Senior Software Engineer, Information Security
Icertis Pune, Maharashtra, India
Software Development · 1,001-5,000 employees
About the role
The role involves designing, implementing, and supporting enterprise security solutions across cloud, endpoint, email, and SIEM platforms. You will also be responsible for developing detection and automation capabilities while collaborating with cross-functional teams to mitigate cyber risks.
What they look for
Requirements
Candidates must have a bachelor's degree and 6–10 years of experience in information security or cybersecurity engineering. Strong hands-on experience with Microsoft security technologies, scripting languages, and vulnerability management tools is required.
Full description
We are seeking a Senior Software Engineer – Information Security to design, implement, and support enterprise security solutions across cloud security, endpoint security, email security, vulnerability management, and SIEM. The role is responsible for enhancing the organization's security posture by deploying and managing security technologies, developing detection and automation capabilities, investigating security incidents, and collaborating with cross-functional teams to mitigate cyber risks. The ideal candidate has strong hands-on experience with Microsoft security technologies, SIEM platforms, vulnerability management tools, scripting, and cloud security, along with a passion for building secure, resilient, and scalable security operations.
Responsibilities
Security Engineering
- Design, implement, and support enterprise security solutions that align with organizational security standards and industry best practices.
- Evaluate, deploy, configure, and optimize security technologies to strengthen detection, prevention, and response capabilities.
- Develop and maintain security architecture, technical standards, implementation documentation, and operational procedures.
- Provide advanced (Level 3) technical support for complex security platforms, incidents, and escalations.
Cloud Security
- Design and implement security controls across cloud platforms, including Microsoft Azure, AWS, and Google Cloud Platform (GCP).
- Configure and manage cloud-native security solutions such as Microsoft Defender for Cloud, Microsoft Entra ID, Conditional Access, and workload protection services.
- Perform cloud security assessments, identify risks, and recommend remediation strategies.
- Partner with infrastructure and application teams to support secure cloud adoption and architecture reviews.
Endpoint Security
- Administer and optimize enterprise endpoint protection and EDR/XDR platforms, including Microsoft Defender for Endpoint or equivalent solutions.
- Develop and maintain endpoint security policies covering malware protection, device control, attack surface reduction, and endpoint hardening.
- Investigate endpoint security events, coordinate remediation efforts, and improve overall endpoint security posture.
Email Security
- Manage enterprise email security platforms, including Microsoft Defender for Office 365 or comparable secure email gateways.
- Configure and maintain email protection technologies, including anti-phishing, anti-malware, Safe Links, Safe Attachments, SPF, DKIM, and DMARC.
- Investigate email-based threats and phishing campaigns while continuously enhancing email security controls.
Vulnerability Management
- Administer enterprise vulnerability management platforms such as Microsoft Defender Vulnerability Management, Tenable, Qualys, or Nessus.
- Conduct vulnerability assessments, validate remediation activities, and prioritize findings based on business risk and exploitability.
- Produce vulnerability metrics, dashboards, and executive-level reporting.
- Collaborate with infrastructure, cloud, and application teams to ensure timely remediation of identified vulnerabilities.
SIEM, Threat Detection & Security Monitoring
- Configure, maintain, and optimize SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or equivalent technologies.
- Develop and tune detection rules, analytics, KQL queries, dashboards, workbooks, and threat detection use cases.
- Integrate security telemetry from cloud, identity, endpoint, network, and application sources.
- Support security incident investigations, threat hunting, and forensic analysis activities.
- Develop and maintain automation and orchestration workflows using SOAR technologies to improve operational efficiency and incident response.
Collaboration & Continuous Improvement
- Collaborate with cross-functional IT, infrastructure, cloud, and application teams to implement secure solutions and drive security initiatives.
- Identify opportunities to automate security operations, improve processes, and enhance platform performance.
- Stay current with emerging cybersecurity threats, technologies, and industry best practices, recommending improvements to strengthen the organization's security posture.
Qualifications
Required Qualifications
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- 6–10 years of experience in Information Security, Cybersecurity Engineering, or a related security engineering role.
- Strong experience designing, implementing, and supporting enterprise security solutions within Microsoft-centric environments.
- Hands-on experience across multiple security domains, including cloud security, endpoint security, email security, vulnerability management, and SIEM/SOAR platforms.
- Experience with scripting and automation using PowerShell, Python, or similar languages.
- Solid understanding of networking, operating systems, identity and access management, authentication protocols, and security architecture principles.
- Experience integrating security solutions using REST APIs, Microsoft Graph API, or other enterprise integration technologies.
- Strong analytical, troubleshooting, and problem-solving skills with the ability to manage complex technical issues.
- Excellent written and verbal communication skills with the ability to collaborate effectively across technical and business teams.
Preferred Certifications
Candidates with one or more of the following Microsoft certifications are preferred:
- Microsoft Certified: Cybersecurity Architect Expert (SC-100)
- Microsoft Certified: Security Operations Analyst Associate (SC-200)
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
- Microsoft Certified: Information Protection Administrator Associate (SC-400)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
Preferred Technical Skills
Experience with one or more of the following technologies is highly desirable:
Microsoft Security
- Microsoft Sentinel
- Microsoft Defender XDR
- Microsoft Defender for Endpoint
- Microsoft Defender for Office 365
- Microsoft Defender for Cloud
- Microsoft Entra ID
- Microsoft Purview
- Microsoft Intune
Cloud Security
- Microsoft Azure Security
- AWS Security Services
- Google Cloud Security
Security Operations & Automation
- SIEM/SOAR platforms
- Kusto Query Language (KQL)
- PowerShell
- Python
- Azure Logic Apps
- Microsoft Graph API
- REST APIs
Vulnerability Management & Frameworks
- Microsoft Defender Vulnerability Management (MDVM)
- Qualys
- Tenable
- Nessus
- MITRE ATT&CK Framework
- NIST Cybersecurity Framework
Icertis is the global leader in AI-powered contract intelligence. The Icertis platform revolutionizes contract management, equipping customers with powerful insights and automation to grow revenue, control costs, mitigate risk, and ensure compliance - the pillars of business success. Today, more than one third of the Fortune 100 trust Icertis to realize the full intent of millions of commercial agreements in 90+ countries.
Who we are: Icertis is the only contract intelligence platform companies trust to keep them out in front, now and in the future. Our unwavering commitment to contract intelligence is grounded in our FORTE values—Fairness, Openness, Respect, Teamwork and Execution—which guide all our interactions with employees, customers, partners, and stakeholders. Because in our mission to be the contract intelligence platform of the world, we believe how we get there is as important as the destination.
Icertis, Inc. provides Equal Employment Opportunity to all employees and applicants for employment without regard to race, color, religion, gender identity or expression, sex, sexual orientation, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. Icertis, Inc. complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. If you are in need of accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to careers@icertis.com or get in touch with your recruiter.