Sr Information Security Engineer

2 weeks ago


Bengaluru, Karnataka, India Employ Full time
Job Description

#Description#

Employ Inc. provides people-first recruiting solutions that empower companies to overcome their greatest hiring challenges. Serving SMBs to global enterprises, Employ focuses on the unique recruiting needs of each organization from simple hiring to sophisticated talent acquisition.

Employ is the only organization to offer companies choice in their hiring solutions, providing a curated set of recruiting technologies and services. By prioritizing people ahead of products, Employ helps companies grow, scale, and thrive through personalized choice, collective intelligence, and lasting relationships. Together, Employ and its brands (JazzHR, Lever, Jobvite and NXTThing RPO) serve more than 21,000 customers across multiple industries. For more information, visit www.employinc.com.

About This Role

What youll do

As a Senior Information Security Engineer, you will play a critical role in advancing the security strategy for a market leading HR Tech SaaS company. You will join a dynamic team of professionals focused on strengthening our security posture, responding to emerging threats, and proactively mitigating risks. Acting as the lead engineering resource for the InfoSec team, you will collaborate with stakeholders across the organization and around the world. This role involves a mix of proactive security projects and reactive incident response responsibilities.

Responsibilities Include

- Lead and mentor a team of security engineers.
- Lead regional incident response efforts through security event platforms, triage, potential resolution, and takes part in retrospective activities as needed.
- Lead efforts for vulnerability management program including categorization, tracking, documentation, and reporting on vulnerabilities from discovery through remediation.
- Aid in review of new security tools including developing requirements, recommending/assessing various tools, and then implementation through to a production ready status.
- Provides initiative-taking feedback to enable improvement of the current monitoring and tools, based on information and knowledge/experience.
- Create reports for Security Management Team.
- Performs front line response and escalation tasks and updates runbooks and procedures as needed.
- Compiles statistics and contributes to the improvement and creation of playbooks.
- Use public cyber security resources (e.g., sites/blogs/podcasts) to stay up to date with latest news, threats, and security analysis tools.
- Participate in on-call rotation

Qualifications

- Bachelors degree in information technology, Computer Science, or a combination of training and experience.
- 10 years of firsthand IT experience, +5 years of experience in Information Security Engineering focused on incident response, security architecture/design, monitoring, and threat detection, and DevSecOps.
- Experience leading a team of security engineers.
- Demonstrated experience leading end-to-end incident response in cloud environments, including detection, containment, eradication, and recovery.
- Demonstratable ability to design, implement and improve security controls using industry standard frameworks.
- Advanced scripting skills for automation, system management, and process efficiency; PowerShell or Python preferred.
- Expertise in identity and access management (IAM, SSO/MFA, SCIM), preferably with Okta, and a strong understanding of DNS and networking protocols
- Demonstrated experience working in SOC- or ISO-compliant environments, with an understanding of security standards and compliance practices.
- One or more industry-recognized certifications such as CISSP, AWS Security Specialty, or Azure Security Engineer are strongly preferred.
- Cloud security administration

Nice To Have

- Proficient in offensive, Purple Team, security tactics such as threat hunting and penetration testing, as well as implementing effective defensive solutions.
- Security Information and Event Management (SIEM) engineering and administration experience
- End-point Detection and Response (EDR) engineering and administration experience.
- Deep knowledge of DAST, SAST, SCA, and the secure software development lifecycle, with the ability to read and understand code (e.g., JavaScript, PHP, Java)
- Security Operations Center (SOC) Team experience
- Digital Loss Prevention (DLP) engineering and administration

What Youll BringExperience and Leadership:Personal Attributes:

- Technical Expertise:
- Deep Understanding of Security Principles:

- A comprehensive grasp of cybersecurity frameworks (NIST, ISO 27001), threat modeling, risk assessment, and vulnerability management.

- Incident Response Mastery:

- Proven ability to lead and execute incident response plans, including detection, containment, eradication, and recovery, especially in cloud environments.

- Cloud Security Proficiency:

- Extensive experience with cloud security platforms (AWS, Azure), including IAM, network security, and data protection.

- Automation and Scripting Skills:

- Advanced proficiency in scripting languages (Python, PowerShell) to automate security tasks and improve efficiency.

- Security Tool Expertise:

- In-depth knowledge of security tools, including SIEM, EDR, vulnerability scanners, and penetration testing tools.

- DevSecOps Knowledge:

- Understanding of secure software development lifecycles, and how to integrate security into the development process.

- IAM and Network Knowledge:

- Expertise in Identity and Access Management systems, and deep understanding of network protocols.
- Proven Leadership:

- Experience leading and mentoring security teams, fostering a collaborative and high-performing environment.

- Incident Management Experience:

- A history of successfully managing and resolving complex security incidents.

- Vulnerability Management Leadership:

- Experience in creating and running effective vulnerability management programs.

- Compliance Experience:

- Experience working in regulated environments (SOC, ISO) and ensuring compliance with security standards.
- Problem-Solving Skills:

- Strong analytical and problem-solving abilities to identify and address security threats.

- Communication Skills:

- Excellent written and verbal communication skills to effectively convey security risks and recommendations to stakeholders.

- Proactive Approach:

- A proactive mindset to stay ahead of emerging threats and continuously improve security posture.

- Continuous Learning:

- A commitment to staying up-to-date with the latest security trends and technologies.

- Collaboration:

- The ability to work well with cross functional teams.

Employ is an Equal Opportunity employer.

Employ is an EVerify employer.

  • Bengaluru, Karnataka, India Cerulean Information Technology Pvt Ltd Full time

    Key ResponsibilitiesThe Senior Information Security Engineer will be responsible for evaluating and reviewing security risks for enterprise networks in a fast-paced environment.Perform network security assessments and architecture reviews, identifying weaknesses and proposing solutions to address them.Continuously monitor and assess the security posture of...


  • Bengaluru, Karnataka, India Lowe's Full time

    Lowes Companies Inc NYSE LOW is a FORTUNExc2xae 50 home improvement company serving approximately 16 million customer transactions a week in the United States With total fiscal year 2023 sales of more than 86 billion Lowes operates over 1 700 home improvement stores and employs approximately 300 000 associates Based in Bengaluru Lowes India...


  • Bengaluru, Karnataka, India Lowe's Full time

    Lowes Companies Inc NYSE LOW is a FORTUNExc2xae 50 home improvement company serving approximately 16 million customer transactions a week in the United States With total fiscal year 2023 sales of more than 86 billion Lowes operates over 1 700 home improvement stores and employs approximately 300 000 associates Based in Bengaluru Lowes India...


  • Bengaluru, Karnataka, India ServiceNow Full time

    Job DescriptionServiceNow is looking for a Sr Information Security Engineer.  This senior engineer will join a team of Engineers, Product Managers, and Solution Architects within the IAM Development Team. This position will include hands-on design/architecture, engineering and development of IAM solutions, operating within DevOps and Agile frameworks as...


  • Bengaluru, Karnataka, India NETSACH GLOBAL Full time

    Greetings from Netsach - A Cyber Security Company.We are looking for a seasoned Senior Security Engineer with hands-on, well-rounded security background and experience in multiple domains. To be successful, the Security Consultant must be able to multi-task in a fast-paced and dynamic environment.Job Title: Senior Information Security EngineerExp:...


  • Bengaluru, Karnataka, India Philips Full time

    Job Title Sr Information Security ManagerJob Title - Information Security Manager Job Location - BangaloreIn this role you have the opportunity to As a Senior Information Security Manager you will be responsible for developing implementing and monitoring a strategic comprehensive IT security program while ensuring compliance with regulatory requirements...


  • Bengaluru, Karnataka, India Lowe's Full time

    About LowesLowe s Companies Inc NYSE LOW is a FORTUNE xc2 xae 50 home improvement company serving approximately 17 million customer transactions a week in the U S With total fiscal year 2022 sales of over 97 billion approximately 92 billion of sales were generated in the U S where Lowe s operates over 1 700 home improvement stores and employs...


  • Bengaluru, Karnataka, India Philips Full time

    JOB DESCRIPTION Job Title Sr. Information Security Manager Job Description You are responsible to: Develop and implement comprehensive OT security strategies that aligns with industry best practices and regulatory requirements. Build IT/OT SOC, execute OT incident response Identify OT vulnerabilities and perform remediation without causing...


  • Bengaluru, Karnataka, India K & R Enterprises Full time

    Job OverviewK & R Enterprises is seeking a seasoned Information Security professional to lead our Information Security Practice and spearhead the ISO 27001 certification process. As our ideal candidate, you will have a proven track record of implementing and managing robust ISMS in a Financial Services environment.Key Responsibilities- Champion the...


  • Bengaluru, Karnataka, India K & R Enterprises Full time

    Job Description : Act as the Champion for the Information Security Practice for the organization and spearhead the ISO27001 certification process. Achieve, maintain and continuously improve the Information Security and Cyber Resilience posture of the organizationExperience : - Candidate should have at least 8 to 12 years of total experience - At least 3 - 5...


  • Bengaluru, Karnataka, India K & R Enterprises Full time

    Job Description : Act as the Champion for the Information Security Practice for the organization and spearhead the ISO27001 certification process. Achieve, maintain and continuously improve the Information Security and Cyber Resilience posture of the organizationExperience : - Candidate should have at least 8 to 12 years of total experience - At least 3 -...

  • Sr SIEM

    5 days ago


    Bengaluru, Karnataka, India Abnormal Security Full time

    Job DescriptionAbout The RoleAbnormal Security is looking for a Sr. SIEM/Detection Engineer to join the Security & Privacy team. As a leading cybersecurity company, it is imperative we find, analyze, and respond to threat actors attacks and leverage the lessons learned to enhance and improve our detection capabilities to catch new and novel attacks. In this...


  • Bengaluru, Karnataka, India Giift Full time

    Job DescriptionAs an Information Security Engineer, you will play a crucial role in safeguarding the GIIFT organization&aposs information systems and data assets. Your responsibilities will include implementing security measures, conducting risk assessments, monitoring security incidents, and developing strategies to enhance our overall cybersecurity...


  • Bengaluru, Karnataka, India Altisource Business Solutions Private Limited Full time

    About Altisource Business Solutions Private Limited">Altisource Business Solutions Private Limited is a leading provider of business solutions. We are seeking an experienced Information Security Engineer to join our team.">Job Description">">Conduct thorough vulnerability assessments for all types of applications, systems and networks to identify potential...


  • Bengaluru, Karnataka, India myGwork Full time

    This job is with State Street, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Role Summary & Role Description The Information Security Administrator (ISA) will support business units in their efforts to comply with GCS security policy and required...


  • Bengaluru, Karnataka, India Lowe's Full time

    Lowes Companies Inc NYSE LOW is a FORTUNE xc2 xae 50 home improvement company serving approximately 16 million customer transactions a week in the United States With total fiscal year 2023 sales of more than 86 billion Lowes operates over 1 700 home improvement stores and employs approximately 300 000 associates Based in Bengaluru Lowes India...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this role:Wells Fargo is seeking an Information Security EngineerIn this role, you will:Participate in security consulting on small projects for internal clients to ensure uniformity with corporate information, security policy, and standardsTrack or remediate vulnerabilities and security issuesReview and correlate security logsAssist with the design,...

  • Sr. Security Engineer

    3 weeks ago


    Bengaluru, Karnataka, India NETSACH GLOBAL Full time

    Greetings from Netsach.Currently we are hiring Sr. Security Consultant with 7 to 10 yrs of strong technical experience in Cybersecurity 70% technical and 30% compliance. Candidate must be working in PCIDSS gap assessment. Job Title: Sr Security Consultant Exp : 7-10yrsLocation: Dubai OnsiteJob Type: PermThis is an Onsite opportunity for Dubai. Interested...


  • Bengaluru, Karnataka, India State Street Corporation Full time

    Job DescriptionRole Summary & Role DescriptionThe Information Security Administrator (ISA) will support business units in their efforts to comply with GCS security policy and required controls. Working with direction from the Senior Information Security Officer (Sr. ISO) or ISO, the ISA will provide critical support for the first line of defense (employees...


  • Bengaluru, Karnataka, India IFLOWTECH SOLUTIONS PRIVATE LIMITED Full time

    Roles/ Responsibilities: 1. Evaluate security risks for various change requests coming out of ever-changing business needs; considering the risks which could be introduced, the existing network security controls (Firewall /Extranet/Lab.) while adhering to Cisco's security policies & standards. 2. Evaluate, assess, and verify the compliance of ports and...