Role summary
We are looking for a talented, dedicated Security Engineer who thrives on securing complex
environments and possesses deep and wide expertise in the security domain. This crucial role
focuses on translating enterprise security policies into actionable technical controls,
administering key security solutions, hardening core infrastructure (both on-premises and cloud),
and providing essential support.
Core Responsibilities :
A. Infrastructure Security & Controls :
- Implement and Maintain security hardening adherence to CIS benchmarks in Linux &
Windows Servers and Data Center Infrastructure.
Administer advanced security solutions such as firewalls, IDS / IPS, XDR, DLP, emailsecurity, and DDoS protection in collaboration with Enterprise Infra and Network teams.
Implement and maintain secure baselines for hypervisors, virtual machines, containers,Kubernetes, storage, and network segments.
Implement and manage secret management solutions (Hashicorp vault, HSM).Validate cloud infrastructure against CIS, NIST, PCI DSS, and organizational baselines.Collaborate in post-incident reviews, including cloud breach simulations, root causeanalysis of cloud misconfigurations or vulnerabilities, and implement corrections.
Leverage automation and tools to streamline security processes, such as configurationcompliance checks and the discovery of shadow IT
B. Network & Zero Trust Architecture :
Deploy and manage Zero Trust security frameworks to strengthen the organization'ssecurity posture in complex environments.
Ensure appropriate network segmentation, Access Control Lists (ACLs), and VPNs forsecure data transit and network integrity
Conduct comprehensive security reviews to identify security gaps in network and datacenter architecture.
Propose and implement risk-based mitigation strategies for securing data centers andnetwork infrastructure.
Provide security recommendations for designing, operating, and maintaininghigh-performing data centers and networks.
Skills and Experience :
5+ years of experience in Information security, with a focus on data center and networksecurity.
Expertise in configuring and managing network security solutions, including firewalls, IPS,load balancers, and VPNs.
In-depth knowledge of server administration (Linux and Windows) with a dedicated focuson security best practices, hardening, and configuration management.
Proven ability to administer, configure, and troubleshoot enterprise-grade XDR / EDR, DLP,and Email Security solutions.
Deep knowledge of cryptographic technologies such as encryption, hashing, PKI, anddigital signatures.
Hands-on experience with Zero Trust Network Architecture and related securityframeworks.
Basic scripting and automation knowledge (Python, PowerShell, or Ansible).Compliance Strong knowledge of compliance and regulatory requirements such as ISO27001, GDPR, and the ability to contribute to audit and reporting activities.
Excellent communication and collaboration skills, with the ability to explain complexsecurity risks and requirements clearly to both technical and business stakeholders.
Qualification :
Education : Bachelor's degree in Computer Science, Information Security, or a relevanttechnical field.
Certifications : Relevant industry certifications such as CISSP, CCNP Security, or CISM arehighly desirable.
Advanced Compliance Expertise : Demonstrated expertise in frameworks such as ISO / IEC27017, ISO 27018, SOC 2, and PCI DSS is highly desirable.
Experience scripting or automating security tasks.We are looking for a highly proactive individual who enjoys tackling complex security challenges.
Must be a strong collaborative team player committed to continuous learning, maintaining deep
and wide expertise, and fostering a secure culture.
Skills Required
Pci Dss, Gdpr, Email Security, Load Balancers, Powershell, Vpns, Dlp, Ips, Windows, Server Administration, Linux, EDR, Ansible, Information Security, Firewalls, Python