NopalCyber Logo

NopalCyber

Senior Security Engineer

Posted 21 Days Ago
Be an Early Applicant
In-Office
Hyderabad, Telangana, IND
Senior level
In-Office
Hyderabad, Telangana, IND
Senior level
Deploys and engineers SIEM, EDR/XDR, SOAR, DLP, firewall, IAM, cloud, and zero-trust security platforms for MSSP/MXDR operations. Responsibilities include log onboarding, detection engineering, incident-response automation, endpoint and network hardening, cloud security, customer architecture workshops, technical presales support, platform monitoring, documentation, and Python-based automation. The role requires leading engineering initiatives and delivering production-grade security solutions across multi-tenant environments.
The summary above was generated by AI

Role Overview

We are looking for a hands-on Security Platform Engineer to deploy, manage, and continuously improve the security infrastructure that underpins our MXDR / MSSP operations. The role covers the full stack from endpoint and network security to SIEM engineering and detection engineering and is suited for someone who is equally comfortable hardening a Windows or Linux server, tuning firewall rules, and building detection logic in a SIEM.

The ideal candidate will have strong expertise across SIEM platforms, cloud and network security, zero trust architecture, and automation, with the ability to lead engineering initiatives and deliver production-grade security solutions.

Key Responsibilities

         Deploy and administer SIEM platforms, including designing and delivering solutions to customers.

         Own the log onboarding lifecycle – log source integration, parsing, normalization, enrichment, and storage optimization across multi-tenant environments.

         Deliver and Manage EDR and XDR platforms include deployment, policy configuration, agent management, and health monitoring.

         Participate in customer workshops, architecture reviews, and prepare HLD and LLD documents for finalized architecture.

         Support pre-sales teams in solution, technical discussions, and proposal responses

         Build and maintain detection content - correlation rules, use cases, and UEBA models aligned to MITRE ATT&CK

         Develop and maintain SOAR playbooks for automated alert triage, containment, and response workflows.

         Administer and tune DLP policies; investigate DLP incidents and work with business teams to reduce false positives while protecting sensitive data.

         Deploy, harden, and maintain security controls across Windows and Linux environments, including patch management, OS-level hardening, and access control.

         Deploy, manage and administer firewall platforms (NGFW) - including policy creation, rule review, traffic analysis, and periodic audits.

         Configure and support VPN solutions for secure remote and site-to-site connectivity.

         Extend security controls to cloud environments (AWS, Azure, GCP) including cloud-native security services, IAM governance, and network security groups.

         Deploy and administer any IAM Solution to manager privileged accounts and access policies

         Support Zero Trust and ZTNA implementations for secure application access

         Monitor platform health, manage SLAs, and drive capacity and cost-efficiency improvements

         Maintain engineering run books, SOPs, and platform documentation.

         Write and maintain automation scripts (Python, REST APIs) to streamline platform operations, integrations, and reporting

What We’re Looking For:

       Experience working in an MSSP & MXDR operational environment.

       5+ years of hands-on experience in security infrastructure and platform engineering.

       Proven experience deploying and administering firewall platforms (NGFW) and DLP solutions in enterprise environments.

       Hands-on SIEM Deployment and engineering experience with at least two platforms (Wazuh, Sentinel, Securonix, QRadar, CrowdStrike SIEM, or Chronicle).

       Experience deploying and managing any of EDR/XDR platforms — SentinelOne, CrowdStrike Falcon, or Microsoft Defender.

       Solid detection engineering skills - writing correlation rules, use cases, and tuning alerts based on MITRE ATT&CK.

       Scripting ability in Python or equivalent for automation and platform integration tasks.

       Familiarity with SOAR platforms and incident response automation

       Understanding of cloud security fundamentals across AWS, Azure, or GCP.

       Having relevant cloud security (Azure, AWS, GCP) and tool expertise certifications will be an added advantage

Key Competencies

-          Strong problem-solving and analytical thinking

-          Ability to lead engineering initiatives and mentor teams

-          Excellent communication and stakeholder management skills

-          Passion for automation, innovation, and continuous improvement



Similar Jobs

9 Days Ago
Hybrid
Hyderabad, Telangana, IND
Senior level
Senior level
Fintech • Financial Services
Leads incident response, technical investigations, digital forensics, security consulting, and design of network and information security solutions. Implements and supports micro-segmentation, network virtualization, cloud, authentication, cryptography, monitoring, and endpoint security technologies. Reviews logs, assesses vulnerabilities and risks, recommends remediation, manages changes, supports on-call operations, documents solutions, and mentors network operations staff.
Top Skills: AnsibleAuthenticationBashCertificatesCloud SecurityConfluenceCryptographyDirectory ServicesDnsEndpoint SecurityFfiecFirewallsFlaskFlask RestxGuardicoreIllumioIsoJIRALoad BalancingMtlsNetwork SecurityNistPowershellPythonServicenowSIEMSplunkSslTerraformTlsVMwareVmware Nsx-T
13 Days Ago
Hybrid
Hyderabad, Telangana, IND
Senior level
Senior level
Fintech • Financial Services
Leads security baseline configuration modernization, translating policies into secure-by-default standards and catalogs aligned with CIS Benchmarks. Investigates incidents, performs digital forensics, reviews logs, assesses vulnerabilities, and designs security solutions across cloud, networks, authentication, encryption, applications, and endpoints. Owns complex work from intake through validation and closure, drives automation and AI-assisted efficiency, integrates baselines into CI pipelines, manages stakeholders and dependencies, and improves security workflows, documentation, metrics, and cycle time.
Top Skills: AIBashC#Ci/CdCis BenchmarksCloud SecurityCryptographyDigital ForensicsJavaJIRALinuxNetwork SecurityPowershellPythonWindows
16 Days Ago
Hybrid
Hyderabad, Telangana, IND
Senior level
Senior level
Fintech • Financial Services
Leads incident response, digital forensics, security consulting, vulnerability assessments, risk analysis, and remediation. Designs and maintains security solutions across cloud, applications, networks, endpoints, authentication, and cryptography. Performs web, mobile, API, and thick-client penetration testing; conducts automated and manual application security testing; validates findings; develops testing tools and scripts; supports DAST initiatives; and advises on secure SDLC practices.
Top Skills: AuthenticationBurp SuiteCloud SecurityCryptographyDastDhcpDirectory ServicesDnsGitHcl AppscanIcmpInvictiOwasp Top 10PowershellPythonSans Top 25Secure SdlcTcp/IpWebinspect

What you need to know about the Hyderabad Tech Scene

Because of its proximity to leading research institutions and a government committed to the city's growth, Hyderabad's tech scene is booming. With plans to establish India's first "AI city," the city is on track to become one of the world's most anticipated tech hubs, with companies like TransUnion, Schrödinger and Freshworks, among others, already calling the city home.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account