HamburgerMenu
hirist

Job Description

Description :

Review Criteria :

Mandatory :

- Strong DevSecOps / Cloud Security profile

- Mandatory (Experience 1) - Must have 8+ years total experience in DevSecOps / Cloud Security / Platform Security roles securing AWS workloads and CI/CD systems.

- Mandatory (Experience 2) - Must have strong hands-on experience securing AWS services (including but not limited to) KMS, WAF, Shield, CloudTrail, AWS Config, Security Hub, Inspector, Macie and IAM governance

- Mandatory (Experience 3) - Must have hands-on expertise in Identity & Access Security including RBAC, IRSA, PSP/PSS, SCPs and IAM least-privilege enforcement

- Mandatory (Experience 4) - Must have hands-on experience with security automation using Terraform and Ansible for configuration hardening and compliance

- Mandatory (Experience 5) - Must have strong container & Kubernetes security experience including Docker image scanning, EKS runtime controls, network policies, and registry security

- Mandatory (Experience 6) - Must have strong CI/CD pipeline security expertise including SAST, DAST, SCA, Jenkins Security, artifact integrity, secrets protection, and automated remediation

- Mandatory (Experience 7) - Must have experience securing data & ML platforms including databases, data centers/on-prem environments, MWAA/Airflow, and sensitive ETL/ML workflows

- Mandatory (Company) - Product companies preferred; Exception for service company candidates with strong MLOps + AWS depth.

Preferred :

- Preferred (Experience 1) - Experience with CIS hardening, VAPT processes, compliance frameworks (HIPAA / SOC2 / ISO), and dynamic/static scanning governance

- Preferred (Experience 2) - Hands-on security for observability / SIEM : CloudWatch, Grafana, Prometheus, OpenSearch/ELK with alerting & anomaly detection

- Preferred (Experience 3) - Experience securing GitOps and IaC policy-as-code (OPA / Checkov / tfsec)

- Preferred (Experience 4) - Experience in securing end-to-end data flows and ML infrastructure across S3, Redshift, RDS, Glue, Kinesis, Snowflake


info-icon

Did you find something suspicious?