HamburgerMenu
hirist

Senior Cyber Security Engineer - Vulnerability Management

Kiddel Technologies India Private Limited
7 - 10 Years
rupee22-25 LPA
Multiple Locations

Posted on: 22/09/2026

Job Description

Position Overview :

We are seeking a hands-on Senior Cybersecurity Engineer to join our lean, global IT organization. This role will be responsible for protecting the company's infrastructure, cloud platforms, endpoints, applications, and information assets while supporting a global business footprint.

The ideal candidate combines expertise in security operations, vulnerability management, compliance, incident response, and security governance with the ability to work independently and effectively in a fast-paced environment. This position will work closely with IT infrastructure teams, managed service providers, business stakeholders, auditors, and technology vendors to continuously strengthen the organization's cybersecurity posture.

This is a highly visible role requiring both technical depth and strong communication skills, with significant ownership of cybersecurity initiatives and day-to-day security operations.

Key Responsibilities :

Security Operations & Incident Response :

- Monitor, investigate, and respond to security alerts, incidents, and suspicious activity across cloud, network, endpoint, and email environments.

- Manage and optimize cybersecurity technologies, including SentinelOne MDR/EDR, Microsoft Defender, SIEM platforms, and email security solutions.

- Conduct root cause analysis, document findings, and drive remediation activities.

- Investigate phishing reports and coordinate incident response efforts.

- Develop and maintain incident response procedures, playbooks, and security runbooks.

- Collaborate with internal teams, MSPs, MDR providers, and other security partners during security incidents.

Vulnerability Management & Security Hardening :

- Lead vulnerability management activities using tools such as Qualys, including scanning, prioritization, remediation tracking, and reporting.

- Coordinate penetration testing and security assessments and track remediation of identified findings.

- Drive Microsoft 365 tenant hardening and Zero Trust security initiatives.

- Review system configurations, patching compliance, access controls, and security controls to identify and reduce risk.

- Provide guidance to IT teams on security hardening and remediation activities.

Governance, Risk & Compliance :

- Develop, maintain, and improve information security policies, procedures, standards, and incident response plans.

- Support compliance initiatives, including SOC 2, NIST Cybersecurity Framework (CSF), and customer security requirements.

- Assist with internal and external audits, vendor risk assessments, and SOC report reviews.

- Maintain security documentation, risk registers, runbooks, control documentation, and audit evidence.

- Identify security risks and work with stakeholders to develop and track appropriate mitigation strategies.

Security Awareness & Training :

- Administer security awareness and phishing simulation programs using platforms such as KnowBe4.

- Deliver quarterly cybersecurity awareness training and coordinate annual company-wide security education initiatives.

- Promote security best practices and a strong culture of cybersecurity awareness across the organization.

Business Continuity & Vendor Security :

- Support Business Continuity Planning (BCP) and Disaster Recovery (DR) programs, including testing and validation activities.

- Evaluate third-party software and technology solutions for security and compliance risks.

- Partner with vendors, MSPs, and MDR providers to ensure effective security operations and appropriate security controls.

- Participate in security reviews of new technologies, applications, and services.

Qualifications Required :

- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; equivalent experience may be considered.

- 7 - 10 years of experience in cybersecurity, information security, security engineering, or a related field.

- Hands-on experience with :

- SentinelOne EDR/MDR

- Qualys or similar vulnerability management platforms

- Microsoft 365 Security and Entra ID

- Security monitoring, SIEM, and log analysis

- Incident response and security investigations

- Strong understanding of :

- Identity & Access Management (IAM)

- Zero Trust security principles

- Endpoint, network, and cloud security

- Security governance and risk management

- Experience supporting cybersecurity audits and compliance programs.

- Strong analytical, problem-solving, communication, and documentation skills.

- Ability to work independently while effectively collaborating with technical and non-technical stakeholders.

Preferred :

- Experience supporting a global, multi-site organization.

- Experience working with MSPs, MDR providers, and third-party security partners.

- Knowledge of Azure security and cloud security architecture.

- Familiarity with application security, API security, Secure SDLC, and OWASP Top 10.

- Experience with cybersecurity frameworks and controls beyond NIST CSF, such as CIS Controls or ISO 27001.

Certifications :

- CISSP, CISM, AZ-500, or SC-200 strongly preferred.

- SC-300, Security+, CEH, or equivalent cybersecurity certifications are a plus.

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...