46 System Security jobs in Chennai
Security Engineer
Posted 21 days ago
Job Viewed
Job Description
Security Engineer: ( Microsoft Subject Matter Expert) :
Fulltime Remote
About the Role:
Do you want to be on the frontline fighting for safe use within the digital frontier? Does describing your job to your family and friends as being a cyberwarrior or threat hunter sound awesome or awe inspiring? Then join us as part of our Security Operations Center (SOC)
Engineering team as a Microsoft Services Subject Matter Expert (SME) supporting our frontline Threat Hunters. In addition, given the rapid changes within the Microsoft ecosystem you will also be working cross-functionally with Product Management and R&D Engineering to drive differentiation within our service as well with our Business Development team to help maintain the relationship with Microsoft.
While this role will have business responsibilities that will help you expand your career options, the primary day to day role is as a Security Engineer. As a Security Engineer, you will serve as a critical support system for the SOC. You will create, enhance, and tune alerts and detections so that the SOC can best defend our client's networks. Your goal will be to continually improve the detection and alerting that the SOC receives. In some cases, you will work directly with clients to ensure that they send us the most beneficial and important data. You will leverage our tech stack, elements of Microsoft and provide ongoing support both internally and externally. In short, you will be a critical member of the team using Microsoft Defender, Microsoft Sentinel, Microsoft Suite including Purview, Entra, Intune tools, the Pondurance SIEM and SOAR as well as other products and services to protect our clients in the ever-changing threat landscape.
Responsibilities:
Stay on the forefront of the Microsoft ecosystem
Drive security detection improvements
Tune existing alerts and client data in our SIEM tooling for optimal performance.
Identify workflow improvements and curate new automations through our SOAR platform
Assist in continuous improvement efforts to evaluate detection and response capabilities
Develop methods to detect potential threats
Maintain the SOAR platform in support of day-to-day SOC activities
Work with cross-functional teams to enhance detection capabilities
Qualifications:
Strong understanding of tuning alerts and pertinent logs to aid in detecting threats
Expert knowledge of Microsoft including, but not limited to Defender, Sentinel, Purview, Entra, and Intune
Experience building data retrieval from the Microsoft security ecosystem
Leveraging detection mechanisms within SIEMs and SOAR
A strong understanding of cyber-attacks, MITRE ATT&CK framework, emerging threats and threat modelling as well as security research techniques
Intermediate experience with Python, PowerShell, Bash or Go
Intermediate experience with IDS/IPS systems
Talents:
Ability to adjust and adapt in a fast pace and dynamic environment, including changes in responsibilities as the business evolves.
Capacity for Synthesis: bring together disparate elements to create a coherent entity or a big-picture overview in order to gain a new perspective
Applied Technical Thinking: apply specialized, theoretical knowledge to efficient operational uses
Demonstrate strong composure with a balance of urgency and intensity, as well as focus
Security Engineer 3
Posted today
Job Viewed
Job Description
**Job Summary**
"Responsible for contributing towards the build and maintenance of the organization's cyber security systems and infrastructure. Exercises solid knowledge of engineering skills and methodology with a working knowledge of applicable cyber security compliance standards. Conducts security assessments and audits to identify cybersecurity risks within the company's networks, applications and operating systems. Helps secure and protect the Network Infrastructure: Routers, Switches, Optical Devices, L2 Datacenter and cabling, Strand Mounted devices, Secure Routing protocols, DOCSIS plant (CMTS/vCMTS/PON), SDN, best practice device configuration, network automation, monitoring and troubleshooting. Tests company's internal systems to validate security and detect any computer and information security weaknesses. Performs a technical analysis of vulnerabilities and determines the impacts to the organization Reports, tracks and records findings in a comprehensive vulnerability assessment report. Identifies and recommends appropriate action to mitigate vulnerabilities and reduce potential impacts on cybersecurity resources. Applies long-term objectives and plans related to the company's technical vision to daily activity. Applies innovative solutions for cyber engineering developmental problems that are competitive with industry and company standards. Has in-depth experience, knowledge and skills in own discipline. Usually determines own work priorities. Acts as a resource for colleagues with less experience.
Employees at all levels are expect to:
- Understand our Operating Principles; make them the guidelines for how you do your job
- Own the customer experience - think and act in ways that put our customers first, give them seamless digital options at every touchpoint, and make them promoters of our products and services
- Know your stuff - be enthusiastic learners, users and advocates of our game-changing technology, products and services, especially our digital tools and experiences
- Win as a team - make big things happen by working together and being open to new ideas
- Be an active part of the Net Promoter System - a way of working that brings more employee and customer feedback into the company - by joining huddles, making call backs and helping us elevate opportunities to do better for our customers
- Drive results and growth
- Respect and promote inclusion and diversity
- Do what's right for each other, our customers, investors and our communities"
**Job Description**
**The Company**
Founded in 1963, and headquartered in Philadelphia, Pennsylvania, Comcast Corporation (NASDAQ: CMCSA, CMCSK) is a global media and technology company with two primary businesses: NBCUniversal and Comcast Cable. NBCUniversal operates 30 news and entertainment cable networks, the NBC and Telemundo broadcast networks, television production operations, television station groups, Universal Pictures, and Universal Parks & Resorts. Comcast Cable Communications, LLC ("Comcast nation's largest video, high-speed internet, and phone provider to residential and business customers under the XFINITY brand. Comcast has invested in technology to build a sophisticated network that delivers the fastest broadband speeds and brings Cable") is the customers personalized video, communications, home management offerings and business services.
**COMCAST India**
Comcast India Engineering Center
Chennai One SEZ, Phase 2 (5th floor)
North Block, Phase 2, Module 7&8,
Pallavaram - Thoraipakkam 200 Feet Road,
Thoraipakkam,
Chennai-600 097.
**Summary:**
Want to do the best work of your life? With 24 million customers in 7 countries, make your mark at Europe's leading media and entertainment brand. A workplace where you can proudly be yourself; our people make Sky a truly exciting and inclusive place to work.
As a key member of Sky's Enterprise Technology Identity and Access Management Team you will help set the direction of our B2C strategy and roadmap as we expand the platform across new areas of the business. You will be working closely with platform owners and stakeholders to make adoption of B2C as frictionless as possible, through a deep understanding of the business requirements and how the technology can be applied to create the best customer experience. You will also be working to maintain our existing B2C solution and will be expected to make recommendations around best practice and upgrades to the platform owners and IAM manager.
**Website** - Skills:**
# **One identity, CyberArk, PAM, IS , NIST,** **Azure AD,** **CrowdStrike Identity Protection, bash,** **LDAP, SAML, OAuth, and OpenID Connect.**
**Core Responsibilities**
- **Design, develop, and implement IAM solutions using One Identity Manager** .
- Collaborate with other team members to ensure that IAM solutions meet business requirements, security standards, and regulatory compliance.
- **Develop custom scripts and processes to extend the functionality of One Identity Manager** .
- Configure and maintain **connectors for identity sources such as Active Directory, LDAP, and HR systems.**
- **Perform IAM solution testing, troubleshooting, and issue resolution.**
- Be responsible for the **development lifecycle, testing and deployment of your code,** ensuring change compliance is maintained throughout.
- Proactively ensure that the platform remains in line with emerging technologies by ensuring upgrades are completed in a timely manner.
- Provide technical guidance to clients and other team members on IAM best practices, solution design, and implementation.
- Participate in the development and delivery of client training programs and technical documentation as required.
- Have an identity first approach with a sound understanding of the concept of least privileged.
- Conduct regular audits and assessments of the IAM stack identify and address any security gaps or vulnerabilities.
- Work with auditors to and supply evidence as required.
- Stay ahead of the security curve and make best practice recommendations to senior management ( **NIST, NCSC** etc.)
- Be able to work autonomously on complex projects, gathering key information and making appropriate recommendations.
- Mentoring and support for other members of the Team.
**Required Experience and Skills:**
- Solid understanding of **Identity Governance and Administration** platforms (preferably **One Identity** ) with at least 3 years' experience in the field.
- Strong understanding of I **AM concepts and protocols such as LDAP, SAML, OAuth, and OpenID Connect.**
- Expertise in cross platform scripting ( **TSQL, Powershell, bash etc** .).
- On premise and cloud directory services ( **LDAP, Azure AD, GSuite etc** .)
- Be a subject matter expert on both legacy and modern authentication protocols.
- Have excellent security awareness including standards e.g., **IS , NIST and CIS.**
- Have a good understanding of **Web APIs including SOAP, REST and GraphQL architectures.**
- Have a good understanding of Access Controls and Identity Lifecycle management.
- Have excellent communication and organisational skills.
**Desired Skills and experience:**
- Privileged Account Management **(preferably CyberArk)**
- Azure Identity Solutions ( **PIM, MFA, Conditional Access** etc.)
- Integration with IAM supporting software suites such as **SIEM (Splunk) and Crowstrike Identity Protection.**
- Familiarity with regulatory requirements such as **PCI-DSS, SOX, and GDPR** .
- **Certification in One Identity Manager** is highly desirable.
**Experience: 5 - 7.5 years**
**Location:** Chennai, Tamil Nādu Education: Bachelor's Degree or Equivalent
**#CIECTN25**
Comcast is an equal opportunity workplace. We will consider all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, genetic information, or any other basis protected by applicable law.
Base pay is one part of the Total Rewards that Comcast provides to compensate and recognize employees for their work. Most sales positions are eligible for a Commission under the terms of an applicable plan, while most non-sales positions are eligible for a Bonus. Additionally, Comcast provides best-in-class Benefits to eligible employees. We believe that benefits should connect you to the support you need when it matters most, and should help you care for those who matter most. That's why we provide an array of options, expert guidance and always-on tools, that are personalized to meet the needs of your reality - to help support you physically, financially and emotionally through the big milestones and in your everyday life. Please visit the compensation and benefits summary ( on our careers site for more details.
**Education**
Bachelor's Degree
While possessing the stated degree is preferred, Comcast also may consider applicants who hold some combination of coursework and experience, or who have extensive related professional experience.
**Relevant Work Experience**
5-7 Years
**Job Family Group:** Information Technology
Security Engineer 2
Posted today
Job Viewed
Job Description
**Job Summary**
"Responsible for contributing towards the build and maintenance of the organization's cyber security systems and infrastructure. Exercises solid knowledge of engineering skills and methodology with a working knowledge of applicable cyber security compliance standards. Conducts security assessments and audits to identify cybersecurity risks within the company's networks, applications and operating systems. Helps secure and protect the Network Infrastructure: Routers, Switches, Optical Devices, L2 Datacenter and cabling, Strand Mounted devices, Secure Routing protocols, DOCSIS plant (CMTS/vCMTS/PON), SDN, best practice device configuration, network automation, monitoring and troubleshooting. Tests company's internal systems to validate security and detect any computer and information security weaknesses. Performs a technical analysis of vulnerabilities and determines the impacts to the organization Reports, tracks and records findings in a comprehensive vulnerability assessment report. Identifies and recommends appropriate action to mitigate vulnerabilities and reduce potential impacts on cybersecurity resources. Applies long-term objectives and plans related to the company's technical vision to daily activity. Applies innovative solutions for cyber engineering developmental problems that are competitive with industry and company standards. Works with moderate guidance in own area of knowledge.
Employees at all levels are expect to:
- Understand our Operating Principles; make them the guidelines for how you do your job
- Own the customer experience - think and act in ways that put our customers first, give them seamless digital options at every touchpoint, and make them promoters of our products and services
- Know your stuff - be enthusiastic learners, users and advocates of our game-changing technology, products and services, especially our digital tools and experiences
- Win as a team - make big things happen by working together and being open to new ideas
- Be an active part of the Net Promoter System - a way of working that brings more employee and customer feedback into the company - by joining huddles, making call backs and helping us elevate opportunities to do better for our customers
- Drive results and growth
- Respect and promote inclusion and diversity
- Do what's right for each other, our customers, investors and our communities"
**Job Description**
We are seeking a motivated and detail-oriented Cybersecurity Network Security Engineer with 2-5 years of experience to join our enterprise security team. The ideal candidate will be responsible for implementing and maintaining network security controls, monitoring network traffic, and defending the organization against network-based threats. This is a critical role focused on securing enterprise networks and ensuring compliance with security policies.
**Key Responsibilities:**
+ - Implement, manage, and monitor network security devices including firewalls, IDS/IPS, VPNs, and proxies.
+ - Analyze and respond to network security incidents and anomalies in real-time.
+ - Conduct vulnerability assessments and remediate risks in network infrastructure.
+ - Collaborate with IT and Security teams to design and enforce secure network architectures.
+ - Perform regular network security reviews, audits, and risk assessments.
+ - Manage and optimizefirewall rules and access control lists across the enterprise.
+ - Support incident response activities and participate in root cause analysis.
+ - Maintain up-to-date documentation for network security infrastructure and policies.
**Required Skills & Experience:**
+ - 2-5 years of experience in network security, cybersecurity, or related IT security roles.
+ - Strong understanding of networking protocols, routing, switching, and firewall technologies.
+ - Hands-on experience with firewalls (e.g., Palo Alto, Fortinet, Cisco ASA), IDS/IPS, and SIEM solutions.
+ - Knowledge of VPNs, VLANs, and network segmentation principles.
+ - Familiarity with network monitoring and packet analysis tools (e.g., Wireshark, SolarWinds).
+ - Experience with cloud network security in AWS, Azure, or GCP is a plus.
+ - Understanding of regulatory compliance standards (e.g., ISO 27001, NIST, PCI-DSS).
+ - Scripting or automation experience (Python, PowerShell) is desirable.
**Preferred Qualifications:**
+ - Certifications such as CCNA Security, CompTIA Security+, Palo Alto PCNSA, or similar.
+ - Experience with Zero Trust Network Architecture (ZTNA).
+ - Knowledge of threat intelligence and network threat hunting.
Comcast is an equal opportunity workplace. We will consider all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, genetic information, or any other basis protected by applicable law.
Base pay is one part of the Total Rewards that Comcast provides to compensate and recognize employees for their work. Most sales positions are eligible for a Commission under the terms of an applicable plan, while most non-sales positions are eligible for a Bonus. Additionally, Comcast provides best-in-class Benefits to eligible employees. We believe that benefits should connect you to the support you need when it matters most, and should help you care for those who matter most. That's why we provide an array of options, expert guidance and always-on tools, that are personalized to meet the needs of your reality - to help support you physically, financially and emotionally through the big milestones and in your everyday life. Please visit the compensation and benefits summary ( on our careers site for more details.
**Education**
Bachelor's Degree
While possessing the stated degree is preferred, Comcast also may consider applicants who hold some combination of coursework and experience, or who have extensive related professional experience.
**Relevant Work Experience**
2-5 Years
**Job Family Group:** Information Technology
Senior Security Engineer
Posted today
Job Viewed
Job Description
Hiring = Security Engineer II
Experience
6 to 7 years of experience Senior level roles as IT Security Architect, IT Security Engineer, IT Security Auditor, Cyber-Security Analyst, Cyber-Intelligence Analyst
Certifications, Accreditations, Licenses
One or more of the following certifications dependent on the actual role:
Advanced GIAC/SANS certifications - GCIH, GCIA, GCFE, GCFA, GREM, GIAC, GSEC, GWAPT, ISC-squared CISSP, CompTIA Security+
Special Knowledge, Skills, and Abilities:
- Strong troubleshooting and analytical skills.
- Excellent verbal and written communication skills.
- Able to work collaboratively with others and participate in technical conversations, troubleshooting, and design discussions
- Strong technical knowledge of DLP architecture, policy creation
- Experience with DLP platforms such as Microsoft Purview, Palo Alto CASB, or other enterprise DLP technologies.
- Experience with data classification & labeling technologies
- Experience with application control tools and techniques (e.g., Threat Locker Protect, Microsoft AppLocker, Carbon Black App Control).
- Hands-on experience with security incident response, risk management, and data governance.
- Experience with scripting and automation (e.g., PowerShell, Python)
- Proficient in security frameworks, including NIST 800-53 and Cybersecurity Framework (CSF), as well as industry standards and best practices
- Understanding of compliance regulations such as PCI-DSS, HIPAA, and GDPR
- Incident response experience, including knowledge of intrusion analysis and network/host forensics techniques
- Experience with SIEM or similar log analysis tools and experience reviewing security events.
Interested can share resume to
Work Location: Chennai/Remote
Network Security Engineer
Posted today
Job Viewed
Job Description
Dear Candidate,
TCS has been a great pioneer in feeding the fire of young Techies like you. We are a global leader in the technology arena and there’s nothing that can stop us from growing together. Your role is of key importance, as it lays down the foundation for the entire project
Role : Network Security Engineer
Location : Bangalore/ Hyderabad/ Chennai/ Mumbai/ Indore
Experience : 10+ Years
Required Skills: Palo Alto Firewall, Panorama, F5 LTM Load Balancer and GTM, Infoblox.
Must Have:
- Should offer end to end IT infrastructure and Network Administration (Network Security)
- Should be dealing with fault-ticket (Service-Now), in co-ordination with Customer, application team or device vendor to resolve issues
- Should be dealing with various vendors & troubleshooting of various Network security related issues.
- Technical Support and Fault Management/troubleshooting for Network firewall and Load balancer issue.
- Configuration of firewall rules to allow or deny access as per the user/application requirement.
- Strong knowledge on leveraging advanced firewalls features like APP-ID, User-ID, Global Protect, Wild Fire, NAT policies and Security Profiles.
- Profound working knowledge of administration and management of Palo Alto firewalls using centralized Panorama and PAN-OS upgradation.
- Configuring various advanced features (Profiles, monitors, Redundancy, SSL Termination, Persistence, SNATS, HA on F5 BIGIP appliances SSL termination and initiation.
- Worked on configuring and troubleshooting Nodes, Pools, Profiles, Virtual Servers, SSL Certificates offloading.
- Working experience on iRules, policy and Big-IP F5 on LTM and GTM load balancers like GHA creation to provide uninterrupted service to customers/Application.
- Working experience on code upgrades of virtual and physical F5 LTM and GTM devices for feature and performance improvement and to mitigate security risk.
- Supported Infoblox appliances grid environment for DNS, DHCP and IP Address Management tools (IPv4) for the enterprise network.
- Worked on creating and maintaining new subnets, host with several record entries like CNAME, PTR, A, etc) with DHCP scopes using Graphical User Interface.
- In depth Knowledge on ITIL processes like Incident management, Problem Management, Configuration management and Change Management processes.
- Candidate should have been in a customer facing role with excellent communication skills.
- Strong technical knowledge and eagerness to learn new technologies
Regards,
Priscilla Nancy
HR TAG – CSP
Tata Consultancy Services
Cyber Security Engineer
Posted 3 days ago
Job Viewed
Job Description
Professional Summary: Please share your updated CV to , with the below details
Candidate Name
Mobile No.
Email ID
Current Company
Exp.
Notice Period
Current Location
Preferred Location
CCTC
ECTC
Location: Chennai
Exp.:11-13 years
- Industry Experience : 12+ years of professional experience, with over 5 years dedicated to medical device cybersecurity and regulatory compliance.
- Technical Development : Strong background in embedded systems development using Linux, C and C++ within the medical device sector.
- Security Implementation Expertise : Specialized in deploying robust security controls for medical devices, including secure authentication, authorization mechanisms, device connectivity, secure boot, and bootloader integration.
- Cybersecurity Risk Management: Proven track record in identifying and mitigating security risks in accordance with international regulatory standards such as FDA (Pre-market and Post-market), EU MDR, Japan PMDA, and China NMPA.
- Regulatory Standards & Compliance : Deep understanding of global security standards and guidelines, including ISO, IEC, AAMI, NIST, FDA, IMDRF, and MDCG, with a focus on medical device-specific security requirements and controls.
- Additional Competencies: Hands-on experience in penetration testing, Software Bill of Materials (SBOM) analysis, and vulnerability management.
Network Security Engineer
Posted 3 days ago
Job Viewed
Job Description
Movate (formerly known as CSS Corp) is a global customer experience and technology consulting services provider, disrupting the industry with a unique intersection of industryleading proprietary solutions, resilient operations, and innovative business engagement models. It has emerged as a compelling alternative to the traditional IT and support service providers with its premium service offerings and differentiated value propositions that solve clients’ critical business problems proactively. The company is a digital transformation partner of choice for its clients, which include the world’s top innovators across industries, from mid-market players to large enterprises. Its diverse team of over 11,700 customercentric thinkers, collaborators, and co-creators across 20 global locations, is passionate about helping clients succeed through intelligent automation-led outcomes.
Job Description:
Position : Network Security Engineer (L1 Engineer)
Experience : 2 – 5 years
Job Location : Chennai - Perungalathur
DESIRED PROFILE:
• Minimum 1.5 Years experience in Network Security Engineer
• Strong Knowledge of Networking concepts such as IPSEC VPN, SSL VPN, TCP/UDP, DHCP, DNS, ARP, VLan, SPAN, Ospf, BGP. Fregmentation and Segmentation.
Job Responsibilities:
• Handles first level calls/cases from Enterprise customers.
• Case ownership, documentation and management
• Customer Management, Setting right expectation, Situation handling.
• Driving case progression as per the SLA
• Utilizing tools and systems, Working with relevant groups in the client organization (SE, Support Manager, L3) for case progression and updates
• Backlog Management and meet the expectation set with customers.
• Work on pending cases(backlogs) and drive towards closure
• Periodic follow up as per SLA defined by the client.
Process, Queue Adherence and SLA awareness
• Adhere to the process guidelines specified for the defined environment (SIP, ISO etc.)
• Knowledge Base Article Creation when there is an opportunity for it.
• To contribute knowledge base and the knowledge sharing forum
• Improving customer experience and Building relationship
• Completing PCNSE certification within 120 days of go-live.
Technical skills:
• 2+ years of experience in data networking, routing & switching & network security.
• Network security experience is must.
• Good understanding of OSI Model, TCP/IP protocol suite (IP, ARP, ICMP, TCP, UDP, SNMP, FTP, TFTP).
Experience in VLANS, Tagging - IEEE 802.1q, 802.3ad, 802.1d, 802.1w.
• Experience in IPSEC VPN/SSL-VPN/NAT/GRE/
• Experience on routing protocols – RIP V1/V2, OSPF, and BGP
• Knowledge of Authentication Protocols like TACAS/RADIUS/LDAP will be an added advantage.
• Working knowledge on Cisco, Checkpoint, Juniper, Fortinet, SonicWALL, NetScreen, Juniper SRX, Palo Alto Networks will be an added advantage.
• Experience on troubleshooting tools like Sniffer, Ethereal, and Wireshark.
• CCNA, CCNP, Checkpoint Certification, CCSP, PCNSE certifications will be an added advantage.
• Knowledge of Server Load Balancing (SLB), VRRP and IGMP.
Be The First To Know
About the latest System security Jobs in Chennai !
Server Security Engineer
Posted 3 days ago
Job Viewed
Job Description
Hiring Update: Server Security Engineer, 8+ Years Experience
We are looking for Server Security Engineer who has hands on experience working in CyberArk and CrowdStrile Falcon.
Location: Chennai
Shift: 1-10PM
Work Mode: Hybrid (4 days WFO & 1-day WFH)
Job Description
- Deploy, configure, and support CyberArk PAM .
- Administer CrowdStrike Falcon (users, sensors, policies).
- Implement Akamai Zero Trust and microsegmentation.
Alternative combos to look for:
- CyberArk + Microsoft Defender for Endpoint + Zscaler
- BeyondTrust + SentinelOne + Cloudflare Zero Trust
- Delinea + Palo Alto Cortex XDR + Netskope
- HashiCorp Vault + Falcon + Illumio
Most favoured combo:
- Cyberark , falcon and server knowledge is added advantage.
Product security Engineer
Posted 106 days ago
Job Viewed
Job Description
Yubi, formerly known as CredAvenue, is re-defining global debt markets by freeing the flow of finance between borrowers, lenders, and investors. We are the world's possibility platform for the discovery, investment, fulfilment, and collection of any debt solution. At Yubi, opportunities are plenty and we equip you with tools to seize it.
In March 2022, we became India's fastest fintech and most impactful startup to join the unicorn club with a Series B fundraising round of $137 million.
In 2020, we began our journey with a vision of transforming and deepening the global institutional debt market through technology. Our two-sided debt marketplace helps institutional and HNI investors find the widest network of corporate borrowers and debt products on one side and helps corporates to discover investors and access debt capital efficiently on the other side. Switching between platforms is easy, which means investors can lend, invest and trade bonds - all in one place. All of our platforms shake up the traditional debt ecosystem and offer new ways of digital finance.
Job description
Design and implement security controls for products throughout the SDLC.
Perform threat modeling, security reviews, and vulnerability assessments.
Collaborate with development teams to integrate security best practices.
Respond to, investigate, and remediate security incidents related to products.
Develop and maintain security automation tools and scripts.
Conduct secure code reviews and penetration testing.
Research and evaluate emerging security technologies and threats.
Create and deliver developer training on secure coding practices.
Document security guidelines, standards, and compliance requirements.
Communicate risks and mitigation strategies to technical and non-technical stakeholders.
RequirementsBachelor's degree in Computer Science, Information Security, or a related field.Strong experience in application security, threat modeling, and vulnerability assessment.Proficiency in secure coding practices and common security tools (e.g., SAST, DAST).Familiarity with SDLC, DevSecOps, and cloud security principles.Excellent communication skills and ability to collaborate across teams.Microsoft Security Engineer
Posted 21 days ago
Job Viewed
Job Description
Security Engineer: ( Microsoft Subject Matter Expert) :
Fulltime Remote
About the Role:
Do you want to be on the frontline fighting for safe use within the digital frontier? Does describing your job to your family and friends as being a cyberwarrior or threat hunter sound awesome or awe inspiring? Then join us as part of our Security Operations Center (SOC)
Engineering team as a Microsoft Services Subject Matter Expert (SME) supporting our frontline Threat Hunters. In addition, given the rapid changes within the Microsoft ecosystem you will also be working cross-functionally with Product Management and R&D Engineering to drive differentiation within our service as well with our Business Development team to help maintain the relationship with Microsoft.
While this role will have business responsibilities that will help you expand your career options, the primary day to day role is as a Security Engineer. As a Security Engineer, you will serve as a critical support system for the SOC. You will create, enhance, and tune alerts and detections so that the SOC can best defend our client's networks. Your goal will be to continually improve the detection and alerting that the SOC receives. In some cases, you will work directly with clients to ensure that they send us the most beneficial and important data. You will leverage our tech stack, elements of Microsoft and provide ongoing support both internally and externally. In short, you will be a critical member of the team using Microsoft Defender, Microsoft Sentinel, Microsoft Suite including Purview, Entra, Intune tools, the Pondurance SIEM and SOAR as well as other products and services to protect our clients in the ever-changing threat landscape.
Responsibilities:
Stay on the forefront of the Microsoft ecosystem
Drive security detection improvements
Tune existing alerts and client data in our SIEM tooling for optimal performance.
Identify workflow improvements and curate new automations through our SOAR platform
Assist in continuous improvement efforts to evaluate detection and response capabilities
Develop methods to detect potential threats
Maintain the SOAR platform in support of day-to-day SOC activities
Work with cross-functional teams to enhance detection capabilities
Qualifications:
Strong understanding of tuning alerts and pertinent logs to aid in detecting threats
Expert knowledge of Microsoft including, but not limited to Defender, Sentinel, Purview, Entra, and Intune
Experience building data retrieval from the Microsoft security ecosystem
Leveraging detection mechanisms within SIEMs and SOAR
A strong understanding of cyber-attacks, MITRE ATT&CK framework, emerging threats and threat modelling as well as security research techniques
Intermediate experience with Python, PowerShell, Bash or Go
Intermediate experience with IDS/IPS systems
Talents:
Ability to adjust and adapt in a fast pace and dynamic environment, including changes in responsibilities as the business evolves.
Capacity for Synthesis: bring together disparate elements to create a coherent entity or a big-picture overview in order to gain a new perspective
Applied Technical Thinking: apply specialized, theoretical knowledge to efficient operational uses
Demonstrate strong composure with a balance of urgency and intensity, as well as focus