Security Engineer
3 weeks ago
ISA is a premier technology solution provider for the Aviation industry. We are backed by Air Arabia and headquartered in Sharjah, UAE. ( ) ISA (Information Systems Associates) is a premier in the field of Information Technology providing best-of-breed technology solutions for the global travel and aviation industry since 2005. We offer a wide range of tailor-made aviation technology We are hiring Pune, India. Job Title: Security Engineer Job Type: Full-time Reports To: Security Architect Job Overview: We are seeking a highly skilled Security Engineer to design, implement, and manage the security architecture of our organization. The ideal candidate will be responsible for firewall and endpoint security, WAF implementation, VAPT, fraud investigation, dark web monitoring, brand monitoring, email security, and compliance enforcement . The role requires expertise in securing IT infrastructure, conducting risk assessments, ensuring compliance, and implementing Microsoft security layers to strengthen the organization's security posture. Key Responsibilities: 1. Firewall, Endpoint & WAF Security Design, configure, and manage firewalls (Palo Alto, Fortinet, Cisco ASA, Check Point). Deploy and maintain Web Application Firewalls (WAF) for web security (Cloudflare, Imperva, AWS WAF). Implement Endpoint Detection & Response (EDR) solutions like Microsoft Defender for Endpoint, CrowdStrike, SentinelOne . Conduct regular firewall rule audits, optimize configurations, and enforce Zero Trust principles . 2. Microsoft Security Layer Implementation a. Microsoft Email Security Configure and manage Microsoft Defender for Office 365 to protect against phishing, malware, and email threats. Implement Safe Links, Safe Attachments, and Anti-Phishing policies . Monitor and respond to email security alerts in Microsoft Security Portal . Conduct email security threat hunting using Defender for O365 and advanced hunting queries. b. Microsoft Endpoint Security Deploy and manage Microsoft Defender for Endpoint (MDE) to protect corporate devices. Enforce attack surface reduction (ASR) rules for endpoint protection. Configure endpoint compliance policies using Microsoft Intune . Implement DLP (Data Loss Prevention) policies to prevent data exfiltration. c. Compliance & Risk Management Implement and monitor Microsoft Purview Compliance Manager for risk assessment. Enforce Information Protection & Encryption Policies using Microsoft Purview. Configure and manage Conditional Access Policies in Microsoft Entra ID . Ensure compliance with security frameworks like ISO 27001, NIST, CIS, and GDPR . 3. Dark Web Monitoring & Brand Protection Monitor dark web forums, marketplaces, and underground networks for stolen credentials, data leaks, and insider threats. Implement dark web intelligence tools such as Recorded Future, Digital Shadows, or Microsoft Defender Threat Intelligence. Work with threat intelligence platforms to detect and respond to brand impersonation, phishing sites, and fraudulent domains . Collaborate with legal and compliance teams to enforce takedowns of malicious content. 4. Fraudulent Incident Investigation & Threat Hunting Investigate fraud incidents, phishing attempts, and business email compromise (BEC) . Conduct forensic analysis on compromised endpoints, servers, and email accounts. Develop and implement threat intelligence and threat hunting processes. Work closely with SOC teams for incident response and mitigation . 5. VAPT & IT Security Operations Perform Vulnerability Assessments & Penetration Testing (VAPT) on infrastructure, applications, and cloud environments. Implement and manage intrusion detection/prevention systems (IDS/IPS) . Monitor, analyze, and mitigate vulnerabilities from external and internal security scans . Work with teams to remediate vulnerabilities and harden IT assets. 6. IT Security & Compliance Management Develop and enforce security policies, standards, and procedures . Implement Zero Trust Architecture and IAM policies . Conduct security awareness training and phishing simulations. Ensure compliance with ISO 27001, NIST, CIS, PCI-DSS, GDPR, and other industry standards . Required Qualifications & Skills: Technical Skills: ✅ Firewall & Network Security: Palo Alto, Fortinet, Cisco ASA, Check Point ✅ Microsoft Security Stack: Defender for Endpoint, Defender for Office 365, Intune, Purview Compliance ✅ Endpoint Security & EDR: Microsoft Defender, CrowdStrike, SentinelOne ✅ WAF & Web Security: Imperva, AWS WAF, Akamai, Cloudflare ✅ VAPT & Red Teaming: Burp Suite, Nessus, Metasploit, Kali Linux, OWASP ZAP ✅ SIEM & Threat Intelligence: Microsoft Sentinel, Splunk, QRadar, ELK Stack, MITRE ATT&CK ✅ Cloud Security: Azure Security Center, AWS Security Hub, GCP Security Command Center ✅ IAM & Zero Trust: Okta, Microsoft Entra ID, Conditional Access Policies, PAM ✅ Dark Web & Brand Monitoring: Recorded Future, Digital Shadows, Microsoft Defender Threat Intelligence Soft Skills: Strong analytical and problem-solving skills. Excellent communication and stakeholder management abilities. Ability to work independently and in cross-functional teams. Proactive security mindset with attention to detail. Certifications (Preferred, but not mandatory): ✔️ CISSP – Certified Information Systems Security Professional ✔️ CEH – Certified Ethical Hacker ✔️ OSCP – Offensive Security Certified Professional ✔️ CISM/CISA – Certified Information Security Manager/Auditor ✔️ Microsoft Certified: Cybersecurity Architect (SC-100)✔️ Microsoft Certified: Security Operations Analyst (SC-200)✔️ Microsoft Certified: Information Protection Administrator (SC-400) Experience Required: 5+ years of experience in IT Security, Cybersecurity, and Threat Intelligence . Hands-on expertise in firewall management, endpoint security, WAF, email security, and compliance . Strong experience in fraud investigation, dark web monitoring, and brand protection . Proven ability to secure cloud, hybrid, and on-premises environments . Please send your profiles to careers@isa.ae
-
TAC Security
4 weeks ago
Delhi Division, India TAC Security Full timeJob Description :As a Security Engineer VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems...
-
Senior security engineer – cloud, ai
1 week ago
Pune, India Symosis Security Full timeLocation : Remote (India) Type : Full-Time Company : Symosis Security About Symosis Security Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise with practical execution—supporting clients across threat modeling,...
-
Cyber Security Engineer
3 weeks ago
Pune, India TAC Security Full timeJob Description Key Responsibilities - Conduct security assessments by scanning applications and networks, performing penetration tests for further exploitation. - Execute Web Application SAST, DAST, Mobile Application Security testing, and API security testing. - Establish and maintain a Vulnerability Management framework including assessment, treatment,...
-
Security Engineer
5 days ago
Pune Division, India Sakon Full timeJob description Position: Engineer-IT Security Job Location: Pune, India Role Overview/Your Impact: We are looking for a highly skilled and detail-oriented Senior Engineer IT Security to join our Security Operations Center (SOC) team. As a Senior Engineer, you will be responsible for protecting the organization's IT infrastructure by monitoring, identifying,...
-
Network Security Engineer @ Pune
2 weeks ago
Pune Division, India Quess IT Staffing Full timePosition: Network Security Engineer Location: Pune Duration: Contract to Hire Job Description: Requirements: Technical Skills: Checkpoint: Advanced experience with MDS, SmartConsole, SmartDashboard, policy management, VPNs, threat prevention, and clustering (HA). Cisco ASA: Expertise in firewall policies, NAT, ACLs, VPN tunnels (IPSec/SSL), and...
-
Security Engineer
2 weeks ago
Bangalore Division, India Talentiser Full time🚀 We’re Hiring: Traffic Security Engineer | Bengaluru, India 📍 Location: Bengaluru | 💼 Experience: 5+ years | 🕒 Full-time About the Role We’re looking for a highly skilled Traffic Security Engineer to design and implement scalable, secure, and high-performance networking solutions. The ideal candidate will have deep technical expertise in...
-
Security Engineer
2 weeks ago
Bangalore Division, India Elucidata Full timeBusiness Unit- General & Administration Job Title- Security Engineer Location- Delhi/ Bangalore (3 days in office) About the Company: Elucidata is an AI Solutions Tech Data-centric AI company on a mission to make life sciences AI-ready. Headquartered in San Francisco with a 120+ member team across the US and India, we’re building the future of data-centric...
-
Cloud Security Engineer
5 days ago
Konkan Division, India Jio Full timeJob Description - Cloud Security Engineer Job Role Looking for Cloud Security Engineer for Designing Cloud Security Solutions Key Responsibilities Advise customers on security best practices, methodologies and solutions that effectively manage Risk. Engineer will be designing security framework for different cloud services Working on proof-of-concept...
-
Security Tooling Engineer
1 day ago
Delhi Division, India Clifford Chance Full timeJob DescriptionThe role This is a new role, reporting to the Head of Information Security requires a fast-learning and self-motivated individual to add capability and capacity to our small team. Information & Cyber Security is evolving to dynamic business needs, a rapidly changing threat environment, and the firm's own ambitious IT Strategy. This role will...
-
AI Security Engineer
5 days ago
Delhi Division, India Tumeryk Full timeCompany Description Tumeryk is a security and governance platform tailored for Agentic AI infrastructure. We assist enterprises in discovering, securing, and governing AI agentic applications, chatbots, and large language models across their cloud and internal environments. Our offerings include AI Trust Score™ Guardrails for enforcing real-time controls,...