TymblHub

© 2026 TymblHub

Cloud Security Architect

Anlage Infotech
Posted on
Anlage Infotech logo

Experience
8 - 13 yrs
Job Location
Pune, India
Vacancy
1
Designation
Cloud Security Architect
Job Type
Not specified

Job Description

Job Title

Infra & Cloud Security Engineer (L3) Overall Infrastructure & Cloud Security

Role Summary

The L3 Infra & Cloud Security Engineer provides end-to-end senior engineering ownership for overall infrastructure security and overall cloud security across CLIENT environments. The role leads secure engineering, standards implementation, design reviews, and complex escalations spanning network security, endpoint security, email/web protection, and cloud security controls

This role focuses on engineering execution + design governance, ensuring controls are implemented consistently, changes are validated, and security tooling is integrated into operational reporting where required. 

In-Scope Technologies

  • Cloud Security / CSPM: Wiz; AWS native security; Azure native security
  • Firewalls / VPN: Palo Alto, Cisco, Check Point; VPN (Palo Alto, Cisco)
  • WAF / ADC: Cloudflare WAF; Citrix NetScaler
  • Email Security: Area1, Cofense, PhishMe
  • Endpoint / FIM: ManageEngine EDR; CrowdStrike FileVantage (FIM)
  • Web Proxy / Gateway: Fortinet WebProxy
  • SASE / Edge: Zscaler SASE; VMware Velocloud

Key Responsibilities (L3)

Overall Security Engineering Ownership (Infra + Cloud)

  • Lead L3 engineering delivery for security controls across infrastructure and cloud, ensuring alignment with CLIENT security requirements, change practices, and service expectations. 
  • Drive secure configuration and hardening standards, and support continuous improvement of security tools, practices, and procedures. 

Infrastructure Security Engineering

  • Provide L3 engineering ownership for network and endpoint security controls, including firewall policy engineering, tuning, exception handling, and periodic review to reduce noise and improve protection. 
  • Support secure operations for endpoint protection and compliance enforcement expectations (policy enforcement, compliance checks, and remediation guidance). 
  • Support WAF security event handling and policy hygiene (alerts feed, anomaly escalation, certificate coordination, and rule/policy updates as requested). 
  • Support web proxy/internet gateway security control implementation activities including URL categorization decisions, allow/block lists, user-based rules, and log routing to security monitoring platforms where applicable. 
  • Support email security control tuning and operational effectiveness improvements (configuration, policy enhancements, and phishing campaign support where required). 

Cloud Security Engineering (AWS & Azure)

  • Provide L3 engineering for cloud security controls: secure connectivity, segmentation, encryption monitoring, access control governance, and vulnerability scanning expectations for cloud workloads
  • Own CSPM/CNAPP engineering outcomes: onboarding cloud accounts/subscriptions, tuning detections, ensuring integrations to operational platforms, and supporting compliance scanning functionality. 

Logging, Reporting & Control Evidence Support

  • Ensure security tooling and platforms produce required operational data (alerts/logs) and support reporting needs for stakeholders (dashboards and periodic reporting expectations). 
  • Support audit and assessment evidence readiness for implemented controls (documentation, configuration proof points, and control validation

Required Skills & Experience

  • 8–12+ years in infrastructure and cloud security engineering (enterprise scale)
  • Strong experience in firewalls, VPN, WAF/ADC, proxy, endpoint security, plus AWS/Azure cloud security
  • Proven ability to lead L3 escalations, perform secure design reviews, and drive engineering standardization 

Preferred Certifications

  • AWS Security / Azure Security (role-aligned)
  • Network security certifications (vendor-aligned)
  • CISSP / CCSP (preferred)

No Referrers Available

There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.