Project Lead-Cybersecurity
Birlasoft Limited Bengaluru, Karnataka, India
IT Services and IT Consulting · 10,001+ employees
About the role
The lead is responsible for independently assessing and validating the security, resilience, and operational readiness of Azure cloud-native applications. They will perform end-to-end security assurance, including API security assessments and microservices testing.
What they look for
Requirements
Candidates must have 7-10+ years of experience in cybersecurity, with at least 7 years specifically in Azure Cloud Security. Expertise in cloud-native microservices, event-driven architectures, and various Azure security tools is required.
Full description
Area(s) of responsibility
Experience Required: 7-10+ years in Cybersecurity, Cloud Security, Security Architecture, DevSecOps, SRE, Platform Engineering, or Resilience Assurance. Required Experience
- 7+ years of Azure Cloud Security experience.
- 5+ years with cloud-native microservices and event-driven architectures.
- Proven expertise in security validation, resilience testing, disaster recovery assurance, and operational readiness assessment for distributed cloud environments.
- Hands-on experience with Azure Container Apps (ACA), Azure API Management (APIM), Azure Service Bus, Dapr, Azure DevOps, Azure Monitor, Application Insights, and Log Analytics.
Role Summary The Senior Cloud Native Security & Resilience Assurance Lead is responsible for independently assessing and validating the security, resilience, recoverability, reliability, observability, and operational readiness of Azure cloud-native applications and event-driven platforms.
- Key Responsibilities
o Security Assurance & Architecture Validation o Lead end-to-end security assurance activities across cloud-native platforms. o Security assessments of Azure-based applications and microservices. o Validation of JWT, OAuth2/OIDC, Azure AD, RBAC, and token-based authentication controls. o API security assessment through Azure API Management (APIM). o Service-to-service authentication and Zero Trust security validation. o Dapr security controls, mTLS implementation, and secure east-west communication. o Validation of encryption in transit and at rest. o Azure Key Vault integration and secrets management reviews. o Tenant isolation, privacy controls, and data protection assessments. o Azure Service Bus publisher/consumer authentication and authorization validation. o Microservices & API Security Testing
- Perform security validation across:
o API, microservices, event, and DevOps layers. o Authentication, authorization, access control, session management, and input validation. o API abuse case testing and security misconfiguration reviews. o Dynamic Application Security Testing (DAST) using tools such as Burp Suite. o Secure API exposure and enforcement of least-privilege principles.
Preferred Qualifications
- Experience with Azure Security Architecture
- Experience validating ACA, Dapr, APIM and Azure Service Bus based solutions
- Knowledge of Enterprise DR and Business Continuity validation practices
- Microsoft Azure Security Certifications preferred
- CISSP / CCSP / Azure Security certifications preferred but not mandatory
Similar roles
-
Director Cybersecurity Operational Risk Oversight
Citizens Bank Johnston, Rhode Island, United States · $178K–$220K/yr
-
Senior Security Engineer, Detection & Response
Aircall.io, Inc. San Francisco, California, United States · $180K–$220K/yr
-
Senior Security Engineer (m/w/d)
Yoummday GmbH Munich, Bavaria, Germany
-
Senior Security Engineer, Cloud and Infrastructure Security
Weight Watchers United States · $210K–$225K/yr
-
Staff Security Engineer - AI Security
Qube Research & Technologies London, England, United Kingdom
-
Cybersecurity Engineer - CBO
INNOVIM United States · $90K–$107K/yr