
Principal Security Engineer – Cloud and Infrastructure Security
Posted 17 hours ago

Posted 17 hours ago
This is a fully remote position, open to applicants in India.
• Take charge of security architecture across Azure and AWS, covering tenant, subscription, and account design, network segmentation and traffic control, private connectivity, egress policy, and workload isolation.
• Evaluate One Identity products against authentic security requirements and relay findings to product teams.
• Involve engineering teams in architectural decisions from the outset.
• Enhance infrastructure-as-code security through robust modules, secure-by-default landing zones, and established account baselines.
• Expand policy as code throughout the pipeline and platform to deliver commit-time signals.
• Manage the hardened virtual machine and container image pipeline, including aspects like building, patch cadence, provenance, signing, and automation.
• Secure the container orchestration layer while defining reference architecture and secure defaults.
• Establish security architecture for AI workloads, focusing on endpoint exposure, data boundaries and residency, agent and service-principal identity, secrets handling, and development lifecycle guardrails.
• Oversee infrastructure vulnerability and exposure management from discovery to prioritization, routing, remediation tracking, and verification.
• Create a unified cloud posture and workload protection strategy across Azure and AWS.
• Define suitable agentic security-engineering workflows, verification criteria, and automated pull-request remediation.
• Develop query-based control evidence for ISO 27001, SOC 2, IRAP, ACN, and PCI self-assessment.
• Act as the senior technical security representative for a small, globally distributed team.
• A minimum of ten years in security engineering or infrastructure engineering, with significant experience in cloud architecture; equivalent depth is also considered.
• Extensive cloud security architecture expertise across Azure and AWS, with substantial proficiency in one and competent knowledge of the other.
• Recent hands-on experience securing AI workloads or AI-enabled tools within the past six months.
• A project or system developed that engineering teams have adopted and continued to use.
• Senior-level expertise in infrastructure as code.
• Understanding of network security fundamentals as applied to cloud environments, including segmentation, private connectivity, egress control, and east-west traffic.
• Knowledge of container and Kubernetes security, image hardening, supply chain integrity, and secrets management.
• Familiarity with policy-as-code frameworks and an understanding of enforcement throughout the lifecycle.
• Controls personally developed and accountable for under an audit framework.
• Ability to assess which risks to accept and which to escalate.
• Desirable: experience in delivering software that customers deploy independently, knowledge of FedRAMP or IRAP, and involvement in large-scale cloud migration or carve-out projects.
• Health and wellness programs.
• Career development and learning opportunities.
• Equal employment opportunity and non-discrimination protections.
Funcional Health Tech
Health Care Service Corporation
Bright Vision Technologies
Get handpicked remote jobs straight to your inbox weekly.