Senior Cloud Security Engineer

IN-UP-Noida-Virtual

Alight Solutions

Alight works with the best-known brands to create a benefits advantage -- an opportunity to optimize costs while delivering a world-class benefits experience.

View all jobs at Alight Solutions

Job Description

As a Senior Cloud Security Engineer, you will play a critical role in ensuring the security and compliance of our cloud infrastructure. You’ll collaborate with cross-functional teams to design, implement, and maintain robust security measures across our cloud platforms. Your expertise will be instrumental in safeguarding our systems, data, and applications.

You will assist in the wider operational activities including but not limited to validating and addressing identified security risks, Data Security, SOC1/SOC2 Audits, Client Audits, security certifications, vulnerability testing and support management teams during security incident events. You should be confident and capable of explaining the risk and remediation positions for threats as part of the global security incident management process related to cloud security.

 

Duties & Responsibilities

Host Configuration Management: 

  • Conduct regular scans of host configurations to identify configuration violations and ensure compliance with security policies and CIS Benchmarks. 
  • Develop and implement remediation plans for identified violations.
  • Collaborate with IT and DevOps teams to ensure secure configurations are maintained. 

Cloud Workload Protection:

  • Perform vulnerability assessment on container images and containerized environments using industry standard tools.
  • Identify, assess, assign, and report vulnerabilities throughout the container lifecycle.
  • Work with development teams to ensure vulnerabilities are addressed in a timely manner.
  • Implement security controls and best practices for container orchestration platforms. 
  • Combine security assessment tools with automation to proactively identify and remediate vulnerabilities.
  • Collaborate with functional-area architects and security specialists to ensure adequate controls are in place.

Cloud Security Posture Management (CSPM):

  • Collaborate with the Information Security and compliance team to develop global cloud security architecture and maturity standards.
  • Evaluate and respond to alerts and events from security tools, fine-tuning configurations to minimize false positives.
  • Develop event response documentation and processes for the Security Operations Center.
  • Work closely with Cloud Operations teams to define and implement security standards and best practices.
  • Maintain documentation and diagrams for security tools, system environments, and cloud operations.

Incident Response Monitoring:

  • Monitor and analyze security logs and events.
  • Respond promptly to security incidents, investigating and containing threats.
  • Work within a DevOps security model to automate incident response.
  • Serve as a subject matter expert (SME) for security tools and processes.

Position Requirements:

  • Bachelor’s or Master’s degree in Computer Science, Engineering, Information Security, or similar boot camp certifications.
  • Relevant certifications (e.g., AWS, CISSP, CCSP, CISM, GSEC) are highly desirable.
  • Proven experience in cloud security, vulnerability management, and/or incident response.
  • Strong knowledge of cloud platforms (e.g., AWS, Azure, Google Cloud).
  • Familiarity with security assessment tools (e.g. Host Configuration Management, Cloud Security Posture Management (CSPM), cloud native tools, Vulnerability scanners, etc).
  • Ability to collaborate effectively with cross-functional teams.

We offer you a competitive total rewards package, continuing education & training, and tremendous potential with a growing worldwide organization.
 


DISCLAIMER:


Nothing in this job description restricts management's right to assign or reassign duties and responsibilities of this job to other entities; including but not limited to subsidiaries, partners, or purchasers of Alight business units.

.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  4  1  0

Tags: Audits Automation AWS Azure CCSP CISM CISSP Cloud Compliance Computer Science CSPM DevOps GCP GSEC Incident response Monitoring Security assessment SOC SOC 1 SOC 2 Vulnerabilities Vulnerability management

Perks/benefits: Team events

Regions: Remote/Anywhere Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.