Shortcuts:

IMAGE: Return to Main IMAGE: Show All Jobs

Position Details: Senior Security Engineer

Location: Bengaluru
Openings: 1
Salary Range:

Description:

Role Summary
The Senior Security Engineer (Cloud & Enterprise Security Engineering) is a deeply technical, hands-on engineering
role responsible for designing, implementing, hardening, integrating, and continuously improving CBIZ’s enterprise
security technologies and controls across cloud, identity, endpoint, network, email, and data protection domains.

This position requires strong engineering fundamentals, broad systems knowledge, and the ability to solve complex
technical problems across hybrid and multi-cloud environments.

The ideal candidate is an experienced builder and troubleshooter who can translate security requirements into
scalable, reliable, and measurable technical solutions.

Success in this role depends on advanced expertise in
security architecture, platform engineering, automation, systems integration, detection logic, and control
validation.

The engineer must be able to work across diverse technologies, analyze intricate dependencies, and
develop durable solutions that strengthen security posture, reduce risk, and improve operational resilience.

This is not a passive monitoring or ticket-routing role.

It is a senior technical position focused on engineering
secure-by-default solutions, improving platform capabilities, automating security functions, and driving long-term
technical maturity across the environment.

While incident support and investigation remain part of the role, the
primary emphasis is on building, optimizing, and sustaining the security technologies, integrations, and guardrails
that prevent, detect, and contain threats at scale.

Roles & Responsibilities
Cloud & Enterprise Security Engineering
➢ Design, implement, harden, and maintain enterprise security controls and reference architectures across:

• Microsoft Azure and Azure Virtual Desktop (AVD)
• Amazon Web Services (AWS)
• Microsoft 365 security and compliance platforms
• Hybrid identity, endpoint, email, and data protection environments
➢ Engineer secure-by-default configurations and technical guardrails that reduce attack surface, improve
resilience, and support scalable enterprise operations.
➢ Translate business, compliance, and security requirements into practical engineering designs and
sustainable technical solutions.
➢ Evaluate current-state architectures, identify control gaps, and implement improvements that strengthen
security posture while maintaining operational usability.
➢ Partner with infrastructure, cloud, networking, systems, and endpoint teams to embed security into
enterprise platforms, workflows, and lifecycle processes.

Identity, Data Protection & Platform Security
➢ Engineer and operationalize controls for identity protection, phishing defense, DLP, conditional access,
privileged access, tenant security baselines, and cloud workload protection.
➢ Secure workloads, identities, and data across hybrid and multi-cloud environments through design
standards, configuration baselines, and measurable technical guardrails.
➢ Support and troubleshoot certificate-based authentication, encryption, and PKI-related services, including
lifecycle considerations such as issuance, renewal, revocation, and dependency management.
➢ Improve authentication security, access control design, and privileged access protections across enterprise
systems and cloud platforms.
➢ Design and validate visibility and monitoring coverage for cloud, identity, endpoint, email, and platform
security events to ensure reliable telemetry and actionable data.

Security Platforms, Automation & Tooling
➢ Build, administer, and continuously improve core security platforms and integrations, including:
• SIEM and log ingestion pipelines
• SOAR and workflow automation platforms
• XDR/EDR and endpoint security tooling
• Network and zero trust security controls
• CASB, DLP, and data security platforms
• Identity and access management controls
• Email and collaboration security technologies
➢ Develop and maintain automation using PowerShell, Python, Bash, APIs, and workflow tooling to support enrichment, orchestration, reporting, evidence collection, system validation, and control enforcement.
➢ Design and optimize log collection, parsing, normalization, retention, and access models to improve
searchability, detection quality, auditability, and investigative efficiency.
➢ Improve platform reliability, scalability, and maintainability through lifecycle upgrades, engineering
standards, technical documentation, and structured change control.
➢ Evaluate and responsibly implement AI-enabled security capabilities where they provide measurable
improvements in efficiency, visibility, or control effectiveness.
Detection Engineering & Technical Response Support
➢ Engineer and refine analytic rules, correlation logic, alerting thresholds, and detection content across
cloud, identity, endpoint, email, and network security technologies.
➢ Validate detections and controls through testing, simulation, tuning, and gap analysis to improve fidelity
and reduce noise.
➢ Translate lessons learned from incidents, platform issues, and control failures into durable engineering
improvements such as new detections, automation, hardening standards, and preventive safeguards.
➢ Contribute to complex investigations and incident response activities as a senior technical resource,
including root cause analysis, containment support, and remediation validation.
➢ Participate in on-call or escalation support as needed for significant incidents or high-priority technical
issues.


Technical Ownership, Documentation & Continuous Improvement
➢ Own complex technical initiatives from design through implementation, support, optimization, and
documentation.
➢ Balance project-based engineering work with platform maintenance, technical debt remediation, backlog
reduction, and continuous control improvement.
➢ Create and maintain actionable documentation including architecture diagrams, standards, SOPs,
runbooks, playbooks, and knowledge base content aligned to production reality.
➢ Define and track measurable improvements in platform health, control coverage, alert quality,
automation effectiveness, and engineering maturity.
➢ Serve as a senior technical contributor who establishes patterns, improves standards, and advances
overall enterprise security engineering maturity.
Collaboration & Communication
➢ Partner closely with GRC, IT, Cloud, Networking, Systems, Endpoint, and business teams to develop secure
designs and pragmatic technical solutions.
➢ Clearly communicate architecture decisions, technical findings, control gaps, implementation plans, and
remediation priorities to both technical and non-technical stakeholders.
➢ Provide technical guidance and mentorship to analysts and engineers, helping elevate engineering
practices, platform understanding, and troubleshooting capability across the team.
➢ Influence cross-functional stakeholders and help remove blockers to drive timely technical outcomes.

Skills & Qualifications
➢ 10-15 years of experience in US Corporate Tax (Form 1120) compliance and review.
➢ Hands-on experience in both OneSource Income Tax (OIT) and CCH Axcess is mandatory.
➢ Strong technical knowledge of US Federal and multi-state corporate tax compliance.
➢ Proven experience managing offshore teams, including mentoring, review oversight, and performance
management.
➢ Demonstrated experience working directly with US clients and stakeholders, with strong communication
and expectation management skills.
➢ Strong understanding of trial balance imports, diagnostics, mapping structures, and apportionment
processes in both systems.
➢ Excellent project management skills with ability to manage multiple engagements simultaneously.
➢ Strong analytical mindset with focus on risk identification, quality control, and process optimization.
➢ CPA / EA preferred.

Required Qualifications
➢ 10+ years of experience in Information Security, Security Engineering, Infrastructure Security, or closely
related technical roles, including senior or lead ownership of complex security initiatives.
➢ Demonstrated hands-on expertise designing, implementing, and supporting enterprise security
technologies across cloud, identity, endpoint, network, email, and data protection domains.
➢ Deep experience securing cloud environments such as Azure and/or AWS, and operationalizing Microsoft
365 security capabilities including Defender, email protection, DLP, conditional access, and identity
protections.
➢ Strong experience securing and supporting Azure Virtual Desktop (AVD) environments, including identity
controls, endpoint protections, logging, monitoring, and configuration hardening.
➢ Working knowledge of PKI, certificate-based authentication, and encryption, with the ability to
troubleshoot production issues and understand operational and security impacts.
➢ Strong scripting and systems skills, including PowerShell as a core requirement, with Python and/or Bash
strongly preferred.
➢ Hands-on experience building and maintaining security platforms such as SIEM, SOAR, XDR/EDR, log
pipelines, and platform integrations, including data onboarding, content tuning, and workflow
development.
➢ Strong understanding of security engineering fundamentals including networking, identity and access
management, operating systems, endpoint behavior, logging and telemetry, and common attack
techniques.
➢ Demonstrated ability to work independently, exercise strong technical judgment, and drive complex
engineering efforts through completion.


Preferred Qualifications
➢ Security certifications such as CISSP, GIAC (GCIA, GCIH, GCED), Azure/AWS security certifications, or other
relevant technical credentials.
➢ Strong command of enterprise networking concepts including TCP/IP, VLANs, routing, packet analysis,
DNS, and application protocols such as HTTP/S, SMTP, and LDAP.
➢ Experience supporting Windows and Linux systems in enterprise environments, including Active Directory,
authentication protocols such as NTLM and Kerberos, domain services, and systems hardening practices.
➢ Advanced experience in SIEM content engineering, including architecting correlation logic, custom
parsers, rule tuning, and dashboards using platforms and query languages such as KQL, SPL, or equivalent
tools.
➢ Advanced automation experience using PowerShell and Python, including API integrations, orchestration,
data transformation, workflow design, and scalable operational automation.
➢ Experience designing or supporting event schema normalization, data pipelines, and cross-platform
integrations in hybrid cloud environments.
➢ Strong troubleshooting capability across legacy and modern infrastructures, including the ability to isolate
root causes in highly integrated enterprise environments.

Perform an action:

IMAGE: Apply to Position




Powered by: OpenCATS - Applicant Tracking System