16 Sep
|
HCLSoftware
|
Bengaluru
16 Sep
HCLSoftware
Bengaluru
About the Role /n HCL Software is seeking a Security Engineer to build, deploy, and operate the controls that protect /n our enterprise and cloud estate.
This is a builder role: you will spend your time in configuration, /n code, and integration work rather than in documents about future state. /n You will own security platforms end to end, from design and rollout through tuning, automation, and /n day-to-day health. /n You will work closely with SOC, Vulnerability Management, IT, and cloud engineering teams, and /n you will be expected to leave the environment measurably better instrumented than you found it. /n Key Responsibilities /n Security Control Engineering /n • Deploy, configure, and maintain core security platforms including EDR, email security, secure /n service edge, cloud security posture management, and identity controls. /n • Design control rollouts that account for coverage gaps, exception handling, performance /n impact, and rollback. /n • Integrate security tooling with the SIEM and SOAR estate so telemetry and response actions /n are usable, not just collected. /n • Own control health monitoring: agent coverage, policy drift, failed enforcement, and silent /n failure detection. /n Cloud and Infrastructure Security /n • Implement and maintain guardrails across AWS, Azure, and GCP, including preventative policy, /n posture monitoring, and remediation workflows. /n • Build and maintain hardened baselines for operating systems, containers, and cloud services /n aligned to CIS or equivalent benchmarks. /n • Engineer secrets management, key management, and certificate lifecycle controls in /n partnership with platform teams. /n • Support secure network design implementation including segmentation, egress control, and /n remote access.
/n Automation and Engineering Practice /n • Automate repetitive security operations work through scripting, APIs, and infrastructure as /n code. /n • Treat security configuration as code: version control, peer review, testing, and repeatable /n deployment. /n • Build and maintain integrations between security, IT, and engineering systems so data flows /n without manual handling. /n • Write and maintain documentation and runbooks good enough that someone else can operate /n what you built. /n Operations Support and Remediation /n • Support incident response with rapid control changes, containment actions, and forensic data /n collection. /n • Partner with Vulnerability Management to engineer remediation at scale rather than ticket by /n ticket. /n /n
- Participate in an on-call rotation for security platform issues and high-severity incidents.
/n
- Contribute to control evidence collection for audit and customer assurance activity.
/n /n AI Security Engineering /n • Implement security guardrails for internal AI/LLM systems, including protections against prompt /n injection, model poisoning, and unauthorized data exfiltration. /n • Maintain and secure the enterprise AI infrastructure, ensuring secure configuration of Agentic /n AI and model serving environments. /n • Develop and support automation workflows that leverage AI/ML for security operations, such as /n automated incident triage and investigation. /n • Monitor and audit AI tool usage,
ensuring adherence to governance policies for non-human /n identities and autonomous agents. /n • Stay current on emerging threats to AI systems and adapt security controls to defend against /n AI-assisted attack vectors. /n Required Qualifications. /n • 5+ years in security engineering, infrastructure engineering with a security focus, or a closely /n related hands-on role. /n • Demonstrated ownership of at least two enterprise security platforms end to end, including /n deployment, tuning, and ongoing operation. /n • Robust cloud security engineering experience in at least one major provider, including native /n security services and policy enforcement. /n • Practical scripting and automation skill (Python, PowerShell, Go, or equivalent) and comfort /n working against vendor APIs. /n • Solid grounding in operating system internals, networking, and identity protocols such as /n SAML, OIDC, and OAuth. /n /n
- Experience with infrastructure as code and version-controlled configuration workflows.
/n
- Troubleshooting discipline: able to isolate root cause in complex environments without
/n /n guessing. /n Preferred Qualifications /n /n
- Experience supporting a SIEM migration or large-scale telemetry pipeline rebuild.
/n
- Container and Kubernetes security engineering experience.
/n
- Background in a software or product company with both corporate IT and production cloud
/n /n environments in scope. /n /n
- Detection engineering exposure, including writing and testing detection content.
/n
- Experience building security automation with SOAR platforms or custom orchestration.
/n
- Certifications valued but not required: cloud security certifications (AWS, Azure, GCP), GCED,
/n /n GCIA, GDSA, or CISSP.
📌 Senior Security Engineer (Bengaluru)
🏢 HCLSoftware
📍 Bengaluru