27 Aug
|
Larsen u0026 Toubro Infotech Ltd (LTI)
|
Bengaluru
27 Aug
Larsen u0026 Toubro Infotech Ltd (LTI)
Bengaluru
Principal - Architecture Overview Security specialists address cloud security architecture IAM strategy proactive preventative and detective security controls security event and logging data protection compliance frameworks and threat detection Role Requirements Overall 1115 years on experience L5 5 years AWS security 5 technical security experience 2 years of consulting experience Core Skills All Levels Security architecture security solution engineering Security operations experience including threat and vulnerability detection incident response security and event logging Implementation experience with cloud security solutions and implementing cloud security controls Experience automating infrastructure and development task using infrastructure as code devOps AIAgentic frameworks and similar tools Familiarity with industry compliance and security standards PCI DSS ISO 27001 HIPAA and NISTDoD frameworks Identity and Access Management IAM experience Experience implementing Key Management and Encryption Security assessment and risk analysis Network security segmentation and protection WAF Shield Network Firewall Security Groups Separation of duties AIAgentic prompt specificationengineering Key Responsibilities Scriptingprogramming Security Architecture and Design Building and deploying security capabilities in code InfrastructureasCode CloudFormation Terraform CDK Cloud Computing technologies design andor implementation expertise Enterprise security solutions SSO Federation WAF Firewalls Databases Serverless Container and SIEM implementation Technology automation implementation integration andor deployment handson Deliver security assessments and Security EPICs Accelerator engagements under ProServe as Prime contracts Work collaboratively with AWS Security Lead Engagement Manager and Technical Lead on customer engagements Deliver onsite and remote technical security engagements with AWS customers Apply security frameworks NISTISOCIS to customer environments and workloads Provide expertise in AWS Security Services and cloud security best practices confidentiality integrity and availability Participate in weekly status meetings and maintain engagement documentation Complete deliverables within the agreed workinghour SLA Work with AWS engineering and support teams to convey partner and customer needs Required Certifications AWS Certified Security Specialty Active Role Overview AWS SRC Partner Consultant Minimum 3 Years HandsOn Experience The SRC Partner Consultant is a Security Transformation Consultant handson in delivering complex security and enterprise risk management solutions from design through implementation They are expected to write infrastructure as code TerraformCloudFormation engineer detective and preventive controls and architect security into customer environments The role delivers across three primary engagement types Transformations MigrationsModernization Security Enhancements EPICs SRA and Advisory Security Assessments WellArchitected Framework EngagementLevel Expectations 1 Report into the AWS ProServe Security or Engagement Management Lead 2 Follow Engagement Security Guidelines and any guidelines provided by the customer 3 Implement best practices following AWS Secure Design Principles Role Expectations Delivery Reporting Provide weekly status reports to Customer stakeholders and ProServe engagement leadership Track deliverables and time in the resource planner Document security decisions and rationale Technical Delivery Security architecture design and documentation Security implementation and configuration Security assessments and recommendations Test all deliverables in a nonproduction setting before deployment Submit all deliverables through the AWS ProServe Deliverable Security Review DSR process for approval before deployment Compliance Escalation Comply with ProServe Provider Security Policies Escalate security decisions requiring authority to the ProServe Lead Escalate Sev2 tickets Andon Cords and any incidents to the ProServe Lead Periodically review and remediate backlog activities Defer engagement leadership and customer relationship management to ProServe Note This list is nonexhaustive and will be periodically updated Detective Controls Monitoring Establish continuous visibility into the security posture of AWS environments through automated compliance evaluation using AWS services such as AWS Config rules managedcustom GuardDuty Security Hub CloudTrail CloudWatch Macie and VPC Flow LogsDNS query logging Encryption Data Protection Protect data at rest and in transit across AWS environments through encryption key management certificate lifecycle automation and access controls using KMS ACM S3 bucket policies and IAM Access Analyzer
📌 Principal Security Architect - Cloud & AWS (Bengaluru)
🏢 Larsen u0026 Toubro Infotech Ltd (LTI)
📍 Bengaluru