15 Sep
|
HCLSoftware
|
Bengaluru
15 Sep
HCLSoftware
Bengaluru
Job Description
About the Role
n
HCL Software is seeking a Security Engineer to build, deploy, and operate the controls that protect
n
our enterprise and cloud estate. This is a builder role: you will spend your time in configuration,
n
code, and integration work rather than in documents about future state.
n
You will own security platforms end to end, from design and rollout through tuning, automation, and
n
day-to-day health.
n
You will work closely with SOC, Vulnerability Management, IT, and cloud engineering teams, and
n
you will be expected to leave the workplace measurably better instrumented than you found it.
n
Key Responsibilities
n
Security Control Engineering
n
• Deploy, configure, and maintain core security platforms including EDR, email security, secure
n
service edge, cloud security posture management, and identity controls.
n
• Design control rollouts that account for coverage gaps, exception handling, performance
n
impact, and rollback.
n
• Integrate security tooling with the SIEM and SOAR estate so telemetry and response actions
n
are usable, not just collected.
n
• Own control health monitoring: agent coverage, policy drift, failed enforcement, and silent
n
failure detection.
n
Cloud and Infrastructure Security
n
• Implement and maintain guardrails across AWS, Azure, and GCP, including preventative policy,
n
posture monitoring, and remediation workflows.
n
• Build and maintain hardened baselines for operating systems, containers, and cloud services
n
aligned to CIS or equivalent benchmarks.
n
• Engineer secrets management, key management, and certificate lifecycle controls in
n
partnership with platform teams.
n
• Support secure network design implementation including segmentation, egress control, and
n
remote access.
n
Automation and Engineering Practice
n
• Automate repetitive security operations work through scripting, APIs, and infrastructure as
n
code.
n
• Treat security configuration as code: version control, peer review, testing, and repeatable
n
deployment.
n
• Build and maintain integrations between security, IT, and engineering systems so data flows
n
without manual handling.
n
• Write and maintain documentation and runbooks good enough that someone else can operate
n
what you built.
n
Operations Support and Remediation
n
• Support incident response with rapid control changes, containment actions, and forensic data
n
collection.
n
• Partner with Vulnerability Management to engineer remediation at scale rather than ticket by
n
ticket.
n
n
- Participate in an on-call rotation for security platform issues and high-severity incidents.
n
- Contribute to control evidence collection for audit and customer assurance activity.
n
n
AI Security Engineering
n
• Implement security guardrails for internal AI/LLM systems, including protections against prompt
n
injection, model poisoning, and unauthorized data exfiltration.
n
• Maintain and secure the enterprise AI infrastructure, ensuring secure configuration of Agentic
n
AI and model serving environments.
n
• Develop and support automation workflows that leverage AI/ML for security operations, such as
n
automated incident triage and investigation.
n
• Monitor and audit AI tool usage,
ensuring adherence to governance policies for non-human
n
identities and autonomous agents.
n
• Stay current on emerging threats to AI systems and adapt security controls to defend against
n
AI-assisted attack vectors.
n
Required Qualifications.
n
• 5+ years in security engineering, infrastructure engineering with a security focus, or a closely
n
related hands-on role.
n
• Demonstrated ownership of at least two enterprise security platforms end to end, including
n
deployment, tuning, and ongoing operation.
n
• Strong cloud security engineering experience in at least one major provider, including native
n
security services and policy enforcement.
n
• Practical scripting and automation skill (Python, PowerShell, Go, or equivalent) and comfort
n
working against vendor APIs.
n
• Solid grounding in operating system internals, networking, and identity protocols such as
n
SAML, OIDC, and OAuth.
n
n
- Experience with infrastructure as code and version-controlled configuration workflows.
n
- Troubleshooting discipline: able to isolate root cause in complex environments without
n
n
guessing.
n
Preferred Qualifications
n
n
- Experience supporting a SIEM migration or large-scale telemetry pipeline rebuild.
n
- Container and Kubernetes security engineering experience.
n
- Background in a software or product company with both corporate IT and production cloud
n
n
environments in scope.
n
n
- Detection engineering exposure, including writing and testing detection content.
n
- Experience building security automation with SOAR platforms or custom orchestration.
n
- Certifications valued but not required: cloud security certifications (AWS, Azure, GCP), GCED,
n
n
GCIA, GDSA, or CISSP.
📌 Senior Security Engineer (Bengaluru)
🏢 HCLSoftware
📍 Bengaluru