26 Aug
|
Robotico Digital®
|
India
26 Aug
Robotico Digital®
India
Key Responsibilities
Detection & triage: own the SIEM (Wazuh), tune rules, and read alerts daily. Feed it cloud audit logs (CloudTrail / Cloud Audit / Azure Monitor), WAF, identity, and EDR signal.
Incident response: run the IR runbook (contain, investigate, document, post-mortem) with defined escalation and authority to act.
Hardening as code: encode baselines into IaC guardrails and golden images so config cannot silently drift.
Cloud posture management: continuously detect misconfiguration: public storage, over-permissive IAM, open security groups, unencrypted data.
Vulnerability management: scan OS, dependencies, and cloud resources; assign severity; drive remediation to closed against SLAs.
Web app security testing: wire ZAP baseline scans and Semgrep into CI; advise teams on fixes (delivery teams remediate).
Identity & access governance: enforce MFA, least privilege, conditional access, and joiner/mover/leaver hygiene.
Secrets management: operate the vault, enforce short-lived credentials,
keep secret scanning (Gitleaks / TruffleHog) green, eliminate long-lived keys on laptops.
Security policy authoring: draft credential, logging, access, and IR policies; map to ISO 27001 controls (drafts; enforcement sits with management).
Security advisory: threat-model new projects, review architectures pre-launch, and run developer security awareness.
Required Skills
3+ years in cloud or application security; hands-on, not advisory-only with CREST Certified
Robust AWS security depth; working knowledge of GCP and Azure (deep in one, learning the others is acceptable).
SIEM operations (Wazuh or equivalent), log analysis, and alert tuning.
WAF, IAM, network security, and cloud-native security controls.
DAST/SAST in CI (ZAP, Semgrep), dependency and secret scanning.
Infrastructure-as-code (Terraform / CloudFormation) for hardening guardrails.
📌 Cloud Ops Security Engineer (India)
🏢 Robotico Digital®
📍 India