
Senior Security Engineer - India
JumpCloudPosted 2/10/2025

Senior Security Engineer - India
JumpCloud
Job Location
Job Summary
JumpCloud is seeking a Senior Security Engineer to join their DevSecOps team. The role involves designing and developing software solutions for protecting data and infrastructure deployed into the cloud. The engineer will collaborate with various teams, including SecOps, GRC, and security functions, to ensure JumpCloud products' integrity and keep users safe. The ideal candidate has 5+ years of experience in security engineering, production experience with AWS or GCP, and strong written and oral communication skills. They must be available for on-call duties and willing to support the Security Operations team during incidents. JumpCloud is a remote-first company, allowing engineers to work from anywhere within their designated country.
Job Description
What you will be doing
- Lead the design and maintenance of infrastructure, including custom software and vendor integrations, to meet advanced security needs for Product and Infrastructure Security
- Develop and implement policy enforcement automation and comprehensive reporting systems
- Set up data ingestion, as needed, for the SIEM or other tooling
- Collaborate with DevOps and Developer Enablement teams outside of the US to embed security best practices and establish guardrails for developers
- Conduct and oversee threat model reviews of product features and architectures, providing strategic guidance
- Mentor and guide service/feature teams in secure software design principles
Necessary skills
- 5 years of experience in the field of security engineering with an extensive background and experience in software development and architecture
- Production experience with AWS or GCP
- Comfortable writing Golang code
- Some familiarity in Terraform (HCL) and Kubernetes
- Experience with CI/CD tools, particularly GitHub Actions
- Strong written and oral communication skills, with the ability to convey complex security concepts
You also have some experience in one of the following areas
- Red teaming/internal pentesting
- Product Security (ProdSec)
- Including threat modeling and secure architecture design/review
- Authentication protocols (SAML, OAuth, LDAP, etc.)
- Mobile application security (iOS and Android)
Bonus points for experience with
- Open Policy Agent (OPA)
- Open source security tools
- Data pipeline tooling
- Certificate infrastructure
- Distributed systems
- Working on core OS (Windows, Mac, Linux) APIs
Personal characteristics we are looking for
- Results oriented, self driven, and able to work independently with minimal supervision
- High level of integrity with a commitment to accountability
- Excellent communication skills, capable of articulating complex ideas clearly
- Creative problem-solving abilities with a passion for security
Role requirements
- You must overlap and work at least 5 hours within US Central Time business hours (e.g., 9:00 AM - 2:00 PM Central Time)
- You must be available for on-call (after hours) duties for any internal tools/services this new team might own
- You must be willing to support the Security Operations team during incidents in performing ad-hoc queries, forensics, etc.