM, WAF, runtime/container security, or data protection regulations.

Culture & Benefits

  • Work across security engineering and GRC rather than focusing exclusively on one track.
  • Collaborate with DevOps, backend, data, HR, and legal teams to implement security controls.
  • Self-motivated working environment emphasizing speed, ownership, performance, and impact.
  • Competitive salary with potential equity.
  • Health benefits, flexible PTO, and a learning budget.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →