Director, Cloud Security Automation & Engg.

S&P Global

Gurugram District

On-site

INR 3,500,000 - 6,000,000

Full time

9 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

S&P Global is seeking a Director of Cloud Security Automation & Engineering in Gurugram to lead the security program for container and Kubernetes environments. You will own multi-year strategy, engineering roadmap, and run a team of security engineers and tech leads while staying hands-on with cluster hardening and policy design.

You will partner with BISOs, platform engineering, DevOps, GRC, and SOC to roll out container runtime security tooling across divisions and drive secure-by-default

Qualifications

  • Experience leading cloud security programs and engineering teams.
  • Strong background in container and Kubernetes security.
  • Hands-on with security tooling and automation to scale security at scale.

Responsibilities

  • Own enterprise container and Kubernetes security strategy across managed clusters.
  • Oversee deployment and lifecycle of Wiz Runtime Sensor across container estate.
  • Lead rollout of container runtime scanning and reporting with cross-functional stakeholders.
  • Define container supply-chain security strategy including image signing and SBOM generation.
  • Ensure incident response readiness with mappings to MITRE ATT&CK for Containers.

Skills

Container security
Kubernetes security
Security automation
Infra-as-code

Tools

Wiz Runtime Sensor
OPA/Gatekeeper
Kyverno
Sigstore/cosign

Job description

Our Mission
About The Role

Grade Level (for internal use): 12

The role: Director, Cloud Security Automation & Engineering

We are hiring a Director, Cloud Security Automation and Engineering to lead the team that builds and operates the controls securing our cloud and container estate. This is a hands‑on technical role: you will set multi‑year strategy, own the engineering roadmap, and work with a team of security engineers and technical leads — while staying close enough to the technology to review a cluster hardening design, an admission‑control policy, or a Terraform module.

Container and Kubernetes security is the anchor domain of this role and its most visible program. Our container footprint is expanding across every division of the firm, and the Director owns the strategy, tooling, and operational posture that keeps it safe. Around that anchor, the team also owns cloud security automation broadly — infrastructure‑as‑code guardrails, security‑as‑code frameworks, self‑service platforms that let engineering teams do the right thing by default, and the automation fabric that turns detections into resolved findings without human toil.

You will partner at the executive level with divisional BISOs, platform engineering leadership, DevOps, GRC, and the SOC — and lead the enterprise‑wide rollout of container runtime security tooling (including the Wiz Runtime Sensor) across every division.

What You'll Do
Lead the Container and Kubernetes Security Program
  • Own the enterprise container and Kubernetes security strategy across managed clusters (EKS, AKS, GKE) — cluster hardening baselines against CIS benchmarks, admission‑control frameworks (OPA/Gatekeeper or Kyverno), workload identity patterns (IRSA, Workload Identity Federation, Azure AD Workload Identity), and service‑to‑service auth standards.
  • Lead the enterprise‑wide deployment and lifecycle management of the Wiz Runtime Sensor across the container estate — coverage strategy, sensor rollout patterns, performance and stability tuning, integration with the SIEM, and integration of runtime findings into vulnerability and detection workflows.
  • Direct the enterprise rollout of container runtime scanning and reporting by partnering with all divisional stakeholders — engineering leadership, platform owners, application teams, compliance, and audit — to agree onboarding criteria, remediation SLAs, and divisional scorecards for coverage and posture.
  • Set the direction for container supply‑chain security: base‑image strategy, image signing and verification (Sigstore/cosign), SBOM generation, SLSA‑aligned build attestations, and admission‑time enforcement.
  • Own container and cluster incident response readiness; ensure detections mapped to MITRE ATT&CK for Containers are live, tuned, and rehearsed with the SOC.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director – Cloud Security Automation
Director – Cloud Security Automation

S&P Global Market Intelligence • Dadri, Gurugram District

On-site
INR 4,000,000 - 7,000,000
Director, Cloud Security Automation & Engg.
Director, Cloud Security Automation & Engg.

S&P Global • Hyderabad

On-site
INR 4,000,000 - 7,000,000
Lead Security Specialist
Lead Security Specialist

Goodfit • Delhi

On-site
INR 1,800,000 - 2,400,000
Engineering Manager – Container Orchestration Security
Engineering Manager – Container Orchestration Security

SecPod • Bengaluru

On-site
INR 2,600,000 - 6,000,000
Senior Cloud Developer (Data)
Senior Cloud Developer (Data)

BXB Digital, A Brambles Company • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Security Engineer
Security Engineer

CARPL - Radiology AI Platform • New Delhi

On-site
INR 1,000,000 - 1,800,000
Cloud Security Architect (AWS/Azure)
Cloud Security Architect (AWS/Azure)

Cloudxtreme • Hyderabad, Bengaluru, Delhi

Hybrid
INR 2,800,000 - 4,200,000
Lead / Senior Engineer – Application & Platform Security and CloudOps
Lead / Senior Engineer – Application & Platform Security and CloudOps

RackBank Datacenters Private Ltd. • Bengaluru

On-site
INR 2,800,000 - 4,000,000
Ownership of critical function
Collaborative culture
Growth opportunities
Platform Security Engineer
Platform Security Engineer

Promaynov Advisory Services Pvt. Ltd • Bengaluru

On-site
INR 1,800,000 - 2,400,000
DevSecOps Engineer
DevSecOps Engineer

Sutherland Global • Hyderabad

On-site
INR 1,800,000 - 2,600,000