
Senior Software Engineering Lead - Cloud Security and Compliance
- Bangalore, Karnataka
- Permanent
- Full-time
- Interpret and translate US and international compliance standards into technical and operational requirements for public cloud environments
- Lead and manage security and compliance initiatives across Azure, AWS, and GCP platforms
- Ensure people, processes, and technologies are aligned to meet compliance, audit, and security requirements
- Coordinate and manage compliance certifications and internal/external audits; represent cloud services during audit interviews
- Provide evidence of control effectiveness and support audit processes with deep cloud platform knowledge
- Collaborate with auditors and assessors to develop remediation plans and negotiate audit outcomes
- Track and report audit findings, ensuring timely remediation with minimal business disruption
- Influence and align with Enterprise Security and Technology teams to drive common strategies and solutions
- Engage with SIR, SOC, and ASM teams to understand and address public cloud-related challenges
- Support cloud migration efforts by ensuring security and compliance requirements are met
- Contribute to the development and refinement of enterprise security policies in alignment with regulatory and technical needs
- Recognized as a Subject Matter Expert (SME) in Cloud Security and Compliance, supporting enterprise-wide initiatives and cloud transformation
- Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so
- Bachelor’s degree in engineering or a master’s degree in computer science, Information Security, or a related field
- 10+ years of experience working with public cloud platforms, with a strong focus on security and compliance
- 7+ years of In-depth knowledge of compliance and regulatory frameworks, including ISO 27001, SOC 2, FedRAMP, GDPR, and HIPAA
- Experience in enterprise policy development, risk management, and compliance automation
- Proficiency in cloud-native security tools and Infrastructure as Code (IaC) practices
- Demonstrated ability to lead and manage audit lifecycles, including evidence gathering, control validation, and stakeholder coordination
- Proven solid communication and negotiation skills, with the ability to collaborate effectively with auditors and cross-functional teams
- 5+ years of hands-on experience with Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP); experience with Oracle Cloud Infrastructure (OCI)