Lead Engineer, Information Security
SIEMEDRCrowdStrikeExabeamVulnerability ManagementCloud SecurityPowerShellPythonIncident ResponseNIST CSF
About the Role
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Lead Engineer, Information Security based in India. This is a hands-on senior security role focused on strengthening security monitoring, detection, vulnerability management, and incident response capabilities. You will investigate security events, improve SIEM detection logic, and ensure critical telemetry is visible and actionable. The role combines day-to-day security operations with continuous improvement and technical ownership. You will collaborate closely with Security, Infrastructure, Cloud, Application, and other technology teams. The position offers the opportunity to work with modern SIEM, EDR, cloud security, and vulnerability management technologies. You will play a key role in reducing noise, improving detection coverage, and increasing incident response readiness. Success will be measured through stronger security visibility, automation, and measurable improvements to the overall security program. This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Lead Engineer, Information Security based in India. This is a hands-on senior security role focused on strengthening security monitoring, detection, vulnerability management, and incident response capabilities. You will investigate security events, improve SIEM detection logic, and ensure critical telemetry is visible and actionable. The role combines day-to-day security operations with continuous improvement and technical ownership. You will collaborate closely with Security, Infrastructure, Cloud, Application, and other technology teams. The position offers the opportunity to work with modern SIEM, EDR, cloud security, and vulnerability management technologies. You will play a key role in reducing noise, improving detection coverage, and increasing incident response readiness. Success will be measured through stronger security visibility, automation, and measurable improvements to the overall security program. Accountabilities Investigate, triage, document, and respond to security alerts, events, and incidents, ensuring timely and appropriate resolution. Develop, test, tune, and maintain SIEM correlation and detection rules while improving detection accuracy and reducing unnecessary false positives. Identify gaps in security monitoring and validate that relevant Windows, endpoint, network, application, cloud, and security logs are properly collected and usable for investigations. Support the onboarding and integration of new systems, applications, cloud platforms, and security technologies into the monitoring environment. Work with security technologies such as Exabeam, CrowdStrike, Wiz, and comparable security monitoring and cloud security platforms. Support vulnerability management through analysis, reporting, dashboards, trend identification, and improved visibility into security risks. Develop security dashboards, metrics, and automated reporting that reduce manual effort and provide actionable information to technical teams and leadership. Assist with incident investigations by collecting and analyzing relevant logs, telemetry, and other security evidence. Participate in incident response tabletop exercises and security preparedness activities. Identify operational and technical improvement opportunities and own initiatives from problem identification through implementation and validation. Collaborate with Security Operations and wider technology teams, sharing expertise and contributing to stronger processes and capabilities. Maintain clear documentation covering detection logic, monitoring coverage, investigations, security procedures, and operational practices. Requirements Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Technology, or a related discipline. 4+ years of hands-on experience in security operations, security monitoring, incident detection and response, vulnerability management, or a related information security field. Strong practical experience investigating security events and working with SIEM platforms, including developing or tuning detection and correlation rules. Solid understanding of security telemetry and log sources across Windows, endpoints, networks, applications, cloud environments, and security platforms. Ability to distinguish legitimate activity, false positives, suspicious behavior, and potential security threats through detailed event analysis. Experience with EDR technologies such as CrowdStrike or equivalent solutions. Working knowledge of vulnerability management and cloud security platforms. Strong understanding of threat detection, incident response, identity and access management, network security, endpoint security, and cloud security concepts. Ability to independently investigate technical issues, take ownership, and drive problems through resolution. Strong written and verbal communication skills, with the ability to explain technical security topics clearly to both technical and non-technical stakeholders. Ability to collaborate effectively with infrastructure, application, cloud, and security teams. Experience with Exabeam or another enterprise SIEM or security analytics platform is preferred. Experience with Wiz or comparable cloud security and vulnerability management technologies is preferred. Familiarity with Sumo Logic or similar log management platforms is advantageous. Experience developing detection logic using multiple security data sources and onboarding or validating SIEM log sources is beneficial. Scripting or automation experience using PowerShell, Python, APIs, or similar technologies is a plus. Familiarity with NIST CSF, NIST Incident Response Guidance, MITRE ATT&CK, CIS Controls, or ISO 27001 is desirable. Relevant certifications such as CISSP, Security+, CISM, GIAC, GCIH, GCIA, or equivalent are preferred. Benefits Fully remote working opportunity within India. Senior technical ownership within a security-focused environment. Exposure to enterprise SIEM, EDR, cloud security, vulnerability management, and security analytics technologies. Opportunity to make measurable improvements to detection coverage, monitoring visibility, automation, reporting, and incident response readiness. Cross-functional collaboration with Security, Infrastructure, Cloud, Application, and other technology teams. Opportunity to contribute to security operations maturity and influence technical processes and capabilities. Professional growth through hands-on exposure to modern cybersecurity practices and technologies. Opportunity to develop expertise in security frameworks, detection engineering, incident response, and security automation. Full-time employment. How Jobgether works: We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether? Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1
You'll be redirected to Jobgether's application page
Job Details
Salary
Not disclosed
Location
India
Job type
Full-time
Category
Security Engineering
Experience
4+ years
Posted
Today
Job Highlights
- 4+ years level role
- 100% Remote — open to candidates in India
- Full-time position
About Jobgether
This job is hosted by Jobgether. Clicking Apply opens their site.
Remote Work Style
Mixed
Mix of flexible and scheduled meetings
Your Match
See how well your skills line up with this role, and what you're missing.
AI Cover Letter
Generate a cover letter tailored to this job from your profile.