IT Security Engineer

CustomerInsights.AI

Gurugram District

On-site

INR 1,200,000 - 2,400,000

Full time

36 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

CustomerInsights.AI is a Gurgaon-based analytics and AI-driven company seeking an IT Security Engineer with 4+ years of hands-on cybersecurity operations experience. You will own L1 security operations, manage endpoints, IAM, and threat response while collaborating with IT, audit, and compliance teams.

You will configure Microsoft 365 Defender, Azure AD, Intune, and MDM policies, conduct vulnerability remediation, and document controls to support ISO/SOC 2 readiness.

Qualifications

  • 4+ years of hands-on IT security experience in security operations
  • Strong knowledge of Microsoft 365 Defender, Purview, Entra ID, and Intune
  • Experience with endpoint security tools (EDR, antivirus, disk encryption, MDM)

Responsibilities

  • End-to-end L1 IT security operations from device setup to user lifecycle.
  • Governance and monitoring of Microsoft 365 and Azure AD security.
  • Proactive threat detection, incident response, and remediation.
  • Maintain security documentation, audit evidence, and compliance readiness.
  • Lead IAM, MFA, SSO, and conditional access configurations.

Skills

IT security operations
Endpoint security
Vulnerability management
Identity security
Microsoft 365 security
Azure AD security
MDM administration
Phishing/Incident response
SIEM monitoring
Documentation skills

Tools

Microsoft Intune
EDR tools
Qualys/Tenable
Microsoft 365 Defender

Job description

CustomerInsights.AI is a global analytics and AI-driven company founded in 2018, enabling data-driven commercial decision-making for Life Sciences organizations. Our product ecosystem, including ciPARTHENON and ciATHENA, leverages Analytics Automation, Artificial Intelligence, and Machine Learning to deliver timely, actionable insights to key stakeholders. With teams across North America and India, we work with client organizations ranging from emerging startups to large enterprises.

Position Overview

We are seeking a proactive and detail-oriented IT Security Engineer with 4+ years of hands-on experience in cybersecurity operations, endpoint security, vulnerability management, and identity security. In this role, you will be a critical part of our IT team, responsible for both day-to-day L1 security operations and strategic security initiatives.

You will work collaboratively with IT, audit, compliance, and business stakeholders to ensure our security posture remains strong, our endpoints are secured, and our Microsoft 365 & cloud environments are configured to the highest standards.

You will own and drive:
  • End-to-end L1 IT Security operations — from device setup to user lifecycle management
  • Microsoft 365 & Azure AD security governance, monitoring, and policy enforcement
  • Proactive threat detection, incident response, and vulnerability remediation
  • Security documentation, compliance readiness, and audit evidence management
Key Responsibilities:
L1 IT Operations & Endpoint Management
  • Device Provisioning: Perform end-to-end laptop setup and configuration for new joiners:
  • Imaging, OS configuration, software installation, and domain enrollment
  • Applying security baselines, disk encryption (BitLocker), and MDM enrollment
  • Asset tagging, inventory tracking, and documentation in the CMDB
  • Onboarding: Manage the complete employee onboarding process from an IT Security perspective:
  • Create user accounts across Active Directory, Azure AD, and M365
  • Assign role-based licenses, groups, and permissions as per approved access matrix
  • Configure MFA, SSO, and ensure secure first-login experience
  • Walk new employees through IT security policies and acceptable use guidelines
  • Offboarding: Execute secure and timely employee offboarding processes:
  • Disable/delete accounts across all systems within SLA on last working day
  • Revoke VPN, email, application, and cloud resource access immediately
  • Retrieve company devices, wipe data, and update inventory records
  • Archive mailboxes and transfer data ownership to Reporting Manager

Endpoint Security: Implement and manage endpoint security controls including antivirus, EDR agents, disk encryption, USB controls, and device hardening policies

  • MDM Administration: Administer MDM (Microsoft Intune / similar) enroll devices, push policies, and enforce compliance
  • L1 Security Support: Provide Level 1 security support for end-user security issues, phishing reports, and access requests
  • M365 Portal Review: Conduct regular reviews of the Microsoft 365 Defender, Purview, and Compliance portals to identify security gaps, misconfigurations, and active threats:
  • Review Secure Score recommendations and implement approved improvements
  • Monitor Exchange Online Protection (EOP), Defender for Office 365 alerts and quarantine
  • Audit SharePoint, OneDrive, and Teams sharing settings and external access
  • Policy Implementation: Design, implement, and enforce Microsoft 365 security policies across the tenant:
  • Conditional Access policies — location-based, device compliance, and risk-based
  • Data Loss Prevention (DLP) policies for email, Teams, SharePoint, and endpoints
  • Information Protection labels and retention policies in Microsoft Purview
  • Anti-phishing, anti-spam, safe links, and safe attachments policies in Defender
  • Policy Review: Perform scheduled reviews of all active M365 security policies to ensure continued effectiveness:
  • Review and update Conditional Access, DLP, and MFA policies quarterly
  • Identify redundant or conflicting policies and propose rationalization
  • Document policy change history and maintain an approval audit trail
  • M365 Documentation: Prepare and maintain comprehensive security documentation for M365 configurations:
  • Maintain a current M365 security configuration baseline document
  • Document all policy implementations with rationale, scope, and exceptions
  • Keep runbooks and SOPs updated for common M365 security tasks
  • Security Suggestions: Provide proactive security recommendations to improve the M365 security posture:
  • Analyze Secure Score trends and present improvement roadmaps to management
  • Research and propose adoption of new security features (e.g., Copilot for Security, SSPM tools)
  • Benchmark tenant configuration against CIS M365 benchmarks and industry best practices
  • Azure AD Governance: Monitor and manage Azure AD / Entra ID configurations:
  • Enforce MFA, SSPR, and Privileged Identity Management (PIM)
  • Review Guest user access, enterprise app permissions, and OAuth consent grants
  • Conduct periodic User and Admin access reviews, action findings within SLA
Security Monitoring & Incident Response
  • Alert Monitoring: Monitor and triage alerts from SIEM, EDR, DLP, MDM, and M365 Defender portals daily
  • Incident Response: Perform initial investigation, containment, and documentation for security incidents:
  • Follow defined incident response playbooks for phishing, malware, data leakage, and unauthorized access
  • Escalate confirmed incidents with a detailed timeline and impact assessment
  • Vulnerability Management: Conduct regular vulnerability scans, validate findings, and track remediation with IT and engineering teams
  • Threat Hunting: Perform threat hunting activities and proactively identify indicators of compromise (IOCs)
Identity & Access Management (IAM)
  • Enforce MFA, RBAC, and least privilege access principles across all platforms
  • Conduct periodic access reviews and certifications; remediate access anomalies
  • Support user onboarding and offboarding to ensure secure provisioning and deprovisioning
  • Manage privileged accounts and admin access with appropriate oversight and logging
Compliance, Documentation & Audit Readiness
  • Prepare audit-ready evidence packages for ISO 27001, SOC 2 Type II, and internal audits
  • Maintain and regularly update security SOPs, configuration baselines, and policy repositories
  • Support risk assessments and vendor security reviews; document findings and track remediationParticipate in security awareness programs and organization-wide risk mitigation initiatives
Qualifications:
  • 4+ years of hands-on experience in IT security, security operations, or related IT roles
  • Strong working knowledge of Microsoft 365 Security suite Defender, Purview, Entra ID, and Intune
  • Experience with endpoint security tools (EDR, antivirus, disk encryption, MDM)
  • Familiarity with SIEM platforms, log monitoring, and alert triage
  • Understanding of IAM concepts: MFA, RBAC, Conditional Access, PIM
  • Hands-on experience with vulnerability scanning tools (Qualys, Tenable, or similar)
  • Knowledge of security frameworks: ISO 27001, SOC 2
  • Strong documentation skills ability to write clear SOPs, policies, and audit evidence
  • Excellent communication and stakeholder management skills
  • Ability to manage multiple priorities in a dynamic work environment
  • Flexible to collaborate across different time zones, including IST and US business hours, based on team and project needs
  • Willing to provide occasional extended-hour support, when required, for collaboration with US stakeholders, security operations, or critical incident support
Preferred Certifications (Not Mandatory)
  • CompTIA Security+
  • Microsoft SC-900 – Microsoft Security, Compliance, and Identity Fundamentals
  • Microsoft SC-200 – Microsoft Security Operations Analyst
Job Location

Gurgaon

Why Join Us?
  • Play a key role in shaping the next generation of intelligent enterprise platforms
  • Work at the intersection of cutting-edge AI and real-world business impact
  • Collaborate with passionate data scientists, engineers and domain experts
  • Benefit from a flexible work environment focused on continuous learning and innovation
Culture & Values

We foster a high-ownership, performance-driven culture where teams are encouraged to think creatively, act responsibly, and deliver measurable outcomes. Our values guide how we collaborate, make decisions, and build long-term partnerships.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Engineer
Information Security Engineer

Customerinsights.ai • Gurugram District

On-site
INR 1,200,000 - 1,800,000
IT Security & Compliance Engineer
IT Security & Compliance Engineer

Rapyuta Robotics • Chennai District

On-site
INR 1,200,000 - 2,200,000
Competitive salary
Great team culture
IT Security & Compliance Engineer
IT Security & Compliance Engineer

Rapyuta Robotics Co. • Chennai District

On-site
INR 2,000,000 - 4,000,000
Competitive salary
Great team culture
Challenging projects
IT Security And Compliance Engineer
IT Security And Compliance Engineer

Rapyuta Robotics • Chennai District

On-site
INR 1,500,000 - 2,500,000
Competitive salary
Great team culture
Information Security Manager - Microsoft 365 Security
Information Security Manager - Microsoft 365 Security

Neara • Ahmedabad District

On-site
INR 2,800,000 - 4,600,000
Free health insurance
Office game zone
In-office kitchen with lunch service
+3
Technical Specialist - Azure DevSecOps
Technical Specialist - Azure DevSecOps

Noventiq India • Gurugram District

Hybrid
INR 1,200,000 - 1,800,000
Insurance – Group Medical Coverage
Learning/Development Courses
Flexible Work Hours
+2
Senior Software Engineer, Information Security
Senior Software Engineer, Information Security

Icertis • Maharashtra

On-site
INR 4,000,000 - 7,000,000
Senior Engineer – Cloud Engineering
Senior Engineer – Cloud Engineering

SecurityHQ • Pune District

On-site
INR 1,800,000 - 3,000,000
Associate Infrastructure & Security Engineer
Associate Infrastructure & Security Engineer

Xiarch Solutions • Gurugram District

On-site
INR 350,000 - 520,000
Mentorship and career growth
Certifications support
Competitive compensation
+1
Cyber Security Engineer
Cyber Security Engineer

Futurism Technologies • Mhalunge

On-site
INR 1,800,000 - 3,400,000