02 Oct
|
ThinkSys Software
|
Delhi
02 Oct
ThinkSys Software
Delhi
Senior Security Engineer
Department: Information Security / Cybersecurity
Experience Required: 7+ Years
About the Role
We are looking for an experienced Senior Security Engineer to strengthen our cybersecurity posture across infrastructure, applications, and cloud environments. The ideal candidate is a hands-on security professional with deep expertise in vulnerability assessment and penetration testing (VAPT), cloud security, and risk communication, who can lead security assessments and work closely with engineering teams to build secure systems.
Key Responsibilities
- Lead and execute Vulnerability Assessment and Penetration Testing (VAPT) engagements across infrastructure, applications, APIs, and cloud environments
- Create, validate, and present VAPT reports with transparent, actionable findings for both technical and non-technical stakeholders
- Manually validate vulnerabilities to eliminate false positives rather than relying solely on automated scanners
- Drive vulnerability management processes, including identification, prioritization, remediation tracking, and closure
- Own and improve security posture management across cloud (AWS/GCP) and on-premises environments
- Lead security assessments for new and ongoing technology projects, ensuring security is embedded from design through deployment
- Design and review security architecture and conduct threat modeling for applications and infrastructure
- Assess and strengthen network security controls across the organization
- Evaluate and secure Web application and API security, including authentication, authorization,
and data protection mechanisms
- Partner with DevOps and development teams to integrate security practices into the SDLC (DevSecOps)
- Manage compliance initiatives, ensuring alignment with relevant regulatory and industry standards (e.g., ISO 27001, SOC 2, PCI-DSS, GDPR as applicable)
- Communicate risks, findings, and remediation strategies effectively to leadership and cross-functional teams
Required Skills & Experience
- 8+ years of experience in cybersecurity, with strong hands-on VAPT experience
- Proven experience in VAPT report creation, validation, and manual verification of vulnerabilities
- Strong understanding of infrastructure and application security
- Hands-on cloud security experience, preferably with AWS and/or GCP
- Experience with security posture management tools and practices
- Demonstrated experience leading security assessments for technology projects
- Strong vulnerability management experience
- Solid understanding of network security principles and controls
- Strong understanding of Web and API security
- Experience with security architecture design and threat modeling
- Experience collaborating with DevOps and development teams
- Experience with compliance management and regulatory frameworks
- Excellent reporting, documentation, and risk communication skills
Required Certification
- OSCP/CPENT mandatory
- CISM/CISSP — mandatory
Preferred Qualifications
- Experience with security automation and scripting (Python, Bash, etc.)
- Familiarity with SIEM, EDR, and other security monitoring tools
📌 Senior Security Engineer (Delhi)
🏢 ThinkSys Software
📍 Delhi