Role Overview
We are looking for a highly skilled Cloud Security SME to join the Information Security team of a leading General Insurance organization. The role will focus on strengthening and enhancing the cloud security posture across multi-cloud environments, primarily AWS and Azure, with exposure to Oracle Cloud Infrastructure (OCI).
The ideal candidate should possess strong expertise in cloud security architecture, governance, monitoring, compliance, and security enablement across cloud platforms. This is a hands-on security governance and architecture role, not a cloud development or DevOps role.
Key Responsibilities
- Own cloud security governance framework across AWS accounts (Control Tower / Landing Zone setup)
- Drive cloud security initiatives across AWS, Azure, and OCI environments
- Review and strengthen cloud security architecture and configurations
- Define and implement cloud security best practices, policies, and standards
- Monitor cloud environments for security risks, vulnerabilities, and compliance gaps
- Enable and manage cloud-native security controls and monitoring tools
- Validate Cloud Security Provider adherence to Security Policy and Control Standard
- Work closely with infrastructure, SOC, and application teams to improve cloud security posture
- Ensure secure configuration and governance of IAM, SSO, cross-account roles, MFA, JIT/PAM access, network security (segmentation), logging, encryption, and access management
- Conduct security assessments, audits, and risk reviews for cloud workloads
- Recommend and ensure secure configuration implementation related to cloud hardening and security optimization including secure configuration of EC2, EKS, ECS, Lambda, S3, RDS, DynamoDB. Validate implementation of Security Groups / NACLs, Encryption (KMS, ACM), Secrets management
- Support incident response and investigation related to cloud environments
- Maintain alignment with regulatory and compliance requirements relevant to the insurance industry
Required Skills & Experience
- 5–10 years of overall Information Security experience with strong exposure to Cloud Security
- Strong hands-on understanding of AWS and Microsoft Azure security architecture
- Working knowledge of Oracle Cloud Infrastructure (OCI) security concepts
- Expertise in cloud security architecture, IAM & access governance, security monitoring & logging, compliance & governance, and security hardening
- Experience with cloud security posture management and monitoring tools
- Good understanding of cloud risks, threat vectors, and mitigation strategies
- Hands on experience of overseeing security controls in CI/CD pipeline, container image vulnerability management.
- Ability to work as a Subject Matter Expert (SME) for cloud security initiatives
Preferred Certifications
- AWS Certified Security – Specialty
- AWS Solutions Architect Associate/Professional
- CISSP / CCSP (Good to have)
Preferred Industry Background
- BFSI / Insurance / Financial Services industry preferred
Work Model
- Hybrid working model – 3 days per week from Goregaon office
Key Traits
- Strong analytical and problem-solving skills
- Good stakeholder management and communication abilities
- Ability to work independently and drive security improvements
- Proactive mindset with strong governance orientation
Pay: ₹700,000.00 - ₹800,000.00 per year
Work Location: In person