Senior Security Engineer

Engineering · Full-time · Tamil Nādu, India

Job description

Job Summary

The Security Engineer will be responsible for conducting thorough security assessments, identifying vulnerabilities, and implementing robust security measures to protect our systems and data, including network and application penetration testing, preparing detailed reports, and conducting ISO: ISMS (Information Security Management System) audits.

  • Certified Ethical Hacker (CEH)

  • Penetration Testing

Security Management

  • Perform comprehensive application, mobile, API and network penetration testing using tools like Burp Suite, Nmap, Kali Linux tools.

  • Perform Vulnerability Assessment/Management using tools like Nessus, Qualys, Defender for cloud, Aws inspector.

  • Analyse and report security alerts and perform false positive analysis, document security vulnerabilities and threats.

  • Experience on cloud security implementation & Audit via solutions like CSPM (Cloud Security Posture Management), Workload security, Supply chain security.

  • Develop and implement effective security solutions to mitigate identified risks and create awareness throughout the company

  • Conduct regular security assessments and audits to ensure compliance with industry standards and regulations.

  • Collaborate with cross-functional teams to integrate security practices into the development lifecycle.

  • Stay up to date with the latest security trends, threats, and technologies

  • Prepare detailed reports and presentations on security findings and recommendations.

  • Experience in ISO: ISMS (Information Security Management System) audits.

Qualifications

  • Bachelor's degree in computer science, Information Security, or a related field.
  • Strong experience in security engineering, with a focus on penetration testing.
  • Proficiency in using Burp Suite for application, Mobile, API security testing. Kali Linux tools.
  • Strong knowledge of application and network penetration testing methodologies and tools, Networking concepts and network devices
  • Certifications: CEH (Certified Ethical Hacker) and ECSA (EC-Council Certified Security Analyst) from EC-Council, OSCP (Good to have).
  • Excellent problem-solving skills and attention to detail.
  • Effective communication and interpersonal skills.
  • Ability to work independently and as part of a team in a fast-paced environment