Security Engineer – Cloud & Infrastructure Security
Harness · Bengaluru
- Experience3–4 yrs
- SalaryNot disclosed
- Work modeonsite
- Posted28 Sept 2026
About Harness
Harness is hiring in Bengaluru in technology software. This role looks for around 3+ years of experience.
Skills
- cloud security
- Identity and Access Management
- network security
- incident response
- Infrastructure as Code
- AWS
- Google Cloud Platform
- Kubernetes
- Terraform
- Python
- Web Application Firewall
- Privileged Access Management
- Single sign-on
- Security monitoring
- Threat assessment
- Security architecture
- Security automation
- ISO 27001
- SOC 2
- PCI DSS
- NIST
The role
A cloud security engineer at a SaaS company designs and operates cloud security, identity and access management, and network security controls, protecting infrastructure and enterprise environments. The work also applies Infrastructure as Code and incident response to automate safeguards and resolve security issues.
Full job description
We are looking for a Security Engineer to join our Security Engineering team. In this role, you will help design, implement, and operate security controls that protect our cloud infrastructure, applications, and enterprise environments at scale.You will work closely with Engineering, Infrastructure, DevOps, and Compliance teams to identify security risks, troubleshoot complex infrastructure and security issues, develop practical solutions, and drive security initiatives through implementation.This is a hands-on role that combines security engineering, cloud infrastructure, identity and access management, network security, incident response, automation, and emerging areas such as AI security. You should be comfortable working independently on well-defined problems, learning new technologies quickly, and taking ownership of issues through resolution.You enjoy hands-on problem solving and are comfortable moving between security engineering, cloud infrastructure, troubleshooting, automation, and incident response depending on the needs of the team.In this role, you will:Design, implement, operate, and continuously improve security controls across cloud and enterprise environments.Partner with Engineering, Infrastructure, and DevOps teams to embed security into system design and operational processes.Work across cloud security, network security, AI security, Identity and Access Management (IAM), and Privileged Access Management (PAM).Evaluate security requirements and recommend practical, scalable, and risk-based solutions.Troubleshoot complex security and infrastructure issues across cloud, identity, networking, Kubernetes, and application environments while balancing security requirements with operational needs.Implement and maintain security monitoring, detection, and response capabilities.Investigate security incidents and support containment, remediation, root cause analysis, and follow-up improvements.Conduct security reviews, threat assessments, and architecture evaluations for new and existing systems.Implement and maintain security controls for Web Application Firewalls (WAF), network firewalls, ingress, and other network security technologies.Build automation using APIs, scripting, Infrastructure as Code (IaC), and AI-assisted workflows to reduce repetitive manual work and improve operational efficiency.Develop and maintain security standards, guidelines, runbooks, and operational procedures.Participate in the operational ownership of security services, including responding to security requests, production issues, incidents, and time-sensitive security needs.Support compliance and audit initiatives by ensuring appropriate security controls are implemented and operating effectively.Collaborate with stakeholders across the organization to identify, prioritize, and reduce security risks.Design and implement security guardrails for AI workloads and help identify and mitigate emerging AI security risks.Continuously evaluate emerging threats, technologies, and industry practices to improve the organization's security posture.About YouYou have 3+ years of experience in Security Engineering, DevOps, SRE, Cloud System Administration, Infrastructure Engineering, or a related field.A background in DevOps, SRE, Cloud Infrastructure, or System Administration with strong security experience or interest is highly valued.You have hands-on experience working with public cloud infrastructure and a strong understanding of cloud security fundamentals.You have hands-on experience with at least one major public cloud platform such as AWS or GCP, including IAM, networking, logging, security controls, and infrastructure troubleshooting.You understand cloud security principles, network security, and modern security architectures.You have experience working with identity, authentication, authorization, SSO, and privileged access controls.You have experience with or are eager to develop deeper expertise in IAM, cloud infrastructure security, network security, and AI security.You have experience with security monitoring, logging, detection, or incident response technologies.You have experience troubleshooting infrastructure or cloud security issues and are comfortable investigating problems across multiple technology layers.You can evaluate security requirements and translate them into practical technical solutions.You are comfortable working across multiple teams and influencing security outcomes through technical reasoning and collaboration.You have experience with Infrastructure as Code and automation technologies such as Terraform, Python, scripting, or APIs.You understand containerized and cloud-native environments such as Kubernetes.You have experience working with network security controls such as WAFs, firewalls, ingress controls, or cloud-native network security technologies.You have exposure to security frameworks and compliance standards such as ISO 27001, SOC 2, PCI DSS, NIST, or similar.You possess strong analytical, troubleshooting, and problem-solving skills.You are self-driven, proactive, eager to learn, and comfortable taking ownership of problems through resolution.
Bonus Points!Experience working in fast-growing SaaS or cloud-native organizations.Experience securing large-scale distributed systems and production environments.Familiarity with cloud-native security technologies and modern infrastructure platforms.Experience building security automation and operational tooling.Relevant security or cloud certifications.Experience supporting audits, customer security reviews, or regulatory compliance initiatives.Experience mentoring engineers and contributing to security strategy and roadmap development.Passion for continuous learning and improving security through automation and scalable solutions.This role is ideal for someone who enjoys solving complex security challenges, building scalable security programs, and partnering closely with engineering teams to enable secure growth.