IT Security & Compliance Engineer

Rapyuta Robotics

We are committed to our core value of "Empathy," aiming to automate "demanding," "dirty," and "dangerous" jobs, and create a society where people can engage in more intellectual and creative work. By developing and supporting the implementation and operation of robotics platforms and robot solutions utilizing the world's most advanced control and coordination technologies, we strive to realize this vision. 

Role Overview 

We are looking for an experienced IT Security & Compliance Engineer to manage the organization's cybersecurity operations, cloud security, compliance initiatives, and security governance. The ideal candidate should have hands-on experience in security operations, Microsoft 365 security, vulnerability management, endpoint protection, identity & access management, and ISO/NIST compliance frameworks.

Requirements

Key Responsibilities 

  • Monitor, investigate, and respond to security incidents, threats, malware, phishing, and ransomware attacks through Security Operations (SOC).
  • Lead security compliance enablement aligned with ISO 27001 and the NIST Cybersecurity Framework, including risk assessments, internal audits, policy management, vendor security reviews, and security awareness programs. (As the company already possess ISO, the defined compliances to be enabled across organization. NIST is in working)
  • Administer and secure Microsoft 365 environments, including Microsoft Entra ID, Conditional Access, MFA, Microsoft Defender, Purview, DLP, email security, and audit monitoring.
  • Manage endpoint security solutions, EDR platforms, device compliance, encryption, and vulnerability remediation.
  • Conduct vulnerability assessments, coordinate penetration testing, manage patching, and track remediation activities.
  • Implement and maintain network security controls, including firewalls, VPNs, IDS/IPS, DNS security, and network segmentation.
  • Manage Identity & Access Management (IAM), including RBAC, privileged access management, user lifecycle management, and periodic access reviews.
  • Perform security architecture reviews, application security assessments, cloud security reviews, secure configuration management, and support DevSecOps initiatives.
  • Maintain security documentation, risk registers, and ensure continuous improvement of the organization's security posture.

Minimum Requirements 

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.

Security Operations: Incident Response & Root Cause Analysis, Threat Hunting, SIEM Monitoring, Malware & Phishing Response

Microsoft 365 Security: Microsoft Entra ID (Azure AD), Conditional Access & MFA, Microsoft Defender Suite, Microsoft Purview, Data Loss Prevention (DLP), Exchange Online Security, Secure Score Management

Endpoint & Infrastructure Security: Microsoft Defender/CrowdStrike, Endpoint Detection & Response (EDR), BitLocker/FileVault, Patch & Vulnerability Management

Compliance & Governance: ISO 27001, NIST Cybersecurity Framework, Risk Management, Internal & External Audits, Security Policies & Awareness, Vendor Risk Assessment

Identity & Access Management: RBAC, Privileged Access Management (PAM), Access Reviews, Joiner-Mover-Leaver (JML) Process

Security Engineering: Secure SDLC, Security Architecture Reviews, Cloud Security Assessments, Secure Configuration Management, DevSecOps Support

SIEM Platforms: Microsoft Sentinel, Splunk, IBM QRadar, LogRhythm, Elastic SIEM

Vulnerability Management: Qualys, Nessus, Rapid7 InsightVM, OpenVAS

Email Security: Exchange Online, Microsoft Defender for Office 365, SPF, DKIM, DMARC, Anti-Phishing Policies

Security Assessment Tools: Nmap, Wireshark, Burp Suite, OWASP ZAP, Metasploit

Preferred Certifications: ISO 27001 Lead Implementer/Lead Auditor, Microsoft Certified: Cybersecurity Architect Expert/Security Administrator, CompTIA Security+, CISSP, CEH, SC-200, SC-300, AZ-500.

Benefits

  • Exciting and challenging problems are addressed using wide-ranging technologies and tools.
  • Competitive salary
  • Great team culture, peers and workplace

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.