ApplySarthi

Lead Engineer, Information Security

Jobgether

Tailor my CV for this job, freeView job and applyYour CV rewritten for this role, from your real experience. Sign in with Google, nothing to install.

Got this interview? Our apps help you get the job.

Skills named in this job

Read from the description itself, not inferred.

This role on the market

223 open information roles across 95 companies are on ApplySarthi right now, most of them in Hyderabad (15), Bengaluru (14), Pune (5).

What information roles keep asking for: Python (17%), SaaS (17%), AWS (16%), GCP (14%), IAM (14%), SIEM (12%), Stakeholder management (12%) — counted across their open postings here.

IAM jobs · Python jobs · SIEM jobs

Jobgether has 3,767 open roles listed here.

Counted across 14 company job boards, updated as roles open and close.

Preparing for this interview

Interviews for information roles keep coming back to Python, SaaS, AWS, GCP. Practise those questions before you sit with Jobgether.

Questions you are likely to be asked

  1. Why do you want to join Jobgether?
  2. What is your experience with SIEM? Tell me one thing you learned the hard way.
  3. Walk me through how code gets from a commit to production where you work.
  4. Tell me about an outage you handled. What did you learn from it?
  5. How do you decide what to monitor, and what should wake someone up at night?

Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.

Practise the Lead Engineer, Information Security at Jobgether interview free →

Accountabilities: Investigate, triage, document, and respond to security alerts, events, and incidents, ensuring timely and appropriate resolution. Develop, test, tune, and maintain SIEM correlation and detection rules while improving detection accuracy and reducing unnecessary false positives. Identify gaps in security monitoring and validate that relevant Windows, endpoint, network, application, cloud, and security logs are properly collected and usable for investigations. Support the onboarding and integration of new systems, applications, cloud platforms, and security technologies into the monitoring environment. Work with security technologies such as Exabeam, CrowdStrike, Wiz, and comparable security monitoring and cloud security platforms. Support vulnerability management through analysis, reporting, dashboards, trend identification, and improved visibility into security risks. Develop security dashboards, metrics, and automated reporting that reduce manual effort and provide actionable information to technical teams and leadership. Assist with incident investigations by collecting and analyzing relevant logs, telemetry, and other security evidence. Participate in incident response tabletop exercises and security preparedness activities. Identify operational and technical improvement opportunities and own initiatives from problem identification through implementation and validation. Collaborate with Security Operations and wider technology teams, sharing expertise and contributing to stronger processes and capabilities. Maintain clear documentation covering detection logic, monitoring coverage, investigations, security procedures, and operational practices. Requirements Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Technology, or a related discipline. 4+ years of hands-on experience in security operations, security monitoring, incident detection and response, vulnerability management, or a related information security field. Strong practical experience investigating security events and working with SIEM platforms, including developing or tuning detection and correlation rules. Solid understanding of security telemetry and log sources across Windows, endpoints, networks, applications, cloud environments, and security platforms. Ability to distinguish legitimate activity, false positives, suspicious behavior, and potential security threats through detailed event analysis. Experience with EDR technologies such as CrowdStrike or equivalent solutions. Working knowledge of vulnerability management and cloud security platforms. Strong understanding of threat detection, incident response, identity and access management, network security, endpoint security, and cloud security concepts. Ability to independently investigate technical issues, take ownership, and drive problems through resolution. Strong written and verbal communication skills, with the ability to explain technical security topics clearly to both technical and non-technical stakeholders. Ability to collaborate effectively with infrastructure, application, cloud, and security teams. Experience with Exabeam or another enterprise SIEM or security analytics platform is preferred. Experience with Wiz or comparable cloud security and vulnerability management technologies is preferred. Familiarity with Sumo Logic or similar log management platforms is advantageous. Experience developing detection logic using multiple security data sources and onboarding or validating SIEM log sources is beneficial. Scripting or automation experience using PowerShell, Python, APIs, or similar technologies is a plus. Familiarity with NIST CSF, NIST Incident Response Guidance, MITRE ATT&CK, CIS Controls, or ISO 27001 is desirable. Relevant certifications such as CISSP, Security+, CISM, GIAC, GCIH, GCIA, or equivalent are preferred. Benefits Fully remote working opportunity within India. Senior technical ownership within a security-focused environment. Exposure to enterprise SIEM, EDR, cloud security, vulnerability management, and security analytics technologies. Opportunity to make measurable improvements to detection coverage, monitoring visibility, automation, reporting, and incident response readiness. Cross-functional collaboration with Security, Infrastructure, Cloud, Application, and other technology teams. Opportunity to contribute to security operations maturity and influence technical processes and capabilities. Professional growth through hands-on exposure to modern cybersecurity practices and technologies. Opportunity to develop expertise in security frameworks, detection engineering, incident response, and security automation. Full-time employment.

Match this job to your CV

ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.

Check my match →

Similar open roles

Need answers during your interview? Try Live Sarthi.

Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.

Try Live Sarthi free →

A Windows app, from the same team as ApplySarthi.

Listed on lever · posted 2026-10-06. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.