Padmi

Senior Platform Security Engineer (Cloud)

BangalorePosted 1 month ago
CybersecuritySenior
Apply at Skyhigh Managementb Services

Opens the source posting on naukri.com

Source description

About the role

View original

Job Title: Senior Platform Security Engineer (Cloud) Role Overview: Skyhigh Security is hiring a Senior Platform Security Engineer to join our Engineering Excellence organization, reporting to the Senior Manager of Engineering Environments and Tooling. In this high-impact, hands-on engineering role, you will be the primary custodian of the security, integrity, and automated guardrails of our non-production cloud environments, ensuring our developer spaces are both highly enabling and thoroughly secure. Rather than just reviewing GRC checklists or writing static policy documents, you will own the technical security standards for our platforms and build the automated validation frameworks that keep our engineering organization secure over the long term. Your impact will be measured by your ability to drive continuous, automated compliance, empower a distributed network of local security champions, and build robust, secure-by-default capabilities for our shared cloud resources. You must have deep, hands-on expertise in cloud security architecture, infrastructure-as-code, and container security to lead this initiative. You will build highly collaborative relationships with Engineering Managers, Security Champions, and the Central CISO team to ensure that platform security controls are highly practical, transparent, and seamlessly integrated into the developer experience. Responsibilities Engineer Environment Security Standards: Author, maintain, and continuously update the technical platform security policies governing all non-production environments and developer labs. Design Automated Validation Frameworks: Establish, run, and scale the technical auditing and drift-detection functions to ensure all engineering teams maintain compliance with security guardrails over months and years. Lead Security Champions: Mobilize and align local security champions across engineering teams, guiding them as they design, own, and execute their local environment security plans. Architect Shared Security Capabilities: Architect and build advanced, reusable security capabilities for shared resources, common labs, and core cloud environments, ensuring a secure baseline for the entire organization. Continuous Improvement: Monitor emerging security threats and regulatory changes, proactively adapting non-production platforms and policies to address new risks. Bridge Engineering and Security: Act as the primary technical liaison between the core engineering teams and the central security organization for environments, translating corporate mandates into pragmatic engineering practices. Requirements Proven Technical Leadership: Extensive hands-on experience in DevSecOps, cloud security engineering, or systems engineering with a strong focus on securing dynamic non-production infrastructure. Platform Security Design: Demonstrated experience writing technical security standards and designing sustainable, automated configuration-auditing frameworks at scale. Influence Without Authority: Exceptional stakeholder management skills, with a proven track record of guiding distributed engineering teams and motivating local security champions. Advanced Security Architecture: Deep knowledge of threat modeling, network segmentation, secrets management, and access control strategies within test and lab environments. Strategic Methodical Thinking: Ability to balance developer velocity and flexibility in labs with rigorous, automated security requirements. Tooling Requirements Deep Core Expertise AWS Cloud Security: Advanced knowledge of securing AWS environments, complex IAM policies, strict Security Group configurations, and secure-by-default VPC routing Hybrid Security Boundaries: Experience establishing secure, key-only SSH Jumphosts, SSH tunnels, and managing secure client certificate structures Software Supply Chain Security: Experience leveraging Artifactory to govern open-source dependencies, and Black Duck to enforce vulnerability checking. Container Security GitOps: Hands-on experience securing containers, image registries, and driving continuous delivery pipelines via ArgoCD, Harness, or Jenkins Policy-as-Code Compliance: Experience implementing compliance-checking tooling (e.g., Open Policy Agent (OPA), Kyverno, AWS Config, or custom auditing scripts). Broad / Functional Competency On-Premises Infrastructure Tools: Conceptual understanding of virtualization structures, Docker registries, on-premise Kubernetes clusters managed via Helm charts, and automated virtual machine configurations Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

One address, no account. We’ll tell you when matching roles go live.

More at Skyhigh Managementb Services

Related open roles

View all roles