Cybersecurity Engineer
Job Summary
About the Role:
The Cybersecurity Engineer is responsible for designing implementing and maintaining the technical security controls and infrastructure required to protect organizational assets. The role is heavily focused on threat detection and response vulnerability management endpoint protection and incident response readiness in both BYOD and corporate environments.
Responsibilities:
- Threat Detection and Response
- Deploy configure and maintain SIEM EDR and SOC tooling or services. - Develop detection rules correlation logic and custom alerts. - Investigate and respond to alerts and incidents with root cause analysis and remediation. - Integrate threat intelligence feeds and tune detection capabilities.
- Vulnerability Management and Red Teaming
- Conduct automated and manual vulnerability scans. - Integrate vulnerability management into CI/CD and patch workflows. - Develop and execute red/purple team assessments and simulations. - Collaborate with IT teams on remediation and validation.
- Security Incident Response and Breach Readiness
- Develop and maintain incident response plans and runbooks. - Act as first responder for major incidents including triage and coordination. - Implement forensic tooling and logging for investigation. - Lead post-incident reviews and develop lessons learned.
- Endpoint Protection and BYOD Security
- Deploy and manage endpoint protection across Windows macOS and mobile platforms. - Implement host-based firewalls anti-malware disk encryption and device hardening policies. - Manage BYOD security policies and compliance monitoring.
- Security Engineering and Compliance Support
- Automate security workflows using scripts APIs and orchestration platforms. - Assist in compliance readiness efforts (ISO 27001 SOC 2 PCI DSS HIPAA). - Develop technical documentation and assist in audit evidence collection. - Provide technical guidance to other teams and stakeholders.
Looking For
- 4 years of experience in Security Engineering SOC Operations Incident Response or Cybersecurity Operations.
- Strong hands-on experience with security monitoring threat detection vulnerability management and incident response.
- Experience working in enterprise security environments with cloud and endpoint security responsibilities
Mandatory Skills:
A. Technical Skills
- Hands-on experience with SIEM (e.g. Splunk Sentinel) EDR (e.g. CrowdStrike Defender) and vulnerability scanners.
- Proficiency in scripting (e.g. Python PowerShell) and security tool integrations.
- Strong understanding of Windows Linux and cloud (AWS/Azure) security.
B. Soft Skills
- Strong analytical and problem-solving skills.
- Excellent communication and documentation abilities.
- Stakeholder management and collaboration skills.
- Ability to work in high-pressure incident response situations.
- Attention to detail and continuous improvement mindset.
Good to Have Skills:
- Certifications such as OSCP GCIA GCIH or CISSP.
- Experience with red team tooling (e.g. Cobalt Strike Metasploit).
- Knowledge of MITRE ATT&CK and threat hunting techniques.
- Familiarity with security orchestration automation and response (SOAR) tools.
Qualifications :
- Bachelors degree in Cybersecurity Computer Science Information Technology or a related discipline.
- Equivalent practical experience may be considered in lieu of formal education.
Additional Information :
Must work EST hours - 6:30 PM IST to 3:30 AM IST
Remote Work :
No
Employment Type :
Full-time
About Company
BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the ... View more