ApplySarthi

Principal Security Engineer Cloud and Infrastructure Security

Jobgether

Tailor my CV for this job, freeView job and applyYour CV rewritten for this role, from your real experience. Sign in with Google, nothing to install.

Got this interview? Our apps help you get the job.

Skills named in this job

Read from the description itself, not inferred.

This role on the market

2,108 open infrastructure roles across 294 companies are on ApplySarthi right now, most of them in Bengaluru (70), Hyderabad (28), Delhi NCR (13).

What infrastructure roles keep asking for: AWS (32%), Python (25%), Kubernetes (22%), Observability (21%), System design (20%), CI/CD (16%), Terraform (15%), Linux (15%) — counted across their open postings here.

AWS jobs · Azure jobs · Kubernetes jobs

Jobgether has 3,752 open roles listed here.

Counted across 14 company job boards, updated as roles open and close.

Preparing for this interview

Interviews for infrastructure roles keep coming back to AWS, Python, Kubernetes, Observability. Practise those questions before you sit with Jobgether.

Questions you are likely to be asked

  1. Why do you want to join Jobgether?
  2. What is your experience with AWS? Tell me one thing you learned the hard way.
  3. Walk me through how code gets from a commit to production where you work.
  4. Tell me about an outage you handled. What did you learn from it?
  5. How do you decide what to monitor, and what should wake someone up at night?

Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.

Practise the Principal Security Engineer Cloud and Infrastructure Security at Jobgether interview free →

Accountabilities: Own and evolve cloud security architecture across Azure and AWS, including tenant, subscription and account structures, network segmentation, private connectivity, traffic controls, egress policies, and workload isolation. Assess infrastructure and product environments against real-world security, regulatory, and certification requirements, identifying architectural risks before they become production constraints. Establish secure-by-default infrastructure patterns, hardened modules, cloud landing zones, account baselines, and reusable security controls within infrastructure-as-code practices. Extend policy-as-code throughout development and deployment pipelines, enabling security feedback and enforcement earlier in the engineering lifecycle. Own hardened virtual machine and container image pipelines, including image construction, patching, provenance, signing, lifecycle automation, and ongoing maintenance. Define secure architectures and defaults for container orchestration platforms, including Kubernetes environments and deployment configurations inherited by customers. Establish security architecture for AI workloads and AI-enabled development tooling, covering model and inference exposure, data boundaries, residency, identities, secrets, and appropriate guardrails. Lead infrastructure vulnerability and exposure management from discovery and risk prioritization through ownership, remediation, and verification. Develop a unified approach to cloud posture and workload protection across Azure and AWS, including security coverage standards and remediation workflows. Determine where automation and agentic workflows should act autonomously versus provide recommendations, ensuring appropriate validation and safeguards. Build security workflows that produce actionable pull requests, automated fixes, or clearly owned remediation paths rather than relying solely on manual ticket management. Design cloud, configuration, and network controls so that compliance evidence can be generated efficiently through queries and automation. Partner closely with engineering teams to influence architectural decisions early and ensure security controls are practical, scalable, and consistently adopted. Provide senior technical leadership on infrastructure security strategy and help establish the security engineering standards for a growing organization. Requirements 10+ years of experience in security engineering or infrastructure engineering, including substantial experience in cloud architecture; equivalent depth of experience will be considered. Deep hands-on cloud security architecture experience across Azure and AWS, with significant expertise in at least one cloud and strong working knowledge of the other. Recent hands-on experience securing AI workloads or AI-enabled security/development tooling, preferably within the last six months. Demonstrated ability to build security solutions, frameworks, or engineering capabilities that development or infrastructure teams successfully adopted and continued using. Strong infrastructure-as-code experience and the ability to improve mature engineering practices through secure modules, reusable patterns, and automation. Strong understanding of cloud network security, including segmentation, private connectivity, egress controls, east-west traffic, and workload isolation. Experience with container and Kubernetes security, image hardening, software supply-chain integrity, and secrets management. Knowledge of policy-as-code frameworks and experience determining the appropriate points for security enforcement throughout the software lifecycle. Experience designing security controls that have successfully supported formal audits or compliance requirements. Strong understanding of infrastructure vulnerability management, cloud security posture management, workload protection, and remediation processes. Experience with security automation and sound judgment around where autonomous workflows can safely operate and where human approval is required. Ability to balance technical risk, business priorities, regulatory requirements, and practical engineering constraints. Strong communication and collaboration skills, with the ability to influence senior engineers, architects, and cross-functional stakeholders. Experience with customer-deployed software, FedRAMP or IRAP environments, large-scale cloud migrations, or major infrastructure transformations is advantageous. Experience with ISO 27001, SOC 2, PCI, or similar security and compliance frameworks is beneficial. Bachelor's degree in computer science, information security, engineering, or a related technical discipline is preferred. Benefits Senior principal-level technical ownership with the opportunity to shape an infrastructure security program from the ground up. Remote working opportunity based in India. Direct visibility with security and engineering leadership. Opportunity to influence engineering standards, cloud architecture, automation, and secure-by-default practices at scale. Exposure to Azure, AWS, Kubernetes, infrastructure-as-code, AI security, vulnerability management, and modern security automation. Opportunity to work on security initiatives that support certifications, regulatory compliance, customer trust, and market expansion. Globally distributed and collaborative working environment. Strong emphasis on innovation, professional development, health and wellbeing, and career growth. Equal-opportunity workplace committed to an inclusive and respectful environment.

Match this job to your CV

ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.

Check my match →

Similar open roles

Need answers during your interview? Try Live Sarthi.

Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.

Try Live Sarthi free →

A Windows app, from the same team as ApplySarthi.

Listed on lever · posted 2026-10-08. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.