Skip to content
← Back to job listings

Senior Software Engineer, Information Security

Icertis · Pune, Maharashtra, India

Software DevelopmentExternal listingfull-time19 minutes ago

About The Role

We are seeking a Senior Software Engineer – Information Security to design, implement, and support enterprise security solutions across cloud security, endpoint security, email security, vulnerability management, and SIEM. The role is responsible for enhancing the organization's security posture by deploying and managing security technologies, developing detection and automation capabilities, investigating security incidents, and collaborating with cross-functional teams to mitigate cyber risks. The ideal candidate has strong hands-on experience with Microsoft security technologies, SIEM platforms, vulnerability management tools, scripting, and cloud security, along with a passion for building secure, resilient, and scalable security operations.

Security Engineering

  • Design, implement, and support enterprise security solutions that align with organizational security standards and industry best practices.
  • Evaluate, deploy, configure, and optimize security technologies to strengthen detection, prevention, and response capabilities.
  • Develop and maintain security architecture, technical standards, implementation documentation, and operational procedures.
  • Provide advanced (Level 3) technical support for complex security platforms, incidents, and escalations.

Cloud Security

  • Design and implement security controls across cloud platforms, including Microsoft Azure, AWS, and Google Cloud Platform (GCP).
  • Configure and manage cloud-native security solutions such as Microsoft Defender for Cloud, Microsoft Entra ID, Conditional Access, and workload protection services.
  • Perform cloud security assessments, identify risks, and recommend remediation strategies.
  • Partner with infrastructure and application teams to support secure cloud adoption and architecture reviews.

Endpoint Security

  • Administer and optimize enterprise endpoint protection and EDR/XDR platforms, including Microsoft Defender for Endpoint or equivalent solutions.
  • Develop and maintain endpoint security policies covering malware protection, device control, attack surface reduction, and endpoint hardening.
  • Investigate endpoint security events, coordinate remediation efforts, and improve overall endpoint security posture.

Email Security

  • Manage enterprise email security platforms, including Microsoft Defender for Office 365 or comparable secure email gateways.
  • Configure and maintain email protection technologies, including anti-phishing, anti-malware, Safe Links, Safe Attachments, SPF, DKIM, and DMARC.
  • Investigate email-based threats and phishing campaigns while continuously enhancing email security controls.

Vulnerability Management

  • Administer enterprise vulnerability management platforms such as Microsoft Defender Vulnerability Management, Tenable, Qualys, or Nessus.
  • Conduct vulnerability assessments, validate remediation activities, and prioritize findings based on business risk and exploitability.
  • Produce vulnerability metrics, dashboards, and executive-level reporting.
  • Collaborate with infrastructure, cloud, and application teams to ensure timely remediation of identified vulnerabilities.

SIEM, Threat Detection & Security Monitoring

  • Configure, maintain, and optimize SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or equivalent technologies.
  • Develop and tune detection rules, analytics, KQL queries, dashboards, workbooks, and threat detection use cases.
  • Integrate security telemetry from cloud, identity, endpoint, network, and application sources.
  • Support security incident investigations, threat hunting, and forensic analysis activities.
  • Develop and maintain automation and orchestration workflows using SOAR technologies to improve operational efficiency and incident response.

Collaboration & Continuous Improvement

  • Collaborate with cross-functional IT, infrastructure, cloud, and application teams to implement secure solutions and drive security initiatives.
  • Identify opportunities to automate security operations, improve processes, and enhance platform performance.
  • Stay current with emerging cybersecurity threats, technologies, and industry best practices, recommending improvements to strengthen the organization's security posture.

This is an external listing. JobSpring does not represent or verify the employer. Report this listing