Senior Security Engineer (Cloud, AI & Compliance)

Skit.ai

Bengaluru

On-site

INR 1,500,000 - 2,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Skit.ai, located in Bengaluru, is seeking a Senior Security Engineer specializing in Cloud, AI, and Compliance security. In this role, you will handle security posture across AWS and Azure, ensuring compliance and customer security assurance.

The ideal candidate will have over 5 years of experience in security engineering and must exhibit strong communication skills to document security processes for both technical and non-technical audiences. Join Skit.ai, an innovator in Conversational AI!

Qualifications

  • 5+ years in security engineering, DevSecOps, cloud security, or product security, with senior ownership of security programs.
  • Hands-on production security across both AWS and Azure, including native security services.
  • Strong container and Kubernetes security including image scanning and runtime hardening.

Responsibilities

  • Own threat detection and posture management across AWS and Azure including GuardDuty and Security Hub.
  • Run and operationalize SAST and DAST, driving fixes for findings.
  • Be the primary point of contact for customer security questionnaires and audits.

Skills

5+ years in security engineering
Hands-on production security with AWS and Azure
Strong container and Kubernetes security
Application security depth
Excellent written communication

Tools

SonarQube
Semgrep
Snyk
OWASP ZAP
Burp Suite

Job description

About us

Skit.ai is the pioneer Conversational AI company transforming collections with omnichannel GenAI-powered assistants. Skit.ai’s Collection Orchestration Platform, the world’s first solution, streamlines collection conversations by syncing channels and accounts. Skit.ai’s Large Collection Model (LCM), a collection LLM, powers the strategy engine to optimize interactions, enhance customer experiences, and boost bottom lines for enterprises. Skit.ai has received several awards and recognitions, including the BIG AI Excellence Award 2024, Stevie Gold Winner 2023 for Most Innovative Company by The International Business Awards, and Disruptive Technology of the Year 2022 by CCW. Skit.ai is headquartered in New York City, NY. Visit https://skit.ai/

Job Title

Senior Security Engineer (Cloud, AI & Compliance)

Why this role exists

We operate a voice AI platform handling large-scale automated calls for regulated enterprises in banking and telecom. Our customers’ information-security teams routinely require security evidence and assurance — SAST/DAST reports, AWS GuardDuty and container-security reports, CIS Benchmark posture for AWS and Azure, LLM guardrails documentation, and mappings to standards like the OWASP Top 10 for LLMs and MITRE ATLAS.

Today this work is handled reactively across the team. We are hiring a senior, dedicated owner for security posture, AI/LLM security, and customer security assurance — someone who keeps our evidence audit-ready, hardens our cloud and containers continuously, and is the trusted point of contact for client security reviews.

What you’ll own

Cloud security posture (AWS & Azure)

  • Own threat detection and posture management across AWS and Azure — AWS GuardDuty, Security Hub, Inspector, Config; Microsoft Defender for Cloud and Azure Policy.
  • Establish and maintain CIS Benchmark compliance for AWS and Azure; track drift and remediate.
  • Drive IAM hygiene, network segmentation, encryption, secrets management, and least-privilege access.

Container & supply-chain security

  • Own container image and runtime security — scanning with Trivy / Grype, configuration auditing with Dockle and Docker Bench, and Kubernetes hardening.
  • Maintain SBOMs and dependency / vulnerability scanning across services; manage remediation SLAs.

Application security

  • Run and operationalize SAST and DAST (e.g. SonarQube / Semgrep / Snyk; OWASP ZAP / Burp Suite); triage findings and drive fixes.
  • Embed security into the SDLC — secure coding standards, PR / security review gates, secrets detection.
  • Coordinate external penetration tests and own remediation tracking.

AI / LLM security

  • Own the platform’s LLM guardrails — content safety (e.g. Azure OpenAI content filtering), prompt-injection defenses, output validation, and grounding controls.
  • Maintain mappings to the OWASP Top 10 for LLMs and MITRE ATLAS; run AI red-teaming and close gaps.
  • Define guardrail-breach detection and AI-specific monitoring, in partnership with the AI engineering team.

Compliance & customer security assurance

  • Be the primary point of contact for customer (banking / telecom) security questionnaires, due diligence, and audits.
  • Keep a living, audit-ready evidence library: SAST/DAST summaries, GuardDuty and container-security reports, CIS posture, guardrails documentation, pen-test summaries, SBOMs.
  • Support and progress formal certifications and frameworks (e.g. ISO/IEC 27001, SOC 2, NIST AI RMF, ISO/IEC 42001) and applicable regulatory expectations (e.g. PCI-DSS where payments are in scope, data-protection requirements).

Detection, monitoring & incident response

  • Mature logging, alerting, and threat detection across the stack; integrate with existing observability.
  • Own and rehearse incident-response runbooks; lead investigations and post-incident reviews.

What you bring

Required
  • 5+ years in security engineering, DevSecOps, cloud security, or product security, with senior ownership of security programs.
  • Hands-on production security across both AWS and Azure, including native security services (GuardDuty / Security Hub / Defender for Cloud).
  • Strong container and Kubernetes security — image scanning, runtime, hardening, supply-chain / SBOM.
  • Application security depth — SAST/DAST, secure SDLC, secrets management, vulnerability management.
  • Demonstrated experience responding to enterprise customer security reviews and audits (questionnaires, evidence packages, certification programs).
  • Excellent written communication — clear security documentation for technical and non-technical audiences, including external client InfoSec teams.
Strongly preferred
  • Working knowledge of AI/LLM security — OWASP Top 10 for LLMs, MITRE ATLAS, prompt-injection and content-safety controls — or clear aptitude and intent to own this fast-evolving area.
  • Experience in a regulated domain (financial services, telecom, healthcare) and with frameworks such as ISO 27001, SOC 2, NIST AI RMF, or ISO 42001.
  • Familiarity with CI/CD security integration and infrastructure-as-code (Terraform).
  • Relevant certifications a plus: CISSP, CCSP, AWS/Azure security specialty, CKS, OSCP.
You’ll thrive here if you
  • Operate independently as the dedicated owner, but partner closely with engineering and AI teams.
  • Balance hands-on technical work with customer-facing assurance and documentation.
  • Are pragmatic — prioritize the controls and evidence that reduce real risk and unblock customers.
Tools & technologies you’ll work with
  • AppSec : SonarQube / Semgrep / Snyk, OWASP ZAP, Burp Suite.
  • Posture & IaC : CIS Benchmarks, Checkov, tfsec. Supply chain: Syft / CycloneDX SBOMs.
  • AI security : OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF. Secrets: managed secret store / Vault.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director, Information Security
Director, Information Security

InvestCloud, Inc. • Bengaluru

On-site
INR 3,500,000 - 7,000,000
Security Engineer
Security Engineer

Promaynov Advisory Services Pvt. Ltd • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Lead Security Engineer – DevSecOps
Lead Security Engineer – DevSecOps

Jobtailor • India

On-site
INR 4,000,000 - 6,500,000
Security Engineering Manager
Security Engineering Manager

Smartstream Limited • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Security Engineering Manager
Security Engineering Manager

SmartStream • India

On-site
INR 4,000,000 - 6,000,000
AI and Cloud Security Analyst
AI and Cloud Security Analyst

name • India

On-site
INR 1,500,000 - 2,300,000
Application Security Engineer II
Application Security Engineer II

Cvent • Gurugram District

Hybrid
INR 1,800,000 - 2,800,000
Security Engineering Manager
Security Engineering Manager

Smartstream • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Appsec & AI Security
Appsec & AI Security

Promaynov Advisory Services Pvt. Ltd • Bengaluru

On-site
INR 2,500,000 - 3,500,000
Security Architect
Security Architect

ValueLabs • Hyderabad

On-site
INR 3,000,000 - 5,000,000