13 Sep
|
Simelabs - Digital, AI/ML, Automation, Robotics, Gen AI.
|
Alibag
13 Sep
Simelabs - Digital, AI/ML, Automation, Robotics, Gen AI.
Alibag
Job DescriptionCloud Security Lead
NRole Purpose
nYou will be responsible for ensuring the real-time security posture of the cloud platform and applications, including detection, validation, and response to vulnerabilities, threats, and misconfigurations.
NYou will act as the independent security control function, ensuring that all infrastructure and platforms built and operated by engineering teams remain secure, resilient, and free from exploitable risks.
NKey Responsibilities
nCloud Security Posture Management
NYou will own and operate cloud security platforms such as Palo, Qualys, Zscaler to continuously monitor infrastructure, workloads, and configurations.
NYou will ensure that no insecure or non-compliant workloads exist in the setting by driving timely remediation of vulnerabilities and misconfigurations.
NThreat Detection & Response
NYou will own the securitymonitoring and threat detection ecosystem using platforms such as Palo SIEM.
NYou will detect, investigate, and coordinate response to security incidents, anomalous behaviours, and potential breaches.
NYou will define and implement incident response playbooks in collaboration with SRE and Platform teams.
NIdentity & Access Validation
NYou will validate identity and access controls across the platform, including IAM configurations, role definitions, and privileged access mechanisms.
NYou will ensure that privileged access is secure, compliant, and fully traceable through systems such as CyberArk.
NValidation of Security Remediation
NYou will act as the technical validator of all security-related fixes, ensuring that vulnerabilities and risks have been fully addressed.
NYou will revalidate fixesand ensure that no residual risks remain before issues are considered closed.
NProactive Risk Management
NYou will continuously identify potential risks, weak configurations, and emerging threat vectors across the workplace.
NYou will provide recommendations to Platform Engineering teams to improve architecture, controls, and security posture.
NPenetration testing & Read teaming Management
NYou will ensure the effectiveness of SOC, IAM, PAM, cloud security controls, and incident response, while penetration testing is performed more frequently on applications, infrastructure, and cloud environments.
NCollaboration with Platform & Governance
NYou will raise findings to Platform and SRE teams for remediation and track them to closure.
NYou will support Governance teams by providing evidence, validation, and insights required for audits and compliance.
NExperience & Skills
nYou bring 10–15 years of experience in cloud security, cybersecurity operations, or threat management roles.
NYou have strong expertisein cloud security posture management tools, SIEM platforms, vulnerability management and penetration testing.
NYou have experience implementing Zero Trust and identity security frameworks.
NYou have experience in managing app security as well deployed on CI/CD.
NExperience in BFSI or regulated environments is preferred.
NWhat We Look For
nYou have a strong security mindset for business and the ability to proactively identify risks.
NYou are detail-oriented and evidence-driven in your approach.
NYou are comfortable validating and challenging technical implementations.
NYou can operate effectively as an independent control function while collaborating with engineering teams. Cloud Security Lead
NMahindra Manulife – Digital First, AI-Native Insurer (Life & Health)
NRole Purpose
nYou will be responsible for ensuring the real-time security posture of the cloud platform and applications, including detection, validation, and response to vulnerabilities, threats, and misconfigurations.
NYou will act as the independent security control function, ensuring that all infrastructure and platforms built and operated by engineering teams remain secure, resilient, and free from exploitable risks.
NKey Responsibilities
nCloud Security Posture Management
NYou will own and operate cloud security platforms such as Palo, Qualys, Zscaler to continuously monitor infrastructure, workloads, and configurations.
NYou will ensure that no insecure or non-compliant workloads exist in the environment by driving timely remediation of vulnerabilities and misconfigurations.
NThreat Detection & Response
NYou will own the securitymonitoring and threat detection ecosystem using platforms such as Palo SIEM.
NYou will detect, investigate, and coordinate response to security incidents,
anomalous behaviours, and potential breaches.
NYou will define and implement incident response playbooks in collaboration with SRE and Platform teams.
NIdentity & Access Validation
NYou will validate identity and access controls across the platform, including IAM configurations, role definitions, and privileged access mechanisms.
NYou will ensure that privileged access is secure, compliant, and fully traceable through systems such as CyberArk.
NValidation of Security Remediation
NYou will act as the technical validator of all security-related fixes, ensuring that vulnerabilities and risks have been fully addressed.
NYou will revalidate fixesand ensure that no residual risks remain before issues are considered closed.
NProactive Risk Management
NYou will continuously identify potential risks, weak configurations, and emerging threat vectors across the environment.
NYou will provide recommendations to Platform Engineering teams to improve architecture, controls, and security posture.
NPenetration testing & Read teaming Management
NYou will ensure the effectiveness of SOC, IAM, PAM, cloud security controls, and incident response, while penetration testing is performed more frequently on applications, infrastructure, and cloud environments.
NCollaboration with Platform & Governance
NYou will raise findings to Platform and SRE teams for remediation and track them to closure.
NYou will support Governance teams by providing evidence, validation, and insights required for audits and compliance.
NExperience & Skills
nYou bring 10–15 years of experience in cloud security, cybersecurity operations, or threat management roles.
NYou have strong expertisein cloud security posture management tools, SIEM platforms, vulnerability management and penetration testing.
NYou have experience implementing Zero Trust and identity security frameworks.
NYou have experience in managing app security as well deployed on CI/CD.
NExperience in BFSI or regulated environments is preferred.
NWhat We Look For
nYou have a strong security mindset for business and the ability to proactively identify risks.
NYou are detail-oriented and evidence-driven in your approach.
NYou are comfortable validating and challenging technical implementations.
NYou can operate effectively as an independent control function while collaborating with engineering teams.
📌 Hiring: Cloud Security Lead (Alibag)
🏢 Simelabs - Digital, AI/ML, Automation, Robotics, Gen AI.
📍 Alibag