Job DescriptionCybersecurity Platform Engineering
Role Overview
We are seeking a highly skilled and hands-on Senior Cybersecurity Platform Engineer to design, build, and operate scalable security platforms. This role focuses on engineering robust security infrastructure, automating security controls, and enabling secure-by-design practices across cloud and on-prem environments.
Key Responsibilities
- Platform Engineering
- Design, implement, and maintain enterprise-grade security platforms (SIEM, SOAR, EDR, IAM, etc.)
- Build scalable, resilient, and high-performance security infrastructure
- Integrate security tools into centralized platforms for visibility and control
- Development & Automation
- Develop automation scripts and tooling (Python, Go, Bash)
- Build APIs and integrations between security tools and internal systems
- Automate detection, response, and remediation workflows
- Cloud Security
- Implement security controls across cloud platforms (AWS, Azure, GCP)
- Build cloud-native security solutions (CSPM, CWPP, container security)
- Secure CI/CD pipelines and infrastructure-as-code (Terraform, CloudFormation)
- TI/TH SoC
- Engineer detection rules, correlation logic, and alerting mechanisms
- Enhance logging, monitoring, and telemetry pipelines
- Collaborate with SOC teams to improve detection coverage and reduce false positives
- Identity & Access Management (IAM)
- Design and implement secure authentication and authorization systems
- Integrate SSO, MFA, and privileged access management solutions
- DevSecOps
- Embed security into SDLC and CI/CD pipelines
- Implement SAST, DAST, SCA, and container scanning tools
- Champion shift-left security practices
- Performance & Reliability
- Ensure platform availability, scalability, and performance
- Conduct capacity planning and optimization
- Troubleshoot complex system and integration issues
Required Skills & Experience
- Experience
- 12+ years in cybersecurity, with strong focus on platform/security engineering
- Proven hands-on experience building and operating security platforms
- Writing production-grade code and automation regularly
- Debugging real security incidents and platform issues
- Directly configuring and integrating tools—not just designing
- Building solutions end-to-end, from concept to deployment
- Technical Skills
- Strong programming/scripting: Python, Power BI, Bash, R, Go, or similar
- Experience with SIEM (e.g. Sentinel, Sentinel One, Splunk, ELK), SOAR, EDR tools
- Deep understanding of cloud security (AWS/Azure/GCP)
- Infrastructure as Code: Terraform, CloudFormation
- Container & Kubernetes security
- Security Knowledge
- Strong understanding of:
- Network security
- Application security
- Identity & Access Management
- Threat detection and incident response
- Familiarity with frameworks (NIST, ISO 27001, MITRE ATT&CK)
- Systems & DevOps
- Linux/Unix system expertise
- CI/CD tools (Jenkins, GitHub Actions, GitLab CI)
- Observability tools (Prometheus, Grafana)
- Nice to Have
- Experience with Zero Trust architecture
- Knowledge of data security (DLP, encryption, key management)
- Experience in large-scale distributed systems
- Relevant certifications (CISSP, OSCP, AWS Security Specialty)
- AI based knowledge and its usage for Cybersecurity
Soft Skills
- Strong problem-solving and troubleshooting ability
- Ability to work cross-functionally with engineering, DevOps, and SOC teams
- Excellent communication and documentation skills
- Ownership mindset with a bias for action