SecOps Engineer

2 weeks ago


bangalore, India Josys Full time

Security Operations (SecOps) Engineer

Location: Bangalore

Team: Security & Compliance

Reports to: Engineering Manager – Platform & Security


About Josys

Josys is on a mission to redefine enterprise IT operations through automation, visibility, and security. As we continue to scale globally, securing our cloud-native infrastructure and application ecosystem is more critical than ever. We are looking for a passionate Security Operations Engineer to join our security team and help strengthen our defenses and practices across the cloud.


Job Summary

As a Senior SecOps Engineer, you'll lead the design and implementation of security controls across cloud infrastructure, CI/CD pipelines, and application layers. You’ll act as a subject matter expert in both preventive and detective controls, vulnerability management, and compliance enforcement. We are looking for someone hands-on with a deep understanding of cloud and application security — especially across AWS, data privacy, and regulatory frameworks.


Key Responsibilities

1. Cloud Security Monitoring & Compliance

  • Configure and optimize AWS-native security tools like Security Hub, GuardDuty, Config, CloudTrail for real-time detection and compliance.
  • Drive Cloud Gap Assessments and security posture reviews across multi-account AWS environments.
  • Ensure alignment with standards like CIS, ISO 27001, SOC 2, and regulatory requirements including GDPR and data residency controls.

2. Incident Response & Remediation

  • Lead investigation and remediation efforts in partnership with L1 support and SRE teams.
  • Perform root cause analysis, implement fixes, and establish preventive controls.
  • Build runbooks, define escalation processes, and improve incident response automation.

3. Secure DevOps & CI/CD Integration

  • Integrate automated security tools in CI/CD for both infrastructure and applications (e.g., SAST, DAST, IaC scanning).
  • Implement IaC policy enforcement using tools such as tfsec, Checkov, or OPA.
  • Embed security gates and practices early in the software development lifecycle.

4. Penetration Testing & Vulnerability Management

  • Conduct or coordinate regular penetration testing using tools like Burp Suite, OWASP ZAP, or via third-party assessors.
  • Manage end-to-end vulnerability lifecycle, from discovery through remediation.
  • Translate findings into developer-friendly guidance and track fixes to closure.

5. Continuous Improvement & Security Awareness

  • Stay current with cloud security trends, vulnerabilities, and threats.
  • Drive security awareness training and contribute to improving engineering security hygiene.
  • Influence architectural decisions by embedding security principles into project planning.


Required Qualifications

  • 5–8 years of experience in cloud security, application security, or security operations roles.
  • Deep knowledge of AWS security architecture, IAM, networking, and encryption practices.
  • Hands-on experience with security testing tools like Burp Suite, OWASP ZAP, Nmap, and cloud-native monitoring tools.
  • Strong grasp of compliance frameworks including GDPR, SOC 2, ISO 27001, and data residency considerations.
  • Solid scripting or automation skills (e.g., Python, Bash, Terraform).
  • Must hold at least one relevant certification:
  • AWS Certified Security – Specialty
  • CISSP (Certified Information Systems Security Professional)
  • CCSP (Certified Cloud Security Professional)


Nice to Have

  • Experience with container security (e.g., EKS, Docker) and runtime protection tools.
  • Familiarity with security operations platforms (e.g., Splunk, ELK, or SIEM tools).
  • Experience working in fast-paced SaaS or DevOps-centric environments.

Why Join Us?

  • Work on a global SaaS platform at the cutting edge of IT automation and cloud security.
  • Lead initiatives that shape how modern enterprises manage risk.
  • Join a culture of ownership, innovation, and collaboration.
  • Remote-friendly work culture with high-impact opportunities.


  • SecOps Engineer

    2 weeks ago


    Bangalore, India Josys Full time

    Security Operations (SecOps) Engineer Location: Bangalore Team: Security & Compliance Reports to: Engineering Manager – Platform & Security About Josys Josys is on a mission to redefine enterprise IT operations through automation, visibility, and security. As we continue to scale globally, securing our cloud-native infrastructure and...


  • Bangalore, India RingCentral Full time

    Job Title: SecOps Infrastructure Engineer/Administrator Location: Bangalore Responsibilities: Administer and maintain security products (web application firewall, IDS, (h)IPS, EDR, phishing training, vulnerability management, SIEM, etc) Conduct routine maintenance for SecOps servers (patching, hardening, upgrades, etc.) and deploy new servers...


  • bangalore, India RingCentral Full time

    Job Title: SecOps Infrastructure Engineer/AdministratorLocation: BangaloreResponsibilities:Administer and maintain security products (web application firewall, IDS, (h)IPS, EDR, phishing training, vulnerability management, SIEM, etc)Conduct routine maintenance for SecOps servers (patching, hardening, upgrades, etc.) and deploy new servers as needed.Own...


  • bangalore, India Triune Infomatics Inc Full time

    Role: Cybersecurity Vulnerability & Patch Management Engineer (India – U.S. Shift) Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)Reporting To: Security Operations (SecOps) Leader – USA Role Overview: We are hiring a skilled Cybersecurity Vulnerability Management Engineer based in India to support our U.S. Security Operations...


  • Bangalore, Karnataka, India Unisys Full time

    What success looks like in this role SIEM SOAR Support Assist in configuring and maintaining SIEM SOAR platforms to support log collection threat detection and automated response workflows Monitor and troubleshoot SIEM SOAR systems to ensure reliable operation and data integrity Support the creation of detection rules dashboards and alerts under...


  • bangalore, India Arcana Full time

    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden infrastructure end-to-end. While your primary focus will be on our GCP resources, you'll also partner with teams across networking, applications, and compliance...


  • Bangalore, India Triune Infomatics Inc Full time

    Role: Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.Reporting To: Security Operations (SecOps) Leader – USA About the Role: We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat...


  • bangalore, India Triune Infomatics Inc Full time

    Role: Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)Reporting To: Security Operations (SecOps) Leader – USAAbout the Role: We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven...

  • ServiceNow SME

    2 weeks ago


    bangalore, India MUFG Full time

    About Us:MUFG Bank, Ltd. is Japan’s premier bank, with a global network spanning in more than 40 markets. Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to businesses, governments, and individuals worldwide. MUFG Bank’s parent, Mitsubishi UFJ Financial Group, Inc. (MUFG) is one of the...


  • Bangalore, Karnataka, India Covenant Consultants Full time

    Job Title Software Engineer Sr Software EngineerLocation Chennai BangalorePosition Purpose Developers on ServiceNow framework Must have experience on ServiceNow IRM area ResponsibilitiesResponsible for setting up Risk IT Cyber solutions on the ServiceNow platform Example of Modules IRM Integrated Risk Management SecOps Security Incidents CMDB...