Experience 7 to 11
Responsibilities
- Design and implement security controls across enterprise Identity and Access Management platforms
- Embed Secure by Design principles throughout solution design and delivery
- Implement and maintain Zero Trust security controls and architectures
- Configure and manage authentication and authorization security mechanisms
- Implement secure servicetoservice communications using mTLS
- Support security controls for Human Workload and Agent Identities
- Develop and maintain PolicyasCode solutions using OPA and related technologies
- Integrate secrets management PKI certificate lifecycle management and key management services
- Conduct security reviews of infrastructure applications and solution designs
- Perform threat modeling risk assessments and security architecture reviews
- Identify assess and remediate vulnerabilities across platforms and applications
- Support vulnerability management security patching and remediation activities
- Implement cloud security controls across GCP and Kubernetes environments
- Configure security monitoring logging ing and audit capabilities
- Support identity governance privileged access management and leastprivilege access controls
- Collaborate with Security Operations and Incident Response teams during security events
- Support DevSecOps initiatives and automated security testing practices
- Produce security standards hardening guides implementation documentation and operational procedures
- Ensure compliance with security governance and regulatory requirements
To be successful in this role you should have
- Strong Information Security Engineering experience
- Expertise in Identity and Access Management IAM
- Knowledge of Zero Trust Architecture and security models
- Strong understanding of Authentication and Authorization technologies
- Experience with Workload Identity and Agent Identity management
- Handson knowledge of PKI and Certificate Management
- Experience with Secrets Management platforms
- Strong understanding of Cryptography principles and key management
- Experience securing GCP cloud environments
- Knowledge of Kubernetes Security and container security controls
- Experience with Service Mesh Security and API Security
- Handson experience with PolicyasCode tools such as OPA
- Strong DevSecOps and Secure SDLC experience
- Experience performing Threat Modeling and Security Assessments
- Expertise in Vulnerability Management and Security Remediation
- Experience with Security Monitoring Logging and SIEM platforms
- Knowledge of Security Compliance Governance and Risk Management
- Experience supporting Incident Response and Security Operations activities
- Strong stakeholder management and communication skills
Skills
Mandatory Skills : Application Security (application security framework/ threat modelling/ Secure SDLC/ DevSecOps/Application Security Architecture Review), Infra Vulnerability management/Triaging/ Remdiation Advisory / ServiceNow /ITSM /CMDB