Platform Security

Metaphor Infotech Mumbai

Gurugram District, Bengaluru

On-site

INR 1,500,000 - 3,200,000

Full time

9 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Metaphor Infotech Mumbai seeks a hands-on Cloud Security Engineer to embed DevSecOps practices across CI/CD, IaC, and cloud platforms. You will drive secure-by-default configurations, automate policy checks, and enable teams through templates and guidance.

Key responsibilities include secure architecture reviews, threat detection improvement, and incident response support. Strong scripting across PowerShell/Python, Terraform and Azure DevOps is required for success.

Qualifications

  • Hands-on cloud security engineering experience.
  • Experience embedding security into CI/CD pipelines.
  • Strong scripting and automation skills.
  • Knowledge of IaC security, policy as code, and secure architecture.

Responsibilities

  • Embed security scanning, image validation, dependency checks into CI/CD workflows.
  • Lead reviews of Terraform modules to ensure secure configurations.
  • Develop and tune threat detection rules and incident response playbooks.
  • Participate in on-call rotations and support containment and root cause analysis.

Skills

IaC assessment
Policy as code
Scanning tools
CI/CD pipelines
PowerShell
Python
Bash
Threat detection
Incident response
Automation

Tools

Terraform
Azure DevOps

Job description

The Team

Cloud Engineering supports the firm by delivering modern platform capabilities, observability services, and engineering enablement across distributed systems. The Platform Security team safeguards cloud platforms by implementing securebydefault patterns, enforcing guardrails, and supporting threat detection, response, and continuous security improvement across digital services.

Technical Leadership
  • Provide guidance to engineers on secure cloud configurations, secret management, identity governance, and platform guardrails.
  • Lead security onboarding for new services, ensuring alignment with securebydefault patterns.
Policy, Governance & Access Control
  • Develop and refine security policies, baseline configurations, and platform governance controls.
  • Manage and review access control models including RBAC, privileged access, automation identities, and workload identities.
  • Oversee automated policy checks and compliance monitoring.
DevSecOps & SDLC Security
  • Embed security scanning, image validation, dependency checks, IaC scanning, and code signing into CI/CD workflows.
  • Create reusable DevSecOps templates for teams to adopt (pipeline templates, scanning configs, signing steps).
IaC Review & Secure Architecture
  • Lead reviews of Terraform modules to ensure secure configurations and alignment with guardrails.
  • Contribute to secure architecture patterns for networking, identity, and workload isolation.
Threat Detection, IR & Automation
  • Enhance detections, rule sets, and response playbooks for cloud threat intelligence signals.
  • Participate in incident response activities, supporting containment and root cause analysis.
  • Build automation to support access reviews, remediation workflows, and compliance reporting.
Stakeholder Engagement & Enablement
  • Work closely with product, observability, SRE, and platform engineering teams to embed security early in design.
  • Deliver training, guidance, and bestpractice documentation.
  • Manage relationships with stakeholders to become a trusted partner.
  • Lead by example by living by Our Values and embracing our culture
Shift Responsibilities & Operational Support
  • Work in rotational shifts as required.
  • Participate in oncall rotations to respond to and resolve highseverity incidents in a timely manner.
The Person

Strong handson experience in cloud security engineering and DevSecOps.

  • Skilled in IaC assessment, policyascode, scanning tools, and secure architecture.
  • Extensive knowledge of CI/CD pipelining skills using Azure DevOps or equivalent.
  • Proficient in scripting/automation languages (PowerShell, Python, Bash).
  • Familiar with threat detection, cloud forensics, and incident response processes.
  • Effective communicator able to influence engineering teams to adopt securebydefault practices.
  • Strong sense of ownership and problemsolving abilities and commitment to raising engineering standards.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Platform Security Engineer
Platform Security Engineer

Promaynov Advisory Services Pvt. Ltd • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Senior Azure Cloud Security Engineer
Senior Azure Cloud Security Engineer

Backbase • Hyderabad

On-site
INR 2,000,000 - 3,000,000
Senior Cloud Security Engineer - DevSecOps
Senior Cloud Security Engineer - DevSecOps

NetConnectGlobal • Hyderabad

On-site
INR 1,500,000 - 2,500,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

NetConnectGlobal • Hyderabad

On-site
INR 1,500,000 - 2,500,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,500,000 - 2,000,000
Lead Engineer - Cloud IND
Lead Engineer - Cloud IND

OSB India • Bengaluru

On-site
INR 1,400,000 - 2,400,000
AZURE Platform Security AM
AZURE Platform Security AM

Freelancer • Gurugram District, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Sr. Platform Engineer
Sr. Platform Engineer

Techblocks • Gurugram District

On-site
INR 800,000 - 1,200,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Kantar Group Limited • Hyderabad

On-site
INR 2,500,000 - 5,000,000
Security Architect
Security Architect

ValueLabs • Hyderabad

On-site
INR 3,000,000 - 5,000,000