
Security Engineer
2 days ago
Development, implementation, monitoring, maintenance, and management of threats, security controls, processes, procedures and systems. Provides trusted advisor overview and management for information security projects and technical requirements. Provides threat management support for firewalls, intrusion detection systems, enterprise anti-virus, web application firewalls, and log monitoring tools. Manages internal/external vulnerability management program and oversight for code reviews or application security scan reviews as part of the Application Security management program. Manages the company's Incident Response process in coordination with managed SOC vendor to monitor and respond to security alerts from all assets storing, processing, transmitting company confidential/sensitive data including PCI and PII data assets. Provides technical expertise in support of information technology assessments, penetration tests, and/or audits (PCI/SOX/HIPAA/other) of organizational automated systems and processes and will play a critical role in designing, maintaining and enhancing our organization's cybersecurity posture. Works closely with cross-functional teams to identify and implement robust security measures, detect, and respond to security incidents, and ensure the overall integrity and confidentiality of our systems and data.
Essential Duties and Responsibilities Other duties may be assigned. In the event of absence, duties for this position will be overseen by the position to which it reports.
Conducts analysis, develops technical and programmatic assessments, evaluates security engineering and integration initiatives and provides technical support to facilitate compliance with security policies, procedures, standards and guidelines.
Identifies security risks, threats and vulnerabilities of networks, systems, applications and new technology initiatives.
Analyze and review recent industry breaches for preventive cyber breach strategies.
Provide threat intelligence research related to malware/virus identification.
Responsible for reviewing and approving corporate, PCI In-scope firewall requests and WAF changes; perform WAF tuning as necessary.
Monitor, report, and aid in the resolution of all security-related problems and discrepancies by monitoring assigned systems, maintaining documentation and provide management and any other appropriate areas with reporting as requested.
Manage WAF, intrusion detection systems and in coordination with vendor SOC, ensure sufficient coverage to monitor PCI, PII, and all other assets storing, processing,
transmitting company confidential/sensitive data. Ensure alerts from current and future systems are properly designed and monitored.
Manage internal/external vulnerability management program and as appropriate expand scope of vulnerability scans, application/network penetration tests to cover enterprise and all systems/environments storing, processing, transmitting company confidential/sensitive data.
Monitor intelligence sources for newly identified vulnerabilities, evaluate the risk such vulnerabilities pose to the organization's information and systems, and advise management of appropriate measures to eliminate or reduce the organization's risk or exposure to such vulnerabilities.
Performs both internal/external vulnerability scanning and penetration testing. Analyzes information from those scans, as well as penetration tests, to mitigate and help IT stakeholders address system vulnerabilities.
Provide technical support/oversight for code reviews or App scan reviews as part of Application Security management program.
Provide technical support/oversight for security exception request process.
Provide technical support for incident management and forensics.
Monitor appropriate industry sources to maintain awareness of new security tools and techniques and research those tools and techniques that have the potential to improve the organization's ability to protect its information and infrastructure.
Assist in the development of appropriate information security policies, standards, procedures, checklists, and guidelines using generally-recognized security concepts tailored to meet the requirements of the organization.
Provide expertise to support timely resolution of findings from information technology assessments, penetration tests, and/or audits of organizational automated systems and processes; as appropriate, develop and communicate recommendations for improvement to management.
Provide reporting metrics/create and maintain dashboards for department functions.
Proficient in the use of Word, Excel.
Assist manager/director in planning, time budgeting and scheduling work for completion.
Participate in opportunities that enhance personal and professional growth and the accomplishment of career objectives through continuing education, seminars and participation in field-related professional organizations.
Accountable for execution of assigned tasks from start to finish, while fully leveraging the disciplines expected of a cybersecurity engineer according to department standards, procedures and processes.
Stay current with emerging issues affecting the Cybersecurity profession.
Qualifications (Include Education and Specific Experience)
Strong understanding of data network configuration and infrastructure concepts, including TCP/IP, DNS, routers, firewalls, web servers and security hierarchy including the application of encryption key infrastructures and authentication processes.
Knowledge of cloud security concepts (Azure/AWS).
Strong experience with IT security standards and best practice frameworks. (like ISO 27001/27002, NIST/NIST CSF, ITIL, PCI, SOX)
In depth experience working with internet and web application security frameworks like SANS, OWASP.
Detailed technical knowledge of hardening concepts and audit for Unix, Linux, Windows servers and desktop systems, AWS EC2 instances.
Excellent understanding of common application, network, and operating system vulnerabilities, current threat vectors and mitigations.
Strong working knowledge of networking, routing, protocols, ports and services.
Working knowledge of System Information Event Monitoring (SIEM), Intrusion Detection and Prevention System (IDS/IPS), web application firewalls, vulnerability scanning tools, encryption capabilities, Network Access Controls (NAC), Data Loss Prevention (DLP), NMAP, Vulnerability scanners, Wireshark, and other security related tools
Experience working with leading security WAF like Akamai, Cloudflare.
Experience working with logging and file integrity monitoring tools like LogRhythm, NXLog, Splunk.
Demonstrated experience in conducting security assessments.
Demonstrated experience in investigating security issues related to Internet, server, desktop, laptop, tablet, and other mobile device security issues; OS patching, hardening and anti-virus.
Ability to work with subject matter experts and 3rd party MSSP to coordinate activities to complete security related projects or tasks in a timely manner.
Proficient with programming logic concepts, scripting experience (like Python, JavaScript, PowerShell)
Strong communication and teamwork skills to collaborate with cross-functional teams and convey complex security concepts to non-technical stakeholders.
Security certifications like CEH or CISSP are desired.
•
Bachelor's degree in Computer Science, Information Security Management, Engineering or equivalent is required.
•
3-5 years of experience in network and application security in a multiple operating system environment.
Job Type: Full-time
Pay: ₹7, ₹20,000.00 per month
Experience:
- 5years: 4 years (Required)
Work Location: In person
-
Security Engineer
4 weeks ago
Coimbatore, India Cyber Security Nxxt Full timeRole & responsibilities We are seeking a skilled and motivated Security Engineer to join our cybersecurity team. The ideal candidate will have hands-on experience in Microsoft Intune device onboarding and a strong understanding of Microsoft Purview implementation for data protection and compliance. This role will involve working closely with IT, security,...
-
Security Engineer
1 week ago
Coimbatore, Tamil Nadu, India Cyber Security Nxxt Full time ₹ 9,00,000 - ₹ 12,00,000 per yearRole & responsibilitiesWe are seeking a skilled and motivated Security Engineer to join our cybersecurity team. The ideal candidate will have hands-on experience in Microsoft Intune device onboarding and a strong understanding of Microsoft Purview implementation for data protection and compliance.This role will involve working closely with IT, security, and...
-
Senior Security Engineer
1 day ago
tamil nadu, India Poshmark Full timeSecurity team at Poshmark is responsible for securing our application platform, cloud infrastructure, and IT systems to protect Poshmark and its 60 million Community members. As a AWS and Infrastructure Security Engineer, you will collaborate with other security team members and other stakeholders to design and harden infrastructure, network and access...
-
Azure Security Engineer – Remediation
5 days ago
tamil nadu, India HCLTech Full timeJob Title: Azure Security Engineer – Remediation LiaisonLocation: Chennai/Bangalore/NoidaExperience: 10+ Years of ExpJob SummaryWe are seeking a highly skilled Azure Security Engineer to address and remediate findings from security assessments. This role requires both hands-on technical expertise in Microsoft Azure and the ability to collaborate...
-
Network Security Engineer
1 day ago
tamil nadu, India ValueLabs Full timeWe are hiring at ValueLabs! Role: Network security engineer Location: Chennai (Onsite)Experience: 7–12 YearsNotice Period: Immediate to 30 Daysinterested candidates please share resume to Konda.naveena@valuelabs.complease find attached JD:Excellent knowledge of Network Security PrinciplesExperience designing, implementing and operating large scale...
-
Azure Security Engineer – Remediation
2 days ago
tamil nadu, India HCLTech Full timeJob Title: Azure Security Engineer – Remediation Liaison Location: Chennai/Bangalore/Noida Experience: 10+ Years of Exp Job Summary We are seeking a highly skilled Azure Security Engineer to address and remediate findings from security assessments. This role requires both hands-on technical expertise in Microsoft Azure and the ability to collaborate...
-
GCP Cloud Security Engineer
2 weeks ago
tamil nadu, India Tata Consultancy Services Full timeDear Candidate, Tata Consultancy is hiring for GCP Cloud Security Engineer Skill : GCP Cloud Security Location : PAN INDIA Experience : 4-13 Years WALK IN DRIVE LOCATION : CHENNAI, BANGALORE, HYDERABAD WALK IN DRIVE TIMING : 9:30AM to 2:30PM Roles and Responsibilities: Lead Security advisory efforts Validate and recommend security controls Provide security...
-
Cyber Security Intern
6 days ago
Coimbatore, Tamil Nadu, India Sennovate Full time**Job Title**: Security Intern **Location**: Coimbatore (Onsite) **Duration**: 6 Months Internship **About Sennovate** Sennovate is a global Managed Security Services Provider (MSSP) specializing in Identity and Access Management (IAM), Cybersecurity Operations, and Cloud Security solutions. We help enterprises design, deploy, and manage secure digital...
-
GCP Cloud Security Engineer
2 weeks ago
tamil nadu, India Tata Consultancy Services Full timeDear Candidate,Tata Consultancy is hiring for GCP Cloud Security EngineerSkill : GCP Cloud SecurityLocation : PAN INDIAExperience : 4-13 YearsWALK IN DRIVE LOCATION : CHENNAI, BANGALORE, HYDERABADWALK IN DRIVE TIMING : 9:30AM to 2:30PMRoles and Responsibilities:Lead Security advisory effortsValidate and recommend security controlsProvide security guidance...
-
Senior Network Security Engineer
2 weeks ago
tamil nadu, India Tata Communications Full timeResponsible for different aspects of engineering activities to provide differentiated services and solutions. These may also include product evaluation, solution designing and testing and roll out plan for existing and new services, including design of tools needed for operation of these new services and systems. This is an Engineering role, responsible for...