04 Aug
|
DBiz.ai
|
Bengaluru
Senior Cloud Security & Remediation Engineer (AWS & Azure) – Player Coach
Key Responsibilities:
· Review and remediate cloud security findings from PRISM, Prowler, Microsoft Defender for Cloud, AWS Security Hub, Guard Duty, Inspector, vulnerability scanners, and other cloud posture tools.
· Execute remediation across AWS and Azure services, including IAM, RBAC, networking, storage, compute, databases, encryption, logging, monitoring, and governance controls.
· Support ticket-based remediation workflows within PRISM, including assignment, remediation updates, validation, closure, exception handling, and compensating-control documentation.
· Work on AWS security controls such as IAM policies, cross-account roles, CloudTrail, CloudWatch, VPC Flow Logs, S3 security, KMS, Security Groups, Guard Duty, Security Hub, Inspector, IAM Access Analyzer, AWS Config, SCPs, and remediation automation.
· Work on Azure security controls such as Entra ID, RBAC, Management Groups, Azure Policy, Defender for Cloud, Diagnostic Settings, Log Analytics, Key Vault, NSGs, Storage Accounts, Azure Monitor, Activity Logs, and secure score remediation.
· Support MSP AIOps operational remediation for alerts coming from CloudWatch, Azure Monitor, Grafana, Prometheus, and other monitoring tools, including alert analysis, ticket creation, remediation, validation, and closure.
· Create remediation runbooks, SOPs, checklists, validation steps, and reusable automation scripts.
· Mentor junior engineers and guide the team on secure remediation practices.
· Participate in client-facing discussions to explain findings, remediation options, risks, dependencies, and closure approach.
Required Technical Expertise:
· Robust hands-on AWS and Azure security remediation experience.
· Deep understanding of cloud IAM, RBAC, networking, logging, monitoring, encryption, backup, vulnerability management, and governance.
· Experience with cloud security posture and compliance tools such as Prowler, Microsoft Defender for Cloud, AWS Security Hub, Guard Duty, Inspector, AWS Config, IAM Access Analyzer, or similar tools.
· Ability to remediate findings related to public exposure, excessive permissions, missing logging, missing encryption, insecure network rules, weak monitoring, stale credentials, and non-compliant configurations.
· Good scripting and automation skills using Python, PowerShell, Bash, AWS CLI, and Azure CLI.
· Experience with Terraform, CloudFormation, ARM, Bicep, or similar infrastructure-as-code tools.
· Understanding of SIEM/SOAR or centralized alerting platforms such as Microsoft Sentinel, CrowdStrike, Splunk, or similar.
· Ability to validate remediation through rescans, configuration review, logs, monitoring checks, and audit-ready evidence.
Good to Have:
· Experience in MSP operations, ITSM, incident management, or helpdesk workflows.
· Experience with ServiceNow, Jira, ManageEngine, Spiceworks, or similar ITSM platforms.
· Experience with CloudWatch, Azure Monitor, Grafana, Prometheus, or observability platforms.
· Experience with auto-remediation using AWS Systems Manager, Lambda, Azure Automation, Logic Apps, Ansible, or runbooks.
· Exposure to container/Kubernetes security, DevSecOps, and CI/CD security.
· Relevant certifications such as AWS Security Specialty, AZ-500, SC-200, SC-100, CISSP, CCSP, CISM, AWS Solutions Architect, or Azure Solutions Architect.
Candidate Profile We Should Look For:
The candidate should be someone who can independently analyze and fix cloud security findings, not just report them. The candidate should be comfortable working with both AWS and Azure, communicating with customer cloud/security teams, mentoring internal engineers, and converting repeated remediation patterns into runbooks or automation.
Experience: 8-10 Years
📌 Senior Cloud Security & Remediation Engineer (AWS & Azure) (Bengaluru)
🏢 DBiz.ai
📍 Bengaluru