Cyber Security & Infrastructure Engineer @XO Health
All Others
Salary β‚Ή2,000,000 - β‚Ή2..
Remote Location
Employment Type full-time
Posted 1mth ago

[Hiring] Cyber Security & Infrastructure Engineer @XO Health

1mth ago - XO Health is hiring a remote Cyber Security & Infrastructure Engineer. πŸ’Έ Salary: β‚Ή2,000,000 - β‚Ή2,500,000 πŸ“Location: India

Role Description

The Cybersecurity & Infrastructure Engineer is responsible for designing, implementing, monitoring, and securing the organization's hybrid cloud and infrastructure environments. This role serves as a technical leader for cybersecurity operations, cloud security, compliance initiatives, infrastructure engineering, and incident response.

The position combines hands-on infrastructure administration with cybersecurity engineering responsibilities across Microsoft Azure, Microsoft Sentinel, Microsoft 365, Entra ID, AWS, networking, endpoints, and security platforms. Engineering plays a key role in maintaining compliance with SOC 2 Type II controls, improving cyber resilience, supporting audits, and advancing the organization's security maturity.

Responsibilities

  • SOC2 Audit
    • Support organization's annual SOC 2 Type II audit program, including control design, evidence collection, remediation management, auditor coordination, and continuous compliance monitoring.
    • Partner with business and technology stakeholders to ensure security, availability, confidentiality, and change management controls are effectively implemented and operating throughout the audit period.
    • Drive successful completion of SOC 2 Type II examinations with minimal findings by maintaining an audit-ready environment, strengthening internal controls, and promoting a culture of security and compliance.
    • Develop and maintain policies, procedures, risk assessments, and control documentation necessary to support ongoing compliance and future audit readiness.
  • Cybersecurity Operations
    • Administer and optimize Microsoft Sentinel SIEM platform.
    • Develop and maintain security monitoring, analytics rules, alerting, dashboards, and automation workflows.
    • Investigate security incidents and coordinate containment, remediation, and recovery activities.
    • Monitor and respond to threats identified through Microsoft Defender, Sentinel, AWS security services, and third-party platforms.
    • Conduct threat hunting, vulnerability management, and security assessments.
    • Lead incident response activities and coordinate forensic investigations as needed.
    • Maintain security documentation, playbooks, and response procedures.
    • Support penetration testing, tabletop exercises, and disaster recovery testing.
  • Cloud Security & Architecture
    • Design and maintain secure Microsoft Azure environments.
    • Implement Azure security best practices utilizing:
      • Microsoft Entra ID
      • Conditional Access
      • Privileged Identity Management (PIM)
      • Defender for Cloud
      • Azure Security Center
      • Microsoft Purview
    • Secure AWS cloud environments including:
      • IAM
      • CloudTrail
      • GuardDuty
      • Security Hub
      • Config
      • CloudWatch
    • Implement zero-trust security principles across cloud platforms.
  • Infrastructure Engineering
    • Maintain and support hybrid infrastructure environments including:
      • Microsoft Azure
      • AWS
      • Active Directory
      • Microsoft Entra ID
      • Windows Server
      • Virtualization platforms
      • Microsoft 365
      • Network and security appliances
    • Design and implement high-availability and disaster recovery solutions.
    • Manage identity lifecycle and privileged access controls.
    • Support cloud migrations and infrastructure modernization initiatives.
  • Governance, Risk & Compliance
    • Lead technical compliance activities supporting SOC 2 Type II audits.
    • Collaborate with external auditors and internal stakeholders during audit engagements.
    • Develop, maintain, and document security controls and evidence repositories.
    • Perform periodic access reviews, risk assessments, and control testing.
    • Recommend remediation activities to address audit findings and security gaps.
    • Support regulatory and contractual security requirements.
  • Security Automation
    • Develop automation using:
      • PowerShell
      • Azure Automation
      • Logic Apps
      • Sentinel SOAR capabilities
    • Improve security operations through automated detection, response, and reporting.
    • Create executive and operational cybersecurity metrics and dashboards.

Qualifications

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field preferred.

Requirements

  • 3-5+ years of cybersecurity and infrastructure engineering experience.
  • 3+ years managing Microsoft Azure environments.
  • 2+ years administering Microsoft Sentinel or comparable SIEM platforms.
  • Experience supporting SOC 2 Type II audits.
  • Experience securing AWS cloud environments.
  • Experience with incident response and vulnerability management.
  • Experience with Microsoft 365 security technologies.

Technical Skills

  • Required
    • Microsoft Azure
    • Microsoft Sentinel
    • Microsoft Defender Suite
    • Microsoft Entra ID (Azure AD)
    • Active Directory
    • Microsoft 365 Security
    • AWS Security Services
    • PowerShell scripting
    • Vulnerability Management Platforms
    • Incident Response Procedures
    • Security Monitoring and SIEM Operations
    • Network Security Fundamentals
    • Firewall Administration
  • Preferred
    • Microsoft Purview
    • Microsoft Defender XDR
    • Terraform
    • Infrastructure as Code
    • Intune
    • DLP Technologies
    • Security Automation and SOAR
    • Compliance Management Platforms

Preferred Certifications

  • One or more of the following:
    • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
    • Microsoft Security Operations Analyst (SC-200)
    • Microsoft Identity and Access Administrator (SC-300)
    • Azure Security Engineer Associate (AZ-500)
    • Azure Administrator Associate (AZ-104)
    • AWS Certified Security Specialty
    • CISSP
    • CISM
    • GIAC Certifications
    • Security+

Success Metrics

  • Successful completion of annual SOC 2 Type II audits.
  • Reduction in security incidents and mean time to respond (MTTR).
  • Increased security automation and operational efficiency.
  • Improved vulnerability remediation timelines.
  • Successful implementation and optimization of Microsoft Sentinel.
  • Cloud security posture improvements across Azure and AWS.
  • Completion of disaster recovery exercises and security testing initiatives.
  • Consistent compliance with security policies and regulatory requirements.

Physical & Work Environment

  • Fully Remote
  • Participation in an on-call rotation for security incidents and critical infrastructure support.
Before You Apply
️
remote Be aware of the location restriction for this remote position: India
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Cyber Security & Infrastructure Engineer @XO Health
All Others
Salary β‚Ή2,000,000 - β‚Ή2..
Remote Location
Employment Type full-time
Posted 1mth ago
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 125,000+ Remote Jobs
️
remote Be aware of the location restriction for this remote position: India
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 125,000+ Remote Jobs
Γ—
Apply to the best remote jobs
before everyone else

Access 125,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews

⚑ 126,870+ remote jobs, refreshed hourly

πŸ”” Real-time alerts: Apply first, direct to employer

πŸ›‘οΈ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later