Orca Cloud Security Expert
India - Pune, IN
Syensqo is all about chemistry. We’re not just referring to chemical reactions here, but also to the magic that occurs when the brightest minds get to work together. This is where our true strength lies. In you. In your future colleagues and in all your differences. And of course, in your ideas to improve lives while preserving our planet’s beauty for the generations to come.
Job Description – Orca Cloud Security Expert (CSPM / CNAPP)
Role Summary
The Orca Cloud Security Expert is responsible for the operation, continuous improvement, and governance of the Orca Security platform across multi-cloud environments (AWS, Azure, GCP).
The role ensures end-to-end security posture management, including alert triage, remediation coordination with IT teams, and ongoing optimization of detection, processes, and coverage.
Key Responsibilities
1. Operate Orca Security Platform (RUN)
-
Manage day-to-day operations of the Orca platform, ensuring continuous monitoring of cloud environments
-
Perform triage and analysis of security alerts (Critical/High/Medium)
-
Conduct incident investigation and risk analysis using Orca capabilities
-
Maintain dashboards, KPIs, and operational reporting for stakeholders
-
Ensure service continuity, availability, and SLA adherence
2. Coordinate Remediation with IT Teams
-
Act as the central interface between security and IT operations teams (Cloud, Infra, App teams)
-
Translate Orca findings into clear remediation actions and technical recommendations
-
Create and follow up remediation tickets (e.g., Helix/Jira) and track progress to closure
-
Drive prioritization based on severity, business risk, and exposure
-
Ensure proper ownership and accountability of remediation actions across teams
3. Continuous Improvement & Optimization
-
Continuously optimize detection rules, alert tuning, and vulnerability classification
-
Reduce false positives and improve signal-to-noise ratio (e.g., tuning “Service Vulnerabilities”)
-
Enhance and maintain runbooks, processes, and automation workflows
-
Contribute to shift-left initiatives (integration with DevSecOps, code scanning, IaC scanning)
-
Improve coverage across cloud assets, applications, and workloads
4. Security Posture & Compliance Management
-
Ensure continuous visibility of risks, vulnerabilities, and misconfigurations across cloud environments
-
Support compliance monitoring and reporting (internal policies, standards)
-
Contribute to gap analysis and policy alignment (Cloud Security Standards)
-
Produce regular reports on risk posture, remediation progress, and KPIs
5. Stakeholder Coordination & Governance
-
Collaborate with:
-
Cloud teams (AWS, Azure, GCP)
-
SOC / SecOps teams
-
Application and DevOps teams
-
Provide regular status communication on risk, remediation, and improvements
-
Support steering committees and governance reviews
-
Raise escalations on critical risks or remediation delays
Core Deliverables
-
Security dashboards and reporting (KPIs, SLA, risk trends)
-
Remediation tracking and follow-up reports
-
Orca configuration (alerts, scans, integrations)
-
Continuous improvement backlog & roadmap
-
Documented processes (runbooks, remediation workflow, alert management)
Required Skills & Experience
Technical Skills
-
Strong experience with:
-
Cloud Security (AWS / Azure / GCP)
-
CSPM / CNAPP platforms (Orca preferred)
-
Knowledge of:
-
Vulnerability management & remediation workflows
-
Cloud misconfigurations and security best practices
-
DevSecOps / Shift-left security (IaC scanning, SAST, secrets detection)
-
Familiarity with:
-
ITSM tools (ServiceNow / Helix / Jira)
-
SIEM / SOC integration
Soft Skills
-
Strong coordination and stakeholder management capabilities
-
Ability to translate technical risks into actionable remediation
-
Structured, process-oriented mindset (run, improve, industrialize)
-
Strong communication skills (technical and executive level)
KPIs / Success Measures
-
Reduction of critical/high vulnerabilities backlog
-
Mean time to remediation (MTTR)
-
% of Orca alerts triaged and resolved within SLA
-
Coverage of cloud assets monitored by Orca
-
Reduction of false positives / alert noise
Positioning (Typical Organization)
-
Reports to: Cloud Security / Cybersecurity Lead
-
Works closely with:
-
SOC / SecOps
-
Cloud Engineering
-
Application teams
Value Proposition of the Role
-
Ensures end-to-end control of cloud security posture
-
Drives operational excellence in vulnerability management
-
Enables scalable, automated, and standardized security operations
-
Acts as a bridge between security and IT operations
About us
- Syensqo is a science company developing groundbreaking solutions that enhance the way we live, work, travel and play. Inspired by the scientific councils which Ernest Solvay initiated in 1911, we bring great minds together to push the limits of science and innovation for the benefit of our customers, with a diverse, global team of more than 13,000 associates. Our solutions contribute to safer, cleaner, and more sustainable products found in homes, food and consumer goods, planes, cars, batteries, smart devices and health care applications. Our innovation power enables us to deliver on the ambition of a circular economy and explore breakthrough technologies that advance humanity.
- At Syensqo, we seek to promote unity and not uniformity. We value the diversity that individuals bring and we invite you to consider a future with us, regardless of background, age, gender, national origin, ethnicity, religion, sexual orientation, ability or identity. We encourage individuals who may require any assistance or accommodations to let us know to ensure a seamless application experience. We are here to support you throughout the application journey and want to ensure all candidates are treated equally. If you are unsure whether you meet all the criteria or qualifications listed in the job description, we still encourage you to apply.