Key Responsibilities:
Vulnerability Management & Remediation
- Perform end-to-end remediation of security vulnerabilities across cloud, on-prem, and hybrid environments.
- Use Wiz to triage vulnerabilities, analyze root causes, and implement remediation actions.
- Ensure timely closure of security findings with proper validation.
Operating System Security (Linux & Windows)
- Perform OS hardening, patch management, and configuration remediation for Linux and Windows systems.
- Fix security misconfigurations and enforce baseline security policies.
- Manage package-level and system-level vulnerability remediation.
Kubernetes & Container Security
- Remediate vulnerabilities in Azure Kubernetes Service (AKS) clusters including nodes and workloads.
- Secure container images through base image hardening and vulnerability patching.
- Manage container registry security and runtime protection practices.
Azure Cloud Security
- Work on Azure security services including identity, networking, storage, and platform security controls.
- Fix misconfigurations in Azure infrastructure and security posture management systems.
- Implement least-privilege access and secure cloud configurations.
Security Automation & Infrastructure as Code
- Use Terraform and Ansible for security automation and configuration management.
- Support automation for patch management, OS hardening, and compliance checks.
- Reduce configuration drift through standardized automation practices.
IAM & Access Control
- Implement and manage IAM, RBAC, and privileged access controls.
- Participate in access reviews and ensure compliance with security policies.
- Strengthen identity security across cloud environments.
Monitoring, Audits & Compliance
- Participate in security audits, vulnerability assessments, and compliance reviews.
- Support continuous security posture improvement initiatives.
- Maintain runbooks, remediation guides, and documentation.
Collaboration & Support
- Work closely with DevOps, platform, and application teams to remediate vulnerabilities.
- Provide technical guidance on OS, cloud, and container security issues.
- Communicate remediation actions and trade-offs clearly to engineering teams.