Job Purpose
Responsible for supporting the design, implementation, and governance of enterprise cybersecurity controls to protect the organization's applications, infrastructure, cloud environments, networks, and information assets. Conducts security architecture reviews, evaluates identity and access management controls, administers network and endpoint security technologies, performs third-party and cloud security assessments, and supports threat monitoring, incident response, and compliance activities. Collaborates with cross-functional teams to embed security-by-design principles into projects, strengthen the organization's security posture, ensure regulatory and policy compliance, and support the secure delivery of business and technology initiatives.
Key Result Responsibilities
Conduct security architecture reviews for current applications, SaaS platforms, APIs, cloud services, integrations, and infrastructure changes.
Review application data flows, authentication, authorization, encryption, logging, secrets management, retention, and third-party integrations.
Assess security controls including SSO, MFA, RBAC, API security, WAF protection, session management, data masking, and audit logging.
Provide security approvals, remediation requirements, and risk-based recommendations.
Embed security-by-design principles and threat modeling into project and change processes.
Review Microsoft Entra ID application registrations, OAuth 2.0, OpenID Connect, SAML, Microsoft Graph API permissions, and service accounts.
Review privileged access, service accounts, application secrets, conditional access, MFA, and role-based access controls.
Enforce least-privilege and periodic access recertification across privileged and service identities.
Manage and maintain enterprise firewalls, VPNs, SD-WAN, routing, NAT, web filtering, application control, and IPsec tunnels.
Perform firewall health checks, firmware upgrades, rule reviews, policy optimization, and security hardening.
Trouble
📌 Security Engineer (Pune)
🏢 ISA
📍 Pune