AWS Cloud Security Engineer
Swish Analytics- Full Time
- Senior (5 to 8 years)
Saviynt
Candidates should possess a Bachelor’s degree in computer science, Information Security, or a related field, and have at least 10 years of hands-on experience in penetration testing, with a minimum of 3 years specifically focused on AWS and Azure cloud environments. Strong knowledge of cloud security principles and practices is essential, along with experience in Kubernetes (EKS and AKS) penetration testing and container security. Familiarity with industry standards and compliance frameworks such as NIST, ISO 27001, CSA, and Kubernetes Security Best Practices is also required.
The Principal Penetration Tester will conduct in-depth penetration testing of cloud infrastructure, deployment models, and cloud-native services on AWS and Azure, perform security assessments and penetration testing on Kubernetes clusters (EKS and AKS), identify and exploit vulnerabilities, analyse and prioritize vulnerabilities, prepare comprehensive reports detailing findings and remediation steps, communicate findings to stakeholders, collaborate with Cloud Ops, DevOps, and Cloud Engineering teams, leverage and customize security tools, automate testing workflows, participate in threat modelling exercises, and mentor junior penetration testers.
Cloud-based identity security and access governance
Saviynt provides a cloud-based platform focused on identity security and access governance for businesses. Its services include identity governance and administration, third-party access governance, and cloud privileged access management, all aimed at helping organizations manage and secure digital identities, including those of employees and vendors. The platform features automated workflows and tools that simplify identity lifecycle management, while offering visibility and analytics to help businesses stay audit-ready and reduce identity-related risks. Unlike many competitors, Saviynt emphasizes user-friendliness and ease of implementation, making it accessible for a wide range of clients from small businesses to large enterprises. The company's goal is to protect major brands and support their cloud and security initiatives through a subscription-based model that ensures ongoing revenue and investment in product development.