Application & Cloud Security Lead

S&P Global

Hyderabad

On-site

INR 4,000,000 - 7,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health & Wellness
Flexible downtime
Continuous learning
Retirement planning
Family perks
Additional perks

Job summary

S&P Global Energy is seeking an Application & Cloud Security Lead in Hyderabad to drive security across applications, cloud and AI platforms. You will translate cybersecurity requirements into practical controls, influence engineering decisions, and lead risk remediation efforts.

You will collaborate with technology, product, risk, compliance, privacy, legal, and business teams to embed secure design into architecture, delivery, and operations. Strong communication skills are essential.

Qualifications

  • Bachelor's degree in Cybersecurity, CS, IT, Engineering, or related field (or equivalent experience).
  • 5–8+ years in cybersecurity with focus on application security, cloud security, security architecture or risk management.
  • Experience conducting security architecture reviews for applications, APIs, cloud platforms, data platforms, and enterprise tech solutions.
  • Experience with DevSecOps, CI/CD security, container security, Kubernetes security, IaC scanning, secrets management, and software supply chain security.
  • Experience with cloud security tools (CSPM, CWPP, CNAPP, SIEM, vulnerability mgmt, container scanners, identity governance).
  • Familiar with AI security concepts (prompt injection, model access control, data exposure, model monitoring, third‑party AI risk).
  • Experience with AWS/Azure/GCP and cross‑functional collaboration with tech, product, compliance, privacy, legal, and business teams.
  • Strong written and verbal communication; ability to explain security risks to technical and non‑technical audiences.

Responsibilities

  • Lead and coordinate application, cloud, and AI security initiatives across the Energy Division aligned with cyber risk objectives.
  • Conduct security architecture reviews for applications, APIs, cloud platforms, data flows, and AI solutions to identify risks.
  • Embed security requirements into solution design, development, deployment, and operations with engineering and business teams.
  • Enforce application security controls: secure coding, remediation, authentication, authorization, secrets management, and software supply chain security.
  • Oversee cloud security controls across public clouds: IAM, network security, encryption, logging, monitoring, and secure config.
  • Review AI/ML use cases for security risks: data leakage, prompt injection, model access, third‑party AI risk.
  • Track remediation of findings and risk acceptances with accountable technology owners.
  • Support cyber risk assessments, audits, and security reporting for Energy applications and cloud services.
  • Develop metrics, dashboards, and executive reporting on security posture and trends.
  • Act as trusted advisor between Energy Division and Enterprise cybersecurity teams, promoting secure‑by‑design.

Skills

Application security
Cloud security
Security architecture
DevSecOps
Risk management
Cross-functional collaboration
Security communications

Education

Bachelor's degree in Cybersecurity/CS/IT

Tools

CSPM
CWPP
CNAPP
SIEM
Container scanners
Identity governance

Job description

About the Role

Grade Level (for internal use): 11

Role Summary
The Application & Cloud Security Lead will serve as a key security leader within the S&P Global Energy Division BISO team, responsible for coordinating security initiatives across application, cloud, and AI-enabled environments. This role directly supports the protection of applications, data, systems, and reputation by proactively managing cyber risk, strengthening resilience and embedding security into everything we do.

The successful candidate will partner with technology, product, engineering, cloud, risk, compliance, and business stakeholders to ensure security is integrated into architecture, delivery, operations, and innovation. The role will focus on security architecture reviews, application security governance, cloud security enforcement, AI security oversight, risk remediation, and alignment with enterprise cybersecurity standards.

This position requires a hands‑on security leader who can translate cybersecurity requirements into practical controls, influence engineering teams, guide secure design decisions, and drive measurable improvements in cyber resilience across the Energy Division.

Key Responsibilities
  • Lead and coordinate application, cloud, and AI security initiatives across the S&P Global Energy Division in alignment with S&P Global's cyber risk management objectives.
  • Conduct security architecture reviews for applications, APIs, cloud platforms, data flows, integrations, and AI-enabled solutions to identify risks and recommend secure design improvements.
  • Partner with engineering, product, architecture, cloud, and business teams to embed security requirements into solution design, development, deployment, and operations.
  • Enforce application security controls, including secure coding practices, vulnerability remediation, authentication, authorization, secrets management, dependency security, and software supply chain risk management.
  • Oversee cloud security control implementation across public cloud environments, including identity and access management, network security, encryption, logging, monitoring, workload protection, and secure configuration.
  • Review and assess AI and machine learning use cases for security risks, including data leakage, prompt injection, model exposure, access control, third‑party AI risk, and misuse scenarios.
  • Track, prioritize, and drive remediation of application, cloud, and AI security findings, exceptions, and risk acceptances in partnership with accountable technology owners.
  • Support cyber risk assessments, compliance reviews, audit requests, and security reporting related to Energy Division applications, cloud services, and AI-enabled platforms.
  • Develop and maintain metrics, dashboards, and executive‑level reporting to communicate security posture, risk trends, remediation progress, and key security initiatives.
  • Serve as a trusted security advisor and liaison between the Energy Division and Enterprise cybersecurity teams, promoting secure‑by‑design practices and consistent adoption of security standards.
Required Qualifications
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field, or equivalent professional experience.
  • 5-8+ years experience in cybersecurity, with a strong focus on application security, cloud security, security architecture, and/or technology risk management.
  • Experience conducting security architecture reviews for applications, APIs, cloud platforms, data platforms, and enterprise technology solutions.
  • Experience with DevSecOps, CI/CD security, container security, Kubernetes security, infrastructure‑as‑code scanning, secrets management, and software supply chain security.
  • Experience with cloud security tools such as CSPM, CWPP, CNAPP, SIEM, vulnerability management platforms, container scanners, and identity governance tools.
  • Familiar with AI security concepts such as prompt injection, model access control, sensitive data exposure, model monitoring, adversarial testing, AI red teaming, and third‑party AI risk.
  • Experience working with public cloud environments such as AWS, Azure, or Google Cloud Platform.
  • Experience partnering with cross‑functional stakeholders including technology, product, risk, compliance, privacy, legal, and business teams.
  • Strong written and verbal communication skills, with the ability to explain technical security risks to both technical and non‑technical audiences.
  • Ability to prioritise risks, influence remediation, and drive outcomes in a complex enterprise environment.
  • Relevant certifications such as CISSP, SABSA, CCSK, Cloud Vendor Certifications (e.g. AWS Certified Security — Specialty, AWS Certified Solutions Architect, Google Professional Cloud Security Engineer) or equivalent credentials.
Benefits
  • Health & Wellness: Health care coverage designed for the mind and body.
  • Flexible Downtime: Generous time off helps keep you energized for your time on.
  • Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills.
  • Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company‑matched student loan contribution, and financial wellness programs.
  • Family Friendly Perks: It’s not just about you. S&P Global has perks for your partners and little ones, too, with some best‑in‑class benefits for families.
  • Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference.
Equal Opportunity Employer

S&P Global is an equal opportunity employer and all qualified candidates will receive consideration for employment without regard to race/ethnicity, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, marital status, military veteran status, unemployment status, or any other status protected by law. Only electronic job submissions will be considered for employment.

If you need an accommodation during the application process due to a disability, please send an email to EEO.Compliance@spglobal.com and your request will be forwarded to the appropriate person.

Location

Hyderabad, Telangana, India

Job Information

Job ID: 329736

Posted On: 2026-07-08

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application & Cloud Security Lead
Application & Cloud Security Lead

S&P Global • Gurugram District

On-site
INR 4,000,000 - 7,000,000
Health coverage
Generous leave
Continuous learning
+3
Application And Cloud Security Lead
Application And Cloud Security Lead

S&P Global • Gurugram District

On-site
INR 2,800,000 - 5,200,000
Health & Wellness
Flexible Downtime
Continuous Learning
+2
Application & Cloud Security Lead
Application & Cloud Security Lead

Jobtailor • Hyderabad

On-site
INR 3,000,000 - 5,200,000
Security Architect
Security Architect

S&P Global • Hyderabad

On-site
INR 2,500,000 - 4,500,000
Health & Wellness
Flexible Downtime
Continuous Learning
+3
Security Architect
Security Architect

S&P Global • Gurugram District

On-site
INR 4,200,000 - 7,000,000
Health & Wellness
Flexible Downtime
Continuous Learning
+3
Data Scientist III
Data Scientist III

S&P Global, Inc. • Hyderabad

Hybrid
INR 1,200,000 - 2,000,000
Health & Wellness
Flexible Downtime
Continuous Learning
+2
Associate Director, Business Systems Support
Associate Director, Business Systems Support

S&P Global, Inc. • Gurgaon

On-site
INR 2,500,000 - 4,000,000
Health & Wellness
Flexible Downtime
Continuous Learning
+2
Associate Director, Business Systems Support
Associate Director, Business Systems Support

S&P Global • Ahmedabad District

On-site
INR 1,800,000 - 3,200,000
Health & Wellness
Flexible Downtime
Continuous Learning
+3
Senior Data Engineer
Senior Data Engineer

S&P Global, Inc. • Hyderabad

On-site
INR 900,000 - 1,300,000
Associate Director Business Systems Support
Associate Director Business Systems Support

S&P Global • Ahmedabad District

On-site
INR 3,500,000 - 6,500,000
Health & Wellness
Continuous Learning
Retirement planning
+1