01 Oct
|
HCL INDIA
|
Hyderabad
01 Oct
HCL INDIA
Hyderabad
INFRA OPERATIONS SECURITY ENGINEER JD
"The primary role involves security vulnerability remediation and platform security mitigation for a complex enterprise legacy application. They will work directly with two onshore resources. One full stack engineer and one security analyst who will act as the primary point of contact and coordinator for the effort.
We are seeking an experienced Infrastructure Operations Security Engineer to manage, secure, monitor, and optimize enterprise infrastructure environments. This role is responsible for maintaining the security posture of servers, cloud platforms, networks, and operational systems while ensuring high availability, compliance, performance, and incident response readiness.
We are seeking an experienced Infrastructure Operations Security Engineer to manage, secure, monitor, and optimize enterprise infrastructure environments. This role is responsible for maintaining the security posture of servers, cloud platforms, networks, and operational systems while ensuring high availability, compliance, performance, and incident response readiness.
There is a large scale legacy enterprise application comprised of 88 AIDE IDs which resides in a hybrid configuration over 4 cloud based instances and two full scale data centers. The data centers are planning a migration to a UHG data center and must immediately mitigate or remediate a number of critical, high, and medium vulnerabilities then maintain a viable/manageable framework score to operate day-to-day and move forward with the planned migration. The team does not have the bandwidth or specific expertise to manage vulnerabilities as well as manage the day-to-day requirements the application demands and must make immediate gains in hardening, remediating, and mitigating findings.
Findings range from operating system specific (Microsoft, Red Hat), vendor specific (Oracle, Cognizant, IBM, etc.),
and home grown code. Findings are derived from UHG approved sources such as Tanium/Tenable/Prisma and reports provide CVEs though some mitigation will require familiarity with .NET. Vulnerability mitigation is tracked using Jira.
Solid experience in operating system and infrastructure vulnerability management.
Expertise in Microsoft Windows Server and Red Hat Enterprise Linux (RHEL) administration.
Hands-on experience with vulnerability management tools:
Tanium
Tenable
Prisma Cloud
Qualys (or similar)
Proven experience performing
Security hardening
Patch management
Vulnerability remediation
System configuration reviews
Strong knowledge of CVE analysis, risk assessment, and mitigation strategies.
Experience supporting large-scale enterprise infrastructure across:
Data Centers
Hybrid Cloud
Multi-instance environments
Knowledge of server, network, middleware, and platform security.
Experience managing security findings from vendor products including:
Oracle
IBM
Microsoft
Other third-party enterprise platforms
Familiarity with vulnerability lifecycle management and governance processes.
Experience documenting remediation plans and tracking activities through JIRA.
Strong understanding of security baselines, CIS benchmarks, and platform hardening standards.
Ability to prioritize and remediate Critical, High, and Medium severity vulnerabilities.
Strong incident investigation and troubleshooting capabilities.
Nice to Have Skills
Experience with cloud security in Azure, AWS, or GCP environments.
Knowledge of network security technologies including:
Firewalls
Load Balancers
WAF
IDS/IPS
Experience with automation and scripting:
PowerShell
Python
Ansible
Bash
Familiarity with infrastructure compliance frameworks:
NIST
CIS
HIPAA
SOC2
Experience supporting large-scale migration initiatives between data centers.
Understanding of DevSecOps and security automation.
Certifications such as
CISSP
CompTIA Security+
GIAC (GSEC/GCIH)
Microsoft Security Certifications
Red Hat Certified Engineer (RHCE)
Experience working within healthcare, insurance, or highly regulated enterprise environments.
Familiarity with endpoint security, EDR/XDR solutions, and enterprise monitoring platforms.
There is a large scale legacy enterprise application comprised of 88 AIDE IDs which resides in a hybrid configuration over 4 cloud based instances and two full scale data centers. The data centers are planning a migration to a UHG data center and must immediately mitigate or remediate a number of critical, high, and medium vulnerabilities then maintain a viable/manageable framework score to operate day-to-day and move forward with the planned migration. The team does not have the bandwidth or specific expertise to manage vulnerabilities as well as manage the day-to-day requirements the application demands and must make immediate gains in hardening, remediating, and mitigating findings.
Findings range from operating system specific (Microsoft, Red Hat), vendor specific (Oracle, Cognizant, IBM, etc.), and home grown code. Findings are derived from UHG approved sources such as Tanium/Tenable/Prisma and reports provide CVEs though some mitigation will require familiarity with .NET. Vulnerability mitigation is tracked using Jira."
📌 Infrastructure Operations Security Engineer (shruti) (Hyderabad)
🏢 HCL INDIA
📍 Hyderabad