
Security Engineer
Full Job Description
Stratogent is seeking a Security Engineer (L2) to join our team in Bengaluru. This hybrid role involves managing and resolving security incidents, service requests, and tasks, acting as an escalation point for L1 support. You will analyze and investigate cyber threats in real-time, review alerts, analyze logs, and correlate events. The position requires evaluating existing security infrastructure for best practices, recommending enhancements, and developing security strategy plans and roadmaps. You will collaborate with clients to discuss security strategies, explain system designs, and conduct risk assessments. Frequent client interaction for risk mitigation, corrective actions, and root cause analysis is expected. Escalation to L3 for unresolved operational issues and security incidents is part of the role. Responsibilities include preliminary security breach investigation, forensic analysis, and prevention, as well as preparing and maintaining documentation, procedures, response plans, and runbooks. You will also configure and review preventive rules on EDR, spam filters, and other security tools, manage vulnerabilities and policies using SIEM and vulnerability assessment tools, and validate exclusions from remediation based on customer requirements. Creating vulnerability management dashboards, preparing trending reports, configuring threat intelligence feeds, and regularly reviewing/recommending policy changes are key. Training and mentoring peers and juniors is also expected.
Key Responsibilities:
- Incident handling and escalation management
- Cyber threat analysis and investigation
- Security infrastructure evaluation and recommendation
- Security strategy and roadmap development
- Client engagement for security strategy and design
- Risk assessment and mitigation planning
- Forensic analysis and breach investigation
- Documentation and process maintenance
- Configuration and review of security tools (EDR, Spam Filters, SIEM)
- Vulnerability management and policy enforcement
- Threat intelligence integration
- Policy and control recommendations
- Team training and mentoring
Must-Have Skills:
- Incident handling
- Evidence acquisition
- Digital forensics
- Endpoint and Network security
- Cyber security incident management
- Log analysis
- Malware analysis
- Host forensics
- Endpoint detection and response (EDR)
- Security Information and Event Management (SIEM)