Your browser does not support javascript! Please enable it, otherwise web will not work for you.

The Information Security Engineer @ Sutherland

Home > Software Development

 The Information Security Engineer

Job Description

Job Description


The Information Security Engineer is responsible for designing, implementing, and maintaining security solutions to protect the organization's information assets. This role involves identifying and mitigating security risks, conducting vulnerability assessments, responding to security incidents, and ensuring compliance with relevant security standards and regulations. The ideal candidate will possess a deep understanding of security principles, technologies, and best practices.


Responsibilities:

Security Architecture and Design:

  • Design and implement security architecture and solutions that align with business requirements and security best practices.
  • Evaluate and recommend security technologies and tools.
  • Develop and maintain security policies, standards, and procedures.

Vulnerability Management:

  • Conduct vulnerability assessments and penetration testing to identify security weaknesses.
  • Analyze and prioritize vulnerabilities and recommend remediation actions.
  • Manage vulnerability scanning tools and processes.

Security Monitoring and Incident Response:

  • Monitor security logs and alerts for suspicious activity.
  • Investigate and respond to security incidents in a timely and effective manner.
  • Develop and maintain incident response plans and procedures.
  • Implement and manage SIEM solutions.

Security Compliance:

  • Ensure compliance with relevant security standards and regulations (e.g., ISO 27001, NIST, PCI DSS, GDPR).
  • Conduct security audits and assessments.
  • Develop and maintain security documentation.

Security Awareness and Training:

  • Develop and deliver security awareness training to employees.
  • Promote a culture of security awareness throughout the organization.

Threat Intelligence:

  • Stay up-to-date on the latest security threats and vulnerabilities.
  • Analyze threat intelligence data to identify potential risks.
  • Proactively hunt for threats within the environment.

Security Tool Management:

  • Implement and manage security tools, including firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint protection, and security information and event management (SIEM) systems.
  • Manage and configure endpoint detection and response(EDR) systems.

Cloud Security:

  • Implement and manage security within cloud environments (AWS, Azure, GCP).
  • Implement and manage cloud security posture management (CSPM) tools.

Automation:

  • Automate security tasks using scripting and orchestration tools.

Qualifications:

  • Education: Bachelors degree in computer science, Information Security, or a related field. Relevant industry certifications (e.g., CISSP, CISM, CEH, CompTIA Security+) are highly desirable.
  • Experience: 10 years of experience in information security.

Technical Skills:

  • Strong understanding of security principles, technologies, and best practices.
  • Experience with vulnerability assessment and penetration testing tools.
  • Knowledge of security standards and regulations.
  • Experience with security monitoring and incident response.
  • Proficiency in security tools and technologies (firewalls, IDS/IPS, SIEM, endpoint protection).
  • Experience with cloud security (AWS, Azure, GCP).
  • Experience with scripting languages such as Python, or Bash.
  • Knowledge of network protocols and operating systems.

Soft Skills:

  • Excellent problem-solving and analytical skills.
  • Strong communication and interpersonal skills.
  • Ability to work independently and as part of a team.
  • Ability to prioritize and manage multiple tasks.
  • Strong attention to detail.

Preferred Qualifications:

  • Experience with specific industry regulations (e.g., PCI DSS, HIPAA, GDPR).
  • Experience with threat intelligence platforms.
  • Experience with security automation and orchestration.
  • Experience with DevSecOps.
  • Experience with Zero Trust Architectures.

Additional information

All your information will be kept confidential according to EEO guidelines.


Job Classification

Industry: IT Services & Consulting
Functional Area / Department: Engineering - Software & QA,
Role Category: Software Development
Role: Technical Architect
Employement Type: Full time

Contact Details:

Company: Sutherland
Location(s): Hyderabad

+ View Contactajax loader


Keyskills:   security architecture firewall security tools ids AWS Azure GCP siem ips Endpoint Protection

 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Software Engineer III

  • JPMorgan Chase Bank
  • 0 - 5 years
  • Hyderabad
  • 1 day ago
₹ Not Disclosed

Lead Software Engineer - React, Node.js, Java

  • JPMorgan Chase Bank
  • 0 - 7 years
  • Bengaluru
  • 1 day ago
₹ Not Disclosed

Software Engineering - Application Developer

  • Trigent Software
  • 6 - 10 years
  • Bengaluru
  • 1 day ago
₹ 50,000-3 Lacs P.A.

Data Engineer-Data Platforms

  • IBM
  • 3 - 5 years
  • Mumbai
  • 2 days ago
₹ Not Disclosed

Sutherland

Sutherland Established in 1986, Sutherland Global Services is a global provider of business process and technology management services. Sutherland offers an integrated portfolio of analytics-driven back-office and customer facing solutions that support the entire customer lifecycle. One of the l...