Birlasoft Limited

Project Lead-Cybersecurity

Birlasoft Limited Bengaluru, Karnataka, India

IT Services and IT Consulting · 10,001+ employees

20 h ago
security Principal (10+ yrs) Full-time India
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The lead is responsible for independently assessing and validating the security, resilience, and operational readiness of Azure cloud-native applications. They will perform end-to-end security assurance, including API security assessments and microservices testing.

What they look for

Azure Cloud Security Microservices Event-driven architectures Security architecture DevSecOps Resilience testing Disaster recovery Azure Container Apps Azure API Management Dapr Azure DevOps Zero Trust mTLS Azure Key Vault DAST Burp Suite

Requirements

Candidates must have 7-10+ years of experience in cybersecurity, with at least 7 years specifically in Azure Cloud Security. Expertise in cloud-native microservices, event-driven architectures, and various Azure security tools is required.

Full description

Area(s) of responsibility

Experience Required: 7-10+ years in Cybersecurity, Cloud Security, Security Architecture, DevSecOps, SRE, Platform Engineering, or Resilience Assurance. Required Experience

  • 7+ years of Azure Cloud Security experience.
  • 5+ years with cloud-native microservices and event-driven architectures.
  • Proven expertise in security validation, resilience testing, disaster recovery assurance, and operational readiness assessment for distributed cloud environments.
  • Hands-on experience with Azure Container Apps (ACA), Azure API Management (APIM), Azure Service Bus, Dapr, Azure DevOps, Azure Monitor, Application Insights, and Log Analytics.

Role Summary The Senior Cloud Native Security & Resilience Assurance Lead is responsible for independently assessing and validating the security, resilience, recoverability, reliability, observability, and operational readiness of Azure cloud-native applications and event-driven platforms.

  • Key Responsibilities

o Security Assurance & Architecture Validation o Lead end-to-end security assurance activities across cloud-native platforms. o Security assessments of Azure-based applications and microservices. o Validation of JWT, OAuth2/OIDC, Azure AD, RBAC, and token-based authentication controls. o API security assessment through Azure API Management (APIM). o Service-to-service authentication and Zero Trust security validation. o Dapr security controls, mTLS implementation, and secure east-west communication. o Validation of encryption in transit and at rest. o Azure Key Vault integration and secrets management reviews. o Tenant isolation, privacy controls, and data protection assessments. o Azure Service Bus publisher/consumer authentication and authorization validation. o Microservices & API Security Testing

  • Perform security validation across:

o API, microservices, event, and DevOps layers. o Authentication, authorization, access control, session management, and input validation. o API abuse case testing and security misconfiguration reviews. o Dynamic Application Security Testing (DAST) using tools such as Burp Suite. o Secure API exposure and enforcement of least-privilege principles.

Preferred Qualifications

  • Experience with Azure Security Architecture
  • Experience validating ACA, Dapr, APIM and Azure Service Bus based solutions
  • Knowledge of Enterprise DR and Business Continuity validation practices
  • Microsoft Azure Security Certifications preferred
  • CISSP / CCSP / Azure Security certifications preferred but not mandatory

Similar roles