Live opening · Posted 17 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
Company Description CARPL.ai is a vendor-neutral Artificial Intelligence platform that enables radiologists to access, evaluate, and integrate radiology AI solutions into clinical practice. The platform provides a unified user interface, data channel, and procurement channel for testing, deploying, and monitoring AI tools within radiology workflows. CARPL.ai operates the world’s largest radiology AI marketplace with over 300 applications from more than 100 AI vendors. The organization focuses on streamlining AI adoption in healthcare, supporting clinical efficiency, and improving diagnostic outcomes. Team members work on cutting-edge technology at the intersection of AI, healthcare, and enterprise security.
Role Description This is a full-time, on-site Security Engineer role based in Delhi, India. The Security Engineer will design, implement, and maintain security controls across CARPL.ai’s infrastructure, applications, and data platforms. Responsibilities include assessing security risks, performing vulnerability assessments, reviewing system and application architectures, and collaborating with engineering teams to embed security best practices into development and deployment processes. The role involves monitoring security events, managing incident response, maintaining security documentation, and supporting compliance with relevant security and privacy standards. The Security Engineer will also contribute to security awareness initiatives and continuous improvement of the organization’s overall security posture.
Requirements and Qualifications
● Education: Bachelor’s degree in Computer Science, Cyber Security, Information Technology, or a related field (or equivalent professional experience).
● Experience: 2 to 5+ years of proven hands-on experience in a dedicated Security Engineering, DevOps Security, or Infrastructure Security role.
● Technical Proficiency: ○ Advanced, hands-on experience with Docker containerization and secure image construction (e.g., distroless images, multi-stage builds, rootless execution). ○ Strong expertise managing and securing Kubernetes ecosystems (managed services like EKS/GKE/AKS or self-hosted). ○ Deep understanding of cloud-native security tools, service meshes, and runtime security monitoring (e.g., Falco). ○ Experience with scripting languages (e.g., Python, Bash, or Go) to automate routine security tasks and threat hunting. ○ Strong expertise in securing public cloud environments (e.g., AWS, Microsoft Azure, or Google Cloud Platform).
● Work Arrangement: Ability to work full-time on-site at our designated office location.
● Certifications (Preferred but not mandatory): Industry-recognized credentials such as CKS (Certified Kubernetes Security Specialist), CISSP, or OSCP significantly enhance a candidate's profile. Professional Competencies
● Analytical Thinking: Exceptional problem-solving and troubleshooting skills to dissect complex, fast-moving system anomalies.
● Communication: Ability to articulate complex technical security risks and container vulnerabilities clearly to developers and non-technical business stakeholders.
● Adaptability: A continuous learner who proactively stays ahead of emerging cloud-native hacking tactics and vulnerabilities.
Key Responsibilities
● Container Hardening: Build, maintain, and audit secure, hardened base images (Docker/OCI). Implement automated workflows to scan and update base layers, minimizing the attack surface before images reach production.
● Orchestration Security: Design and enforce security policies within Kubernetes clusters, including Role-Based Access Control (RBAC), Network Policies, Admission Controllers, and pod security standards.
● Secure SDLC and DevSecOps: Integrate container vulnerability scanning (e.g., Trivy, Clair, Grype) and static analysis tools directly into CI/CD deployment pipelines.
● Security Infrastructure and Architecture: Design, deploy, and manage security systems, including firewalls, Intrusion Detection/Prevention Systems (IDS/IPS), SIEM platforms, and data encryption protocols.
● Vulnerability and Risk Management: Conduct regular vulnerability assessments, code reviews, and configuration audits across infrastructure-as-code (IaC) and running environments.
● Incident Response: Monitor cluster workloads and network traffic for suspicious activity. Act as a primary responder to mitigate and remediate real-time security breaches.
Work arrangement
No
More openings worth a look
Recently tracked roles with full details and direct application links.