Director of Security Operations at Simpplr overseeing cloud infrastructure and AI security. Collaborating with teams to enhance security operations and tackle emerging AI threats.
Responsibilities
Define Simpplr’s product security and security operations strategy and implements plans to execute on them.
Lead daily security operations across cloud infrastructure and application layers, including vulnerability management, threat monitoring, and incident triage.
Manage the lifecycle of externally reported security vulnerabilities, ensuring timely triage, tracking, and remediation.
Monitor, investigate, and respond to security alerts and suspicious behavior, with a focus on both infrastructure and product layers.
Support the security posture of AI features, including model threat assessments, abuse detection, and secure prompt handling.
Partner with engineering teams to embed security controls into the development lifecycle, with special attention to AI features and data pipelines.
Participate in internal security reviews, including the testing and hardening of AI and SaaS components.
Coordinate and manage security tickets, playbooks, runbooks, and workflows across platforms.
Contribute to cloud security monitoring, automation, and the coordinate and oversee the development of detection use cases.
Research and track AI security trends, adversarial ML risks, prompt injection threats, and model exploitation vectors.
Support audits, compliance efforts, and reporting as needed.
Identify key security metrics and keep executive management informed of Simpplr’s security posture at all times.
Requirements
15+ years of experience in the software industry with 10+ years in security operations, cloud security, or infrastructure/product security roles.
Proven experience with cloud platforms (e.g., AWS, GCP, or Azure) and associated security best practices.
Prior experience with MDR, SIEM and related security tools.
Very good knowledge of and experience with secure development lifecycle including securing the entire supply chain and CI/CD pipeline.
Experience in vulnerability management, incident response, and log analysis and traceability.
Understanding of application security principles, secure coding practices, and risk mitigation strategies.
Solid grasp of AI/ML fundamentals and awareness of associated threat vectors (e.g., model extraction, adversarial inputs, prompt injection).
Experience working with threat intelligence, security testing, and cross-functional engineering teams.
Strong communication and documentation skills, with a disciplined and self-driven mindset.
Security Operations Engineer at Gridware enhancing security, detection, and response in cloud - first environments. Collaborating with IT and engineering teams to implement best practices.
Cybersecurity Operations Director leading cybersecurity managed services operations at a global accounting firm. Overseeing teams, driving growth, and serving as an advisor to clients.
Security Operations Analyst responsible for developing security processes and incident response. Collaborating with multiple teams for security best practices in a hybrid work environment.
Security Manager leading IAM and SecOps at fintech solutions provider in Brazil. Developing and implementing information security programs aligned with best practices and compliance requirements.
Security Engineer enhancing cybersecurity tools and solutions for The Walt Disney Company. Performing system analyses and developing security configurations for improved protection against cyber threats.
Security Operations Lead responsible for security operations aligning with policies and compliance. Handling incident response, vulnerability management, and supporting IT teams with security expertise.
Cyber Security Specialist protecting digital estate from threats at the University of Edinburgh. Focused on identifying and mitigating cyber risks while supporting teaching and research services.
Cybersecurity Incident Response Analyst detecting and responding to cyber threats at NOV. Collaborating using AI tools to enhance cybersecurity operations across IT, cloud, and OT environments.