Security Engineer
CARPL - Radiology AI Platform · Delhi
- Experience2–5 yrs
- SalaryNot disclosed
- Work modeonsite
- Levelmid
- Posted15 Sept 2026
About CARPL - Radiology AI Platform
CARPL - Radiology AI Platform is hiring in Delhi in healthcare. This role looks for around 2+ years of experience.
Skills
- Docker
- Kubernetes
- Role-Based Access Control
- Network Policies
- Admission Controllers
- DevSecOps
- Trivy
- Clair
- Grype
- CI/CD
- firewalls
- Intrusion Detection/Prevention Systems
- SIEM
- data encryption
- vulnerability management
- code review
- Infrastructure as Code
- incident response
- Python
- Bash
- Go
- AWS
- Microsoft Azure
- Google Cloud Platform
- service meshes
- runtime security monitoring
The role
A security engineer at a healthcare technology company designs and hardens Kubernetes environments, Docker images, and cloud-native security systems, protecting infrastructure through DevSecOps and incident response. The role applies vulnerability management, runtime security monitoring, and threat hunting across containerized platforms.
Full job description
Description
Role Overview
We are seeking a highly skilled Security Engineer to design, implement, and maintain robust security systems that protect our organization’s digital assets, infrastructure, and networks. In this role, you will focus heavily on securing containerized environments, ensuring orchestrators are locked down, and building trusted, hardened base images. You will be responsible for proactively identifying vulnerabilities, responding to real-time security incidents, and establishing a security-first culture across our engineering teams. This position requires full-time, on-site presence at our office.
Key Responsibilities
Container Hardening: Build, maintain, and audit secure, hardened base images (Docker/OCI). Implement automated workflows to scan and update base layers, minimizing the attack surface before images reach production.Orchestration Security: Design and enforce security policies within Kubernetes clusters, including Role-Based Access Control (RBAC), Network Policies, Admission Controllers, and pod security standards.Secure SDLC and DevSecOps: Integrate container vulnerability scanning (e.g., Trivy, Clair, Grype) and static analysis tools directly into CI/CD deployment pipelines.Security Infrastructure and Architecture: Design, deploy, and manage security systems, including firewalls, Intrusion Detection/Prevention Systems (IDS/IPS), SIEM platforms, and data encryption protocols.Vulnerability and Risk Management: Conduct regular vulnerability assessments, code reviews, and configuration audits across infrastructure-as-code (IaC) and running environments.Incident Response: Monitor cluster workloads and network traffic for suspicious activity. Act as a primary responder to mitigate and remediate real-time security breaches.
Requirements And Qualifications
Education: Bachelor’s degree in Computer Science, Cyber Security, Information Technology, or a related field (or equivalent professional experience).Experience: 2 to 5+ years of proven hands-on experience in a dedicated Security Engineering, DevOps Security, or Infrastructure Security role.Technical Proficiency: Advanced, hands-on experience with Docker containerization and secure image construction (e.g., distroless images, multi-stage builds, rootless execution).Strong expertise managing and securing Kubernetes ecosystems (managed services like EKS/GKE/AKS or self-hosted).Deep understanding of cloud-native security tools, service meshes, and runtime security monitoring (e.g., Falco).Experience with scripting languages (e.g., Python, Bash, or Go) to automate routine security tasks and threat hunting.Strong expertise in securing public cloud environments (e.g., AWS, Microsoft Azure, or Google Cloud Platform).Work Arrangement: Ability to work full-time on-site at our designated office location.Certifications (Preferred but not mandatory): Industry-recognized credentials such as CKS (Certified Kubernetes Security Specialist), CISSP, or OSCP significantly enhance a candidate's profile.
Professional Competencies
Analytical Thinking: Exceptional problem-solving and troubleshooting skills to dissect complex, fast-moving system anomalies.Communication: Ability to articulate complex technical security risks and container vulnerabilities clearly to developers and non-technical business stakeholders.Adaptability: A continuous learner who proactively stays ahead of emerging cloud-native hacking tactics and vulnerabilities.