15 Sep
|
HCLSoftware
|
Bengaluru
15 Sep
HCLSoftware
Bengaluru
About the Role
nHCL Software is seeking a Security Engineer to build, deploy, and operate the controls that protect
nour enterprise and cloud estate. This is a builder role: you will spend your time in configuration,
ncode, and integration work rather than in documents about future state.
nYou will own security platforms end to end, from design and rollout through tuning, automation, and
nday-to-day health.
nYou will work closely with SOC, Vulnerability Management, IT, and cloud engineering teams, and
nyou will be expected to leave the environment measurably better instrumented than you found it.
nKey Responsibilities
nSecurity Control Engineering
n• Deploy, configure, and maintain core security platforms including EDR, email security, secure
nservice edge, cloud security posture management, and identity controls.
n• Design control rollouts that account for coverage gaps, exception handling, performance
nimpact, and rollback.
n• Integrate security tooling with the SIEM and SOAR estate so telemetry and response actions
nare usable, not just collected.
n• Own control health monitoring: agent coverage, policy drift, failed enforcement, and silent
nfailure detection.
nCloud and Infrastructure Security
n• Implement and maintain guardrails across AWS, Azure, and GCP, including preventative policy,
nposture monitoring, and remediation workflows.
n• Build and maintain hardened baselines for operating systems, containers, and cloud services
naligned to CIS or equivalent benchmarks.
n• Engineer secrets management, key management, and certificate lifecycle controls in
npartnership with platform teams.
n• Support secure network design implementation including segmentation, egress control, and
nremote access.
nAutomation and Engineering Practice
n• Automate repetitive security operations work through scripting, APIs, and infrastructure as
ncode.
n• Treat security configuration as code: version control, peer review, testing, and repeatable
ndeployment.
n• Build and maintain integrations between security, IT, and engineering systems so data flows
nwithout manual handling.
n• Write and maintain documentation and runbooks good enough that someone else can operate
nwhat you built.
nOperations Support and Remediation
n• Support incident response with rapid control changes, containment actions, and forensic data
ncollection.
n• Partner with Vulnerability Management to engineer remediation at scale rather than ticket by
nticket.
n
n
- Participate in an on-call rotation for security platform issues and high-severity incidents.
n
- Contribute to control evidence collection for audit and customer assurance activity.
n
nAI Security Engineering
n• Implement security guardrails for internal AI/LLM systems, including protections against prompt
ninjection, model poisoning, and unauthorized data exfiltration.
n• Maintain and secure the enterprise AI infrastructure, ensuring secure configuration of Agentic
nAI and model serving environments.
n• Develop and support automation workflows that leverage AI/ML for security operations, such as
nautomated incident triage and investigation.
n• Monitor and audit AI tool usage,
ensuring adherence to governance policies for non-human
nidentities and autonomous agents.
n• Stay current on emerging threats to AI systems and adapt security controls to defend against
nAI-assisted attack vectors.
nRequired Qualifications.
n• 5+ years in security engineering, infrastructure engineering with a security focus, or a closely
nrelated hands-on role.
n• Demonstrated ownership of at least two enterprise security platforms end to end, including
ndeployment, tuning, and ongoing operation.
n• Solid cloud security engineering experience in at least one major provider, including native
nsecurity services and policy enforcement.
n• Practical scripting and automation skill (Python, PowerShell, Go, or equivalent) and comfort
nworking against vendor APIs.
n• Solid grounding in operating system internals, networking, and identity protocols such as
nSAML, OIDC, and OAuth.
n
n
- Experience with infrastructure as code and version-controlled configuration workflows.
n
- Troubleshooting discipline: able to isolate root cause in complex environments without
n
nguessing.
nPreferred Qualifications
n
n
- Experience supporting a SIEM migration or large-scale telemetry pipeline rebuild.
n
- Container and Kubernetes security engineering experience.
n
- Background in a software or product company with both corporate IT and production cloud
n
nenvironments in scope.
n
n
- Detection engineering exposure, including writing and testing detection content.
n
- Experience building security automation with SOAR platforms or custom orchestration.
n
- Certifications valued but not required: cloud security certifications (AWS, Azure, GCP), GCED,
n
nGCIA, GDSA, or CISSP.
📌 Senior Security Engineer (Bengaluru)
🏢 HCLSoftware
📍 Bengaluru