Sr Software Engineer | Cloud

Place of work Pune
Contract type -
Start date 2 weeks ago
Salary -

Job details

Job description, work day and responsibilities

HMH is a learning technology company committed to delivering connected solutions that engage learners, empower educators and improve student outcomes. As a leading provider of K–12 core curriculum, supplemental and intervention solutions, and professional learning services, HMH partners with educators and school districts to uncover solutions that unlock students’ potential and extend teachers’ capabilities.

HMH serves more than 50 million students and 4 million educators in 150 countries. HMH Technology India Pvt. Ltd. is our technology and innovation arm in India focused on developing novel products and solutions using cutting-edge technology to better serve our clients globally. HMH aims to help employees grow as people, and not just as professionals. For more information, visit www.hmhco.com

We are seeking a Senior Cloud Security Engineer to lead and manage the security of our cloud infrastructure. The role involves designing and implementing advanced security solutions, identifying vulnerabilities, and ensuring the protection of cloud-based applications and data. The ideal candidate will have deep expertise in cloud security, compliance, and automation, as well as a passion for safeguarding critical business assets. This role manages the security of our cloud infrastructure. The role involves designing and implementing advanced security solutions, identifying vulnerabilities, and ensuring the protection of cloud-based applications and data. The ideal candidate will have deep expertise in cloud security, compliance, and automation, as well as a passion for safeguarding critical business assets. You will plan, implement and track key initiatives focused on product / application security strategy, metrics, compliance, policy, developer awareness, training and stakeholder engagement. You should be confident in communicating security directives to all levels of the organization, including team members, leadership, and executives, as needed. You will collaborate closely with cross-functional teams, including Engineering, Product Management, DevOps, Legal, Risk, and Compliance etc. to enhance product and application security controls and drive meaningful improvements for the team and its members.

Duties & Responsibilities Include
• Design and implement cloud security architectures to protect applications, data, and infrastructure hosted in cloud environments (AWS, Azure, GCP, etc.).
• Secure cloud platforms such as AWS, Azure, or GCP, including services like IAM, VPC, S3, and KMS.
• Develop and enforce cloud security policies, standards, and guidelines.
• Create and maintain secure golden images for VM and containerized environments to ensure standardized, vulnerability-free deployments
• Configure and maintain Identity and Access Management (IAM) policies, roles, and permissions for least privilege access.
• Implement encryption strategies for data at rest, in transit, and during processing.
• Monitor cloud environments for security incidents and vulnerabilities using tools like ORCA, SIEM, CSPM (Cloud Security Posture Management), and CWPP (Cloud Workload Protection Platforms).
• Ensure compliance with regulatory frameworks such as GDPR, HIPAA, SOC 2, and PCI DSS as they pertain to cloud environments.
• Create and monitor cloud security metrics to evaluate the effectiveness of application security programs overseeing the entire lifecycle of security alerts from detection to incident response.
• Work closely with the Product and Architecture teams to review designs and ensure robust cloud security.
• Lead application security remediation efforts and mitigation initiatives, aligning with developer community priorities.
• Investigate and respond to security incidents, collaborating with incident response teams to mitigate and resolve threats effectively.
• Create scripts and automation tools using languages like Python, Java, PowerShell, and Bash to improve security workflows and optimize vulnerability management processes.
• Plan, implement, and track key initiatives to strengthen application security across all stages of the software development lifecycle (SDLC).
• Advocate within the organization to ensure the security of data, systems, applications, and networks, adhering to security best practices.
• Provide IT system support for security-related tasks as needed, focusing on specific security areas.
• Work autonomously and effectively to meet deadlines.
• Address regulatory requirements and implement technical aspects of compliance standards such as SOC2, ISO27001, GDPR, and SOX, ensuring full compliance with relevant regulations.

Qualifications
• Over 5 years of experience in cloud security, cloud infrastructure management, AWS shared services components or a related field, with extensive hands-on expertise in cloud platforms such as AWS, Azure, and GCP.
• Good understanding of cloud platforms, security, and tools (e.g., PaaS, IasS, SaaS) and support
• Good experience and understanding of security infrastructures in traditional data centers.
• Proven track record of designing and implementing security controls in cloud-native environments.
• Strong proficiency in scripting and automation with Python, PowerShell, or Terraform etc. Experience with additional programming languages such as Java, C/C++, or Perl is a plus.
• In-depth understanding of Identity and Access Management (IAM) in cloud environments.
• Strong understanding of encryption and authentication technologies used in cloud environments.
• Strong understanding and familiarity with Kubernetes and microservice architecture is needed.
• Familiarity with DevSecOps practices and tools such as Jenkins, GitHub Actions, and Snyk, Orca, Sonar Cube etc.
• A deep understanding of encryption and authentication technologies is essential to ensure the security of applications.
• 2+ years of application architecture or development experience having familiarity and understanding of web application development framework [React, NodeJS, Angular, Spring, MVC etc.]
• Good understanding of web application development framework (Spring/J2EE) and the MVC (Model-View-Controller) design pattern for building robust, scalable applications using Angular/React for creating dynamic, single-page applications (SPAs).
• Prior experience in Design, develop, and debug secure software for externally facing corporate web sites within Web Content Management framework is nice to have.
• Over 3 years of hands-on experience with vulnerability assessment tools such as SAST, DAST, IAST, RASP, and WAF, including tools like Snyk, Orca, Rapid7, CrowdStrike, Imperva WAF, Mitiga, Akamai Bot Manager etc.
• Working knowledge of identifying and validating security vulnerabilities in applications, understanding common web application attack vectors, assessing associated risks, and developing effective mitigation plans.
• Proven experience in leading application security remediation efforts, driving mitigation initiatives that align with the priorities of the developer community.
• Experience working in a collaborative, agile development environment and effectively contributing as a team player is a must
• Strong communication skills (both oral and written), along with excellent interpersonal, organizational, and presentation abilities. Capable of translating complex data into executive-level graphical reports and dashboards.
• Good Experience with SIEM SEIM and Log Managementtools such as Datadog, Splunk, LogRhythm, New Relic, Kibana and others is a plus.
• Understanding of A comprehensive framework for managing cybersecurity risk eg. CIS, NIST or ISO 27001, ISO 27701, COBIT, GDPR etc.

HMH Technology Private Limited is an Equal Opportunity Employer and considers applicants for all positions without regard to race, colour, religion or belief, sex, age, national origin, citizenship status, marital status, military/veteran status, genetic information, ****** orientation, gender identity, physical or mental disability or any other characteristic protected by applicable laws. We are committed to creating a dynamic work environment that values diversity and inclusion, respect and integrity, customer focus, and innovation. For more information, visit https://careers.hmhco.com/ . Follow us on Twitter, Facebook, LinkedIn, and YouTube

Company address

India
Maharashtra
Pune
Show on map Get directions
Company Name: HMH Tech India
You will be redirected to another website to apply.
Offer ID: #984282, Published: 2 weeks ago, Company registered: 10 months ago

Other offers

HR Lead
1669login
· Bangalore, IN
Resillion is a global company with end-to-end capabilities: no matter your industry, your geographical location, or stage in your digital journey. With offices in North America, Europe, and Asia, Resillion will be by you...
backend|developer
1669login
· Bangalore, IN
We seek a development engineer who is adept at solving complex problems, adaptable to rapid technological changes, and committed to continuous improvement. The ideal candidate will effectively communicate and strategize ...
Spotfire Programmer Leads
1669login
· Ahmedabad, IN
Job Description Candidate Expectation: 3 to 8 years Job Description: Working on Refreshes requests for SRT & CSTV Building Oncology & Standard Visuals for Clinical Study Team Visualization (CSTV) Setting up stand...
HR Recruiter | Title Industry
1669login
· Bangalore, IN
Position: HR Recruiter – Title Industry Company: SHOBI Group Location: Bangalore (Preference for local candidates) Budget: ₹40,000 – ₹50,000 INR (in-hand) Job Overview: SHOBI Group is looking for an experienced HR Recrui...
Graphic Designer | Fresher
1669login
· Ahmedabad, IN
We’re Hiring a Fresher Graphic Designer! ???? Are you a creative enthusiast ready to kickstart your design career? We’re looking for a passionate Fresher Graphic Designer to join our team! ???? Position: Graphic Designer...
Motion |Graphic designer |Media Production|
1669login
· Ahmedabad, IN
Job role : Motion + Graphic artist Experience : 2 - 4 Years (Must Advertising agency or media production) Working days : Monday to Friday (Alternative saturday) Salary : Upto + LPA( Based on experience ) Location : C.G R...
HCM Operations| Associate| HR Solutions
1669login
· Bangalore, IN
We're seeking someone to join our team as a HCM Operations Associate to provide operational support across the Coverage Support team in HR Solutions, understand the details of the process execution and regulatory require...
3D Generalist
1669login
· Ahmedabad, IN
About the Role: We are seeking a talented and versatile 3D Generalist to join our dynamic team. As a 3D Generalist, you will play a crucial role in creating high-quality 3D assets and environments for our games. You will...
devops|engineer
1669login
· Bangalore, IN
The ideal candidate will have a strong background in DevOps practices, with experience in infrastructure management, application deployment, and maintaining CI/CD pipelines. They should have proficiency in one or more pr...
Graphic Designer and Video Editor
1669login
· Ahmedabad, IN
Company Description Webment is a leading software development team based in Ahmedabad, offering a wide range of development services using technologies such as WordPress, Shopify, Node.js, PHP, JavaScript, React, Flutter...
HR Reward Product Specialist
1669login
· Bangalore, IN
description Position Overview Job Title: HR Reward Product Specialist Corporate Title: Associate Location: Bangalore Role Description The Performance and Reward Enablement team is a key pillar of the Reward and Performan...
Chief Human Resource Officer
1669login
· Ahmedabad, IN
HR Strategy and Leadership: Develop and implement HR strategies aligned with the group’s business goals and vision. Build and sustain a unified organizational culture across diverse business verticals. Drive leadership d...
Vice President People
1669login
· Bangalore, IN
Job description Job Description: Vice President - People (VP People) Role Overview: The Vice President - People is a strategic leadership role responsible for overseeing the company's talent acquisition, development, and...
KonProz | Generative AI Engineer | GPT Models
1669login
· Gurgaon, IN
Job Title : GenAI Engineer/ Sr. GenAI Engineer Location : Gurgaon (Work from Office). Experience : 2 5 years. Company : KonProz. About KonProz KonProz is revolutionizing the legal, tax, and regulatory sectors in India wi...