×
Register Here to Apply for Jobs or Post Jobs. X

Lead Cybersecurity Engineer

Job in 600001, Chennai, Tamil Nadu, India
Listing for: Neurealm
Full Time position
Listed on 2026-09-13
Job specializations:
  • IT/Tech
    Cybersecurity, Security Management & Operations, Systems Engineer
Job Description & How to Apply Below
We are seeking a highly skilled and experienced Lead Cybersecurity Engineer to lead the design, engineering, deployment, optimization, and ongoing improvement of enterprise security controls and platforms. The role requires strong hands-on expertise across EDR, SIEM, IDS/IPS, MDM, Microsoft 365 Security, identity security, vulnerability management, and security automation. The successful candidate will drive technical implementation initiatives, strengthen detection and response capabilities, support SOC operations, and ensure security controls align with organizational strategy, risk posture, and compliance requirements.

Work Location:

Chennai
Shift Timing: EST Hours/US Shift

Role

Summary:

Key Responsibilities
Lead the design, engineering, deployment, and continuous improvement of enterprise security tools and platforms, including EDR, SIEM, IDS/IPS, MDM, and Microsoft 365 security solutions.
Architect and implement scalable security controls to protect endpoints, networks, cloud workloads, identity systems, and business-critical infrastructure.
Manage and optimize integrations across security platforms, including EDR, SIEM, SOAR, MDM, IAM, and related monitoring tools.
Drive incident detection and response engineering through alert tuning, detection use case development, correlation logic, and automation playbooks.
Oversee deployment and enforcement of endpoint security controls, including DLP, USB/device control, device compliance policies, and endpoint hardening standards.
Collaborate with SOC, Infrastructure, IAM, Cloud, and application teams to ensure security controls are implemented, monitored, and operationalized effectively.
Lead troubleshooting and root cause analysis for security events, tool failures, policy issues, log ingestion gaps, and control effectiveness concerns.
Establish and maintain SIEM use cases, correlation rules, dashboards, reports, and operational metrics to improve monitoring and executive visibility.
Conduct vulnerability assessments, validate scan results, support remediation planning, and track risk reduction activities through closure.
Participate in change management processes to assess security impact, define control requirements, and ensure security tooling remains aligned with approved changes.
Drive automation initiatives using Power Shell, Python, SOAR workflows, and other scripting methods to reduce manual effort and improve response consistency.
Develop and maintain security baselines, hardening standards, deployment playbooks, operational guides, and technical documentation.
Monitor emerging threats, threat intelligence, and adversary techniques to adapt detections and controls based on current attack trends.
Provide technical leadership, coaching, and mentorship to junior engineers, SOC analysts, and cross-functional teams.
Technical Responsibilities
Engineer, deploy, and administer EDR platforms such as Crowd Strike and Microsoft Defender for Endpoint, including policy tuning, threat detection, response actions, and control validation.
Implement and manage SIEM platforms such as Crowd Strike NG SIEM or Splunk, including log onboarding, parsing, normalization, dashboarding, and advanced correlation logic.
Design, implement, and support IDS/IPS and network security monitoring solutions to improve threat visibility, prevention, and investigation capability.
Administer and optimize Microsoft 365 Security capabilities, including Microsoft Defender Suite, Entra , Conditional Access, Secure Score improvements, and identity protection controls.
Manage MDM platforms such as Microsoft Intune or equivalent solutions for device compliance, device posture, policy enforcement, and access control.
Implement of identity security controls, including MFA, Conditional Access, privileged access controls, least privilege, and Zero Trust principles.
Build and maintain SOC automation and SOAR workflows for incident triage, evidence collection, containment actions, enrichment, notification, and reporting.
Integrate and manage threat intelligence feeds across security tools to support proactive detection, enrichment, and threat hunting.
Perform log source integration across servers, endpoints, network devices, cloud platforms, firewalls, identity systems, and business-critical applications.
Support compliance and audit activities, including HIPAA, NIST, ISO 27001, and CIS-aligned evidence gathering, configuration review, reporting, and technical control validation.
Required Skills and Experience
Strong hands-on experience in…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary