Description
We seek a highly skilled and experienced Senior Security Engineer to join our Information Security team. The ideal candidate will deeply understand security technologies and practices, particularly in automation, cloud security, vulnerability management, endpoint protection, and security data analytics. You will play a pivotal role in securing our infrastructure, automating security operations, and ensuring that our security posture is both proactive to emerging threats.
As a Senior Security Engineer, you will work with cutting-edge technologies in security orchestration and automation platforms, unified security and observability platforms, Comprehensive Cloud Computing platforms, Data Lake, Cloud-based security applications, Infrastructure as code, asset management platforms, and business intelligence. A strong foundation could also include penetration testing and experience in security data analytics, business intelligence, and using tools like comprehensive cloud computing platforms will be crucial. The role will also require expertise in asset management to track and manage assets within our environment. Additionally, the candidate should possess relevant certifications in security automation, unified security, and observability platforms.
Department
SPE-Data Analytics
Open Positions
1
Skills Required
Cyber Security, Security Automation, Cloud, AWS, Splunk, Incident Investigation
Role
Key Responsibilities
- Security Automation & Orchestration:
- Design, implement, and manage automated workflows in SOAR platforms to streamline security operations.
- Integrate multiple security tools, using existing SOAR to enable automated detection, response, and remediation actions.
- Leverage open-source infrastructure-as-a-code to define and provision cloud security resources for open-source data lake platforms.
- Cloud Security:
- Design and implement security controls, monitoring, and automation in environments using IaaS, PaaS, and SaaS offerings to build, deploy, and manage Infrastructure in the Cloud.
- Work with cloud-native tools and services to enhance the security of infrastructure, including IAM, VPC, and EC2 security.
- Conduct security assessments on cloud services, identify risks, and implement mitigation strategies.
- Security Data Analytics with a Unified Security and Observability platform:
- Create comprehensive security event monitoring, log analysis, and threat hunting across the infrastructure.
- Develop advanced search queries, dashboards, and alerts to identify anomalies and potential threats.
- Implements code to correlate data from multiple sources and detect security incidents in real time.
- Conduct root cause analysis of incidents using Splunk and provide actionable insights for incident response and remediation.
- Leverage database management concepts utilizing processing languages for data pipelines and monitoring workflows.
- Incident Response & Investigation:
- Lead or support the investigation of security incidents, including detection, analysis, containment, and remediation.
- Provide recommendations for improving the overall security posture based on incident learnings.
- Collaboration & Documentation:
- Collaborate with other security engineers and teams to improve overall security practices.
- Document security processes, workflows, and incident reports clearly and concisely.
- Educate and mentor junior security engineers and team members on security best practices and tools.
Required Qualifications
- Experience:
- At least 5-7 years of experience in a security engineering role, with a strong background in security automation, cloud security, vulnerability management, and security data analytics.
- Hands-on experience with existing SOAR application to automate security operations and integrate security tools into centralized workflows.
- Proficiency in security monitoring, alerting, and reporting.
- Experience securing cloud computing platforms managing IAM, VPC, EC2, and other cloud resources.
- Familiarity with automating infrastructure as code (IaC) to provision and secure cloud resources.
- Experience with vulnerability management, including scanning, remediation tracking, and reporting.
- Experience with endpoint protection and incident detection.
- Experience with asset management, including inventory tracking, compliance monitoring, and integration with other security tools.
- Advanced knowledge of Security Data Lakes
- Athena and Glue for Data Parsing and Structure
- Security Lake Design, Securing and managing
- Proficient with authoring, scheduling, and monitoring workflows within Data Lakes
- Certifications:
- SOAR Certified (Preferred) or equivalent experience.
- AWS Certified Security or other relevant AWS certifications (Preferred).
- Offensive Security Certified Professional (OSCP) or other penetration testing certifications (Preferred).
- AWS Certified Architect
- Amazon Security Lake
- Skills:
- Strong understanding of security concepts, protocols, and technologies.
- Familiarity with common attack vectors, exploit techniques, and security mitigation strategies.
- Experience in security event monitoring, log analysis, and threat hunting using SIEM, SOAR, and Unified security and observability platforms.
- Knowledge of regulatory compliance frameworks such as NIST, ISO 27001, SOC 2, and GDPR.
- Solid scripting or programming skills to automate tasks and processes.
- Strong analytical, troubleshooting, and problem-solving skills.
Preferred Qualifications
- AWS Certifications (e.g., AWS Certified Solutions Architect, AWS Certified DevOps Engineer) or similar certifications in Azure or GCP.
- Familiarity with security best practices in DevSecOps environments.
- Hands-on experience with serverless and cloud computing (e.g., AWS Lambda, Google Cloud Functions).
- Knowledge of SIEM (Security Information and Event Management) tools and how to configure and manage them.
- Experience working in Agile or DevOps environments.
- Strong troubleshooting skills for cloud infrastructure, security incidents, and workflow orchestration.
Location
Bengaluru
Education/Qualification
BE , Btech, MSc
Years Of Exp
4 to 6 years
Designation
Information Security - Senior Engineer