
Cyber Security Engineer – Infrastructure
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in India.
• Assist in the annual SOC 2 Type II audit program for the organization, which encompasses control design, evidence gathering, remediation management, auditor collaboration, and ongoing compliance monitoring.
• Collaborate with business and technology partners to establish security, availability, confidentiality, and change management controls.
• Maintain an environment that is always ready for audits while enhancing internal controls.
• Create and manage policies, procedures, risk assessments, and documentation related to controls.
• Oversee and optimize the Microsoft Sentinel SIEM.
• Design security monitoring, analytics rules, alerting systems, dashboards, and automation workflows.
• Examine security incidents and manage containment, remediation, and recovery efforts.
• Monitor and react to threats utilizing Microsoft Defender, Sentinel, AWS security services, and third-party platforms.
• Execute threat hunting, vulnerability management, and security assessments.
• Lead incident response efforts and manage forensic investigations.
• Keep security documentation, playbooks, and response protocols up to date.
• Assist with penetration testing, tabletop exercises, and disaster recovery evaluations.
• Design and sustain secure environments within Microsoft Azure.
• Apply Azure security best practices through Entra ID, Conditional Access, PIM, Defender for Cloud, Azure Security Center, and Microsoft Purview.
• Safeguard AWS cloud environments using IAM, CloudTrail, GuardDuty, Security Hub, Config, and CloudWatch.
• Enforce zero-trust security principles across cloud platforms.
• Support and maintain hybrid infrastructure that includes Azure, AWS, Active Directory, Entra ID, Windows Server, virtualization platforms, Microsoft 365, and network/security appliances.
• Design and implement solutions for high availability and disaster recovery.
• Oversee identity lifecycle management and privileged access controls.
• Assist with cloud migrations and infrastructure modernization initiatives.
• Lead technical compliance efforts related to SOC 2 Type II audits.
• Work alongside external auditors and internal stakeholders.
• Develop and manage security controls and evidence repositories.
• Conduct access reviews, risk assessments, and control evaluations.
• Provide recommendations for addressing audit findings and security vulnerabilities.
• Support compliance with regulatory and contractual security obligations.
• Create security automation solutions using PowerShell, Azure Automation, Logic Apps, and Sentinel SOAR.
• Enhance automated detection, response, and reporting processes.
• Generate executive and operational cybersecurity metrics and dashboards.
• A Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field is preferred.
• 3-5+ years of experience in cybersecurity and infrastructure engineering.
• At least 3 years of experience managing Microsoft Azure environments.
• A minimum of 2 years administering Microsoft Sentinel or similar SIEM platforms.
• Experience with SOC 2 Type II audits is required.
• Experienced in securing AWS cloud environments.
• Familiarity with incident response and vulnerability management.
• Knowledge of Microsoft 365 security technologies.
• Proficient in Microsoft Azure.
• Skilled in Microsoft Sentinel.
• Knowledgeable in Microsoft Defender Suite.
• Experienced with Microsoft Entra ID (Azure AD).
• Proficient in Active Directory.
• Familiar with Microsoft 365 Security.
• Experienced in AWS Security Services.
• Proficient in PowerShell scripting.
• Knowledgeable in Vulnerability Management Platforms.
• Familiar with Incident Response Procedures.
• Experienced in Security Monitoring and SIEM Operations.
• Understanding of Network Security Fundamentals.
• Skilled in Firewall Administration.
• Preferred: Knowledge of Microsoft Purview, Microsoft Defender XDR, Terraform, Infrastructure as Code, Intune, DLP Technologies, Security Automation and SOAR, Compliance Management Platforms.
• Preferred certifications include SC-100, SC-200, SC-300, AZ-500, AZ-104, AWS Certified Security Specialty, CISSP, CISM, GIAC Certifications, and Security+.
• Fully Remote.
• Participation in an on-call rotation for security incidents and critical infrastructure support.
Tailscale
Adzuna
Webflow
Coinbase
Get handpicked remote jobs straight to your inbox weekly.