Security Engineer (Modernization & Hybrid Cloud)
Core
Design and implement security blueprints for migrating legacy mainframe systems to modern cloud-native Java microservices, ensuring 'Security by Design' across hybrid infrastructure.
Role type
Senior Security Engineer (Mainframe-to-Cloud Modernization)
Builds
Secure hybrid cloud architectures connecting COBOL/CICS mainframes with Azure cloud services and Java microservices.
Domain
Banking/Finance, Mainframe Security, Cloud Security, Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Mainframe security (RACF/ACF2), Java Spring Security, Azure security hardening, Cryptography (AES/RSA/ECC), DevSecOps pipelines, Legacy data protection (DB2/VSAM), API security (OAuth2/OIDC), Performance engineering for security
Preferred skills
COBOL security knowledge, SingleStore/PostgreSQL security, SIEM/SOAR implementation, Zero Trust architecture design
Technologies
RACF, Azure AD/Entra ID, Azure AKS, Azure SQL, Key Vault, Spring Security, Checkmarx, SonarQube, Snyk, SIEM, SOAR, mTLS
Responsibilities
Define security blueprints for mainframe-to-cloud migration; Design secure integration patterns between RACF and Azure AD; Lead SAST/DAST/SCA implementation in CI/CD for Java apps; Define encryption/masking strategies for DB2/VSAM data; Evaluate performance impact of security controls on transaction speeds; Configure Azure network security and private links; Enforce API security standards against OWASP Top 10; Establish logging/monitoring strategies correlating legacy and modern systems
Seniority
Senior, hands-on IC with technical leadership