Job Description
We are hiring a Cloud Cyber Security Test Engineer to support our client’s security team in safeguarding their digital products. This role involves conducting security assessments, penetration testing, and vulnerability analysis across cloud-based and containerized environments. The ideal candidate will bring deep expertise in Azure, Kubernetes (AKS), Docker, and security best practices to ensure product integrity and resilience against evolving threats.
Key Responsibilities
- Perform vulnerability assessments and penetration testing on cloud and web applications.
- Analyze software dynamically and statically to detect potential security issues.
- Identify, report, and support remediation of security flaws in Azure, AKS, Docker, and Kubernetes workloads.
- Collaborate with software, hardware, and security engineering teams to integrate secure coding practices.
- Participate in security architecture reviews, threat modeling, and design validation.
- Research emerging threats, vulnerabilities, and countermeasures related to cloud and embedded systems.
- Develop and maintain testing tools, automation scripts, and security frameworks.
- Provide detailed documentation and risk assessments with actionable recommendations.
- Mentor junior engineers in cloud and container security testing methodologies.
Required Skills & Experience
- 5+ years of experience in cloud security, red teaming, or penetration testing.
- Hands-on expertise in Microsoft Azure, AKS, Docker, and container security.
- In-depth knowledge of privilege escalation, lateral movement, and post-exploitation techniques in cloud environments.
- Proficient in tools such as:
- MicroBurst, StormSpotter, AzureHound, AADInternals
- Kube-hunter, Trivy, Kubescape, Falco, Docker Bench
- Mimikatz, Metasploit, Empire, TokenTactics
- Familiarity with security frameworks: MITRE ATT&CK, OWASP, NIST 800-53, CIS Benchmarks.
- Strong scripting experience: PowerShell, Python, Azure CLI, Terraform, Bicep.
- Understanding of advanced cloud attack techniques such as OAuth token hijacking, container escape, API server exploits, hybrid AD attacks.
Preferred Certifications
- OSCP, OSEP, CRTP, CRTE
- AZ-500, SC-100, SC-300
- CKS, DCA, CNCF Kubernetes Security
- GCPN, GXPN
Project Details:
- Seniority Level: Senior
- Assignment Period: 07 April 2025 – 31 March 2026
- Location: Chennai, India (Onsite)
- Work Mode: 100% Onsite
- Client Industry: Digital Development & Security
- Remote Work: Not Available
How to Apply:
Please submit your resume and cover letter to info@hsgit.fi with “Cloud Cyber Security Test Engineer” in the subject line. Shortlisted candidates will be contacted for interviews.