Information Security Engineer

IMC Trading

Mumbai

On-site

INR 1,800,000 - 3,000,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

IMC Trading is expanding its Information Security team in Mumbai to mature its Security Operations Centre. The role focuses on threat detection, incident response, and regulatory audits across India, with exposure to EDR, SIEM, SOAR, CSPM, IAM and other controls.

You will work with risk, compliance and auditors to prepare evidence, drive remediation, and advance security maturity through automation and AI-assisted tooling, while maintaining robust documentation for regulator-facing reports.

Qualifications

  • Strong analytical and problem-solving skills.
  • A self-starter with a genuine passion for cybersecurity.
  • 3+ years of hands-on enterprise IT security experience (endpoints/apps on-premises or in cloud).
  • Exposure to security controls such as IAM, vulnerability management, and EDR/NIDS.
  • Familiarity with Indian regulatory cybersecurity landscape (SEBI CSCRF, NSE/BSE/MCX, CERT-In) and ISO 27001 / NIST CSF concepts.
  • Experience supporting audits (cyber, systems, VAPT, ISO/SOC 2) with evidence prep and auditor coordination.
  • Automation using basic coding or low-code/no-code tools.
  • Awareness of AI/ML in security; experience with AI-assisted tooling is a plus.
  • Understanding MITRE ATT&CK framework.
  • Strong documentation and regulator-facing report writing.

Responsibilities

  • Analyse security logs and alerts, respond to incidents or assist remediation.
  • Hunt for potential compromise across infrastructure using threat intel.
  • Report vulnerabilities and recommend remediation steps to tech owners.
  • Support and improve technical security controls.
  • Leverage automation to reduce repetitive manual tasks.
  • Apply AI-assisted tooling to alert triage and investigations, within limitations.
  • Develop reporting to measure security controls effectiveness.
  • Develop and improve incident response playbooks.
  • Support audits: prepare evidence, coordinate with auditors, track observations to closure.

Skills

Analytical thinking
Self-starter
Communication skills
SOC experience
Automation skills
AI in security
MITRE ATT&CK
Problem solving

Education

Bachelor's in information systems or computer science
CompTIA Security+
Certified in Cybersecurity (CC)
CEH or ISO 27001 Lead Auditor/Lead Implementer

Tools

EDR
SIEM
SOAR
CSPM
IAM
Firewalls
NIDS/NIPS

Job description

The Information Security team at IMC Trading is responsible for protecting IMC's intellectual property, IT infrastructure and business operations against external and internal threats. We work closely with technology, risk, compliance, internal audit and business leaders to reduce cyber risk to acceptable levels.

We are looking for an Information Security Engineer to help grow and mature our Security Operations Centre, which runs on EDR, SIEM, SOAR, CSPM, IAM, firewalls, NIDS/NIPS and a range of other security controls. Alongside SOC work, you will play a central role in supporting IMC's regulatory obligations in India, preparing evidence and coordinating the cyber and systems audits that come with operating in this market.

We offer an environment that lets you broaden and deepen your information security knowledge, with access to advanced security technology, frequent training and a culture of knowledge sharing. As you gain experience with our existing SOC technology and processes, you will be given considerable freedom to mature the function through your own initiatives.

Your Core Responsibilities
  • Analyse security logs, alerts and reported events, and respond to or assist with the remediation of incidents.
  • Hunt for potential compromise across the infrastructure using a range of threat intelligence sources.
  • Report discovered vulnerabilities to technology owners and recommend remediation steps.
  • Support and improve technical security controls.
  • Leverage automation and orchestration to remove repetitive manual work.
  • Apply AI-assisted tooling to alert triage, event summarisation and investigation workflows, with a pragmatic view of its limitations.
  • Develop reporting that measures the effectiveness of security controls.
  • Develop and improve incident response playbooks.
  • Support regulatory and assurance audits: prepare evidence, coordinate with auditors and track observations through to closure.
Your Skills And Experience
  • Strong analytical and problem-solving skills.
  • A self-starter with a genuine passion for cybersecurity.
  • Previous SOC experience, and/or 3+ years of hands‑on experience in an enterprise IT environment managing endpoints and applications on‑premises or in the cloud.
  • Exposure to security controls such as identity and access management, vulnerability management, and endpoint detection and response.
  • Working knowledge of — or a strong willingness to learn — the Indian regulatory cybersecurity landscape: SEBI CSCRF, exchange circulars (NSE/BSE/MCX) and CERT‑In directions, along with familiarity with ISO 27001 and the NIST CSF on which CSCRF is modelled.
  • Experience supporting audits (cyber audit, systems audit, VAPT, ISO or SOC 2 assessments) — evidence preparation, auditor coordination and observation remediation — is a strong plus.
  • Automation using basic coding skills or low‑code / no‑code tools.
  • Awareness of AI and machine learning applications in security operations is a plus; hands‑on experience with AI‑assisted security tooling or LLM‑based workflows is highly regarded.
  • Understanding of common attack techniques and frameworks such as MITRE ATT&CK.
  • Strong documentation and communication skills, with the ability to translate technical findings into audit‑ready evidence and regulator‑facing reports.
  • Relevant tertiary and/or security qualifications are a plus — for example a Bachelor's degree in information systems or computer science, CompTIA Security+, Certified in Cybersecurity (CC), CEH, or ISO 27001 Lead Auditor / Lead Implementer. If you don't have them yet, you will be supported to pursue certifications on the job.
About Us

IMC is a research-driven trading firm where quantitative modeling, machine learning, and engineering shape how modern markets are traded. A stabilizing force in markets since 1989, we provide liquidity across trading venues, delivering the best outcome in value and risk management to investors. Using our own technology and capital, we build proprietary systems and algorithms that operate across global markets. Our researchers, traders, and engineers work as a collective, combining rapid experimentation, advanced infrastructure, and real‑time feedback to turn insight into execution and execution into advantage.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Engineer
Information Security Engineer

IMC B.V. • Mumbai City

On-site
INR 1,500,000 - 2,300,000
Information Security Engineer
Information Security Engineer

imc • Mumbai

On-site
INR 1,600,000 - 2,300,000
Risk Analyst
Risk Analyst

IMC • Mumbai

On-site
INR 1,200,000 - 2,100,000
IT Operations Engineer
IT Operations Engineer

IMC Trading • Maharashtra

On-site
INR 800,000 - 1,400,000
Site Reliablity Engineer
Site Reliablity Engineer

IMC • Mumbai

On-site
INR 1,800,000 - 2,800,000
Site Reliablity Engineer
Site Reliablity Engineer

ittihad medical centre • Mumbai

On-site
INR 1,200,000 - 2,500,000
Trade Surveillance Analyst
Trade Surveillance Analyst

IMC Trading • Maharashtra

On-site
INR 1,200,000 - 1,800,000
Lead Information Security Analyst_SecOps
Lead Information Security Analyst_SecOps

InMobi Advertising • Lucknow

On-site
INR 1,500,000 - 2,500,000
Java Software Developer
Java Software Developer

IMC Trading • Maharashtra

On-site
INR 900,000 - 1,400,000
IT Operations Engineer
IT Operations Engineer

IMC B.V. • Mumbai

On-site
INR 800,000 - 1,200,000