Experience
9 - 14 yrs
Salary (CTC)
₹22.5L - ₹37.5L
Job Location
Pune, India
Vacancy
1
Designation
Cloud Security Engineer
Job Type
ONSITE
Job Description
Job Title: Public Cloud Security Engineer - Vulnerability & Exposure Management (MultiCloud)
Experience: 9+ years
Mode: Remote
Role Objective
To lead and drive the end-to-end Vulnerability Management and Remediation program across multi-cloud environments, with primary focus on Microsoft Azure and secondary exposure to Google Cloud Platform (GCP), ensuring proactive identification, prioritization, and resolution of security vulnerabilities while mentoring and managing a high-performing team.
Key Responsibilities
- Lead Vulnerability Management function across cloud and hybrid environments
• Define strategy, roadmap, and operating model
• Mentor and guide vulnerability management team
• Act as escalation point for critical vulnerabilities
• Perform vulnerability scanning, assessment, prioritization, and remediation
• Ensure closure of vulnerabilities within defined Service Level Agreements (SLAs)
• Manage vulnerability lifecycle: Discovery Assessment Remediation Reporting
• Drive automation and reporting dashboards
Cloud Security Focus
- Microsoft Azure: Heavy hands-on exposure, approximately 70%, including Microsoft Defender for Cloud, Azure Security Center, Azure Policy, Azure Resource Graph, and cloud security posture management
• Google Cloud Platform (GCP): Mild working exposure, approximately 30%, including Security Command Center, Cloud Asset Inventory, Identity and Access Management (IAM), and vulnerability/misconfiguration visibility
• Identify, prioritize, and remediate cloud misconfigurations and vulnerabilities across Microsoft Azure and Google Cloud Platform (GCP)
Technical Skills
- Strong hands-on experience in Vulnerability Management and Remediation as the primary career focus
• Experience with tools such as Qualys, Tenable (Nessus), Rapid7, and cloud-native security tools across Microsoft Azure and Google Cloud Platform (GCP)
• Knowledge of network, operating system, endpoint, application, and cloud security
• Basic understanding of DevSecOps (Development, Security, and Operations) concepts
Experience & Qualifications
- 1012+ years of overall experience in Cybersecurity, Infrastructure Security, Cloud Security, or Vulnerability Management
• Majority of the overall 10–12 years of experience must be in Vulnerability Management, Vulnerability Assessment, Remediation Governance, and Security Operations
• Strong Microsoft Azure exposure, approximately 70%, with working knowledge of Google Cloud Platform (GCP), approximately 30%
• Proven leadership experience in managing vulnerability management programs, remediation tracking, stakeholder governance, and technical teams
Key Competencies
- Strong problem-solving and remediation mindset
• Excellent communication and stakeholder management
• Leadership with ownership-driven accountability
Success Criteria (KPIs)
- Reduction in high and critical vulnerabilities
• Improvement in remediation SLAs
• High-quality candidate validation and team productivity
