L2/L3 - Security Engineer - (Firewall + EDR + PAM/IAM)

Posted Yesterday
Be an Early Applicant
Mumbai, Maharashtra, IND
In-Office
Senior level
Cloud • Information Technology • Consulting • Cybersecurity
The Role
Operate, administer, troubleshoot, and improve enterprise security infrastructure spanning firewalls, EDR, PAM/IAM, DAM, WAF, IDS/IPS, DDoS protection, and micro-segmentation. Responsibilities include incident response, threat hunting, malware analysis, policy optimization, integrations, upgrades, RCA, automation, governance, audits, and technical leadership. The role supports enterprise and cloud environments in a 24/7 rotational or on-call model and requires coordination with security, infrastructure, cloud, application, audit, and vendor teams.
Summary Generated by Built In

The Security Engineer is responsible for the operations, administration, advanced support, optimization, and continuous improvement of enterprise security infrastructure across multiple domains including Firewall, Endpoint Security (EDR/EPP), PAM/IAM, DAM, WAF, IDS/IPS, DDoS protection, and Micro-Segmentation.

The role involves ensuring secure, stable, and highly available security services across enterprise and cloud environments while supporting incident response, troubleshooting, policy governance, integrations, and transformation initiatives.

The engineer will work closely with Information Security, SOC, Infrastructure, Cloud, Audit, Application Teams, and OEM TAC teams to maintain and enhance the organization’s security posture.

Experience Required
  • L2 Level: 3–5 years in Security Operations / Network Security / IAM / PAM
  • L3 Level: 5–8+ years in Security Engineering / Advanced Security Operations
  • Experience in enterprise-scale production environments is required
Primary Skills Required
Endpoint Security / EDR

Hands-on experience with:

  • Trend Micro Deep Security
  • Trellix Endpoint Security / EDR
  • SentinelOne Singularity Platform / EDR

Key areas:

  • EPP / EDR operations and administration
  • Threat detection, incident triaging, and malware analysis
  • Policy management, tuning, and endpoint hardening
  • File Integrity Monitoring (FIM)
  • Incident response and security automation (L3 depth)
Firewall & Network Security

Hands-on experience with:

  • Cisco Firepower / ASA
  • Palo Alto Networks Firewall
  • Check Point Firewall
  • Fortinet FortiGate

Key areas:

  • Firewall policy management and optimization
  • VPN (site-to-site & remote access)
  • NAT and ACL configuration
  • Network segmentation and Zero Trust concepts
  • HA setup, troubleshooting, and maintenance
  • Incident handling and RCA (L3 advanced)

Additional exposure:

  • F5 WAF
  • DDoS protection (Radware / ISP-based)
  • IDS/IPS solutions (Cisco / Trend Micro)
  • Micro-segmentation (Akamai Guardicore)
PAM / IAM / DAM

Hands-on experience with:

  • ARCON PAM
  • Imperva DAM

Key areas:

  • Identity & Access Management (IAM)
  • Privileged Access Management (PAM)
  • RBAC and access governance
  • Password vaulting and rotation
  • MFA and SSO integration
  • Identity lifecycle management
  • Access certification and compliance reviews
  • AD / LDAP integration
Good to Have Skills
  • Cloud security exposure (AWS / Azure)
  • SIEM / SOAR integration awareness
  • Vulnerability management concepts
  • Secure Web Gateway / Proxy understanding
  • Zero Trust architecture concepts
  • ServiceNow and ITIL processes (incident/change/problem)
  • CAB and change management exposure
  • Agile / SAFe environments
  • Basic scripting (PowerShell / Python / Bash)
Roles & Responsibilities
L2 Responsibilities (Operational Focus)
  • Handle day-to-day security operations across Firewall, EDR, and IAM/PAM systems
  • Perform troubleshooting for incidents related to policies, agents, VPNs, access, and authentication
  • Implement firewall rules, access changes, and IAM requests under SOP guidance
  • Monitor security alerts and ensure system health and compliance
  • Support upgrades, patching, backups, and operational maintenance
  • Coordinate with OEM TAC for issue resolution
  • Maintain operational documentation and reports
L3 Responsibilities (Advanced / Engineering Focus)
  • Lead critical incidents, escalations, and RCA across security domains
  • Design and optimize security policies, architectures, and workflows
  • Lead migrations, upgrades, integrations, and transformation projects
  • Perform threat hunting, malware analysis, and advanced investigations
  • Integrate security platforms with SIEM, SOAR, IAM, and cloud systems
  • Mentor L2 engineers and provide technical leadership
  • Drive automation, optimization, and operational maturity improvements
  • Own SOPs, runbooks, architecture diagrams, and governance documentation
  • Participate in audits, CAB reviews, and compliance activities
  • Enforce Zero Trust and least privilege security principles
Preferred Candidate Profile
  • Strong troubleshooting and analytical mindset
  • Good communication and stakeholder coordination skills
  • Experience in enterprise production environments
  • Ability to handle critical incidents independently (L3 expectation)
  • Strong understanding of security architecture and operations


Requirements


  • Role: L2 / L3 Security Engineer (Firewall + EDR + PAM/IAM)
  • Experience: 3–8+ Years
  • Work Mode: Operations & Engineering (Enterprise Security Environment)
  • Shift: 24/7 Rotational / On-call Support
  • Location: Mumbai – Andheri / Vashi
  • Employment Type: Full-time

  • Mail your CVs along with a cover letter on [email protected] or apply directly on company website.

    Note: Joining Immediate or within 1 month



    Skills Required

    • 3-5 years of experience in security operations, network security, IAM, or PAM for L2 responsibilities
    • 5-8+ years of experience in security engineering or advanced security operations for L3 responsibilities
    • Experience in enterprise-scale production environments
    • Hands-on experience with Trend Micro Deep Security
    • Hands-on experience with Trellix Endpoint Security or EDR
    • Hands-on experience with SentinelOne Singularity Platform or EDR
    • Hands-on experience with Cisco Firepower or ASA
    • Hands-on experience with Palo Alto Networks Firewall
    • Hands-on experience with Check Point Firewall
    • Hands-on experience with Fortinet FortiGate
    • Hands-on experience with ARCON PAM
    • Hands-on experience with Imperva DAM
    • Strong troubleshooting and analytical skills
    • Good communication and stakeholder coordination skills
    • Ability to independently handle critical incidents at L3 level
    • Strong understanding of security architecture and operations
    • Cloud security exposure in AWS or Azure
    • SIEM or SOAR integration awareness
    • Vulnerability management concepts
    • Secure Web Gateway or proxy understanding
    • Zero Trust architecture concepts
    • ServiceNow and ITIL process experience
    • CAB and change management exposure
    • Agile or SAFe environment experience
    • Basic scripting with PowerShell, Python, or Bash
    • Immediate availability or ability to join within one month
    Am I A Good Fit?
    beta
    Get Personalized Job Insights.
    Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

    The Company
    32 Employees
    Year Founded: 2023

    What We Do

    Techsec Digital Global Pvt. Ltd. provides technology, cybersecurity, cloud, networking, infrastructure, and digital transformation solutions. The company helps organizations safeguard critical information, maintain regulatory compliance, and ensure uninterrupted business operations through customized security tools, secure infrastructure design and management, professional services, automation, and expert consulting. It is ISO/IEC 27001:2022 certified and serves businesses navigating complex digital security and transformation needs.

    Similar Jobs

    Hybrid
    Mumbai, Maharashtra, IND
    289097 Employees
    Hybrid
    2 Locations
    289097 Employees
    Hybrid
    Mumbai, Maharashtra, IND
    289097 Employees

    Mondelēz International Logo Mondelēz International

    Manager, Data Governance Change Management

    Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
    Remote or Hybrid
    2 Locations
    90000 Employees

    Similar Companies Hiring

    Standard Template Labs Thumbnail
    Artificial Intelligence • Information Technology • Software
    New York, NY
    25 Employees
    NODA AI Thumbnail
    Artificial Intelligence • Information Technology • Software • Cybersecurity
    Sydney, AU
    54 Employees
    Golden Pet Brands Thumbnail
    Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
    El Segundo, California
    178 Employees

    Sign up now Access later

    Create Free Account

    Please log in or sign up to report this job.

    Create Free Account