Senior Cloud Security Engineer

The world still has coverage blind spots. You could help eliminate them at Skylo.

Skylo has pioneered a standards-based approach to satellite connectivity. We connect smartphones and IoT devices directly to satellites. No special hardware, no entirely new networks. Just billions of existing devices, suddenly reachable anywhere on Earth. We're not building toward this future. We're already in it.

Our direct-to-device service is live on millions of activated devices across five continents, covering more than 72 million square kilometers, in partnership with leading satellite operators, mobile network operators, Tier-1 chipset makers, and OEMs worldwide. And we're just getting started.

At the heart of it all is Skylo's commercial NTN vRAN: a 3GPP standards-based, cloud-native platform that seamlessly bridges terrestrial and satellite networks. It's the infrastructure that makes true anywhere, anytime connectivity possible.

When you join Skylo, you'll work at the intersection of three markets reshaping how the world stays connected: mass-market consumer devices, automotive, and industrial IoT. Enabling people outdoors and critical workflows in the world's most remote places.

This is a rare chance to work on technology that matters, at a company that's already proving it works

This role is located in Bangalore, India where we are onsite 3 days a week in office.

Summary Of How You Will Impact Skylo

Skylo is building satellite-to-device (NTN) connectivity infrastructure connecting mobile network operators worldwide. As part of our growing InfoSec organization, we're hiring a Senior Cloud Security Engineer to own the security posture of our cloud infrastructure across AWS/GCP environments supporting our satellite network operations, ground infrastructure, and enterprise systems.

This is a foundational hire on our Platform Security pillar — you'll build controls, tooling, and processes largely from the ground up in a multi-cloud, multi-jurisdictional environment (India, US & EU). You'll building a modern InfoSec function for a company defining a new category of connectivity infrastructure. You'll have direct influence over architecture and tooling decisions rather than inheriting a legacy stack.

How You Will Contribute

  • Design, implement, and maintain cloud security architecture across AWS or GCP environments (IAM, network segmentation, workload security, secrets management, encryption/KMS)

  • Build and tune cloud security posture management (CSPM), workload protection, and cloud-native detection capabilities

  • Partner with platform/DevOps engineering to embed security into CI/CD pipelines and infrastructure-as-code (Terraform, CloudFormation, etc.)

  • Own vulnerability management and hardening for cloud workloads, containers, and Kubernetes environments

  • Support incident response and forensics for cloud-based security events

  • Strong hands-on experience in one or more areas such as Cyber Defence, Security Engineering, Vulnerability Management, Cloud Security, or Infrastructure Security.

  • Partner with Engineering, DevOps, Cloud & Infrastructure, and Product teams to drive security remediation and Support security architecture reviews, audits, compliance, and security improvement initiatives.

  • Work with Engineering and Security teams to identify, document, and track security risks, including issues related to insecure design, weak access control, exposed secrets, vulnerable components, misconfigurations, and other common infrastructure/platform risks.

  • Administer and improve vulnerability-management tools and integrations across application, cloud, infrastructure, network, and external-facing environments.

  • Support basic threat modeling activities by helping identify assets, data flows, trust boundaries, misuse scenarios, and potential security requirements.

  • Own and execute cybersecurity initiatives from identification through implementation and closure.

  • Conduct security assessments / vulnerability assessments / security reviews and assist with reviewing security findings, understanding risk context, coordinating with owners, and tracking remediation or accepted exceptions through closure.

  • Monitor and analyze security events across SIEM, EDR/XDR, firewalls, vulnerability management, and security monitoring platforms/tools.

  • Monitor vulnerability and asset coverage, resolve scanning or integration gaps, and maintain metrics on exposure, remediation performance, schedules, asset inventories, authenticated scanning flows, exceptions, recurring issues, and overall program health.

  • Working knowledge of vulnerabilities affecting cloud infrastructure, operating systems, networks, web applications, and common enterprise technologies.

  • Familiarity with GCP/AWS environments and cloud vulnerability findings affecting services such as EC2/VMs, container or Kubernetes(GKE/ EKS) environments, networking, identity, and managed services.

  • Good understanding of MITRE ATT&CK, FiGHT, D3FEND, IOC analysis, and threat detection.

  • Familiarity with security frameworks such as NIST, ISO 27001, or CIS.

  • Exposure to DevSecOps, CI/CD security, SOAR, CSPM, threat hunting, or security automation.

  • Knowledge of Python, Bash, or PowerShell.

What We're Looking For

  • 6+ years in security engineering, with 3+ years focused specifically on cloud security (AWS and/or GCP)

  • Deep hands-on experience with IAM design, VPC/network security, container and Kubernetes security, and secrets/key management

  • Working knowledge of infrastructure-as-code security (Terraform, policy-as-code tools like OPA/Sentinel)

  • Experience with CSPM/CNAPP (e.g., Wiz, Prisma Cloud, Orca, native cloud tooling)

  • Scripting/automation ability (Python, Go, Java, or similar) for security tooling and remediation

  • Strong communication skills — able to work cross-functionally with engineering, GRC, and leadership in a small, fast-moving team

  • Bonus: experience in telco, satellite, or other regulated critical-infrastructure environments; relevant certifications (e.g., AWS/GCP, security specialty, CCSP)

What We Offer

With employees working across three continents, Skylo is proud to be an equal opportunity employer dedicated to building an inclusive and diverse workforce. Our worldwide and inclusive culture encourages a flexible approach to work, and we also offer an attractive range benefits such as:

  • Competitive compensation packages including a stock option based equity program

  • Comprehensive benefits plan

  • Monthly allowances for wellness and education reimbursement

  • A generous time off policy, holidays, and the opportunity to temporarily work abroad

  • Once in a lifetime opportunity to be a part of developing and running world’s first commercial, live direct-to-device satellite network and service

  • Access to world-class team and talent across tech domains: software, hardware, chipsets, telecom, satellite and network virtualization

  • Open, transparent, inclusive culture that blends the Silicon Valley, Nordic and South Asia characteristics

EEO Statement

Skylo is an equal-opportunity employer and we celebrate diversity. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, parent or caregiver status, political affiliation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service consistent with applicable federal, state, and local laws.

We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. Please let us know if you need assistance or accommodation due to a disability.

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available