Information Security - CDIR
Zillow · Bengaluru
- Experience5–9 yrs
- SalaryNot disclosed
- Work modeonsite
- Levelsenior
- Posted2 Sept 2026
About Zillow
Zillow is hiring in Bengaluru in real estate construction. This role looks for around 5+ years of experience.
Skills
- information security controls
- cloud security
- endpoint security
- application security
- threat analysis
- vulnerability analysis
- risk assessment
- security architecture
- data protection
- identity and access management
- secure configuration
- incident response
- security monitoring
- security controls
- security engineering
The role
A security architect at a real-estate technology company designs information security controls for cloud, endpoint, and application environments, applying secure-by-design practices and identity and access management. The role also develops incident response playbooks and security monitoring, and guides risk remediation.
Full job description
Responsibilities:
Lead the design, implementation, and optimisation of information security controls, processes, and tooling across cloud, endpoint, and application environments, aligning with enterprise security policies and risk appetite.
Perform advanced threat, vulnerability, and control gap analysis; translate complex technical findings into prioritised remediation plans and actionable guidance for engineering, product, and operations teams.
Serve as a subject matter expert and primary security liaison for assigned platforms or business areas, advising on architecture, data protection, identity and access management, and secure configuration standards.
Drive security-by-design in new and evolving solutions by reviewing architectures and change proposals, defining security requirements, and collaborating with cross-functional teams to balance risk, usability, and business outcomes.
Develop and refine detection, monitoring, and incident response playbooks; partner with operations teams to investigate complex security events and recommend containment, eradication, and recovery actions.
Produce clear security documentation, runbooks, and guidelines; deliver targeted training or coaching to raise security awareness and improve secure practices across technical and non-technical audiences.
Use data, metrics, and dashboards to evaluate the effectiveness of security controls, identify patterns and emerging risks, and recommend continuous improvements to processes and tooling.
Mentor less-experienced team members and contribute to team-wide standards, frameworks, and best practices that improve consistency, reliability, and scalability of security operations.
Requirements:
Bachelor's degree in Computer Science, Information Security, Information Systems, Engineering, or a related field.
8+ years of progressive experience in information security, cybersecurity operations, security engineering, or a closely related technical security discipline.
Demonstrated experience designing, implementing, or operating security controls and processes in cloud-based or distributed technology environments.
Experience collaborating with engineering, product, or operations teams to assess security risk, define remediation approaches, and implement secure-by-design solutions.
Or an equivalent combination of education and experience.