Security Engineer

4 weeks ago


Gurgaon, Haryana, India Concept Management Full time

Role - Security Engineer

Qualification - BE CS & IT

Experience - 8+ Year

Location - Pune, Gurugram

Industries - Information Technology

We are seeking a highly motivated and experienced Security Engineer to join our growing team. As a Security Engineer, you will play a critical role in protecting our systems and data by designing, implementing, and maintaining robust security solutions across our hybrid infrastructure and within our applications, encompassing both containerized (AKS) and serverless environments.

You will work closely with engineering, development, and operations teams to ensure the security of our cloud infrastructure, applications, and data.

This role has a strong focus on Azure, including AKS, Container Apps, Web Apps, Function Apps, Resource Groups, Virtual Networks, Infrastructure as Code (IaC) security, and identity management using Okta claims.

You also need to have a strong depth in Security Standards for Web Applications such as OWASP and the ability to enforce/implement them proactively within cloud applications and products/platforms.

While you will coordinate security testing, the primary focus will be on building and maintaining secure infrastructure and application configurations.

Must Have :

Network Security: Solid understanding of network segregation, WAFs, App Gateways, Proxies, and Firewalls.

Application Security & DevSecOps: Good understanding of application security and DevSecOps principles, including the "shift-left" culture.

Security & Privacy Principles: Good understanding of security and privacy principles, secure standards, and RFCs.

Azure Cloud Platform Experience: Hands-on experience with the Azure cloud platform and its security services.

Azure Kubernetes Service (AKS) Security: Specific experience securing Azure Kubernetes Service (AKS) environments, including ingress/egress, service mesh, and identity management.

Container and Kubernetes Security: Experience securing containerized applications and Kubernetes deployments, including conducting threat modeling exercises to identify and prioritize security risks.

Serverless Application Security: Experience securing serverless applications, including Web Apps and Function Apps.

Foundational Azure Services: Experience with Azure Resource Groups, Virtual Networks, and other foundational Azure services.

Key Responsibilities :

- Design, implement, and maintain security controls for our cloud infrastructure, with a focus on Azure, encompassing both AKS and serverless environments.

- Secure our Azure Kubernetes Service (AKS) environment, including ingress/egress controls, service mesh security, and identity management.

- Secure our serverless environment, including Web Apps, Function Apps, and related Azure services.

- Implement and manage Azure Front Door for web application security and traffic management.

- Configure and maintain Web Application Firewalls (WAFs) and Application Gateways.

- Implement and manage network segmentation strategies, firewalls, and proxies, considering both AKS and serverless architectures.

- Integrate Okta for identity and access management, including claim-based authorization, across all application environments.

- Champion DevSecOps practices and promote a "shift-left" security culture within the engineering teams.

- Work hand-in-glove with our development teams to drive the proper implementation of OWASP principles

- Drive both front-end and back-end security best practices, and their adoption within our applications

- Develop and maintain security documentation, policies, and procedures.

- Respond to security incidents and participate in incident response activities.

- Stay up-to-date with the latest security threats, vulnerabilities, and best practices, specifically related to containerized and serverless architectures.

- Collaborate with engineering, operations, and other teams to ensure security is integrated throughout the software development lifecycle.

- Coordinate security testing activities, working with dedicated security testing resources or teams. This includes defining scope, reviewing results, and driving remediation efforts.

- Ensure secure Infrastructure as Code (IaC) practices are followed for all deployments, including security scanning and validation of IaC templates.

Required Skills and Qualifications

Network Security: Solid understanding of network segregation, WAFs, App Gateways, Proxies, and Firewalls.

Application Security & DevSecOps: Good understanding of application security and DevSecOps principles, including the "shift-left" culture.

Security & Privacy Principles: Good understanding of security and privacy principles, secure standards, and RFCs.

Azure Cloud Platform Experience: Hands-on experience with the Azure cloud platform and its security services.

Azure Kubernetes Service (AKS) Security: Specific experience securing Azure Kubernetes Service (AKS) environments, including ingress/egress, service mesh, and identity management.

Container and Kubernetes Security: Experience securing containerized applications and Kubernetes deployments, including conducting threat modeling exercises to identify and prioritize security risks.

Serverless Application Security: Experience securing serverless applications, including Web Apps and Function Apps.

Foundational Azure Services: Experience with Azure Resource Groups, Virtual Networks, and other foundational Azure services.

Security Best Practices: Knowledge of security best practices for containerized applications, microservices, and serverless functions.

Problem-Solving Skills: Strong problem-solving and analytical skills.

Communication Skills: Excellent communication and collaboration skills.

Education: Bachelor's degree in computer science, Information Security, or a related field.

Preferred Qualifications :

Cloud Security Certifications: Azure AZ-500 or other relevant cloud security certifications.

Advanced Security Certifications: OSCP, OSCE, CREST, CISSP, or other recognized security certifications.

Infrastructure as Code (IaC) Security Expertise: Deep understanding of IaC and its security implications, including experience with secure IaC practices and tools.

Application Security Testing Experience: Hands-on experience with various application security testing methodologies (SAST, DAST, IAST, penetration testing) and tools.

Automated Security Testing: Experience implementing and managing automated security testing within a CI/CD pipeline, covering DevSecOps practices.

Identity and Access Management (IAM): Proficiency in implementing and managing Okta for identity and access management, including claim-based authorization.

Agile Experience: Proven experience working in an Agile environment.

Scripting and Automation: Proficiency in scripting languages (e.g., Python, PowerShell, Bash) for security automation and orchestration.

Security Tooling: Familiarity with various security tools, such as vulnerability scanners, SIEM systems, and intrusion detection/prevention systems.

(ref:hirist.tech)

  • Gurgaon, Haryana, India OpSec Security Full time

    **Crane NXT: A Premier Industrial Technology Company**At Crane NXT, we provide proprietary and trusted technology solutions to secure, detect, and authenticate what matters most to our customers. As a global leader in industrial technology, we have operations and manufacturing facilities across the United States, the United Kingdom, Mexico, Japan,...

  • Security Engineer

    4 days ago


    Gurgaon, Haryana, India Nykaa Full time

    Job Title : Security Engineer III About Us: Nykaa is a leading e-commerce platform that combines fashion and technology to deliver a seamless shopping experience. To fortify our commitment to security, we are seeking a dedicated Cyber Security engineer to join our team. If you have a strong background in securing infrastructure and are passionate about...

  • Security Engineer

    3 days ago


    Gurgaon, Haryana, India Nykaa Full time

    Job Title: Security Engineer IIIAbout Us:Nykaa is a leading e-commerce platform that combines fashion and technology to deliver a seamless shopping experience.To fortify our commitment to security, we are seeking a dedicated Cyber Security engineer to join our team.If you have a strong background in securing infrastructure and are passionate about protecting...

  • Security Engineer

    4 weeks ago


    Gurgaon, Haryana, India Nykaa Full time

    Job Title: Security Engineer IIIAbout Us:Nykaa is a leading e-commerce platform that combines fashion and technology to deliver a seamless shopping experience. To fortify our commitment to security, we are seeking a dedicated Cyber Security engineer to join our team. If you have a strong background in securing infrastructure and are passionate about...

  • Security Engineer

    3 days ago


    Gurgaon, Haryana, India Nykaa Full time

    Security Engineer III About Us: Nykaa is a leading e-commerce platform that combines fashion and technology to deliver a seamless shopping experience. We are seeking a dedicated Cyber Security engineer to join our team. This role focuses on advancing our security infrastructure through cloud security, perimeter defenses, and cutting-edge security engineering...

  • Security Engineer

    4 weeks ago


    Gurgaon, Haryana, India Nykaa Full time

    Job Title : Security Engineer IIIAbout Us:Nykaa is a leading e-commerce platform that combines fashion and technology to deliver a seamless shopping experience. To fortify our commitment to security, we are seeking a dedicated Cyber Security engineer to join our team. If you have a strong background in securing infrastructure and are passionate about...


  • Gurgaon, Haryana, India Alba Urmet Communications & Security Pvt Ltd Full time

    At Alba Urmet Communications & Security Pvt Ltd, we have been a pioneer in securing lives, property, and assets since 1989.Company OverviewWe have a strong track record of working with leading construction firms and building professionals to deliver customized security solutions that align with the latest technological advancements.Job DescriptionWe are...


  • Gurgaon, Haryana, India Alba Urmet Communications & Security Pvt Ltd Full time

    Join us at Alba Urmet Communications & Security Pvt Ltd, where we have been securing lives, property, and assets since 1989.Company HistoryWe have a long history of innovation and excellence in the security industry, dating back to 1989 when we launched India's first full residential IP security system.Job SummaryWe are seeking a highly skilled Design &...


  • Gurgaon, Haryana, India Wipro Full time

    **Job Title:** Security Engineering Lead**Location:** GurgaonWe are seeking an experienced Application Security Lead Analyst / Engineer to lead our security engineering team at Wipro. The ideal candidate will have expertise in secure design review, manual code review, and threat modeling.**Key Responsibilities:Develop and maintain security architecture and...


  • Gurgaon, Haryana, India Nykaa Full time

    Job Title: Cloud Security EngineerAbout Nykaa:We are a leading e-commerce platform that combines fashion and technology to deliver a seamless shopping experience.We are seeking a dedicated cloud security engineer to join our team and help us advance our security infrastructure through cloud security, perimeter defenses, and cutting-edge security engineering...

  • Security Engineer

    2 weeks ago


    Gurgaon, Haryana, India Syfe Full time

    About Syfe  Syfe is a digital investment platform with a mission to empower people to build their wealth for a better future. Faced with information overload and competing priorities, people with the desire to improve their wealth and financial future lack the time, patience and know-how to put their money to work. Current solutions fail to solve the...

  • Security Engineer L3

    5 hours ago


    Gurgaon, Haryana, India Rackspace Technology Full time

    Job DescriptionRackspace Security (Public Cloud)Security Engineer L3 (Endpoint Security)About Rackspace Cyber DefenceRackspace Cyber Defence is our next generation cyber defence and security operations capability that builds on 20+ years of securing customer environments to deliver proactive, risk-based, threat-informed and intelligence driven security...

  • IT Security Engineer

    3 weeks ago


    Gurgaon, Haryana, India Real Time Data Services Full time

    Job responsibilities- Monitor and handle service requests through the ticketing tool and maintain SLA. - Monitor security alerts and escalate validated and confirmed incidents to L2 engineer. - Assisting and performing vulnerability assessments, penetration tests, and security audits. - Monitor and maintain anti-malware compliances/detections. - Assist with...

  • IT Security Engineer

    4 weeks ago


    Gurgaon, Haryana, India Real Time Data Services Full time

    Job responsibilitiesMonitor and handle service requests through the ticketing tool and maintain SLA.Monitor security alerts and escalate validated and confirmed incidents to L2 engineer.Assisting and performing vulnerability assessments, penetration tests, and security audits.Monitor and maintain anti-malware compliances/detections.Assist with...


  • Gurgaon, Haryana, India OpSec Security Full time

    Location - Gurugram or CoimbatoreAbout Us:OpSec Security are the world leader in brand protection, with over 4 decades of history and an integral part of Crane NXT, a $1.5 billion dollar business with over 4,750 associates worldwide. We safeguard the revenues and reputations of more than half of the Fortune 100. We effectively address Brand, Piracy, and...


  • Gurgaon, Haryana, India Antal International Full time

    Job Description Summary role description: Hiring for a Prisma Cloud Security Engineer for a new age global digital engineering company. Company description: Our client is a new age global digital engineering company that engineer solutions that revolutionise industries and sets new benchmarks. Their 25 offices are spread across 11 countries...


  • Gurgaon, Haryana, India BT Global Full time

    Skills : ZScaler, ZIA, ZPA, ProxyJob Description :Location : Gurugram, IndiaShift : Rotational Shifts/Operational RoleBT Group is seeking a highly skilled and motivated Network Security Engineer to join our dynamic team in Gurugram. In this operational role, you will be responsible for ensuring the integrity, confidentiality, and availability of our networks...


  • Gurgaon, Haryana, India BT Global Full time

    Skills : ZScaler, ZIA, ZPA, ProxyJob Description :Location : Gurugram, IndiaShift : Rotational Shifts/Operational RoleBT Group is seeking a highly skilled and motivated Network Security Engineer to join our dynamic team in Gurugram. In this operational role, you will be responsible for ensuring the integrity, confidentiality, and availability of our networks...


  • Gurgaon, Haryana, India Tekskills Inc. Full time

    Job DescriptionJob Title:Security Engineer- Total Experience:7 to 10 Years- Relevant Experience:Minimum 7 YearsJob Description:We are seeking a highly skilled Security Engineer with hands-on experience in Application Security. The ideal candidate should have a strong background in AppSec Reviews, including Integrations Designs, Architecture Diagrams, and...


  • Gurgaon, Haryana, India NetAnalytiks Technologies Full time

    Position : Zscaler Network Security Engineer Experience : 6+ years Job Location : Gurugram Hybrid Operating Model - 3 days' work from office.About the Role :NetAnalytiks is seeking a highly skilled and experienced Zscaler Network Security Engineer to provide technical expertise and support for IT security systems and services. This role requires a broad and...