Jobgether

Principal Security Engineer Cloud and Infrastructure Security

Jobgether India

Internet Marketplace Platforms · 11-50 employees

9 h ago
Remote security Principal (10+ yrs) Full-time India
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Principal Security Engineer will define and evolve cloud security architecture across Azure and AWS environments while establishing secure-by-default infrastructure patterns. They will lead vulnerability management, implement policy-as-code, and partner with engineering teams to ensure scalable security controls.

What they look for

Cloud Security Architecture Azure AWS Infrastructure as Code Kubernetes Vulnerability Management Policy as Code Container Security AI Security Automation Network Security Compliance Security Engineering Software Supply-chain Integrity Identity and Access Management

Requirements

Candidates must have 10+ years of experience in security or infrastructure engineering with deep hands-on expertise in cloud architecture. Recent experience securing AI workloads and a strong background in infrastructure-as-code and container security are required.

Benefits

Remote working opportunity Professional development Health and wellbeing support Career growth opportunities Inclusive environment

Full description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Principal Security Engineer – Cloud and Infrastructure Security based in India.

This is a senior individual contributor role focused on defining and advancing cloud and infrastructure security across Azure and AWS environments. You will shape security architecture for hosted services as well as software deployed directly within customer environments. The role combines cloud architecture, infrastructure security, vulnerability management, automation, and secure engineering practices. You will establish secure-by-default patterns that engineering teams can adopt across infrastructure, containers, and deployment pipelines. Your work will directly support regulatory compliance, security certifications, customer trust, and expansion into new markets. You will operate in a lean, globally distributed environment with significant technical ownership and direct visibility with security and engineering leadership. This is a builder-oriented opportunity for an experienced security engineer who wants to define strategy while remaining close to implementation and automation.

\n

Accountabilities

  • Own and evolve cloud security architecture across Azure and AWS, including tenant, subscription and account structures, network segmentation, private connectivity, traffic controls, egress policies, and workload isolation.
  • Assess infrastructure and product environments against real-world security, regulatory, and certification requirements, identifying architectural risks before they become production constraints.
  • Establish secure-by-default infrastructure patterns, hardened modules, cloud landing zones, account baselines, and reusable security controls within infrastructure-as-code practices.
  • Extend policy-as-code throughout development and deployment pipelines, enabling security feedback and enforcement earlier in the engineering lifecycle.
  • Own hardened virtual machine and container image pipelines, including image construction, patching, provenance, signing, lifecycle automation, and ongoing maintenance.
  • Define secure architectures and defaults for container orchestration platforms, including Kubernetes environments and deployment configurations inherited by customers.
  • Establish security architecture for AI workloads and AI-enabled development tooling, covering model and inference exposure, data boundaries, residency, identities, secrets, and appropriate guardrails.
  • Lead infrastructure vulnerability and exposure management from discovery and risk prioritization through ownership, remediation, and verification.
  • Develop a unified approach to cloud posture and workload protection across Azure and AWS, including security coverage standards and remediation workflows.
  • Determine where automation and agentic workflows should act autonomously versus provide recommendations, ensuring appropriate validation and safeguards.
  • Build security workflows that produce actionable pull requests, automated fixes, or clearly owned remediation paths rather than relying solely on manual ticket management.
  • Design cloud, configuration, and network controls so that compliance evidence can be generated efficiently through queries and automation.
  • Partner closely with engineering teams to influence architectural decisions early and ensure security controls are practical, scalable, and consistently adopted.
  • Provide senior technical leadership on infrastructure security strategy and help establish the security engineering standards for a growing organization.

Requirements

  • 10+ years of experience in security engineering or infrastructure engineering, including substantial experience in cloud architecture; equivalent depth of experience will be considered.
  • Deep hands-on cloud security architecture experience across Azure and AWS, with significant expertise in at least one cloud and strong working knowledge of the other.
  • Recent hands-on experience securing AI workloads or AI-enabled security/development tooling, preferably within the last six months.
  • Demonstrated ability to build security solutions, frameworks, or engineering capabilities that development or infrastructure teams successfully adopted and continued using.
  • Strong infrastructure-as-code experience and the ability to improve mature engineering practices through secure modules, reusable patterns, and automation.
  • Strong understanding of cloud network security, including segmentation, private connectivity, egress controls, east-west traffic, and workload isolation.
  • Experience with container and Kubernetes security, image hardening, software supply-chain integrity, and secrets management.
  • Knowledge of policy-as-code frameworks and experience determining the appropriate points for security enforcement throughout the software lifecycle.
  • Experience designing security controls that have successfully supported formal audits or compliance requirements.
  • Strong understanding of infrastructure vulnerability management, cloud security posture management, workload protection, and remediation processes.
  • Experience with security automation and sound judgment around where autonomous workflows can safely operate and where human approval is required.
  • Ability to balance technical risk, business priorities, regulatory requirements, and practical engineering constraints.
  • Strong communication and collaboration skills, with the ability to influence senior engineers, architects, and cross-functional stakeholders.
  • Experience with customer-deployed software, FedRAMP or IRAP environments, large-scale cloud migrations, or major infrastructure transformations is advantageous.
  • Experience with ISO 27001, SOC 2, PCI, or similar security and compliance frameworks is beneficial.
  • Bachelor's degree in computer science, information security, engineering, or a related technical discipline is preferred.

Benefits

  • Senior principal-level technical ownership with the opportunity to shape an infrastructure security program from the ground up.
  • Remote working opportunity based in India.
  • Direct visibility with security and engineering leadership.
  • Opportunity to influence engineering standards, cloud architecture, automation, and secure-by-default practices at scale.
  • Exposure to Azure, AWS, Kubernetes, infrastructure-as-code, AI security, vulnerability management, and modern security automation.
  • Opportunity to work on security initiatives that support certifications, regulatory compliance, customer trust, and market expansion.
  • Globally distributed and collaborative working environment.
  • Strong emphasis on innovation, professional development, health and wellbeing, and career growth.
  • Equal-opportunity workplace committed to an inclusive and respectful environment.

\nHow Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

Similar roles