Empower

Lead Engineer Security

Empower Bengaluru, Karnataka, India

Financial Services · 10,001+ employees

19 h ago Closes in 4d
Remote Senior (5-10 yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Lead Security Engineer is responsible for managing enterprise network and cloud security across Palo Alto Networks, proxy, WAF, and AWS/Azure environments. This role involves leading security operations, incident response, advanced troubleshooting, and providing technical mentorship to the engineering team.

What they look for

Palo Alto Networks Cloud Security Network Security WAF AWS Azure Incident Response Python Shell Scripting Firewall Management SSL/TLS Inspection IAM TCP/IP Root Cause Analysis Technical Mentoring Proxy Solutions

Requirements

Candidates must have a bachelor's degree in a related field and 8-10 years of IT experience, including at least 4 years of hands-on experience with Palo Alto Networks and WAF solutions. Proficiency in cloud security, enterprise proxy administration, and scripting with Python or shell is required.

Benefits

Flexible work environment Internal mobility Well-being support Work-life balance Inclusive environment Volunteering opportunities

Full description

Our vision for the future is based on the idea that transforming financial lives starts by giving our people the freedom to transform their own. We have a flexible work environment, and fluid career paths. We not only encourage but celebrate internal mobility. We also recognize the importance of purpose, well-being, and work-life balance. Within Empower and our communities, we work hard to create a welcoming and inclusive environment, and our associates dedicate thousands of hours to volunteering for causes that matter most to them.

Chart your own path and grow your career while helping more customers achieve financial freedom. Empower Yourself.

Lead Security Engineer

The Lead Security Engineer is a hands-on technical lead responsible for enterprise network and cloud security across Palo Alto Networks, proxy, WAF, and AWS/Azure environments. This role leads security operations, advanced troubleshooting, incident response, root cause analysis, security implementation, and technical mentoring.

What You Will Do

  • Lead Palo Alto Networks firewall operations, configuration, advanced troubleshooting, incident response, escalations, and root cause analysis, including App-ID, User-ID, Threat Prevention, content filtering, and Prisma Access.
  • Implement and troubleshoot enterprise proxy solutions, including policy configuration, SSL/TLS inspection, authentication integration, and incident resolution.
  • Deploy, configure, and support WAF solutions, including Web ACLs, rule tuning, log analysis, false-positive management, attack investigation, and emergency blocking.
  • Lead AWS or Azure cloud security and network troubleshooting, including IAM, Security Groups/NSGs, NACLs, VPC/VNet routing, VPNs, peering, WAF, logging, and key management.
  • Lead security incidents, evaluate security controls, recommend remediation, and provide technical mentoring to security engineers.

What You Will Bring

  • Bachelor's degree in Information Technology, Computer Science, or a related field.
  • 8–10 years of information technology or related experience.
  • 4+ years of hands-on Palo Alto Networks firewall experience, including operations, configuration, advanced troubleshooting, incident response, escalations, and root cause analysis.
  • Preferred for Palo Alto Networks certification.
  • AWS or Azure experience, including cloud security and network troubleshooting.
  • 4+ years of WAF experience, including deployment, configuration, operations, troubleshooting, rule tuning, and incident handling.
  • Hands-on enterprise proxy security experience, including implementation, policy administration, SSL/TLS inspection, authentication integration, configuration changes, and troubleshooting.
  • Strong experience with Palo Alto Networks, Prisma Access, IDS/IPS, WAF, IAM, Security Groups/NSGs, NACLs, VPC/VNet, VPN, network peering, TCP/IP, and SSL/TLS.
  • Experience with cloud security technologies such as GuardDuty, Security Hub, Microsoft Defender for Cloud, CloudTrail/Activity Logs, and KMS/Key Vault, as applicable to AWS or Azure.
  • 3+ years of programming/scripting experience with Python and shell scripting.
  • Ability to participate in a 24x7 on-call rotation.

We are an equal opportunity employer with a commitment to diversity.  All individuals, regardless of personal characteristics, are encouraged to apply.  All qualified applicants will receive consideration for employment without regard to age, race, color, national origin, ancestry, sex, sexual orientation, gender, gender identity, gender expression, marital status, pregnancy, religion, physical or mental disability, military or veteran status, genetic information, or any other status protected by applicable state or local law.