Infrastructure Security Engineer
TTF Technology
Date: 7 hours ago
City: Ahmedabad, Gujarat
Contract type: Full time
Job Name: Infrastructure Security Engineer
Location- Onsite- Ahmedabad
Job Type- Full Time
Position Overview
We are seeking an experienced Infrastructure Security Engineer to join our cybersecurity team and play a critical role in protecting our organization's digital infrastructure. This position requires a versatile security professional who can operate across multiple domains including cloud security, vulnerability management/patch management, endpoint protection, and security operations.
Key Responsibilities
AWS Cloud Security
Education & Experience
Location- Onsite- Ahmedabad
Job Type- Full Time
Position Overview
We are seeking an experienced Infrastructure Security Engineer to join our cybersecurity team and play a critical role in protecting our organization's digital infrastructure. This position requires a versatile security professional who can operate across multiple domains including cloud security, vulnerability management/patch management, endpoint protection, and security operations.
Key Responsibilities
AWS Cloud Security
- Design, implement, and maintain security controls across AWS environments including IAM policies, security groups, NACLs, and VPC configurations
- Configure and manage AWS security services such as CloudTrail, GuardDuty, Security Hub, Config, and Inspector
- Implement Infrastructure as Code (IaC) security best practices using CloudFormation, Terraform, or CDK
- Conduct regular security assessments of cloud architectures and recommend improvements
- Manage AWS compliance frameworks and ensure adherence to industry standards (SOC 2, ISO 27001, etc.)
- Lead enterprise-wide vulnerability assessment programs using tools such as Nessus
- Develop and maintain vulnerability and patch management policies, procedures, and SLAs, regular reporting
- Coordinate with IT and development teams to prioritize and remediate security vulnerabilities
- Generate executive-level reports on vulnerability metrics and risk exposure
- Conduct regular penetration testing and security assessments of applications and infrastructure
- Design and implement automated patch management strategies across Windows, Linux, and cloud environments
- Coordinate with system administrators to schedule and deploy critical security patches
- Maintain patch testing procedures to minimize business disruption
- Monitor patch compliance across the enterprise and report on patch deployment status
- Develop rollback procedures and incident response plans for patch-related issues
- Deploy and manage endpoint detection and response (EDR) solutions such as CrowdStrike
- Configure and tune endpoint security policies including antivirus, application control, and device encryption
- Investigate and respond to endpoint security incidents and malware infections
- Implement mobile device management (MDM) and bring-your-own-device (BYOD) security policies
- Conduct forensic analysis of compromised endpoints when required
Education & Experience
- Bachelor's degree in computer science, Information Security, or related field
- Minimum 5+ years of hands-on experience in information security roles
- 3+ years of experience with AWS cloud security architecture and services
- Cloud Security: Deep expertise in AWS security services, IAM, VPC security, and cloud compliance frameworks
- Vulnerability Management: Proficiency with vulnerability scanners (Qualys, Nessus, Rapid7) and risk assessment methodologies
- Patch Management: Experience with automated patching tools (WSUS, Red Hat Satellite, AWS Systems Manager)
- Endpoint Security: Hands-on experience with EDR/XDR platforms and endpoint management tools
- SIEM/SOAR: Advanced skills in log analysis, correlation rule development, and security orchestration
- Operating Systems: Strong knowledge of Windows and Linux security hardening and administration
- Security Certifications (Preferred)
- AWS Certified Security - Specialty
- CISSP (Certified Information Systems Security Professional)
- GCIH (GIAC Certified Incident Handler)
- CEH (Certified Ethical Hacker)
- Strong analytical and problem-solving skills with attention to detail
- Excellent communication skills and ability to explain complex security concepts to technical and non-technical stakeholders
- Project management capabilities with experience leading cross-functional security initiatives
- Ability to work in fast-paced environments and manage multiple priorities
- Strong understanding of regulatory compliance requirements (PCI-DSS, HIPAA, SOX, GDPR)
- Experience with risk assessment frameworks and security governance
- Reporting Structure
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
Software Development Snr Manager
Oracle,
Ahmedabad, Gujarat
2 days ago
Job DescriptionAs the Senior Manager in OCI for Security team, you will provide leadership to a dedicated team tasked with overseeing the end-to-end lifecycle of critical Security related services within OCI. Your role will involve ensuring that the team's objectives are consistently aligned with the broader organizational goals, maintaining a strategic focus on long-term infrastructure stability and scalability. By fostering...
Associate Vice President - SaT - GOV - SaT - TCF - Infrastructure Advisory - Ahmedabad
EY,
Ahmedabad, Gujarat
5 days ago
Requisition Id: 1655043As a global leader in assurance, tax, transaction and advisory services, we hire and develop the most passionate people in their field to help build a better working world. This starts with a culture that believes in giving you the training, opportunities and creative freedom. At EY, we don't just focus on who you are now, but who...
Deputy Manager-Acquisition (Household)
IDFC FIRST Bank,
Ahmedabad, Gujarat
1 week ago
Job RequirementsJob Requirements Job Title - Deputy Manager-Acquisition(Household)Place of work - Pan - IndiaBusiness Unit - Retail BankingFunction -Branch BankingJob PurposeThe role entails direct customer interaction and is responsible for business acquisition of savings accounts for a designated branch. It will also entail explaining and selling banking products to customers and acting as a link between customers and bank -...