29 Aug
|
Simelabs - Digital, AI/ML, Automation, Robotics, Gen AI.
|
Mumbai
29 Aug
Simelabs - Digital, AI/ML, Automation, Robotics, Gen AI.
Mumbai
Cloud Security Lead
Role Purpose
You will be responsible for ensuring the real-time security posture of the cloud platform and applications, including detection, validation, and response to vulnerabilities, threats, and misconfigurations.
You will act as the independent security control function, ensuring that all infrastructure and platforms built and operated by engineering teams remain secure, resilient, and free from exploitable risks.
Key Responsibilities
Cloud Security Posture Management
You will own and operate cloud security platforms such as Palo, Qualys, Zscaler to continuously monitor infrastructure, workloads, and configurations.
You will ensure that no insecure or non-compliant workloads exist in the setting by driving timely remediation of vulnerabilities and misconfigurations.
Threat Detection & Response
You will own the security monitoring and threat detection ecosystem using platforms such as Palo SIEM.
You will detect, investigate, and coordinate response to security incidents, anomalous behaviours, and potential breaches.
You will define and implement incident response playbooks in collaboration with SRE and Platform teams.
Identity & Access Validation
You will validate identity and access controls across the platform, including IAM configurations, role definitions, and privileged access mechanisms.
You will ensure that privileged access is secure, compliant, and fully traceable through systems such as CyberArk.
Validation of Security Remediation
You will act as the technical validator of all security-related fixes, ensuring that vulnerabilities and risks have been fully addressed.
You will revalidate fixes and ensure that no residual risks remain before issues are considered closed.
Proactive Risk Management
You will continuously identify potential risks, weak configurations, and emerging threat vectors across the environment.
You will provide recommendations to Platform Engineering teams to improve architecture, controls, and security posture.
Penetration testing & Read teaming Management
You will ensure the effectiveness of SOC, IAM, PAM, cloud security controls, and incident response, while penetration testing is performed more frequently on applications, infrastructure, and cloud environments.
Collaboration with Platform & Governance
You will raise findings to Platform and SRE teams for remediation and track them to closure.
You will support Governance teams by providing evidence, validation, and insights required for audits and compliance.
Experience & Skills
You bring 10–15 years of experience in cloud security, cybersecurity operations, or threat management roles.
You have strong expertise in cloud security posture management tools, SIEM platforms, vulnerability management and penetration testing.
You have experience implementing Zero Trust and identity security frameworks.
You have experience in managing app security as well deployed on CI/CD.
Experience in BFSI or regulated environments is preferred.
What We Look For
You have a strong security mindset for business and the ability to proactively identify risks.
You are detail-oriented and evidence-driven in your approach.
You are comfortable validating and challenging technical implementations.
You can operate effectively as an independent control function while collaborating with engineering teams.Cloud Security Lead
Mahindra Manulife – Digital First, AI-Native Insurer (Life & Health)
Role Purpose
You will be responsible for ensuring the real-time security posture of the cloud platform and applications, including detection, validation, and response to vulnerabilities, threats, and misconfigurations.
You will act as the independent security control function, ensuring that all infrastructure and platforms built and operated by engineering teams remain secure, resilient, and free from exploitable risks.
Key Responsibilities
Cloud Security Posture Management
You will own and operate cloud security platforms such as Palo, Qualys, Zscaler to continuously monitor infrastructure, workloads, and configurations.
You will ensure that no insecure or non-compliant workloads exist in the environment by driving timely remediation of vulnerabilities and misconfigurations.
Threat Detection & Response
You will own the security monitoring and threat detection ecosystem using platforms such as Palo SIEM.
You will detect, investigate, and coordinate response to security incidents,
anomalous behaviours, and potential breaches.
You will define and implement incident response playbooks in collaboration with SRE and Platform teams.
Identity & Access Validation
You will validate identity and access controls across the platform, including IAM configurations, role definitions, and privileged access mechanisms.
You will ensure that privileged access is secure, compliant, and fully traceable through systems such as CyberArk.
Validation of Security Remediation
You will act as the technical validator of all security-related fixes, ensuring that vulnerabilities and risks have been fully addressed.
You will revalidate fixes and ensure that no residual risks remain before issues are considered closed.
Proactive Risk Management
You will continuously identify potential risks, weak configurations, and emerging threat vectors across the environment.
You will provide recommendations to Platform Engineering teams to improve architecture, controls, and security posture.
Penetration testing & Read teaming Management
You will ensure the effectiveness of SOC, IAM, PAM, cloud security controls, and incident response, while penetration testing is performed more frequently on applications, infrastructure, and cloud environments.
Collaboration with Platform & Governance
You will raise findings to Platform and SRE teams for remediation and track them to closure.
You will support Governance teams by providing evidence, validation, and insights required for audits and compliance.
Experience & Skills
You bring 10–15 years of experience in cloud security, cybersecurity operations, or threat management roles.
You have strong expertise in cloud security posture management tools, SIEM platforms, vulnerability management and penetration testing.
You have experience implementing Zero Trust and identity security frameworks.
You have experience in managing app security as well deployed on CI/CD.
Experience in BFSI or regulated environments is preferred.
What We Look For
You have a strong security mindset for business and the ability to proactively identify risks.
You are detail-oriented and evidence-driven in your approach.
You are comfortable validating and challenging technical implementations.
You can operate effectively as an independent control function while collaborating with engineering teams.
📌 Cloud Security Lead (Mumbai)
🏢 Simelabs - Digital, AI/ML, Automation, Robotics, Gen AI.
📍 Mumbai