Posted on: 27/07/2026
Security Engineering & Reliability Lead (InfoSec SRE)
Role Summary :
We are looking for a Security Engineering & Reliability Lead to own the full security lifecycle across our AI-enabled financial advisory platform from architecture and engineering to operations, compliance, and offensive security. This role combines the rigor of Site Reliability Engineering with the depth of modern security operations, in an environment where platform trust, data protection, and regulatory compliance are non-negotiable. You will drive security as an engineering discipline, not just a gate.
Core Responsibilities :
Security Architecture & Engineering :
- Design and implement defense-in-depth security architecture across cloud, application, data, and identity layers
- Build secure-by-default engineering practices and security guardrails for product and platform teams
- Define security baselines, standards, and engineering controls across the SDLC
- Create and maintain security automation workflows that scale without manual overhead
- Run a Security Champion program to embed security ownership within engineering squads
Security Reliability Engineering :
- Define and track security SLIs and SLOs (MTTD, MTTR, detection coverage, false positive rates)
- Build resilient, highly available security monitoring systems with minimal alert fatigue
- Improve detection quality through continuous tuning and correlation rule optimization
- Automate security workflows to reduce toil and accelerate response
Security Operations & Incident Response :
- Own SIEM operations, detection engineering, and continuous security monitoring
- Build and maintain security playbooks, runbooks, and escalation procedures
- Lead security incident response from triage through containment, eradication, and recovery
- Conduct threat hunting exercises proactively across cloud, endpoint, and application telemetry
- Drive forensic investigations and produce structured post-incident reports
- Coordinate incident communications to leadership, regulators, and affected parties where required
EDR / XDR & Detection Engineering :
- Deploy and manage endpoint detection and response (EDR) capabilities across all workloads
- Build XDR workflows combining cloud, endpoint, application, network, and identity telemetry
- Create automated detection-to-response workflows to reduce dwell time
- Build and enforce endpoint hardening standards
- Continuously improve detection coverage against evolving threat actor TTPs
Data Security & DLP :
- Build and maintain data classification standards and data handling policies
- Implement and govern DLP controls across infrastructure, applications, and endpoints
- Monitor unauthorized data movement and enforce financial and customer data protection
- Support privacy-by-design initiatives and data retention controls aligned to DPDP requirements
Cloud Security & Identity :
- Define and enforce cloud security standards across multi-cloud or hybrid environments
- Implement IAM, least-privilege models, and privileged access management (PAM)
- Conduct regular cloud posture reviews (CSPM) and remediate findings
- Secure APIs, partner integrations, and secrets management workflows
Supply Chain & Third-Party Security :
- Conduct vendor and partner risk assessments with defined scoring frameworks
- Review data-sharing arrangements, API integrations, and third-party SaaS access
- Maintain a vendor security inventory and track remediation of identified gaps
- Integrate supply chain security checks into procurement and onboarding workflows
Offensive Security & Adversarial Testing :
- Own the penetration testing program scope definition, cadence, vendor coordination, and retesting
- Conduct threat modeling exercises across new features, integrations, and platform changes
- Run tabletop exercises, attack simulations, and red-team / purple-team engagements
- Manage vulnerability validation, lifecycle tracking, and remediation SLA enforcement
Application Security Testing :
- Manage SAST, DAST, dependency scanning, IaC scanning, container scanning, and API security testing within CI/CD pipelines
- Review business logic security risks and conduct access control assessments
- Own vulnerability lifecycle management from discovery through verified closure
AI Security & Governance :
- Build security controls specific to AI/ML systems covering model integrity, prompt security, dataset protection, and output validation
- Assess and mitigate LLM-specific risks : prompt injection, jailbreaking, model extraction, and data poisoning
- Secure RAG pipelines, vector databases, and model inference endpoints
- Build AI audit trails and auditability frameworks to support governance and regulatory requirements
- Define AI governance controls in collaboration with product, data, and compliance teams
Governance, Risk & Compliance :
- Drive ISO 27001 and SOC 2 readiness, evidence collection, and audit preparation
- Implement DPDP controls and support ongoing regulatory alignment (RBI, SEBI as applicable)
- Maintain risk registers, conduct control assessments, and track remediation to closure
- Develop and maintain information security policies, standards, and procedures
- Support internal and external audit engagements with structured evidence repositories
Business Continuity & Cyber Resilience :
- Support cyber resilience and disaster recovery programs from a security perspective
- Build and maintain ransomware response and recovery procedures
- Participate in DR testing exercises and improve recovery readiness
Metrics & Reporting :
- Define security KPIs and KRIs aligned to business and regulatory expectations
- Build risk dashboards and leadership-level security reporting
- Track detection coverage, remediation SLAs, and security posture improvements over time
Required Skills :
- 5 to 10+ years in Security Engineering, Security Operations, or SRE with a strong security focus
- Strong cloud security expertise (AWS / GCP / Azure) including CSPM and cloud-native security tooling
- SIEM engineering and detection engineering experience (Splunk, Microsoft Sentinel, Chronicle, or equivalent)
- EDR / XDR deployment and operations experience
- DLP implementation and data governance experience
- Offensive security understanding threat modeling, pentest coordination, vulnerability management
- Incident response and forensic investigation experience
- Strong scripting and automation skills Python, Bash, or equivalent
- Linux systems expertise
- Strong written and verbal communication able to present risk to technical and non-technical audiences
Preferred :
- Experience in fintech, wealth management, or regulated financial platforms (RA/RIA, broking, lending)
- Exposure to AI/ML security LLM risks, MLOps security, RAG pipeline protection
- Hands-on compliance framework experience ISO 27001, SOC 2, DPDP, RBI/SEBI guidelines
- Threat hunting experience with MITRE ATT&CK alignment
- Security certifications CISSP, CISM, CEH, OSCP, or equivalent
- Experience building security programs from early-stage or scaling environments
Success Metrics :
- Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR) reduction
- Detection coverage across cloud, endpoint, application, and identity layers
- False positive rate reduction and alert quality improvement
- Vulnerability remediation SLA compliance
- Compliance and audit readiness posture (ISO, SOC 2, DPDP, regulatory)
- Automation coverage across security workflows
- Reduction in critical and high open risk items
- AI platform security posture coverage of model, data, and inference risks
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1657982