Cloud Security Lead

1 week ago


Bengaluru, Karnataka, India Zscaler Full time

About Zscaler

Zscaler is a leading cloud security platform provider, empowering organizations to harness speed and agility with a cloud-first strategy.

The Role

We are seeking an experienced Cloud Security Lead - Application Protection Specialist to join our Product Security team. Reporting to the Director of Vulnerability Management, you will be responsible for:

Key Responsibilities

  • Static and Dynamic Application Security Testing (SAST/DAST): Conduct thorough analysis of our applications to identify and improve security vulnerabilities early in the development process.
  • Software Composition Analysis (SCA): Implement SCA tools to manage open-source components, ensuring that all third-party libraries and frameworks used in our codebase are secure and up-to-date.
  • CVE Detection and Remediation: Monitor for Common Vulnerabilities and Exposures (CVEs) in our code, and work with development teams to fix these vulnerabilities promptly to prevent potential exploits.
  • Secret Management: Detect and improve hard-coded secrets in our codebase, ensuring that sensitive information such as API keys and passwords are securely managed and stored.
  • Container and Infrastructure as Code (IAC) Security: Assess and secure our containerized environments and IAC deployments, ensuring that security best practices are followed to protect our infrastructure from potential threats.

Requirements

  • Minimum of 6+ years of hands-on experience in application security, including implementing and managing security measures such as SAST, DAST, and SCA.
  • Proficiency with application security tools such as Snyk, Semgrep, Coverity, Checkmarx, Burp Suite, OWASP ZAP, and dependency management tools.
  • Secure Software Development Lifecycle.
  • Experience with secure coding practices, vulnerability management, and remediation techniques.
  • Expertise with source control (Github, Bitbucket), and CI pipelines (ArgoCD, Jenkins).
  • CVE/CWE Lifecycle.
  • Experience detecting and remediating security issues within codebases, ensuring vulnerability management.

Preferred Qualifications

  • Domain Expertise: Hands-on experience in at least one of the following areas of operations:
    • SAST, including implementing language-specific detection rules and driving remediation of static analysis reports.
    • DAST, including understanding of web application architecture, common web vulnerabilities, and interpreting the results of dynamic testing.
    • Container Security, including understanding of containerization concepts, orchestration platforms (Kubernetes), security best practices, and supervising secure container lifecycle processes.
    • IAC, including hands-on expertise with cloud infrastructure design, provisioning, and management, and best practices for writing secure and maintainable infrastructure code.
    • Secrets, including implementing detection rules for secrets in source control, SaaS apps, infrastructure platforms, and driving best practices for secrets storage and usage.
    • Previous experience as a software developer or in a DevSecOps role, with proficiency in languages such as Java, Python, JavaScript, C/C++, and Golang.
    • Demonstrated experience securing cloud environments (e.g, AWS, Azure, Google Cloud) and familiarity with cloud-native security tools and practices.

Salary

$120,000 - $180,000 per year, depending on experience.



  • Bengaluru, Karnataka, India Oleria Security Full time

    About Oleria SecurityOleria Security is a leading cybersecurity startup revolutionizing access control solutions for enterprise cloud applications. With over $43M in funding, we're on a mission to reduce the opportunity and scope of data breaches.Our VisionWe envision a world where identity-based attacks are a thing of the past. Our cutting-edge technology...


  • Bengaluru, Karnataka, India Ambient Security Full time

    Ambient Security is an innovative cybersecurity startup on a mission to revolutionize enterprise security by reducing the risk of privileged account takeovers and cyber attacks.We're seeking highly skilled software engineers at all levels to lead the design and implementation of cutting-edge technologies in security, large-scale distributed systems, AI, and...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Andromeda Security is a pioneering cloud security firm, backed by leading Silicon Valley venture capitalists. Our mission is to empower businesses by effectively managing cloud credentials and preventing security breaches. We pride ourselves on fostering a culture of trust, excellence, humility, grit, and fun. We are seeking dedicated professionals who will...


  • Bengaluru, Karnataka, India Cloud Software Group Full time

    About Us:Citrix and TIBCO's recent merger has given birth to Cloud Software Group, a leading cloud solution provider serving millions of users globally. When you join our team, you'll be making a real difference in people's lives by empowering them with our suite of cloud-based products.We value diverse perspectives, a passion for technology, and the courage...


  • Bengaluru, Karnataka, India Oleria Security Full time

    About UsOleria Security is a leading enterprise cybersecurity startup revolutionizing access control solutions for cloud applications. Founded by industry pioneers, we've received over $43M in funding from top investors and have a mission to reduce data breaches.

  • Cloud Security Expert

    2 weeks ago


    Bengaluru, Karnataka, India Cloud Software Group Full time

    Job DescriptionCome and be a part of the cutting-edge security team at Cloud Software Group. We are looking for an expert in cloud security to join our team as a Lead Product Security Engineer.About UsAs one of the world's largest cloud solution providers, serving over 1 million users around the globe, we empower our customers to get work done from anywhere....


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Andromeda Security, a cutting-edge Silicon Valley-backed multinational startup in Bengaluru, India, is seeking a seasoned professional to spearhead its cloud security initiatives. With a strong focus on innovation and growth, this role offers the ideal opportunity to make a lasting impact.The ideal candidate will have extensive experience in operationalizing...


  • Bengaluru, Karnataka, India PayU Full time

    About the Role:">We are seeking a skilled Cloud Security Architect Lead to join our team at PayU. As a key member of our security team, you will play a vital role in shaping the cloud security strategy and ensuring the secure operation of our cloud infrastructure.


  • Bengaluru, Karnataka, India Rapyder Cloud Solutions Full time

    Rapyder Cloud Solutions seeks an experienced Cloud Architect Lead to join our team in developing advanced cloud architectures using automated techniques to deliver highly secure environments.We require a clear understanding of Kubernetes Architectural components, communications, and flows.Prior involvement in Kubernetes implementation projects is...


  • Bengaluru, Karnataka, India Nutanix Full time

    We are seeking a seasoned Cloud Security Architect to lead our cloud security initiatives and drive the implementation of best practices across our organization.About the RoleAs a Senior DevSecOps Professional, you will be responsible for architecting, implementing, and maintaining secure, automated development and deployment pipelines, ensuring the...


  • Bengaluru, Karnataka, India Societe Generale Global Solution Centre Full time

    Societe Generale Global Solution Centre is committed to creating a diverse environment and is proud to be an equal opportunity employer. Our company is dedicated to shaping the future through innovation, creativity, and excellence.About the RoleWe are seeking a highly skilled Cloud Security Operations Lead to join our team. As a key member of our security...


  • Bengaluru, Karnataka, India Cigres Technologies Private Limited Full time

    Job DescriptionCigres Technologies Private Limited is seeking a highly skilled Cloud Security Architect Lead to lead and enhance the security posture of its applications and products. The ideal candidate will be responsible for designing and implementing secure cloud-native architectures, including Web application, APIs, microservices, and...


  • Bengaluru, Karnataka, India ALTERYX Full time

    We are seeking a seasoned Cloud Security Engineer to join our team at Alteryx. This is an exciting opportunity to lead the charge in securing our cloud-based products and infrastructure.

  • Cloud Security Lead

    2 weeks ago


    Bengaluru, Karnataka, India Tata Consultancy Services Full time

    Job Role: Cloud SecurityGreetings from Tata Consultancy Services, a global leader in IT services and consulting. We are seeking an experienced Cloud Security professional to join our team.About the Role:The ideal candidate will have a minimum of 4 years of experience in cloud security, with expertise in designing and implementing secure cloud...


  • Bengaluru, Karnataka, India Couchbase Full time

    Transform Modern Cloud ApplicationsCouchbase is at the forefront of revolutionizing how developers and architects build modern applications. As a Cloud Security Architect, you will play a pivotal role in driving the architecture and leading implementation of systems for authentication, access control, data encryption, and network security on our cutting-edge...


  • Bengaluru, Karnataka, India Thomson Reuters Full time

    Thomson Reuters Cloud Security Associate Architect RoleWe are seeking a highly skilled Cloud Security Associate Architect to join our team. As a key member of our security team, you will play a crucial role in designing and implementing secure cloud solutions for our customers.Key Responsibilities:Maintain a deep understanding of core public cloud security...


  • Bengaluru, Karnataka, India Societe Generale Global Solution Centre Full time

    About the RoleWe are seeking an experienced Cloud Security Operations Lead to join our team at Societe Generale Global Solution Centre. This is a highly challenging and rewarding role that requires strong technical skills, leadership abilities, and excellent communication skills.Key Responsibilities:Validate security exceptions and access requests raised by...


  • Bengaluru, Karnataka, India XHire Full time

    XHire is seeking a highly experienced Cloud Security and Architecture Lead to join our team. We offer a competitive salary of $250,000 per year.About the Role:The Cloud Security and Architecture Lead will be responsible for providing leadership to our Cloud Architecture team, designing and delivering new hosting solutions, addressing compliance and security...


  • Bengaluru, Karnataka, India 7-Eleven Full time

    About 7-Eleven Global Solution CenterAs a Cloud Security Architect Lead, you will be part of our team that takes ownership of end-to-end solution delivery, supporting local teams and integrating new digital assets. You will challenge yourself by contributing to products deployed across our extensive network of convenience stores, processing over a billion...


  • Bengaluru, Karnataka, India Okta, Inc. Full time

    Okta's Workforce Identity Cloud Security Engineering (WISE) GroupWe are seeking an experienced and passionate Manager to lead our Bangalore-based software engineering team focused on securing and protecting all of our products & infrastructure. As a Manager, you will be responsible for mentoring and managing a growing team of experienced and motivated...