About the Role :
We are looking for a Security Engineer to strengthen Elucidata’s security posture across our cloud and on-prem environments. This role will be responsible for safeguarding our AWS infrastructure, driving vulnerability management initiatives, and ensuring compliance with key security frameworks like SOC 2, ISO 27001, and HIPAA. The ideal candidate will bring deep technical expertise in cloud security, hands-on experience with IAM and monitoring tools, and a proactive approach to managing risks and incidents. As Elucidata’s security function continues to evolve, this role offers the opportunity to build scalable security practices, automate workflows, and integrate DevSecOps principles into our engineering ecosystem.
What You’ll Own :
- Cloud Security Stack Management - Own and maintain Elucidata’s AWS cloud security posture, ensuring secure configurations, continuous monitoring, and compliance with best practices.
- Vulnerability Management - Lead vulnerability scanning, assessment, prioritization, and remediation tracking across cloud, on-prem, and application environments.
- Identity & Access Governance - Design, implement, and maintain IAM and PAM controls to enforce least-privilege access and perform regular User Access Reviews.
- Security Frameworks & Compliance - Ensure alignment with SOC 2, ISO 27001, HIPAA, GDPR, and other relevant frameworks; lead internal and external audits.
- Incident Response - Manage incident detection, triage, and coordination with internal teams and external partners to ensure effective resolution.
- Security Monitoring & Alert Management - Oversee monitoring tools and coordinate alert triage with managed security service providers (MSSPs).
- Stakeholder Management - Collaborate with Engineering, IT, Compliance, and Business teams to ensure security requirements are understood and integrated.
- Infrastructure Hardening - Maintain secure configuration baselines and enforce system and network hardening measures.
- Metrics & Reporting - Produce regular security posture reports and communicate risk and compliance status to leadership.
What Makes You a Great Fit :
Cloud Security Expertise - Strong hands-on knowledge of AWS security tools and services (IAM, Security Hub, GuardDuty, CloudTrail, Config).Security Governance - Familiarity with risk management processes, policy development, and regulatory frameworks (SOC 2, ISO 27001, HIPAA, GDPR).Vulnerability Management - Experience with vulnerability scanning and remediation processes.IAM / PAM Administration - Skilled in managing identity lifecycles, privileged access, and authentication policies.Incident Handling - Experience coordinating security incidents from detection to resolution.Security Monitoring - Familiarity with SIEM / log analysis platforms like ELK, Opensearch, etc. for threat detection and compliance reporting.Collaboration & Communication - Strong ability to work cross-functionally, influence stakeholders, and clearly present security findings.Process Orientation - Ability to design and maintain repeatable security processes for scale.Future Scope :
Scripting & Automation – Develop security automation workflows using Python, Bash, or similar.DevSecOps Integration – Embed security controls into CI / CD pipelines and infrastructure as code.Advanced Threat Hunting – Implement proactive detection and response capabilities.