Overview
Lead Security Engineer responsible for setting security technical direction across applications, cloud, and infrastructure.
What you'll do
- Act as technical lead for security across application, cloud, and infrastructure.
- Own the shape and quality of the security backlog end to end and serve as escalation point for complex security/remediation work.
- Design and build security controls across operating systems, container orchestration, CI/CD pipelines, cloud configuration, and network boundaries.
- Design security processes and improve patching cycles and golden-image/base-image refreshes across cloud and on-prem.
- Define technical approach across application and dependency fixes, infrastructure patching, cloud guardrails, WAF, network isolation, and secrets/machine-identity management.
- Prioritize security work by risk using frameworks and guidance such as CISA KEV and CVSS/EPSS, with SLA-driven burndown; champion AI-augmented security tooling adoption.
What you'll need
- 8+ years of hands-on experience in security engineering, vulnerability management, or cloud/infrastructure security.
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent practical experience).
- Deep understanding of security principles, common vulnerabilities, and best practices across application, cloud, and infrastructure layers.
- Working command of vulnerability management at scale including prioritization frameworks, CVSS/EPSS, CISA KEV, and SLA-driven burndown.
- Breadth across security stack including application/dependency vulnerabilities, infrastructure patching, guardrails, WAF, network isolation, and identity/access controls.
- Multi-cloud experience across two or more of AWS, Azure, GCP, and OCI (all four an advantage).
Details
- Location: Bangalore, Karnataka, India (ATS also includes “Bengaluru Karnataka”).
- Work mode: hybrid; 2-3 days a week in the office depending on the role.
- No direct line-management responsibility is mentioned.
Read the full description and apply on the company’s own careers page.