Senior Security Engineer - Cloud & Infrastructure (Pune)

Senior Security Engineer - Cloud & Infrastructure (Pune)

28 Aug
|
Apex Group
|
Pune

28 Aug

Apex Group

Pune

Job Summary

Corporate Title: Senior Security Engineer - Cloud & Infrastructure

Location: India, Pune Baner

As a Senior Security Engineer - Cloud & Infrastructure, you will be responsible for designing, implementing, and managing security controls across Apex's global cloud and infrastructure environments. The role spans cloud security, network security, identity and access management, endpoint protection, and infrastructure security, with a robust focus on enabling the secure integration of acquired companies, platforms, applications, and infrastructure into the Apex ecosystem. You will work closely with infrastructure, architecture, engineering, and M&A; teams to ensure security is embedded throughout the technology lifecycle.

Key Responsibilities

- Deploy, configure, and manage security solutions across cloud (AWS, Azure, OCI) and on-premises infrastructure.
- Implement and maintain controls for network security, IAM, endpoint protection, and cloud governance.
- Support the secure design and integration of hybrid, multi-cloud, and acquired-company environments.
- Conduct security assessments, vulnerability analysis, configuration reviews, and remediation across cloud, infrastructure, and newly acquired technology assets.
- Collaborate with platform, infrastructure, and application teams to embed security into solutions from design to operation.
- Monitor for and respond to security incidents affecting cloud and infrastructure services.
- Maintain documentation including architecture diagrams, security control mappings, and operational procedures.
- Research and recommend new technologies, tools, and practices to enhance security posture.
- Ensure compliance with relevant frameworks and internal security standards, including NIST, ISO 27001, CSA CCM, and applicable regulatory expectations.
- Lead security assessments and integration planning for mergers and acquisitions, including cloud platforms, infrastructure, identity, network connectivity, endpoint controls, and third-party integrations.
- Drive remediation of inherited security risks identified during acquisition due diligence, onboarding, or post-integration reviews.
- Partner with infrastructure, cloud, IAM, application, architecture, and risk teams to define secure integration patterns and operational handover requirements.





Areas of Focus

- Deploy, configure, and manage security controls for AWS, Azure, and OCI environments.
- Implement cloud-native security controls including Security Groups, IAM policies, KMS, and encryption.
- Integrate and manage CSPM and CWPP tools to monitor and enforce cloud security posture.
- Enforce least privilege and Zero Trust principles across cloud accounts and subscriptions.
- Lead security due diligence, integration planning, and security control implementation for mergers and acquisitions, including system onboarding, identity consolidation, network integration, cloud migrations, third-party connectivity, and remediation of inherited risks.
- Define secure integration patterns for acquired companies, including segmentation, privileged access, logging, monitoring, endpoint security, and data protection controls.
- Support secure connectivity between Apex-managed endpoints, acquired-company environments, data centres, cloud platforms, and business-critical applications.
- Contribute to security architecture reviews for infrastructure changes, migrations, and transformation initiatives.
- Implement and manage Microsoft 365 security baselines, Conditional Access, and Intune compliance.
- Harden operating systems, containers, and virtual machines following best practices.
- Design and maintain secure network architectures for hybrid and multi-cloud connectivity.
- Configure firewalls, WAFs, VPN gateways, and implement network segmentation.
- Deploy intrusion prevention/detection (IPS/IDS) and network monitoring solutions.
- Support DDoS protection strategies and integrate with cloud provider capabilities.
- Conduct patching, vulnerability scanning, and secure configuration audits.
- Manage identity federation, SSO, MFA, and enforce strong authentication policies.
- Investigate and respond to incidents affecting cloud workloads, networks, or infrastructure.




- Map cloud and infrastructure security controls to frameworks such as NIST CSF, ISO 27001, and CSA CCM.
- Maintain asset inventory and ensure continuous compliance with corporate security standards.
- Research and recommend new security tools, services, and best practices to strengthen defenses.

Required Experience & Skills

- 7+ years of experience in cybersecurity, cloud, infrastructure, or security engineering roles, with proven hands-on experience securing enterprise cloud and infrastructure environments.
- Proven hands-on experience with AWS, Azure, and/or OCI security controls, including identity, networking, encryption, logging, monitoring, and secure configuration.
- Strong knowledge of network security, IAM, endpoint protection, and vulnerability management.
- Familiarity with Kubernetes, CI/CD security, and cloud automation (Terraform, Ansible, etc.).
- Understanding security frameworks and control models such as NIST, ISO 27001, CSA CCM, CIS Benchmarks, and MITRE ATT&CK.;
- Ability to troubleshoot and resolve security incidents in complex environments.
- Solid communication skills to work effectively with both technical and non-technical stakeholders.
- Relevant certifications such as CCSP, CISSP, AWS/Azure Security Engineer, or equivalent are advantageous.
- Experience supporting mergers and acquisitions, technology integrations, cloud migrations, or large-scale infrastructure transformation initiatives is highly desirable.
- Strong understanding of Zero Trust, least privilege, privileged access management, conditional access, MFA, SSO, and identity federation concepts.
- Experience with CSPM, CWPP, SIEM, EDR/XDR, vulnerability management, firewall, WAF, VPN, and network segmentation technologies.
- Ability to translate technical security risks into clear business impact, remediation actions, and practical implementation plans.
- Experience documenting security designs, control mappings, operational procedures, and integration decisions for audit and governance purposes.

Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

📌 Senior Security Engineer - Cloud & Infrastructure (Pune)
🏢 Apex Group
📍 Pune

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior security engineer - cloud & infrastructure (pune) / pune

Subscribe to this job alert:

Get the latest job offers by email for: senior security engineer - cloud & infrastructure (pune) / pune