IT Systems Engineer at Metadome.ai · Bengaluru (Bangalore) · 5 - 10 years · ₹15L - ₹18L / yr · Raised funding · Posted 23 Sep 2026

IT Systems Engineer
Location: Bengaluru, India · On-site | Experience: 5+ years in IT systems / infrastructure
Department: IT & Information Security | Employment Type: Full-time | Reports To: Engineering Leadership
Focus: Own the identity, endpoints, network, and compliance backbone that powers immersive technology at
scale.
The Mission
About Metadome.ai
Metadome.ai is an immersive 3D & XR technology company that enables cloud-based, photorealistic, and captivating customer experiences for brands. Our technology offers a complete stack for creating immersive 3D & XR applications with omni-channe deployment across both in-store and digital touchpoints, and over a multitude of devices. These experiences span a spectrum of use cases across the automotive, home décor, fashion, and cosmetics & accessories sectors. Our flagship automotive platform — Autodome — enables unprecedented photorealistic, cloud-based immersive 3D & XR applications that cover the entire pre-retail funnel, empowering brands to launch products virtually and drive awareness, engagement, and bookings among modern automotive consumers. Today, we are trusted partners to leading brands across the globe — including Unilever, MG Motor, Lexus, Asian Paints, Tata Motors, and Royal Enfield, among others. We have also partnered with the likes of TCS, SAP , and PwC, and are an active voice in the XR community, including the
Metaverse Standards Forum and the VR/AR Association.
About the Role
We are looking for a hands-on IT Systems Engineer to own and run the technology backbone that keeps our teams productive and our data secure. You will be the single point of accountability for IT operations and information security across a multi-location business where 24x7 systems availability is core to how we operate — managing identity, endpoints, network, and our cloud workspace, while operating and continuously hardening our GDPR, SOC 2, and ISO 27001 compliance posture.
This is a builder-operator role, not a supervisory one. We run a tight ship on security and compliance, and we expect you to have personally implemented and operated the systems and controls described below — you should know them inside out, down to the configuration, the evidence, and the edge cases.
Core Responsibilities
● Identity & Access Management — JumpCloud:
○ Own the JumpCloud directory end-to-end: user lifecycle (joiner / mover / leaver), groups, and organizational structure.
○ Administer SSO, enforce MFA, and configure conditional and device-based access policies across all SaaS applications.
○ Manage cross-platform device policies (macOS, Windows, Linux) via JumpCloud device management, including disk encryption and compliance baselines.
○ Integrate RADIUS / LDAP for Wi-Fi and application authentication.
○ Automate onboarding and offboarding to guarantee least-privilege access and clean, auditable deprovisioning.
● Google Workspace Administration — GWS:
○ Administer the Google Workspace tenant: users, groups, organizational units, and email routing.
○ Configure and enforce security controls — 2-Step Verification, context-aware access, DLP rules,
and sharing / visibility policies.○
○ Manage retention, eDiscovery, and legal holds through Google Vault. Optimize licensing and SaaS spend across Workspace and other portals.
Endpoint & Threat Protection — Sophos:
○ Deploy, configure, and manage Sophos Central (Intercept X / XDR) across all endpoints and
servers.
○ Monitor alerts, triage threats, and lead incident detection, response, and remediation.
○ Maintain endpoint encryption, web / application control, and device-hardening standards.
○ Where Sophos Firewall is in use, manage firewall policies, IPS, and secure remote access.
Network, Firewall & Wi-Fi:
○ Design, configure, and maintain firewalls, VLAN segmentation, VPN, and secure remote access.
○ Administer enterprise Wi-Fi and wired networks (switches, access points), including
RADIUS-backed authentication.
○ Manage LAN / WAN connectivity, ISP relationships, and network performance and uptime.
○ Implement network monitoring, intrusion detection, and centralized logging.
Hardware, Software & Asset Management:
○ Own the full hardware lifecycle — procurement, provisioning / imaging, maintenance, repair, and
decommissioning.
○ Support a mixed fleet of macOS, Windows, and Android devices, including high-performance workstations and XR / VR hardware used by our creative and engineering teams.
○ Maintain an accurate hardware and software inventory and asset register.
○ Manage software deployment, patch management, and license compliance.
Security, Risk & Compliance — GDPR · SOC 2 · ISO 27001:
○ Operate and continuously improve the company's Information Security Management System
(ISMS).
○ Own day-to-day compliance for GDPR, SOC 2 (Type II), and ISO/IEC 27001 — including control
implementation, evidence collection, and continuous monitoring.
○ Conduct risk assessments, internal audits, periodic access reviews, and vendor security / DPA
assessments.
○ Serve as a primary point of contact during external audits and customer security reviews.
○ Maintain security policies, records of processing (RoPA), DPIAs, and incident / breach-response
runbooks.
○ Drive security-awareness and phishing-simulation programs across the organization.
IT Operations & Support:
○ Ensure 24x7 high availability of core systems and meet defined uptime and SLA metrics.
○ Provide escalation-level troubleshooting and support across macOS, Windows, and Android.
○ Manage backups, disaster recovery, and business-continuity testing.
○ Coordinate internal teams and third-party vendors to deliver IT projects on time and within
budget.
○ Maintain documentation, runbooks, and standard operating procedures.
○ Own and report on the IT budget and asset allocation.
Required Skills & Experience
● 5+ years in IT systems / infrastructure engineering — with direct, hands-on ownership of the systems
below rather than purely supervisory exposure.
● JumpCloud — demonstrated hands-on expertise across identity, SSO, MFA, and device management.
● Google Workspace (GWS) — deep admin-console experience including security, DLP , and Vault.
● Sophos — hands-on endpoint / XDR administration and threat response.
● Networking — firewall configuration, Wi-Fi, VLANs, VPN, LAN / WAN, and RADIUS / LDAP fundamentals.
● GDPR, SOC 2 & ISO 27001 — hands-on — you have personally taken an organization through at least one
full audit / certification cycle and know the controls, evidence, and auditor expectations inside out.
Cross-platform support — proven troubleshooting across macOS, Windows, and Android in a 24x7, multi-location environment.
System security — solid grasp of IDS / IPS, endpoint hardening, encryption, and backup / recovery.
Education — B.Sc. / B.Tech in Information Technology, Computer Science, or a related discipline.
Mindset — strong documentation discipline, ownership, resourcefulness, and a structured, problem-solving approach.
Preferred Qualifications
●Relevant certifications — e.g., ISO 27001 Lead Implementer / Auditor, CompTIA Security+ / Network+, or vendor certifications from JumpCloud and Sophos.
●Experience with compliance-automation platforms such as Sprinto, Vanta, or Drata.
●Scripting and automation for IT operations (Bash, PowerShell, or Python).
●Experience in a fast-paced SaaS or technology company serving enterprise and global clients.
●Familiarity with supporting creative, 3D, or XR workflows and high-performance computing environments.
Why Join Us
You will own the systems and security posture of a company building category-defining immersive technology for some of the world's most recognizable brands. It is a high-trust, high-ownership role with the autonomy to design things properly — and the visibility that comes with keeping a security- and compliance-first business running
flawlessly.

About Metadome.ai
About
Metadome.ai is a 3D & XR technology company that is enabling agencies, enterprises, and game developers to deliver their 3D, AR, or VR
experiences across millions of mobile, desktop, and XR devices with its proprietary XR streaming platform. The platform is the only one that
provides support for unreal, unity & webGL, and enables the streaming of high-fidelity content consistently across all devices at an industry-best
cost and with low latency.
The company’s in-house team and network of agencies, industry experts, consultants, and creators help global enterprises & fortune 500
companies with the end-to-end conception, creation, and deployment of immersive customer experiences. These use cases span across 3D, AR,
VR, and Metaverse and cover multiple industries like Automotive, Home Decor, Fashion, Accessories, and Cosmetics.
The company is a pioneer in the automotive industry and its automotive arm, Autodome, is the one-stop solution for Automakers & Dealers for
enabling immersive customer experiences across their online & offline channels to drive virtual vehicle sales and the brand's metaverse adoption.
With office presence across India & US, the company is a pioneer in XR with 6+ years of expertise and a go-to option for global brands for driving
real business outcomes with enhanced engagement & conversions including Stellantis, Lexus, HUL, Mahindra, Asian Paints, MG Motor, and
Titan to name a few.
Candid answers by the company
Metadome.ai is a 3D & XR technology company that is enabling agencies, enterprises, and game developers to deliver their 3D, AR, or VR
experiences across millions of mobile, desktop, and XR devices with its proprietary XR streaming platform. The platform is the only one that
provides support for unreal, unity & webGL, and enables the streaming of high-fidelity content consistently across all devices at an industry-best
cost and with low latency.
The company’s in-house team and network of agencies, industry experts, consultants, and creators help global enterprises & fortune 500
companies with the end-to-end conception, creation, and deployment of immersive customer experiences. These use cases span across 3D, AR,
VR, and Metaverse and cover multiple industries like Automotive, Home Decor, Fashion, Accessories, and Cosmetics.
The company is a pioneer in the automotive industry and its automotive arm, Autodome, is the one-stop solution for Automakers & Dealers for
enabling immersive customer experiences across their online & offline channels to drive virtual vehicle sales and the brand's metaverse adoption.
With office presence across India & US, the company is a pioneer in XR with 6+ years of expertise and a go-to option for global brands for driving
real business outcomes with enhanced engagement & conversions including Stellantis, Lexus, HUL, Mahindra, Asian Paints, MG Motor, and
Titan to name a few.
Similar jobs (10)
About the role
We’re hiring an IT Systems Administrator for an NBFC to secure endpoints, SaaS, and networks across ~50 branches, ~250+ field staff, and ~50+ office users.
This is primarily an IT Admin + Security role, with secondary exposure to AWS cloud ops + light DevOps + basic DB access management.
If you’re an IT Admin aiming to break into AWS Cloud Ops + DevOps, this role is a strong next step — you’ll own core IT/security and get hands-on exposure to cloud operations and deployments.
Key responsibilities (Primary: IT Admin + Security)
- Manage endpoint security for laptops and mobiles (policies, patching, encryption, antivirus/EDR); drive MDM implementation now/future (e.g., Intune/Jamf).
- Administer Google Workspace (Gmail/Drive/Calendar): users, groups, permissions, SSO, MFA, sharing controls.
- Own joiner–mover–leaver lifecycle: provisioning/deprovisioning, access controls, periodic access reviews.
- Secure branch connectivity: VPN, internal Wi-Fi, internet usage controls; coordinate troubleshooting and standardization across branches.
- Manage HO security stack: firewall operations, rule changes with change control, monitoring/log review (basic but consistent).
- Secure SaaS tools (CRM/HRMS/comms like Slack/Zoom): role-based access, MFA enforcement, offboarding, integration/OAuth controls.
- Maintain IT asset inventory: procurement coordination, issuance/return, audits, warranty/AMC, license renewals; remote lock/wipe for lost devices.
- Handle security incidents: phishing, account compromise, device loss/theft — contain, investigate, recover, and prevent recurrence.
- Run backups and basic DR testing; maintain SOPs/documentation and train staff on cyber hygiene.
- Provide hands-on user support: laptop builds, software installs, Outlook/Excel issues, VPN/Wi-Fi troubleshooting, escalations and vendor coordination.
Secondary responsibilities (AWS + DevOps + DB ops support)
- Support AWS administration: IAM users/roles/policies, MFA, access key hygiene, basic log review (e.g., CloudTrail).
- Manage AWS access controls: security groups/firewall rules, IP allowlists/whitelisting (admin tools, databases, vendor access).
- Assist engineering with DevOps operations:
- CI/CD support (deployment coordination, rollbacks, environment configuration)
- Secrets/credentials management and rotation (no shared creds)
- DNS + SSL/TLS certificates, basic monitoring/alerting coordination
- Bonus: Docker/Kubernetes and Terraform exposure
- Basic database operations (admin-lite):
- DB user creation, roles/permissions, least-privilege access
- IP allowlisting/whitelisting for DB access via VPN/approved sources
- Backup/restore verification coordination and basic monitoring signals (connections/storage)
Requirements
- 3+ years in IT security / systems administration (BFSI or branch-heavy org preferred).
- Hands-on with Google Workspace or Microsoft 365 administration.
- Must have hands-on experience leading or executing an email suite migration (e.g., Google Workspace ↔ Microsoft 365), including mailbox migration, DNS cutover, MX/SPF/DKIM/DMARC reconfiguration, and user transition management.
- Strong endpoint/security fundamentals: encryption, patching, AV/EDR, remote support, device compliance.
- Comfortable with networks: VPN/Wi-Fi/LAN troubleshooting; firewall basics and change discipline.
- Strong operational discipline: asset tracking, vendor management, documentation, ticketing, user communication.
- Practical AWS familiarity (IAM, access controls, logging) and ability to support DevOps workflows.
Nice to have
- Experience implementing MDM at scale (Intune/Jamf/SureMDM).
- Exposure to SOC2 / ISO27001 evidence, controls, and audit workflows.
- Scripting for automation (PowerShell/Bash/Python).
- Familiarity with managed databases and secure access patterns.
About Nerve Solutions
Nerve Solutions is a team of engineers building products for real-time risk management and surveillance in financial markets. Our solutions enable market participants to identify, monitor, and quantify risks and anomalies in live markets, allowing them to take corrective action at sub-second speeds.
We also develop products for automated trading and have become a trusted technology partner to some of the largest financial services organizations in the region.
About the Role
We are looking for a proactive and detail-oriented IT & Information Security Engineer to manage and maintain the organization's IT infrastructure while ensuring the security, availability, and reliability of our systems. The role involves providing technical support, administering hardware and software, strengthening cybersecurity practices, monitoring network activities, and implementing security controls to safeguard organizational assets.
The ideal candidate should have strong infrastructure knowledge, a security-first mindset, and the ability to troubleshoot technical issues while continuously improving the organization's IT environment.
Roles & Responsibilities
- Manage and maintain the organization's IT infrastructure, including hardware, software, servers, and network systems.
- Provide technical support to employees by troubleshooting hardware, software, network, and system-related issues.
- Configure, deploy, and maintain desktops, laptops, peripherals, printers, and other IT equipment.
- Set up user accounts, systems, and required software for new employees and support onboarding activities.
- Monitor network performance and employee network activities to ensure system security and compliance.
- Implement and maintain endpoint security solutions, antivirus tools, firewalls, and access control mechanisms.
- Perform regular system updates, security patching, vulnerability assessments, and preventive maintenance.
- Identify infrastructure risks and recommend security enhancements to minimize vulnerabilities.
- Maintain documentation for IT assets, software licenses, network configurations, security policies, and system inventories.
- Assist in implementing information security best practices, security audits, and compliance initiatives.
- Coordinate with internal teams to ensure IT services effectively support business operations.
- Stay updated with the latest cybersecurity threats, technologies, and industry best practices.
Required Skills
- 2–4 years of experience in IT Infrastructure, System Administration, or Information Security.
- Strong knowledge of Windows operating systems, networking, servers, and IT infrastructure.
- Experience troubleshooting hardware, software, network, and user-related issues.
- Knowledge of network security, endpoint protection, firewalls, VPNs, and vulnerability management.
- Experience with Active Directory, user access management, and system administration.
- Familiarity with Microsoft 365 administration is an added advantage.
- Understanding of backup, disaster recovery, and IT asset management.
- Strong analytical and problem-solving skills with attention to detail.
- Good communication and documentation skills.
- Ability to work independently and collaboratively in a fast-paced environment.
Preferred Qualifications
- Bachelor's degree in Information Technology, Computer Science, or a related field.
- Certifications such as CompTIA A+, Network+, Security+, Microsoft, CCNA, or equivalent will be an added advantage.
Key Responsibilities:
1. Network Engineering & Team Leadership
- Architect & Maintain: Design, implement, and manage secure, scalable network architectures (LAN, WAN, VPN, and Google Workspace) supporting both corporate offices and widespread on-site clinic networks.
- Lead the Team: Mentor and manage a team of system/network engineers, setting clear milestones, managing internal ticketing escalations, and conducting performance reviews.
- Uptime & Redundancy: Ensure 99.9% uptime for critical health-tech delivery systems by monitoring network traffic, troubleshooting bottlenecks, and implementing failover mechanisms.
2. Data Privacy, Cyber Security & Compliance Safeguards:
- Privacy & Zero-Trust Infrastructure: Implement strict access control mechanisms, data encryption standards (at rest and in transit), and zero-trust network frameworks to protect sensitive personal health information (SPI/PHI).
- End-to-End Security Architecture: Oversee the deployment and maintenance of enterprise-grade Antivirus/EDR solutions, End-to-End Firewalls, and comprehensive Cybersecurity frameworks to defend against external and internal threats.
- Access Control & Governance: Define, implement, and enforce robust Access Control policies—including Least Privilege and Role-Based Access Control (RBAC)—across all corporate, clinical, and Google Workspace environments.
- Access Reviews & Audits: Establish and oversee routine, formalized Access Review processes, ensuring user permissions, administrative privileges, and third-party access are regularly audited and validated.
- Regulatory Alignment & Audit Readiness: Align IT, network policies, and access governance protocols with Indian data protection laws (DPDP Act) and global healthcare standards (HIPAA principles). Conduct routine vulnerability assessments and maintain clean compliance logs.
3. Data Data Understanding & Visualization:
- Infrastructure Analytics: Look beyond raw logs. Analyze data flow patterns, bandwidth utilization, and system performance logs to deeply understand network health.
- Executive Dashboards: Transform complex IT operational data, compliance metrics, and access audit logs into intuitive, actionable visual dashboards using tools like Tableau, Power BI, or AWS QuickSight.
- Data-Driven Decisions: Present clear data trends to the executive leadership team regarding resource utilization, forecasting future capacity needs, and justifying infrastructure spend.
A Senior Cybersecurity Engineer is responsible for safeguarding an organization’s IT infrastructure, applications, and data against cyber threats. With 5–10 years of experience, the role demands expertise in designing, implementing, and managing advanced security solutions, conducting risk assessments, and responding to incidents. Senior Engineers also mentor junior staff and contribute to strategic security planning.
Key Responsibilities
- Design, implement, and manage enterprise-level security solutions (firewalls, IDS/IPS, SIEM, endpoint protection).
- Conduct vulnerability assessments, penetration testing, and risk analysis.
- Monitor and respond to security incidents, ensuring timely resolution and documentation.
- Develop and enforce security policies, standards, and compliance frameworks (ISO 27001, NIST, GDPR).
- Collaborate with IT and business teams to integrate security into system architecture and processes.
- Lead incident response drills and disaster recovery planning.
- Provide guidance and mentorship to junior cybersecurity staff.
- Stay updated on emerging threats, tools, and technologies.
Qualifications
- Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.
- 5–10 years of proven experience in cybersecurity engineering or related roles.
- Strong knowledge of network security, cloud security (AWS, Azure, GCP), and endpoint protection.
- Hands-on experience with SIEM tools (Splunk, QRadar, ArcSight), firewalls, and intrusion detection/prevention systems.
- Certifications such as CISSP, CISM, CEH, or OSCP are highly desirable.
Skills
- Advanced problem-solving and analytical skills.
- Strong communication and leadership abilities.
- Ability to manage complex projects and handle escalations effectively.
- Proactive mindset with adaptability to evolving cyber threats.
Hi Folks, we are currently Hiring for Security Engineer.
Gemini said
Hiring: Security Engineer
Company : Pentabay Softwares
Location : Anna salai, Mount Road
Mode: Fulltime
Pentabay Softwares INC is looking for a proactive Security Engineer (2–7 Years Exp) to fortify our global digital solutions. As we scale our footprint in the Healthcare IT sector, you will play a critical role in safeguarding sensitive data (ePHI) and ensuring our cloud-native architectures are resilient against evolving threats.
The Mission
You will be the architect of our defense, bridging the gap between high-speed development and rigorous security standards. Your day-to-day will involve "shifting security left" by embedding DevSecOps practices into our CI/CD pipelines and leading our compliance efforts for SOC 2, ISO 27001, and HIPAA.
Key Responsibilities
Defense & Architecture: Design and maintain secure cloud (AWS/Azure/GCP) and on-prem environments. Implement IAM policies, Zero Trust frameworks, and robust secrets management.
Offensive Testing: Conduct regular vulnerability assessments (VAPT), penetration testing, and code reviews using tools like Burp Suite and Nessus.
DevSecOps & Automation: Integrate SAST/DAST/SCA scanning into engineering workflows. Automate security tasks using Python or Bash.
Incident Response: Monitor SIEM tools (Splunk/CrowdStrike), respond to threats, and develop risk mitigation strategies.
Healthcare Compliance (Plus): Ensure data integrity for HL7/FHIR APIs and maintain HIPAA/HITECH audit readiness for healthcare clients.
What You Bring
Experience: 2–7 years in Information/Application Security with a strong grasp of the OWASP Top 10 and threat modeling (STRIDE).
Technical Depth: Proficiency in network/endpoint security, PKI, encryption standards (TLS/SSL), and container security (Docker/Kubernetes).
Compliance Knowledge: Familiarity with NIST, GDPR, and SOC 2 frameworks.
Tools: Hands-on experience with Metasploit, Wireshark, and Infrastructure-as-Code (Terraform).
Bonus Points: Industry certifications like OSCP, CISSP, or CEH, and experience in Healthcare IT workflows.
Auditing space like ISO27001 , ISO9001 prefered
Why Pentabay?
At Pentabay, we offer more than just a job; we offer a security-first engineering culture.
Growth: A dedicated learning budget for certifications and conferences.
Impact: Work on cutting-edge Healthcare projects that demand the highest levels of data privacy.
Send resumes to : sandhiya.m at pentabay.com
The recruiter has not been active on this job recently. You may apply but please expect a delayed response.
Job Description - Security Solutions Architect
Job Title
Security Solutions Architect / Senior Security Solutions Architect
Practice: Cloud Security & Reliability Engineering (CSR)
Location: India
Regional Coverage: EU/UK, Middle East & Africa (MEA), India, and APAC
Experience:
- Security Solutions Architect: 8–10 years
- Senior Security Solutions Architect: 10–12+ years
Role Overview
We are looking for an experienced Security Solutions Architect / Senior Security Solutions Architect to drive security solutioning across complex cloud, hybrid, and multi-cloud customer environments.
This is a customer-facing solution architecture role operating at the intersection of cloud security, cybersecurity transformation, compliance, pre-sales solutioning, and delivery readiness. The architect will work closely with customers, sales, practice leaders, OEM partners, and delivery teams to understand business and security challenges and translate them into technically robust, commercially viable, and executable security solutions.
The role requires someone who can go beyond product-led solutioning. The successful candidate should be able to understand a customer's existing security landscape, identify risks and capability gaps, define the target-state architecture, and build a clear transformation roadmap.
Given our coverage across EU/UK, MEA, India, and APAC, the architect must also be comfortable adapting security architectures to different regulatory, data sovereignty, industry, and operational requirements.
A strong foundation in Google Cloud Security is mandatory, complemented by hands-on knowledge of modern security platforms, particularly CNAPP/CSPM technologies such as Wiz. Experience across Microsoft security and other cybersecurity platforms will be an advantage.
Key Responsibilities
Security Solution Architecture & Consulting
- Own end-to-end security solution architecture for cloud, hybrid, and multi-cloud customer environments.
- Lead technical discovery and security assessment workshops to understand the customer's current environment, security posture, business objectives, risks, regulatory obligations, and operational challenges.
- Translate customer requirements into scalable, secure, resilient, and commercially viable solution architectures.
- Develop current-state and target-state security architectures, transformation roadmaps, and solution blueprints.
- Design security solutions across areas such as:
- Cloud Security and Cloud-Native Security
- CNAPP, CSPM, CWPP, and Cloud Security Posture Management
- Security Operations and SIEM/SOAR modernization
- Threat Detection and Response
- Identity and Access Management
- Data Security and Data Protection
- Network and Zero Trust Security
- Vulnerability and Exposure Management
- Security Automation and AI-driven Security Operations
- Cyber Resilience and Security Monitoring
Google Cloud Security
- Architect and demonstrate Google Cloud security capabilities across cloud-native and enterprise security use cases.
- Design solutions leveraging relevant Google Cloud security services and technologies for security posture management, threat detection, security operations, data protection, identity, and workload security.
- Translate Google Cloud security capabilities into business and security outcomes relevant to the customer's environment.
- Conduct customer demonstrations, technical workshops, architecture discussions, and proof-of-concept engagements.
- Maintain awareness of evolving Google Cloud security capabilities and incorporate them into solution offerings and reusable architectures.
CNAPP / CSPM & Wiz
- Architect and demonstrate CNAPP and CSPM solutions, with strong hands-on experience in Wiz.
- Design cloud security posture, workload protection, vulnerability management, attack-path analysis, and cloud risk management solutions.
- Position CNAPP capabilities as part of a broader cloud security operating model rather than as a standalone technology deployment.
- Integrate CNAPP capabilities into security operations, governance, compliance, and remediation workflows.
Security Operations & Transformation
- Support customers in modernizing traditional security operations toward cloud-native and AI-enabled security operations.
- Design architectures for SIEM/SOAR modernization, security data onboarding, threat detection, incident response, automation, and security analytics.
- Understand existing customer security ecosystems and define integration approaches across cloud platforms, security tools, identity systems, network infrastructure, and enterprise applications.
- Identify opportunities to simplify fragmented security architectures and improve security effectiveness through platform consolidation and automation.
Compliance & Regulatory Architecture
- Translate regulatory and compliance obligations into practical security architecture and technical controls.
- Design solutions considering relevant frameworks and regulatory requirements, including:
- GDPR and data protection requirements across EU/UK
- Data residency, sovereignty, and localization requirements
- Security and regulatory frameworks applicable across UAE and KSA
- India DPDP Act and relevant sector-specific requirements
- RBI and IRDAI requirements for regulated Indian financial services organizations
- Relevant APAC regulatory and cybersecurity frameworks
- Industry standards such as ISO 27001, PCI DSS, and other applicable security frameworks
- Work with customers in regulated industries including BFSI, government/public sector, healthcare, and other compliance-sensitive environments.
The architect is not expected to act as a legal or compliance auditor but must be capable of translating applicable regulatory and security requirements into appropriate architectural controls and solution designs.
Pre-Sales, SOW & Commercial Solutioning
- Own the technical solutioning lifecycle from initial discovery through proposal, technical closure, and handover to delivery.
- Develop end-to-end Statements of Work (SOWs), including:
- Scope
- Technical solution and architecture
- Deliverables
- Implementation approach
- Effort estimation
- Assumptions and dependencies
- Exclusions
- Acceptance criteria
- Build commercial solutions using standard pricing and estimation frameworks while balancing customer competitiveness, delivery feasibility, risk, and target margins.
- Contribute to RFP/RFI responses, proposals, presentations, solution workshops, and executive-level customer discussions.
- Present and defend proposed architectures with customer CISOs, security leaders, cloud teams, enterprise architects, compliance stakeholders, and technical teams.
- Clearly articulate solution value, differentiation, risks, trade-offs, and expected security outcomes.
Delivery Readiness & Governance
- Validate solution feasibility with delivery and engineering teams before customer commitment.
- Ensure that proposed scope, architecture, effort, timelines, and assumptions are aligned with delivery capabilities.
- Lead structured sales-to-delivery handovers and remain engaged during critical transition stages.
- Minimize delivery rework and commercial leakage by ensuring that customer commitments are clearly documented and technically validated.
Practice Development
- Build reusable security solution architectures, reference designs, SOW templates, pricing models, discovery frameworks, and accelerators.
- Develop repeatable solution patterns for common industry and regulatory scenarios.
- Contribute to the evolution of the CSRE security services portfolio and go-to-market offerings.
- Work with technology partners and OEMs to develop joint solutions, demonstrations, and market propositions.
- Support internal sales and technical teams through enablement sessions and solution playbooks.
- Mentor junior architects and security engineers, particularly at the Senior Security Solutions Architect level.
Must-Have Skills & Experience
- 8–12+ years of relevant experience across cybersecurity, cloud security, security architecture, consulting, or security solutioning.
- Strong hands-on experience with Google Cloud Security, with the ability to architect, demonstrate, and position security capabilities in customer environments.
- Strong hands-on experience with CNAPP/CSPM technologies, preferably Wiz.
- Strong understanding of cloud security architecture across IaaS, PaaS, containers, Kubernetes, cloud-native services, and hybrid environments.
- Experience designing security solutions for complex enterprise environments.
- Strong understanding of modern security architecture concepts across Security Operations, SIEM/SOAR, IAM, data security, network security, vulnerability management, and cloud workload protection.
- Experience designing solutions for regulated industries such as BFSI, government/public sector, or healthcare.
- Working knowledge of security, privacy, compliance, and data sovereignty requirements across relevant geographies.
- Demonstrated experience in customer-facing technical discovery, architecture workshops, and solution presentations.
- Experience independently developing SOWs, technical proposals, effort estimates, and commercial solutions.
- Ability to communicate complex security concepts clearly to technical, business, and executive stakeholders.
- Strong stakeholder management and presentation skills.
Good to Have
- Microsoft Azure and Microsoft Security experience, including exposure to technologies such as Defender, Sentinel, and Entra.
- Experience with Google Security Operations or SIEM/SOAR modernization programs.
- Experience with additional cloud and cybersecurity platforms across AWS, Azure, and multi-cloud environments.
- Exposure to AI-driven security operations, security automation, and emerging AI security technologies.
- Experience working with customers across EU/UK, MEA, India, or APAC.
- Experience working with large enterprise and regulated customers.
- Consulting, system integration, professional services, or managed security services background.
- Relevant cloud and cybersecurity certifications from Google Cloud, Wiz, Microsoft, AWS, or recognized security certification bodies.
What Success Looks Like
The successful architect will be able to:
- Independently lead complex customer security solutioning from discovery to technical closure.
- Build architectures that are secure, compliant, commercially competitive, and executable by delivery teams.
- Demonstrate and position Google Cloud Security and Wiz capabilities confidently in real customer scenarios.
- Convert complex customer security and regulatory challenges into clear solution architectures and transformation roadmaps.
- Produce high-quality SOWs with accurate scope, assumptions, effort, and commercial structure.
- Build trust with customer CISOs, security teams, enterprise architects, compliance stakeholders, and internal delivery teams.
- Create reusable security solution patterns that improve solutioning speed, quality, and consistency across regions.
Experience Level
Security Solutions Architect | 8–10 Years
Expected to independently lead discovery, architecture, solution design, demonstrations, SOW development, and technical solutioning for mid-size to large security engagements.
Senior Security Solutions Architect | 10–12+ Years
Expected to lead complex, strategic, multi-technology, multi-country, and compliance-intensive security engagements. Should be capable of engaging senior customer stakeholders, shaping security transformation programs, handling complex commercial and architectural decisions, mentoring other architects, and contributing to the development of the security practice and its go-to-market strategy.
About Searce
Searce is a global, AI-native, engineering-led technology consultancy and a Premier Google
Cloud Partner — recognized as the Google Cloud Workplace AI Transformation Partner of the
Year, APAC (2026). With 20+ years of experience and 3,000+ clients across 10+ countries, we
help businesses stay ahead of the cloud curve.
The Role
We're looking for a Lead Cloud Security & Reliability Engineer with deep GCP expertise to own
end-to-end cloud reliability and security forAPAC enterprise clients. As Lead, you'll set the architectural direction, mentor your squad, and drive measurable client outcomes across multi-
cloud environments.
What You'll Do
Own Client Delivery — Lead 24x7 GCP cloud operations forAPAC clients. Define SLO frameworks and ensure adherence.
Architect Solutions — Design scalable, secure GCP-primary architectures with multi-cloud awareness.
Drive Reliability — Lead incident response, RCA, and long-term remediation across production systems.
Mentor & Elevate — Coach and grow a squad of Senior CSREs.
Drive FinOps — Own cloud cost governance and optimization with quantified impact.
Be the Expert — Represent Searce's technical depth in global client conversations.
What We're Looking For
Experience
7–12 years total with 5+ years on GCP cloud infrastructure
Strong background in Cloud Managed Services / MSP environments
Proven experience leading a team in client-facing delivery
Multi-cloud exposure (AWS/Azure secondary) preferred
Technical Skills (Must-Have)
- GCP: GKE, IAM, VPC, Cloud Monitoring, Stackdriver, KMS — demonstrated in work
- experience
- Kubernetes: GKE — production cluster management, Helm
- IaC: Terraform — module-level, reusable frameworks
- Observability: Prometheus, Grafana, Thanos or equivalent
- Security: IAM, Zero-trust, DevSecOps, CSPM tools
- Scripting: Python or Go
- FinOps: GCP cost governance demonstrated
Nice to Have
- GCP Professional Cloud Architect / Pro DevOps Engineer certification
- AWS / Azure secondary experience
- CKA (Certified Kubernetes Administrator)
- ITIL / change management awareness
- APAC client delivery experience
Why Searce?
🏆 Google Cloud Partner of the Year — APAC 2026
🌍 Work with APAC enterprise clients across multiple industries
🤖 AI-first, engineering-led culture
📈 Lead-level ownership with real career growth
🤝 HAPPIER values — Humble, Adaptable, Positive, Passionate, Innovative, Excellence,
Responsible
Cloud Infrastructure Engineer – BANG | 10+ Years
Location: Bangalore
Experience: 10+ Years
Job Description:
- Design, implement, and manage cloud infrastructure across AWS/Azure/GCP environments.
- Strong experience in cloud architecture, compute, storage, networking, and security.
- Manage VMs, VPC/VNet, load balancers, DNS, DHCP, firewalls, and IAM.
- Hands-on experience with Windows/Linux servers, VMware, virtualization, and infrastructure operations.
- Automate infrastructure provisioning and configuration using Terraform, Ansible, or similar tools.
- Monitor infrastructure performance, availability, and capacity using tools such as Grafana, Prometheus, or CloudWatch/Azure Monitor.
- Handle incident management, troubleshooting, disaster recovery, backup, and high-availability requirements.
- Work with cross-functional teams to support cloud migration, infrastructure upgrades, and production environments.
- Ensure infrastructure follows security, compliance, and operational best practices.
Must-Have Skills:
Cloud Infrastructure | AWS/Azure/GCP | Networking | Linux/Windows | VMware | Terraform | Ansible | DNS/DHCP | IAM | Monitoring | Backup & DR
DevOps & Cloud Security Specialist to architect enterprise-grade AWS networking, implement strict IAM security boundaries (HIPAA/GDPR compliance), automate infrastructure via IaC, and maintain crystal-clear technical documentation.
1. Primary Must-Have Competencies (Core Priorities)
A. AWS Networking & VPC Topology (Top Priority)
- Advanced VPC Architecture: Mastery in designing multi-VPC topologies, isolated subnets, custom Route Tables, NAT Gateways, Transit Gateways, and Cross-Region VPC Peering.
- Private Network Security: Extensive experience using VPC Endpoints (Gateway & Interface/PrivateLink) to keep internal AWS traffic completely off the public internet.
- Traffic Ingestion & Edge Security: Expertise in AWS WAF (custom rules, bot control, rate limiting), API Gateway throttling, ALB configuration, and Route 53 global routing.
B. AWS Security, IAM Architecture & Compliance
- Enterprise IAM Governance: Expertise in AWS Organizations, IAM Identity Center (SSO), Permission Boundaries, Service Control Policies (SCPs), and temporary role assumption across multi-account setups.
- Data Protection & Key Management: Deep knowledge of AWS KMS (customer-managed keys, envelope encryption at rest and in transit) and AWS Secrets Manager.
- Audit & Compliance: Setting up centralized logging pipelines (CloudTrail, GuardDuty, AWS Config, CloudWatch Audit Logs) for strict HIPAA/GDPR compliance.
C. Infrastructure as Code (IaC) & Containerization
- Terraform / AWS CDK: Must write production-grade, modular IaC templates from scratch—enforcing network topology and security guardrails directly in code.
- Container Orchestration: Hands-on setup and management of AWS ECS (Fargate) or EKS (Kubernetes) and automated CI/CD pipelines (GitHub Actions, GitLab CI).
D. Architecture Documentation & Systems Mapping
- Technical Documentation: Ability to author clean, standardized architecture diagrams (e.g., C4 model, Draw.io, Lucidchart) and maintain comprehensive runbooks, incident response plans, and compliance documentation.
2. Secondary Competency (Strong Advantage, Not Mandatory)
- Backend Software Development: Hands-on experience or a background in writing/debugging backend code in Node.js, Python, or Go.
- Note: The primary responsibility is cloud infrastructure, security, and automation. However, the ability to read backend code, debug API bottlenecks, or assist developers with microservice integrations is a major bonus.
Job Summary
We are looking for a Senior Compliance Analyst to manage and support cybersecurity compliance, GRC, risk assessments, audits, and client engagements. The candidate will evaluate security controls, identify compliance gaps, review evidence, and provide practical recommendations.
Key Responsibilities
- Conduct Compliance Audits, Gap Assessments, and Risk Assessments.
- Assess controls against ISO 27001, SOC 2, PCI DSS, ISO 27701, ISO 42001, HIPAA, GDPR, DPDP, etc.
- Review policies, procedures, controls, and audit evidence.
- Identify gaps, risks, observations, and recommend remediation.
- Prepare Risk Registers, SoA, Control Matrices, Audit Reports, and Compliance Reports.
- Support clients during certification, surveillance, and external audits.
- Conduct client meetings, interviews, and control walkthroughs.
- Coordinate evidence collection and remediation tracking.
- Develop and review information security policies and procedures.
- Stay updated with cybersecurity standards, regulations, and best practices.
Required Skills
- Strong understanding of Information Security, GRC, Risk & Compliance.
- Good knowledge of ISO 27001:2022 and SOC 2.
- Understanding of cybersecurity controls, IT infrastructure, cloud security, IAM, vulnerability management, and security operations.
- Strong analytical, documentation, communication, and report-writing skills.
- Ability to independently manage client engagements.
Qualifications
- Bachelor's degree in Cybersecurity, IT, Computer Science, or related field.
- 2–6 years of relevant experience in GRC, IT Audit, Cybersecurity Compliance, or Consulting.
- Certifications such as ISO 27001 LA/LI, CISA, CISSP, CRISC, or relevant GRC certifications are preferred.






