SecOps And Governance Engineer

Cambridge Technology Enterprises Limited

Hyderabad

On-site

INR 2,800,000 - 4,600,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cambridge Technology Enterprises Limited is seeking a driven SecOps & Governance Engineer to secure cloud infrastructure and operationalise AI governance. You will work with Credo AI and VerifyWise, ensuring regulatory and enterprise governance standards across teams.

Role covers cloud security, governance, and risk management, with DevSecOps and automation responsibilities. Hybrid collaboration with Legal, Compliance, and Engineering teams is expected.

Qualifications

  • 5-10 years of experience in SecOps, governance and cloud security.
  • Experience with Credo AI and VerifyWise for AI governance.
  • Knowledge of ISO 27001, SOC 2 and CIS Benchmarks.
  • Hands-on in multi-cloud security on AWS/Azure/GCP.

Responsibilities

  • Secure cloud environments and implement governance controls.
  • Operate AI governance frameworks and risk management platforms.
  • Collaborate with legal, compliance and engineering teams.
  • Embed security into CI/CD pipelines and IaC workflows.
  • Monitor security events with SIEM/SOAR and manage incidents.

Skills

Credo AI
VerifyWise
IAM
SIEM
CSPM
Vulnerability management
Terraform
Pulumi
CloudFormation
Python
Bash
Kubernetes
Docker
Trivy
Snyk
DevSecOps
CI/CD security

Education

B.E/B. Tech/MCA

Tools

Open Policy Agent
HashiCorp Sentinel

Job description

Job Description:

We are looking for a driven and detail-oriented SecOps & Governance Engineer to secure our cloud infrastructure and operationalise AI governance frameworks. This role sits at the intersection of security operations and emerging AI compliance—an exciting frontier as organisations adopt AI at scale.

You will be responsible for securing cloud environments, operationalising governance controls, and working hands‑on with AI risk management platforms such as Credo AI and VerifyWise. You will collaborate with engineering, data science, legal, and compliance teams to ensure our infrastructure and AI systems meet regulatory and enterprise governance standards.

Roles and Responsibilities
Cloud Infrastructure Security
  • Design, implement, and maintain security controls across cloud environments (AWS / Azure / GCP)
  • Enforce IAM policies, RBAC, least-privilege access, and secrets management across multi‑cloud setups
  • Conduct regular vulnerability assessments, penetration testing coordination, and security audits
  • Monitor and respond to security events via SIEM/SOAR platforms; manage incident response workflows
  • \u003
  • Ensure network security posture: VPC configurations, firewalls, WAFs, DDoS protection, and TLS management
  • \u003/ul>
    Governance, Risk & Compliance (GRC)
    • Own and operationalise cloud governance policies aligned with ISO 27001, SOC 2, and CIS Benchmarks
    • \u003
    • Manage policy‑as‑code initiatives using tools like Open Policy Agent (OPA) or HashiCorp Sentinel
    • \u003
    • Maintain compliance dashboards and evidence artefacts for internal and external audits
    • \u003
    • Conduct risk assessments for infrastructure changes and new technology deployments
    • \u003
    • ISO 42001 (AI Management Systems): Lead or support implementation of AI governance frameworks aligned with this standard (added advantage)
    • \u003/ul>
      AI Governance & Risk Management Platforms
        \u003
      • Work with Credo AI to define, track, and report on AI model risk policies, model cards, and compliance requirements
      • \u003
      • Utilise VerifyWise or similar platforms to assess, document, and manage AI system risks end‑to‑end
      • \u003
      • Collaborate with ML/data science teams to integrate governance checkpoints into the AI/ML model lifecycle
      • \u003
      • Monitor AI systems for bias, explainability gaps, data drift, and regulatory non‑compliance
      • \u003
      • Develop internal AI governance playbooks, controls libraries, and risk registers
      • \u003/ul>
        DevSecOps & Automation ( Optional)
          \u003
        • Embed security into CI/CD pipelines (SAST, DAST, container scanning, IaC security scanning)
        • \u003
        • Manage infrastructure‑as‑code (Terraform, Pulumi, CloudFormation) with security best practices
        • \u003
        • Automate compliance checks and remediation using scripting (Python, Bash) and cloud‑native tools
        • \u003
        • Implement and manage CSPM (Cloud Security Posture Management) tools
        • \u003/ul>
          Cross‑Functional Collaboration
            \u003
          • Partner with Legal, Privacy, and Risk teams on data governance, data residency, and regulatory obligations
          • \u003
          • Provide security and governance guidance to product and engineering squads
          • \u003
          • Prepare executive‑level reports on security posture, AI governance metrics, and compliance status
          • \u003/ul> \u003
            Public Cloud Skills (Required)
              \u003
            • 3+ years of hands‑on experience operating and securing workloads on one or more public cloud platforms: AWS, Google Cloud Platform (GCP), or Microsoft Azure
            • \u003
            • AWS: Deep familiarity with core services — EC2, S3, RDS, Lambda, VPC, IAM, CloudTrail, GuardDuty, Security Hub, AWS Config, and KMS
            • \u003
            • GCP: Experience with Compute Engine, GKE, Cloud IAM, Cloud Armor, Security Command Center, VPC Service Controls, and Assured Workloads
            • \u003
            • Azure: Knowledge of Azure AD, Defender for Cloud, Policy, Sentinel, Key Vault, and Azure Monitor (advantageous)
            • \u003
            • Multi‑cloud networking: cross‑cloud connectivity, transit gateways, shared VPCs, private endpoints, and DNS architecture
            • \u003
            • Strong understanding of cloud‑native security primitives: SCPs, organisation policies, resource hierarchy, and cloud landing zone design
            • \u003
            • Cloud cost governance: tagging strategies, budget alerts, and rightsizing as they interact with compliance and security guardrails
            • \u003/ul>
              Technical Skills
                \u003
              • Proficiency with AI governance platforms: Credo AI, VerifyWise, or comparable tools
              • \u003
              • Experience with IAM, SIEM, CSPM, and vulnerability management tools
              • \u003
              • Hands‑on experience with one or more enterprise security platforms: Microsoft Defender for Cloud, CrowdStrike Falcon, or Palo Alto Prisma Cloud — covering threat detection, endpoint protection, and cloud security posture management
              • \u003
              • Infrastructure‑as‑Code (Terraform, Pulumi, or CloudFormation) for cloud resource provisioning and security automation
              • \u003
              • Scripting proficiency: Python and/or Bash for automation and compliance tooling
              • \u003
              • Working knowledge of container security: Kubernetes (EKS / GKE / AKS), Docker, and image scanning tools (Trivy, Snyk)
              • \u003
              • Understanding of DevSecOps principles and CI/CD security integration.
              • \u003/ul> \u003
                Experience:

                5 - 10 years\

                \u003
                Education Qualification:

                B.E/B. Tech/MCA\

                \u003
                Work Location

                Hyderabad\

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SecOps & Governance Engineer
SecOps & Governance Engineer

Cambridge Technology Solutions Ltd • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Engineering Division - Tech Risk Advisory -Vice President- Hyderabad
Engineering Division - Tech Risk Advisory -Vice President- Hyderabad

Goldman Sachs Group, Inc. • Hyderabad

On-site
INR 4,000,000 - 6,000,000
Senior Specialist - AI Governance, Infra & Infosec Controls
Senior Specialist - AI Governance, Infra & Infosec Controls

Magma Hdi General Insurance • Mumbai

On-site
INR 1,800,000 - 2,400,000
IT & Cloud Security Lead (Infrastructure & Technology)
IT & Cloud Security Lead (Infrastructure & Technology)

Spire Technologies And Solutions • Bengaluru

Hybrid
INR 2,400,000 - 4,200,000
Information Security Engineer Generalist AI And Automation Focus
Information Security Engineer Generalist AI And Automation Focus

Atlas Systems • Bengaluru South

Hybrid
INR 3,600,000 - 5,200,000
Information Security Engineer (Generalist – AI & Automation Focus)
Information Security Engineer (Generalist – AI & Automation Focus)

atlas group • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Information Security Engineer (Generalist – AI & Automation Focus)
Information Security Engineer (Generalist – AI & Automation Focus)

Atlas Systems • India

Hybrid
INR 1,800,000 - 2,800,000
GenAI Cloud Security Engineer
GenAI Cloud Security Engineer

S&P Global • Hyderabad

On-site
INR 2,500,000 - 3,500,000
Lead AI Security & Governance Architect
Lead AI Security & Governance Architect

Adani Group • Mumbai

On-site
INR 3,000,000 - 6,000,000
Cloud Security Engineer
Cloud Security Engineer

JUARA IT SOLUTIONS • Chennai District

On-site
INR 1,800,000 - 2,400,000