S&P Global Corporate The Role: Lead / Senior Lead Information Security Engineer – Cloud Security Specialist The Team: Part of the Cloud Security team, responsible for safeguarding an organization's digital assets, data, and applications hosted in cloud environments. Our primary focus is to ensure the confidentiality, integrity, and availability of cloud resources. The Team is based in New York, Princeton, London, Delhi NCR and Hyderabad. The Impact: A cloud security team plays a vital role in enhancing an organization's security posture within cloud environments. By proactively identifying and mitigating risks, safeguarding sensitive data, ensuring compliance, and responding to security incidents, the team not only reduces security threats but also instills confidence, supports innovation, and promotes business continuity, thereby contributing significantly to S&P Global's success and resilience in the cloud era. The position is critical as the business is very dynamic and constantly evolving to Power the Markets of the Future. What’s in it for you: S&P Global is on a journey to enhance its existing security controls and processes. This role will allow you to be present at the start of the firms journey towards a mature security assessment and measurement model. The role involves engaging with a broad range of technologists and business professionals allowing you to develop a broad understand of the technology and business flows. As your experience of the technology and the firm grows there is an opportunity to grow your role to work with the technologists and business professionals directly to partner on developing and assessing the firm’s security architecture. Responsibilities: Support the development and execution of enterprise-wide Cloud security program Define and manage security controls for a multi-cloud architecture Configure, maintain, deploy, and write rules in Cloud security tools Design and implement 3rd party and cloud-native tooling to meet defined requirements Develop standard operating procedures and trainings for each technology Architect and continuously improve security technology stack, process and procedures, support model and cross-function interactions utilizing automation where possible Review and investigate alerts generated from Cloud security tools and escalate as appropriate Review and assess utilization of Cloud security tooling Promote and drive adoption of Cloud security tooling across the enterprise Partner across the Security Operations team to respond to cybersecurity incidents Develop and report Cloud security coverage metrics and remediation plans Define procedures to validate the effectiveness of the design, deployment, and management of security controls that aim to maintain confidentiality, integrity, and availability of Cloud networks and technology platforms What We’re Looking For: Basic Qualifications: Bachelors’ Degree or industry equivalent work experience in cybersecurity, international security architecture, and/or engineering in a converged security program 3-5 years of experience operating with at least one cloud provider, preferably GCP, Azure, or AWS Strong understanding of Cloud security industry standards and best practices (CSA CCM, CIS, NIST benchmarks, etc.) Proficient use of Linux, MacOS, and Windows Operating System tools Operating and maintaining tools across Cloud security technology stack (CSPM, CWPP, SASE, CASB, CIEM, Cloud native features like GuardDuty, AWS Config, Amazon Inspector, etc.) Ability to visualize and integrate cloud specific data and alerts with other security systems Advanced hands-on experience using one or more programming/scripting languages (e.g., Python, Go, Java, Terraform, etc.) Experience in a multi-cloud or hybrid cloud environment Working knowledge of SecDevOps and Shift Left concepts Technical knowledge of Kubernetes and Docker technologies and associated security requirements (Kubernetes, Docker, etc.) Familiarity with source code management and CI/CD tools (e.g., Github, Bitbucket, Jenkins, Artifactory, etc.) At least one associate level cloud certification (AWS solutions architect, GCP Associate Cloud Engineer, etc.) Preferred Qualifications: Certified solutions architect with Amazon Web Services (AWS) or Microsoft Azure or Google Cloud 3-5 years of experience operating with at least one cloud provider, preferably GCP, Azure, or AWS Experience with Cloud Security Posture Management tools such as Wiz, Prisma Cloud, Divvy Cloud etc. Return to Work: Have you taken time out for caring responsibilities and are now looking to return to work? As part of our Return to Work initiative (link to career site page when available), we are encouraging enthusiastic and talented returners to apply, and will actively support your return to the workplace. Grade: 10 or 11 The Location: Gurgaon or Hyderabad About Company Statement: S&P Global delivers essential intelligence that powers decision making. We provide the world’s leading organizations with the right data, connected technologies and expertise they need to move ahead. As part of our team, you’ll help solve complex challenges that equip businesses, governments and individuals with the knowledge to adapt to a changing economic landscape. ----------------------------------------------------------- Equal Opportunity Employer S&P Global is an equal opportunity employer and all qualified candidates will receive consideration for employment without regard to race/ethnicity, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, marital status, military veteran status, unemployment status, or any other status protected by law. Only electronic job submissions will be considered for employment. If you need an accommodation during the application process due to a disability, please send an email to:
[email protected] and your request will be forwarded to the appropriate person. US Candidates Only: The EEO is the Law Poster http://www.dol.gov/ofccp/regs/compliance/posters/pdf/eeopost.pdf describes discrimination protections under federal law. ----------------------------------------------------------- 20 - Professional (EEO-2 Job Categories-United States of America), IFTECH202.2 - Middle Professional Tier II (EEO Job Group) Job ID: 293599 Posted On: 2023-11-12 Location: Hyderabad, Telangana, India