JobRaahGet matched free

Jobs

IT Security Engineer

Rootquotient · India · On-site

Pay: INR 800,000 – 1,400,000 a year

Posted Sep 25, 2026

Apply with JobRaah

Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.

IT Security Engineer Location: Chennai, India | Experience: 2–4 years About the Role Rootquotient is hiring its first dedicated security team member to own day-to-day security operations and strengthen our existing EDR/XDR setup. You’ll investigate threats, keep endpoints secure, improve cloud and identity security, and maintain audit readiness while helping engineering teams ship securely. You’ll also explore practical AI-assisted and agentic workflows for alert investigation, evidence collection, and routine security checks, with human oversight for critical actions. Reporting to [IT/Engineering Head], you’ll work closely with engineering, IT, external auditors, and our security vendors. Your scope and level of ownership will reflect your experience, as outlined below. Role Expectations Independently manage SentinelOne EDR operations across approximately 150 macOS endpoints, ensuring endpoint compliance. Tune SentinelOne policies with vendor support, create custom S1QL detection rules, and manage exceptions to reduce false positives without weakening threat detection. Investigate security alerts and reconstruct incident timelines using SentinelOne Deep Visibility, Entra sign-in logs, and AWS CloudTrail. Lead first-level response to credential compromises, account takeovers, and malware, coordinating device isolation, session revocation, and credential rotation with IT and engineering. Audit and harden IAM permissions across 160 AWS accounts, enforcing least-privilege access. Review KMS key policies, inspect VPC flow logs, and monitor Secrets Manager for security gaps and suspicious activity. Monitor S3 public access and dangling Route53 records, tracking remediation to closure. Manage Cloudflare WAF rules and rate limits using real traffic patterns to block attacks while preserving legitimate access. Connect Cloudflare WAF, GuardDuty, and Entra logs into centralized monitoring and unified alerting. Support engineering security reviews by explaining findings, severity, remediation, and delivery impact without unnecessarily blocking releases. Support dependency scanning, secret scanning, and PR-level security checks to identify vulnerable dependencies, hardcoded secrets, missing encryption, and exposed APIs before release. Define SOC 2 Type 2 and ISO audit evidence requirements, collection cadence, gap tracking, and escalation paths. Prepare structured audit evidence packages and explain how the evidence demonstrates control implementation to leadership and external auditors. Maintain security operating procedures, incident response checklists, and CIS/NIST control documentation. Build automations for repeatable security checks, GuardDuty-to-Lambda alert routing, ticket enrichment, guided remediation, daily attendance reporting, and evidence collection. Help define required compliance evidence, collection frequency, ownership, gap reporting, and escalation paths. Support early security automation use cases such as alert…