Job Name : Infrastructure Security Engineer
Location- Onsite- Ahmedabad
Job Type- Full Time
Position Overview
We are seeking an experienced Infrastructure Security Engineer to join our cybersecurity team and play a critical role in protecting our organization's digital infrastructure. This position requires a versatile security professional who can operate across multiple domains including cloud security, vulnerability management / patch management, endpoint protection, and security operations.
Key Responsibilities
AWS Cloud Security
- Design, implement, and maintain security controls across AWS environments including IAM policies, security groups, NACLs, and VPC configurations
- Configure and manage AWS security services such as CloudTrail, GuardDuty, Security Hub, Config, and Inspector
- Implement Infrastructure as Code (IaC) security best practices using CloudFormation, Terraform, or CDK
- Conduct regular security assessments of cloud architectures and recommend improvements
- Manage AWS compliance frameworks and ensure adherence to industry standards (SOC 2, ISO 27001, etc.)
Vulnerability Management
Lead enterprise-wide vulnerability assessment programs using tools such as NessusDevelop and maintain vulnerability and patch management policies, procedures, and SLAs, regular reportingCoordinate with IT and development teams to prioritize and remediate security vulnerabilitiesGenerate executive-level reports on vulnerability metrics and risk exposureConduct regular penetration testing and security assessments of applications and infrastructurePatch Management
Design and implement automated patch management strategies across Windows, Linux, and cloud environmentsCoordinate with system administrators to schedule and deploy critical security patchesMaintain patch testing procedures to minimize business disruptionMonitor patch compliance across the enterprise and report on patch deployment statusDevelop rollback procedures and incident response plans for patch-related issuesEndpoint Security
Deploy and manage endpoint detection and response (EDR) solutions such as CrowdStrikeConfigure and tune endpoint security policies including antivirus, application control, and device encryptionInvestigate and respond to endpoint security incidents and malware infectionsImplement mobile device management (MDM) and bring-your-own-device (BYOD) security policiesConduct forensic analysis of compromised endpoints when requiredRequired Qualifications
Education & Experience
Bachelor's degree in computer science, Information Security, or related fieldMinimum 5+ years of hands-on experience in information security roles3+ years of experience with AWS cloud security architecture and servicesTechnical Skills
Cloud Security : Deep expertise in AWS security services, IAM, VPC security, and cloud compliance frameworksVulnerability Management : Proficiency with vulnerability scanners (Qualys, Nessus, Rapid7) and risk assessment methodologiesPatch Management : Experience with automated patching tools (WSUS, Red Hat Satellite, AWS Systems Manager)Endpoint Security : Hands-on experience with EDR / XDR platforms and endpoint management toolsSIEM / SOAR : Advanced skills in log analysis, correlation rule development, and security orchestrationOperating Systems : Strong knowledge of Windows and Linux security hardening and administrationSecurity Certifications (Preferred)AWS Certified Security - SpecialtyCISSP (Certified Information Systems Security Professional)GCIH (GIAC Certified Incident Handler)CEH (Certified Ethical Hacker)Key Competencies
Strong analytical and problem-solving skills with attention to detailExcellent communication skills and ability to explain complex security concepts to technical and non-technical stakeholdersProject management capabilities with experience leading cross-functional security initiativesAbility to work in fast-paced environments and manage multiple prioritiesStrong understanding of regulatory compliance requirements (PCI-DSS, HIPAA, SOX, GDPR)Experience with risk assessment frameworks and security governanceReporting StructureThis position reports to the Engineering Manager Cyber Security and collaborates closely with IT Operations, Development Teams.
Skills Required
Patch Management, Linux Security, Vulnerability Management, SOAR, Siem, Endpoint Security