HamburgerMenu
hirist

Job Description

Job Description :


Key Responsibilities :


- Design, implement, and continuously improve security controls across AI applications, cloud infrastructure, APIs, and multi-tenant environments.

- Perform threat modeling and attack surface analysis for new products, AI workflows, infrastructure, and architecture changes.

- Build and manage vulnerability management programs using SAST, DAST, SCA, secret scanning, and cloud security tools.

- Secure AI-generated application environments through sandboxing, runtime protection, secure code execution, and secrets management.

- Integrate security into the SDLC by embedding automated security checks into CI/CD pipelines.

- Conduct secure code reviews and promote secure coding best practices across engineering teams.

- Lead security incident detection, investigation, containment, remediation, and post-incident analysis.

- Build monitoring and detection capabilities using SIEM, cloud-native logging, and security telemetry.

- Drive compliance initiatives including SOC 2, ISO 27001, and cloud security best practices.

- Partner with product and engineering teams to resolve vulnerabilities and improve overall security posture.

- Support customer security assessments, audits, and technical security reviews.

- Continuously improve organizational security awareness through internal security testing and red-team exercises.

Required Skills & Experience :

- 8 - 12 years of experience in Security Engineering, Application Security, Cloud Security, or DevSecOps.

- Strong understanding of Application Security and the OWASP Top 10.

- Ability to review and secure code written in Python, JavaScript/TypeScript, and SQL.

- Hands-on experience securing cloud platforms including AWS, Azure, or Google Cloud Platform (GCP).

- Strong knowledge of :

1. Identity & Access Management (IAM)

2. Network Security

3. Secrets Management

4. Docker & Kubernetes Security

5. API Security

- Experience implementing :

1. Static Application Security Testing (SAST)

2. Dynamic Application Security Testing (DAST)

3. Software Composition Analysis (SCA)

4. Secret Scanning

5. Cloud Security Posture Management (CSPM)

- Experience with security monitoring, SIEM platforms, and incident response processes.

- Understanding of secure SDLC, DevSecOps practices, and CI/CD security automation.

- Familiarity with SOC 2, ISO 27001, and cloud security frameworks.

- Strong analytical, troubleshooting, and communication skills.

- Self-driven with a proactive, ownership-oriented mindset.

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...