PeoplePilot
Website:
peoplepilot.io
Job details:
Role Overview
To support the end-to-end Vulnerability Management and Remediation program across multi-cloud environments, with primary focus on Microsoft Azure and secondary exposure to Google Cloud Platform (GCP), ensuring proactive identification, prioritization, and remediation of security vulnerabilities through hands-on engineering and operational excellence.
This role supports and secures the customer's public cloud environments as the firm evolves from a predominantly Azure-based footprint into a multi-cloud operating model, with increasing adoption of Google Cloud Platform (GCP).
The Senior Vulnerability Management Engineer / Public Cloud Security Engineer serves as a senior security engineer responsible for identifying, engineering, and operating cloud-native vulnerability and exposure management capabilities across public cloud platforms, reducing systemic risk by detecting control breaks, insecure configurations, and exploitable vulnerabilities before they result in incidents.
This position sits at the intersection of cloud engineering, security engineering, and reliability, with responsibility for engineering, onboarding, operating, and continuously improving security platforms that protect cloud workloads in a highly regulated environment.
Immediate Joiner Required - 15 Days Notice Period (Max)
Location
- Pune (Work from Offshore Development Center — ODC)
- Chennai (Client location)
Key Responsibilities
- Engineer, onboard, and provide production support for cloud security and vulnerability management platforms.
- Design and operate security controls that support Azure today while scaling into GCP.
- Perform vulnerability scanning, assessment, prioritization, and remediation.
- Detect, analyze, and remediate cloud vulnerabilities, misconfigurations, and control gaps.
- Engineer control-break detection techniques to identify systemic security failures early.
- Support the architecture, deployment, and lifecycle management of cloud security platforms.
- Manage the vulnerability lifecycle: Discovery → Assessment → Remediation → Reporting.
- Ensure vulnerabilities are remediated within defined Service Level Agreements (SLAs).
- Develop automation scripts and reporting dashboards.
- Contribute to incident response, mitigation, and post-incident reviews from a cloud security perspective.
- Collaborate with cloud engineering teams to embed security controls into platform design.
- Research and evaluate cloud security technologies aligned with the customer's risk posture.
- Produce and maintain technical documentation, operational procedures, and implementation standards.
Cloud Environment & Security Scope
- Microsoft Azure (primary): ~70%
- Google Cloud Platform (GCP): ~30%
- Multi-region cloud architectures supporting production, pre-production, and development environments.
- Shared responsibility security models across infrastructure, platform, and application layers.
Cloud Security Focus Areas
- Cloud vulnerability management across compute, container, platform, and managed services.
- Identify, prioritize, and remediate cloud misconfigurations and vulnerabilities using Microsoft Defender for Cloud, Azure Security Center, Azure Policy, Azure Resource Graph, and CSPM.
- GCP visibility via Security Command Center, Cloud Asset Inventory, and IAM.
- Detection of misconfigurations, control drift, and insecure cloud patterns.
- Exposure management spanning identity, network, data, and workload layers.
- Reducing systemic risk through automation, standardization, and preventative controls.
Security Platforms & Tooling
- Qualys, Tenable (Nessus), Rapid7, and cloud-native security tools.
- SIEM, centralized logging, EDR/XDR, packet capture and network visibility tooling.
- Integration of security platforms via APIs into cloud and DevOps workflows.
- Configuration management and automation across large-scale security platforms.
- Working knowledge of network, operating system, endpoint, application, and cloud security.
Infrastructure & Automation
- Infrastructure as Code (IaC).
- Terraform and cloud-native tooling.
- CI/CD and DevSecOps integrations.
- Python-based scripting and automation.
Reliability, Operations & Risk
- Apply Site Reliability Engineering (SRE) principles to security platforms.
- Participate in system design, platform management, and capacity planning.
- Ensure audit-ready documentation and operational hygiene.
- Maintain a strong understanding of enterprise risk culture, control frameworks, and risk reduction techniques.
Requirements
Experience & Required Qualifications
- 7–9+ years of overall experience in Cybersecurity, Infrastructure Security, Cloud Security, or Vulnerability Management.
- Majority of that experience in Vulnerability Management, Vulnerability Assessment, Remediation Governance, and Security Operations.
- Bachelor's degree in Computer Science, Information Systems, or equivalent engineering experience.
- Senior-level experience engineering and operating security platforms in public cloud environments.
- Strong hands-on Microsoft Azure experience (~70%), with working knowledge of GCP (~30%).
- Deep experience in vulnerability management, configuration assessment, and exposure reduction.
- Proficiency in Python for security automation and tooling.
- Experience operating large-scale distributed systems in regulated environments.
- Strong understanding of UNIX/Linux internals, networking, and cloud infrastructure.
- Proven hands-on experience delivering vulnerability management, remediation, and cloud security engineering within enterprise environments.
Preferred Qualifications
- Financial services or highly regulated industry experience.
- Experience integrating security platforms using APIs.
- Familiarity with SIEM query languages (e.g., Splunk SPL, SQL-based analytics).
- Experience with DevSecOps and CI/CD security integrations.
- Exposure to containerized and Kubernetes-based environments.
- Experience applying AI/ML techniques to security analytics or detection.
Click on Apply to know more.