Lead - IT Security Engineer

3 months ago


Bengaluru, India Bosch Full time
Job Description

Role : Lead IT Security Engineer 

You will lead the planning and implementation of Security Engineering Process across projects/programs. In the process, you will have to build seamless security and define how developers view security, eliminate friction and improve Security natively. 

You will work closely with other Security functions, DevOps, Architects and Developers and QA to build highly reliable and secure products on cloud. 

As our Lead IT Security Engineer, you will be responsible for the security assessment of IT infrastructure & applications. Some of the key responsibilities will be implementing and managing security controls for web / custom applications hosted on-premises as well as onboarding SaaS / cloud applications, services which includes Secure configuration management for all Cloud native services, setting up processes and guidelines. 

You will have the following responsibilities: 

Understand the data/cloud ecosystem holistically and create a secure infrastructure by enforcing compliance with IAM principals including least privilege access, password management, audit logging, RBAC, user account lifecycle, certificate management and system authentication solutions(SSO/Federation). Minimum of 3 years of experience with AWS. 

Prepare reference architectures for Developer adoption- Secure Cloud Architecture. 

Devise and implement Serverless, Container and Kubernetes Security Strategy in the company. 

Deploy CNAPP(Cloud-Native Application Protection Platform)- CSPM , CWPP solutions at a large scale. 

Lead Remediation for findings from CSPM(Cloud Security Posture Management), work with developers on targeted remediation based on prioritization 

Experience working with Infrastructure-as-Code (IaC) to secure-by-design solutions to mitigate/fix cloud security issues(Terraform, Cloud formation,etc) 

Build Tools to assist Engineering teams with remediation of issues at scale across Cloud. 

Building security tooling to aid with protection of data stored in the cloud and compliant with relevant regulations- Enforcement of Cloud Data Protection Guidelines from Risk team. 

Improve Web App Firewalls (WAF), prior experience with WAF rule fine tuning a plus .Ensure early Identification of intrusion & attacks and implement countermeasures. 

Experience with solutions around DDoS and identify Anti-bot patterns for critical flows. 

Partner with SOC team for Security Incident Management and Remediation triage with Engineering across the ecosystem. 

Qualifications

Qualifications
Bachelor’s degree in Computer Science or a related technical discipline,
or equivalent practical experience


6-9 years specialist/architect with end to end experience in Enterprise Application.

Additional Information

Good to have
1. Certificate of CISM/ CISSP/ CISA is preferred.
2. Proficient in Systems Security Engineering Process
3. Strong communication/stakeholder management skills
4. Detailed understanding of cloud architecture/deployments
5. Basic understanding of IoT architecture
6. Risk assessment mindset with a passion for security
7. Should have a good attitude to continuous learning /sharing knowledge, self-motivated team player
8. Information Security Experience 5+ years.
9. Completed the training in
a. [SP-SEC-SPD-B] Secure Product Design – B
b. [SP-SEC-SCP-B] Secure Connected Products –B



  • Bengaluru, India Condé Nast Technology Lab Full time

    JOB DESCRIPTIONCondé Nast is a global media company, home to iconic brands including Vogue, The New Yorker, GQ, Glamour, AD, Vanity Fair and Wired, among many others. The company's award-winning content reaches 84 million consumers in print, 367 million in digital and 379 million across social platforms, and generates more than 1 billion video views each...


  • Bengaluru, India Condé Nast Technology Lab Full time

    JOB DESCRIPTION Condé Nast is a global media company, home to iconic brands including Vogue, The New Yorker, GQ, Glamour, AD, Vanity Fair and Wired, among many others. The company's award-winning content reaches 84 million consumers in print, 367 million in digital and 379 million across social platforms, and generates more than 1 billion video views each...


  • Bengaluru, India Condé Nast Technology Lab Full time

    JOB DESCRIPTION Condé Nast is a global media company, home to iconic brands including Vogue, The New Yorker, GQ, Glamour, AD, Vanity Fair and Wired, among many others. The company's award-winning content reaches 84 million consumers in print, 367 million in digital and 379 million across social platforms, and generates more than 1 billion video views each...


  • Bengaluru, India Condé Nast Technology Lab Full time

    JOB DESCRIPTION Condé Nast is a global media company, home to iconic brands including Vogue, The New Yorker, GQ, Glamour, AD, Vanity Fair and Wired, among many others. The company's award-winning content reaches 84 million consumers in print, 367 million in digital and 379 million across social platforms, and generates more than 1 billion video views each...

  • Pre-Sales Lead

    3 days ago


    Bengaluru, India TAC Security Full time

    Job Title: Pre-Sales LeadLocation: Bangalore, IndiaAbout Us: TAC Security is a leading provider of advanced cybersecurity solutions dedicated to protecting enterprises from the ever-evolving threat landscape. Our mission is to deliver innovative and comprehensive security solutions that enable businesses to safeguard their digital environments...


  • Bengaluru, India Cloud Software Group Full time

    You are/have worked on security architecture and are performing security analysis on existing or new products and provides security guidance and input to product engineers. You have worked on problems of varied scope independently and able to drive strategy for Product Security in the limited scope of work and provide general guidance and/or direction on...

  • Lead Security Engineer

    2 months ago


    Bengaluru, India Zepto Full time

    Zepto, a leading quick commerce grocery delivery company based in Bangalore, is seeking a highly skilled Senior Cloud Security Engineer to join our dynamic team. You will play a crucial role in ensuring the security of our cloud infrastructure and microservices architecture.Key Responsibilities:Design, implement, and maintain security measures for our...


  • Bengaluru, India Ambient Security Full time

    Ambient Security is an exciting new startup, looking to reduce the risk of privileged account takeovers and cyber attacks for large enterprises. The founder and CEO is a 7x cyber security entrepreneur with a track record of successful exits.Ws seeking software engineers at all levels to lead the design and implementation of innovative technologies. We are...


  • Bengaluru, India Ambient Security Full time

    Ambient Security is an exciting new startup, looking to reduce the risk of privileged account takeovers and cyber attacks for large enterprises. The founder and CEO is a 7x cyber security entrepreneur with a track record of successful exits. Ws seeking software engineers at all levels to lead the design and implementation of innovative technologies. We are...


  • Bengaluru, India Ambient Security Full time

    Ambient Security is an exciting new startup, looking to reduce the risk of privileged account takeovers and cyber attacks for large enterprises. The founder and CEO is a 7x cyber security entrepreneur with a track record of successful exits.Ws seeking software engineers at all levels to lead the design and implementation of innovative technologies. We are...

  • Lead Security Engineer

    3 months ago


    Bengaluru, India Flipkart Full time

    About the team: The Security Standards team is a part of the central Information security function which is primarily responsible for security standards, secure configuration reviews, architecture reviews, validating efficacy and efficiency of the existing security controls, threat modeling, assessment of the various security controls / technologies based...


  • Bengaluru, India Ambient Security Full time

    Ambient Security is an exciting new startup, looking to reduce the risk of privileged account takeovers and cyber attacks for large enterprises. The founder and CEO is a 7x cyber security entrepreneur with a track record of successful exits.Ws seeking software engineers at all levels to lead the design and implementation of innovative technologies. We are...


  • Bengaluru, India Cloud Software Group Full time

    About This Team YOU as a Lead Product Security Engineer will have the opportunity to collaborate with the brightest engineering minds and work on innovative product security areas. Job Description You are/have worked on Threat Modelling, Source Code Review, Penetration Testing and performing security analysis on existing or new products. Provide...


  • Bengaluru, India SECAUDI - Cyber Security Full time

    Job Title: Cloud Security Consultant (GCP/AWS)Location: On-site, Bengaluru, IndiaExperience: Minimum 4 yearsJob Description:We are looking for an experienced Cloud Security Consultant (GCP/AWS) to join our team in Bengaluru. The ideal candidate will have a deep understanding of cloud security principles, particularly within Google Cloud Platform (GCP) and...

  • Lead Security Engineer

    3 months ago


    Bengaluru, India Flipkart Full time

    About the team:The Security Standards team is a part of the central Information security function which is primarily responsible for security standards, secure configuration reviews, architecture reviews, validating efficacy and efficiency of the existing security controls, threat modeling, assessment of the various security controls / technologies based on...

  • Security Engineer

    3 weeks ago


    Bengaluru, India Quess IT Staffing Full time

    Skill: Cyber Security Engineer Experience: 4 to 9 Years Location: Bangalore Notice Period: 15 Days less Must Have Sentinel Platform ( On boarding Devices e.g. Firewalls via Syslog and Data Connectors). Data collection rules i.e. DCRs. Experience in developing security use cases using KQL. Sentinel Workbooks. Expertise: Strong experience with Azure...

  • Security Engineer

    3 weeks ago


    Bengaluru, India Quess IT Staffing Full time

    Skill: Cyber Security EngineerExperience: 4 to 9 YearsLocation: BangaloreNotice Period: 15 Days lessVishal.r@quesscorp.comMust HaveSentinel Platform ( On boarding Devices e.g. Firewalls via Syslog and Data Connectors).Data collection rules i.e. DCRs.Experience in developing security use cases using KQL.Sentinel Workbooks.Expertise: Strong experience with...


  • Bengaluru, India WELLS FARGO BANK Full time

    About this role:Wells Fargo is seeking a Lead Information Security EngineerIn this role, you will:Lead computer security incident response activities for highly complex eventsConduct technical investigation of security related incidents and post incident digital forensics to identify causes and recommend future mitigation strategiesProvide security...

  • Lead Engineer

    3 months ago


    Bengaluru, India Arcesium Full time

    Company Overview Arcesium is a global financial technology firm that solves complex data-driven challenges faced by some of the world’s most sophisticated financial institutions. We constantly innovate our platform and capabilities to meet tomorrow’s challenges, anticipate the risks our clients encounter, and design advanced solutions to help our clients...


  • Bengaluru, India Pocket FM Full time

    About the role: As a lead in product security, you will play a pivotal role in championing security throughout the entire product development lifecycle. You will collaborate with engineering, product management, and other stakeholders to identify and mitigate security risks, ensuring our products are built with security and compliance in mind. What You...