NopalCyber Logo

NopalCyber

Senior Security Engineer

Posted One Month Ago
Be an Early Applicant
In-Office
Hyderabad, Telangana, IND
Senior level
In-Office
Hyderabad, Telangana, IND
Senior level
Deploys and engineers SIEM, EDR/XDR, SOAR, DLP, firewall, IAM, cloud, and zero-trust security platforms for MSSP/MXDR operations. Responsibilities include log onboarding, detection engineering, incident-response automation, endpoint and network hardening, cloud security, customer architecture workshops, technical presales support, platform monitoring, documentation, and Python-based automation. The role requires leading engineering initiatives and delivering production-grade security solutions across multi-tenant environments.
The summary above was generated by AI

Role Overview

We are looking for a hands-on Security Platform Engineer to deploy, manage, and continuously improve the security infrastructure that underpins our MXDR / MSSP operations. The role covers the full stack from endpoint and network security to SIEM engineering and detection engineering and is suited for someone who is equally comfortable hardening a Windows or Linux server, tuning firewall rules, and building detection logic in a SIEM.

The ideal candidate will have strong expertise across SIEM platforms, cloud and network security, zero trust architecture, and automation, with the ability to lead engineering initiatives and deliver production-grade security solutions.

Key Responsibilities

–         Deploy and administer SIEM platforms, including designing and delivering solutions to customers.

–         Own the log onboarding lifecycle – log source integration, parsing, normalization, enrichment, and storage optimization across multi-tenant environments.

–         Deliver and Manage EDR and XDR platforms include deployment, policy configuration, agent management, and health monitoring.

–         Participate in customer workshops, architecture reviews, and prepare HLD and LLD documents for finalized architecture.

–         Support pre-sales teams in solution, technical discussions, and proposal responses

–         Build and maintain detection content - correlation rules, use cases, and UEBA models aligned to MITRE ATT&CK

–         Develop and maintain SOAR playbooks for automated alert triage, containment, and response workflows.

–         Administer and tune DLP policies; investigate DLP incidents and work with business teams to reduce false positives while protecting sensitive data.

–         Deploy, harden, and maintain security controls across Windows and Linux environments, including patch management, OS-level hardening, and access control.

–         Deploy, manage and administer firewall platforms (NGFW) - including policy creation, rule review, traffic analysis, and periodic audits.

–         Configure and support VPN solutions for secure remote and site-to-site connectivity.

–         Extend security controls to cloud environments (AWS, Azure, GCP) including cloud-native security services, IAM governance, and network security groups.

–         Deploy and administer any IAM Solution to manager privileged accounts and access policies

–         Support Zero Trust and ZTNA implementations for secure application access

–         Monitor platform health, manage SLAs, and drive capacity and cost-efficiency improvements

–         Maintain engineering run books, SOPs, and platform documentation.

–         Write and maintain automation scripts (Python, REST APIs) to streamline platform operations, integrations, and reporting

What We’re Looking For:

–       Experience working in an MSSP & MXDR operational environment.

–       5+ years of hands-on experience in security infrastructure and platform engineering.

–       Proven experience deploying and administering firewall platforms (NGFW) and DLP solutions in enterprise environments.

–       Hands-on SIEM Deployment and engineering experience with at least two platforms (Wazuh, Sentinel, Securonix, QRadar, CrowdStrike SIEM, or Chronicle).

–       Experience deploying and managing any of EDR/XDR platforms — SentinelOne, CrowdStrike Falcon, or Microsoft Defender.

–       Solid detection engineering skills - writing correlation rules, use cases, and tuning alerts based on MITRE ATT&CK.

–       Scripting ability in Python or equivalent for automation and platform integration tasks.

–       Familiarity with SOAR platforms and incident response automation

–       Understanding of cloud security fundamentals across AWS, Azure, or GCP.

–       Having relevant cloud security (Azure, AWS, GCP) and tool expertise certifications will be an added advantage

Key Competencies

-          Strong problem-solving and analytical thinking

-          Ability to lead engineering initiatives and mentor teams

-          Excellent communication and stakeholder management skills

-          Passion for automation, innovation, and continuous improvement



Similar Jobs

11 Days Ago
In-Office
Hyderabad, Telangana, IND
Senior level
Senior level
HR Tech
Designs and maintains secure authentication and authorization for enterprise SaaS applications. Develops full-stack features with Python, Django, React, and GraphQL; performs threat modeling, secure design and code reviews; identifies vulnerabilities; and creates scalable AWS security controls. The role partners with engineering, architecture, product, and security teams to embed secure development practices, document risks, establish reusable guardrails, and mentor engineers. This is a 100% in-office position.
Top Skills: Amazon S3Aws LambdaDjangoGraphQLPythonReact
17 Days Ago
Easy Apply
Remote or Hybrid
India
Easy Apply
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
Leads cybersecurity data-source onboarding and integration for Zscaler’s security platform. Builds and automates Python/API-based data transformations, maps and normalizes security data, manages pipeline lifecycle activities, troubleshoots data quality, and identifies security gaps. Partners with cybersecurity SMEs and cross-functional teams to create implementation plans, communicate technical findings, and provide product improvement feedback. The role requires expertise in security platforms, diverse security-tool integrations, data modeling, SQL, and Python.
Top Skills: Ai/MlAPIsCloud LogsCmdbCnappCspmEdrPythonSIEMSQLUnified Vulnerability Management
16 Days Ago
In-Office
Hyderabad, Telangana, IND
Senior level
Senior level
eCommerce • Fashion • Retail • Sports
Protect Fanatics’ global e-commerce and API platforms across CDN, WAF, DNS, and networking layers. Lead perimeter incident response, threat detection, traffic analysis, rule tuning, bot mitigation, automation, and on-call operations. Build SOAR workflows and AI/agentic capabilities with appropriate validation, access controls, audit logging, and safety guardrails. Collaborate with engineering, SRE, SOC, and infrastructure teams to improve reliability, observability, and edge security.
Top Skills: Akamai CdnAkamai WafAWSAws WafBashCi/CdClaudeCloudflareDnsFastlyGoHttp/SIamImpartImpervaInfrastructure-As-CodeJIRAKubernetesLlmsMcpN8NPythonSoarSplunkTinesTlsTorq

What you need to know about the Hyderabad Tech Scene

Because of its proximity to leading research institutions and a government committed to the city's growth, Hyderabad's tech scene is booming. With plans to establish India's first "AI city," the city is on track to become one of the world's most anticipated tech hubs, with companies like TransUnion, Schrödinger and Freshworks, among others, already calling the city home.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account