01 Sep
|
CIEL HR
|
Bengaluru
Role & responsibilities
We are seeking a Senior Infrastructure Security Engineer to design, implement, assess, and
operate secure enterprise infrastructure platforms across cloud, onpremises, and hybrid
environments. This role focuses on privileged access management (PAM), identity
integration, infrastructure and OS hardening, cloud and container security, vulnerability
remediation, and security operations engineering.
The ideal candidate at least has 8+ brings solid handson experience in Linux and Windows
administration, IAM/PAM solutions, AWS cloud security, security tooling, and automation,
with the ability to identify systemic security gaps and drive riskreducing improvements across
infrastructure platforms.
Key Responsibilities
- Design, implement, and maintain secure infrastructure architectures across Linux,
Windows, cloud (AWS/Azure/GCP), and hybrid environments.
- Perform security control assessments (SCA) for new and existing cloud and onprem
workloads, including network analysis, IAM review, data flows, and exfiltration paths.
- Own implementation and operations of Privileged Access Management (PAM)
platforms such as CyberArk, including onboarding assets, role management, session
monitoring, and audits.
- Integrate infrastructure platforms with enterprise identity providers including Active
Directory, LDAP, Azure AD, Okta, and SSO solutions.
- Enforce leastprivilege, RBAC, MFA/FIDO2, breakglass access, and privileged identity
lifecycle management.
- Perform Linux and Windows hardening aligned with CIS benchmarks and
organizational security standards.
- Design and operate secure remote access mechanisms (SSH, RDP, bastion hosts,
browserbased access, jump servers).
- Review and remediate infrastructure vulnerabilities, configuration drift, and
toolidentified security gaps; automate remediation where possible.
- Support cloud security controls such as IAM policies, SCPs, CSPM alerts, logging, and
monitoring across cloud environments.
- Participate in firewall, network segmentation, and lateralmovement path reviews
across cloud and onprem networks.
- Analyze and secure EKS/Kubernetes clusters, including pod security standards,
secrets management, IRSA, network policies, and container image scanning.
Required Skills & Experience
Core Infrastructure
• Strong handson experience administering Linux (RHEL, AlmaLinux, Ubuntu, CentOS)
• Working knowledge of Windows Server security and administration
• Solid networking fundamentals: DNS, TCP/IP, VPNs, firewalls, routing, ACLs, load
balancers
• Experience reviewing firewall rules and network access paths
Security & Identity
• Handson experience with PAM solutions:
- CyberArk (strongly preferred)
- Accops or similar platforms
• Expertise in:
- SSH key and certificatebased authentication
- Active Directory and LDAP integration
- SAML / OIDC / OAuth
- MFA, FIDO2, WebAuthn
- AWS IAM (roles, policies, IRSA)
Preferred candidate profile
📌 Senior Infrastructure Security Engineer (Bengaluru)
🏢 CIEL HR
📍 Bengaluru