30 Aug
|
ClanX
|
Bengaluru
Company Details
Requirements:
8+ years of experience in security engineering, security architecture, or a closely related field.
Proven experience securing production systems at scale.
Solid cloud security expertise across IAM, network segmentation, secrets and key management, containers, workloads, and infrastructure-as-code.
Experience with threat modeling, security design reviews, secure SDLC, CI/CD security, dependency security, and container security.
Solid understanding of SOC 2, ISO/IEC 27001, GDPR, and related security and privacy requirements.
Experience leading certification, enterprise customer, and regulatory audits and driving findings to closure.
Strong stakeholder and customer-facing communication skills.
Solid risk judgment with the ability to balance security, business, and delivery needs.
Experience with personal, identity, or biometric data is preferred.
Experience in fintech, regtech, identity verification, or another regulated domain is preferred.
Penetration testing, red teaming, vulnerability research,
or DevSecOps experience is preferred.
CISSP, CCSP, OSCP, CIPP, CIPT, or similar certifications are valued.
Experience mentoring or leading engineers is preferred.
Responsibilities
Partner directly with engineers to identify, prioritize, remediate, and validate security issues.
Perform threat modeling and security design reviews for new services and major changes.
Embed security into engineering through secure coding standards, code review, CI/CD controls, dependency security, and container security.
Define and maintain security standards, reference architectures, and hardening baselines.
Lead penetration testing, vulnerability management, remediation tracking, and closure of security findings.
Translate regulatory and industry requirements into practical technical and organizational controls.
Own technical audit and assessment activities, including evidence, control mapping, and remediation.
Support
📌 Security Architect Bengaluru
🏢 ClanX
📍 Bengaluru