Sr Cloud Security Engineer II
Job Details
As one of the world’s leading independent global investment firms, Invesco is dedicated to rethinking possibilities for our clients. By delivering the combined power of our distinctive investment management capabilities, we provide a wide range of investment strategies and vehicles to our clients around the world. If you're looking for challenging work, intelligent colleagues, and exposure across a global footprint, come explore your potential at Invesco.
Job DescriptionJob Purpose (Job Summary):
We are looking for exceptional talent with a passion for information security and strong technical expertise in maintaining and supporting the company’s Cloud security operations. This role involves identifying and resolving security issues, enhancing system protections, and proactively seeking opportunities for improvement. Additionally, you will ensure adherence to all relevant procedures and documentation, reviewing and updating them as needed.
Your Team
Our Information Security department is to protect Invesco’s information and Information assets from all internal and external, deliberate, or accidental threats. The information security team will protect data from unauthorized access while maintaining the confidentiality, integrity, and availability of information. In addition, designing and maintaining the Security Policies and Standards while adhering to legislative and regulatory requirements, providing information security training for all employees, and ensuring the business continuity of Invesco.
Your Role:
The Senior Cloud Security Engineer, based in Hyderabad, India, is responsible for designing, implementing, managing, and monitoring security measures to protect cloud applications and customer data while leading security initiatives across the organization. Operating with limited supervision, this role collaborates closely with cross-functional teams—including Security, Enterprise Architecture, Technology Infrastructure, and Cloud Engineering—to ensure cloud security practices meet industry standards, comply with regulations, and align with business objectives. Additionally, the position drives the enterprise-wide strategy for safeguarding sensitive data across all IVZ environments, ensuring that cloud security policies remain aligned with business risk, regulatory requirements, and the evolving threat landscape.
You Will Be Responsible For:
Develop and implement security strategies, policies, and procedures for SaaS applications.
Monitor and respond to security incidents, vulnerabilities, and threats in the cloud environment.
Defining technical security requirements related to cloud workloads that require integration with IAM, Security Groups, Data and Information Protection, CI/CD pipelines, Kubernetes, Security Information Event Monitoring (SIEM) systems integration, and others
Researching and designing current and future cloud security solutions to improve compliance with NIST Framework and Cloud Security Alliance guidance by working to identify common patterns for template provisioning
Developing and deploying infrastructure as a code scripts to implement and optimize security controls and mechanisms of a cloud infrastructure
Supporting cloud projects, tactical initiatives and provide hands on implementation of various security technologies & processes with focus on cloud security. Support key business and tech projects related to Cloud Transformation.
Providing appropriate support activities such as patches, upgrades, break fix and improvements
Providing appropriate cloud security engineering and support activities such as patches, upgrades, enhancements
Providing metrics and periodic updates on various projects assigned
Investigating, documenting, and reporting on information security issues and emerging trends related to cloud environments globally
Optimize existing automation solutions for performance and reliability.
Staying updated with the latest technologies and tools in automation and continuously improving skills.
Investigating, documenting, and reporting on information security issues and emerging trends related to cloud environments globally
Optimize existing automation solutions for performance and reliability.
Staying updated with the latest technologies and tools in automation and continuously improving skills.
Other
Attend scheduled meetings with Team Lead/Department/Town Hall representation
Become familiar with company methodologies
Actively participate with Team Lead in creating personal development plan
Provide the Team Lead with ideas to enhance or improve team processes and procedures and ensure agreed procedures are followed
Attend scheduled training sessions
Administrative activities – time sheets/compliance requests
undefined
The Experience You Bring:
Core Technical Skills
Data Classification & Tagging- Expertise in data discovery and classification tools (e.g., Microsoft Purview, Azure Information Protection).
- Strong understanding of data sensitivity levels (PII, PHI, PCI, etc.).
- Ability to implement metadata tagging and enforce data governance policies.
- DLP (Data Loss Prevention)
- Implementation experience with DLP tools:
- Microsoft Purview DLP
- Symantec DLP
- Forcepoint
- McAfee
- Understanding of DLP integration with:
- Endpoints
- Email gateways
- Network traffic
- Ability to:
- Interpret DLP alerts and identify false positives
- Create, tune, and fine-tune policies
- Handle incident response workflows
- Hands-on experience in policy creation, tuning, and incident response within these platforms.
- DSPM (Data Security Posture Management)
- Deep understanding of AWS, Azure, and GCP data services (S3, Blob Storage, BigQuery, etc.).
- Familiarity with:
- IAM (Identity and Access Management)
- Encryption techniques
- Key management in cloud environments
- Ability to interpret DSPM findings and remediate misconfigurations.
- SSPM (SaaS Security Posture Management)
- Hands-on experience with SSPM tools such as:
- Microsoft Defender for Cloud Apps (MDCA)
- CrowdStrike Falcon Shield
- Ability to configure, monitor, and remediate SaaS security posture issues.
- ✅ Cloud Security & Compliance
- Strong grasp of Azure security architecture and shared responsibility model.
- Familiarity with compliance frameworks (GDPR, HIPAA, ISO 27001, SOC 2).
- Experience with Conditional Access policies and cloud-native security controls.
- ✅ Analytical & Problem-Solving
- Ability to analyze security posture, prioritize risks, and implement remediation.
- Strong incident investigation and root cause analysis skills.
- ✅ Soft Skills
- Excellent communication skills for cross-team collaboration.
- Ability to translate technical findings into actionable business insights.
- Experience with DSPM tools like Wiz.
At Invesco, our workplace model supports our culture and meets the needs of our clients while providing flexibility our employees value. As a full-time employee, compliance with the workplace policy means working with your direct manager to create a schedule where you will work in your designated office at least three days a week, with two days working outside an Invesco office.
Why Invesco
In Invesco, we act with integrity and do meaningful work to create impact for our stakeholders. We believe our culture is stronger when we all feel we belong, and we respect each other’s identities, lives, health, and well-being. We come together to create better solutions for our clients, our business and each other by building on different voices and perspectives. We nurture and encourage each other to ensure our meaningful growth, both personally and professionally.
We believe in diverse, inclusive, and supportive workplace where everyone feels equally valued, and this starts at the top with our senior leaders having diversity and inclusion goals. Our global focus on diversity and inclusion has grown exponentially and we encourage connection and community through our many employee-led Business Resource Groups (BRGs).
What’s in it for you?
As an organization we support personal needs, diverse backgrounds and provide internal networks, as well as opportunities to get involved in the community and in the world.
Our benefit policy includes but not limited to:
- Competitive Compensation
- Flexible, Hybrid Work
- 30 days’ Annual Leave + Public Holidays
- Life Insurance
- Retirement Planning
- Group Personal Accident Insurance
- Medical Insurance for Employee and Family
- Annual Health Check-up
- 26 weeks Maternity Leave
- Paternal Leave
- Adoption Leave
- Near site Childcare Facility
- Employee Assistance Program
- Study Support
- Employee Stock Purchase Plan
- ESG Commitments and Goals
- Business Resource Groups
- Career Development Programs
- Mentoring Programs
- Invesco Cares
- Dress for your Day
In Invesco, we offer development opportunities that help you thrive as a lifelong learner in a constantly evolving business environment and ensure your constant growth. Our AI enabled learning platform delivers curated content based on your role and interest. We ensure our manager and leaders also have many opportunities to advance their skills and competencies that becomes pivotal in their continuous pursuit of performance excellence.
To know more about us
About Invesco: https://www.invesco.com/corporate/en/home.html
About our Culture: https://www.invesco.com/corporate/en/about-us/our-culture.html
About our D&I policy: https://www.invesco.com/corporate/en/our-commitments/diversity-and-inclusion.html
About our CR program: https://www.invesco.com/corporate/en/our-commitments/corporate-responsibility.html
Apply for the role @ Invesco Careers: https://careers.invesco.com/india/