Overview
Security Engineer III to secure production AWS ecosystems and AI-driven application pipelines in a hybrid role based in Hyderabad.
What you'll do
- Own operational security for the Wiz Cloud Native Application Protection Platform (CNAPP) suite.
- Architect, configure, and maintain Wiz CNAPP across the company’s AWS enterprise structure.
- Integrate Wiz Code into engineering workflows to enable scanning across Git platforms and CI/CD engines.
- Map running AWS workload exploit activity back to repository blocks, code branches, and developers.
- Analyze SCA alerts and intercept risks (malicious packages, hardcoded secrets, and IaC issues) before merge pipelines.
- Enforce least-privilege by performing CIEM reviews to detect and lock down excessive AWS permissions.
- Harden AI/ML and LLM pipelines with defenses against prompt injection, data poisoning, model inversion, and SSRF.
What you'll need
- 4+ years of experience in DevSecOps, enterprise application security, or cloud security engineering.
- 1 to 2+ years of hands-on platform administration across Wiz CNAPP, including Wiz Code or Wiz Code to Cloud.
- Deep knowledge of AWS services/tools including IAM, KMS, Security Hub, CloudTrail, GuardDuty, VPC topology, and AWS Organizations.
- Familiarity securing AI interfaces such as OpenAI API, Amazon Bedrock, and SageMaker, plus components like LangChain or vector databases.
- Deep fluency in reading, validating, and writing secure Infrastructure as Code manifests, specifically Terraform.
- Ability to use Python (Boto3) or Shell scripts for automation related to ingestion or compliance fixes.
Details
- Location: Hyderabad, Telangana, India.
- Work mode: Hybrid.
- Department: Infrastructure/Info Security.
Read the full description and apply on the company’s own careers page.