Rapyuta Robotics

IT Security & Compliance Engineer

Rapyuta Robotics Chennai, Tamil Nadu, India

Automation Machinery Manufacturing · 201-500 employees

6 h ago
Senior (5-10 yrs) Full-time India
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The role involves managing cybersecurity operations, cloud security, and compliance initiatives while responding to security incidents. You will also lead security governance, perform risk assessments, and maintain network and endpoint security controls.

What they look for

Cybersecurity ISO 27001 NIST Cybersecurity Framework Microsoft 365 Security Identity & Access Management Vulnerability Management Incident Response Endpoint Protection Cloud Security Risk Management DevSecOps Network Security SIEM Compliance Security Architecture Threat Hunting

Requirements

Candidates must hold a bachelor's degree in a relevant field and possess extensive experience in security operations and compliance frameworks like ISO 27001. Proficiency in Microsoft 365 security, vulnerability management, and identity access management is essential for this position.

Benefits

Competitive salary Great team culture

Full description

We are committed to our core value of "Empathy," aiming to automate "demanding," "dirty," and "dangerous" jobs, and create a society where people can engage in more intellectual and creative work. By developing and supporting the implementation and operation of robotics platforms and robot solutions utilizing the world's most advanced control and coordination technologies, we strive to realize this vision.  

Role Overview  

We are looking for an experienced IT Security & Compliance Engineer to manage the organization's cybersecurity operations, cloud security, compliance initiatives, and security governance. The ideal candidate should have hands-on experience in security operations, Microsoft 365 security, vulnerability management, endpoint protection, identity & access management, and ISO/NIST compliance frameworks. 

Key Responsibilities  

  • Monitor, investigate, and respond to security incidents, threats, malware, phishing, and ransomware attacks through Security Operations (SOC).  
  • Lead security compliance enablement aligned with ISO 27001 and the NIST Cybersecurity Framework, including risk assessments, internal audits, policy management, vendor security reviews, and security awareness programs. (As the company already possess ISO, the defined compliances to be enabled across organization. NIST is in working) 
  • Administer and secure Microsoft 365 environments, including Microsoft Entra ID, Conditional Access, MFA, Microsoft Defender, Purview, DLP, email security, and audit monitoring.  
  • Manage endpoint security solutions, EDR platforms, device compliance, encryption, and vulnerability remediation.  
  • Conduct vulnerability assessments, coordinate penetration testing, manage patching, and track remediation activities.  
  • Implement and maintain network security controls, including firewalls, VPNs, IDS/IPS, DNS security, and network segmentation.   
  • Manage Identity & Access Management (IAM), including RBAC, privileged access management, user lifecycle management, and periodic access reviews.  
  • Perform security architecture reviews, application security assessments, cloud security reviews, secure configuration management, and support DevSecOps initiatives.  
  • Maintain security documentation, risk registers, and ensure continuous improvement of the organization's security posture. 

Minimum Requirements  

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field. 

Security Operations: Incident Response & Root Cause Analysis, Threat Hunting, SIEM Monitoring, Malware & Phishing Response

Microsoft 365 Security: Microsoft Entra ID (Azure AD), Conditional Access & MFA, Microsoft Defender Suite, Microsoft Purview, Data Loss Prevention (DLP), Exchange Online Security, Secure Score Management

Endpoint & Infrastructure Security: Microsoft Defender/CrowdStrike, Endpoint Detection & Response (EDR), BitLocker/FileVault, Patch & Vulnerability Management

Compliance & Governance: ISO 27001, NIST Cybersecurity Framework, Risk Management, Internal & External Audits, Security Policies & Awareness, Vendor Risk Assessment

Identity & Access Management: RBAC, Privileged Access Management (PAM), Access Reviews, Joiner-Mover-Leaver (JML) Process

Security Engineering: Secure SDLC, Security Architecture Reviews, Cloud Security Assessments, Secure Configuration Management, DevSecOps Support

SIEM Platforms: Microsoft Sentinel, Splunk, IBM QRadar, LogRhythm, Elastic SIEM

Vulnerability Management: Qualys, Nessus, Rapid7 InsightVM, OpenVAS

Email Security: Exchange Online, Microsoft Defender for Office 365, SPF, DKIM, DMARC, Anti-Phishing Policies

Security Assessment Tools: Nmap, Wireshark, Burp Suite, OWASP ZAP, Metasploit

Preferred Certifications: ISO 27001 Lead Implementer/Lead Auditor, Microsoft Certified: Cybersecurity Architect Expert/Security Administrator, CompTIA Security+, CISSP, CEH, SC-200, SC-300, AZ-500.

  • Exciting and challenging problems are addressed using wide-ranging technologies and tools. 
  • Competitive salary 
  • Great team culture, peers and workplace