Security Engineer

10 hours ago


Bengaluru Hyderabad Pune, India Connectio It Full time ₹ 12,00,000 - ₹ 36,00,000 per year

Job Title: Security Analyst/Engineer

Job Summary

We are seeking a skilled Security Analyst/Engineer to join our cloud security team. The ideal candidate will have a strong background in vulnerability assessment, remediation, and security engineering, with hands-on experience across AWS environments. You will be responsible for identifying and remediating vulnerabilities across cloud platforms, integrating with vulnerability management tools, embedding security into hardened AMI pipelines, and ensuring compliance through dashboards, automation, and governance.

Key Responsibilities

Conduct vulnerability assessments using tools such as Wiz, Tenable, and SonarQube to identify risks across cloud platforms and workloads.

Map vulnerabilities by severity, remediation type (Terraform fix, code refactor, policy update), and level of effort (LOE).

Track and manage remediation efforts to ensure timely closure and risk reduction.

Integrate vulnerability scanning into AWS Image Builder pipelines and ensure hardened AMIs for Windows, Linux, Amazon Linux, and middleware workloads.

Define and enforce tagging schemas for traceability and compliance across images and container workloads.

Develop and implement security policies, procedures, and governance frameworks to enhance organizational security posture.

Collaborate with DevOps and development teams to integrate security practices into CI/CD pipelines (GitHub Actions, Spacelift).

Automate communication workflows for image releases, deprecations, and vulnerability notifications.

Build and evolve dashboards to monitor vulnerability aging, adoption, risk trends, and remediation progress.

Provide knowledge transfer to platform and security teams, enabling long-term adoption of best practices.

Ensure license compliance for BYOL workloads (e.g., Oracle, WebLogic).

Provide regular status reports and metrics to leadership and stakeholders.

Qualifications

58 years of relevant experience in security engineering, vulnerability management, and cloud security.

Bachelors degree in Computer Science, Information Security, or a related field.

Proven experience as a Security Analyst/Engineer, with focus on vulnerability assessment and remediation.

Strong knowledge of security tools: Tenable, SonarQube, Wiz

Hands-on with IaC (Terraform, CloudFormation, Ansible).

Familiarity with CI/CD tools: GitHub Actions, Spacelift, Jenkins, GitLab CI.

Exposure to AWS core services: VPC, EC2, IAM, CloudWatch.

Scripting experience: Shell, PowerShell, and some Python.

Understanding of OS hardening frameworks (CIS Benchmarks, DISA STIGs).

Strong problem-solving, analytical, and collaboration skills.

Preferred Qualifications

Security or cloud certifications: CISSP, CISM, AWS Certified Security, or equivalent.

Experience with policy-driven enforcement (OPA, AWS Config, SCPs).

Familiarity with monitoring/logging tools: Prometheus, Grafana, ELK stack.

Experience with container security (EKS/ECS, Docker).

Knowledge of governance and compliance frameworks (ISO 27001, NIST, SOC2).



  • Pune, India TAC Security Full time

    Job Description Key Responsibilities - Conduct security assessments by scanning applications and networks, performing penetration tests for further exploitation. - Execute Web Application SAST, DAST, Mobile Application Security testing, and API security testing. - Establish and maintain a Vulnerability Management framework including assessment, treatment,...

  • Security Engineer II

    11 hours ago


    Bengaluru, Karnataka, India Safe Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    At SAFE Security, our mission is bold and ambitious: We Will Build CyberAGI — a super-specialized system of intelligence that autonomously predicts, detects, and remediates threats. This isn't just a vision—it's the future we're building every day, with the best minds in AI, cybersecurity, and risk. At SAFE, we empower individuals and teams with the...


  • Bengaluru, India RSA Security Full time

    Product Overview Outseer Fraud Manager is an advanced, omnichannel fraud detection hub that provides risk-based, multi-factor authentication for organizations seeking to protect their consumers from fraud across digital channels. Powered by the AI/ML based Risk Engine, Outseer Fraud Manager is designed to measure the risk associated with a user’s login...


  • Bengaluru, India Symosis Security Full time

    About Symosis SecuritySymosis is a fast-growing US cybersecurity and engineering firm building real, high-impact security automation for some of the largest tech companies in the world.We move fast, solve hard problems, and ship clean, production-grade engineering — not slides, not theory. If you want to work on serious API engineering, data pipelines,...


  • Pune, India Payatu Security Consulting Pvt.Ltd. Full time

    Description : Are you a skilled penetration tester looking for an exciting new opportunity to take your career to the next level? Join our dynamic cybersecurity team, where youll have the chance to work on cutting-edge projects, including cloud security, reverse engineering, threat modelling, and product security.Who we are?Payatu is an ISO certified company...

  • Engineering Intern

    4 days ago


    Bengaluru, Karnataka, India Skyhigh Security Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Job Title:Engineering InternAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have trusted us...


  • Bengaluru, India Skyhigh Security Full time

    About Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them with a...


  • Bengaluru, India Skyhigh Security Full time

    About Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them with a...


  • Bengaluru, India Skyhigh Security Full time

    About Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them with a...


  • Bengaluru, India Skyhigh Security Full time

    About Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them with a...