Senior Information Security Engineer - SecOps

  • Bengaluru
  • Unacademy
We are looking for an enthusiastic team member who drives efforts to enhance overall security posture at Unacademy Group. This role includes security management of our cloud infrastructure across AWS, GCP, etc. while implementing the organization's security and compliance requirements. As a technology champion, you will foster a secure by design culture within the company and help implement solutions which will enhance overall security posture and attack surface hygiene by conceptualizing and operating security controls. You will contribute to the implementation of governance standards and procedures in compliance with regulatory and organizational requirements. You will continuously partner with teams for implementing security solutions and collaborate with stakeholders for risk management, mitigation and remediation measures. Who you are. 5 years of relevant experience in Cloud Security. Driving Cloud Security Posture Management to address issues related to Config, Network, Identity & Infrastructure Vulnerabilities Build guardrails and auto-remediate to minimize resource misconfiguration events. Ability to operate native security tools on the public cloud. E.g. AWS WAF, Guard Duty, etc. Configure runtime security to protect workloads. Identify tools / controls to bring visibility and further contain/prevent issues. Identify gaps, suggest best practices to enhance security posture. Responding to alerts/incidents and implementing learnings Prior experience in tools like Prisma, Cloud Guard, Wiz, etc. will be an added advantage. Takes up ownership and responsibility to drive results with stakeholders. Setting up metrics and dashboards for monitoring and analysis Experience of collaborating and responding to potential information security incidents, to mitigate risk, determine reporting requirements, and developing corrective action plans when needed. Crisis Management, Problem-solving skills, and ability to stay calm under pressure. Experience of communicating effectively with the highest levels of management and decision-making individuals within the organization Familiar with security standards related to IT Controls around ISO 27001, NIST 800-53, GDPR. Self-starter and willingness to roll up the sleeves and work with the team. Professional security certifications will be handy.