Security Apps & Operations Engineer

Rediminds, Inc.

Gurugram District

On-site

INR 800,000 - 1,500,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Competitive salary + bonus
Certifications support
Security-first culture

Job summary

RediMinds, Inc. is looking for a Security Apps & Operations Engineer to secure applications and cloud infrastructure, operate SIEM/SOC tooling, and embed DevSecOps practices across the SDLC.

You will work with engineering, IT, and compliance teams to identify risks, respond to threats, and improve our security posture. This rotational role overlaps US hours and requires collaboration on audits, threat responses, and ongoing security operations.

Qualifications

  • 2–3 years in application security or security operations.
  • Bachelor's degree in CS or Information Security.
  • Experience with cloud security services and SIEM tooling.
  • Proficiency with at least one major cloud platform and security tooling.

Responsibilities

  • Integrate security tooling (SAST/DAST/SCA) into CI/CD pipelines and gate security.
  • Conduct vulnerability assessments and coordinate remediation with development teams.
  • Threat modeling and security code reviews for new features and major changes.
  • Maintain application security standards, policies, and secure coding guidelines.
  • Track vulnerability metrics, SLA adherence, and risk exposure.
  • Monitor and enforce cloud security configurations across AWS/Azure/GCP.
  • Manage IAM policies and least-privilege controls across clouds.
  • Perform cloud infrastructure security reviews and CIS benchmarks.
  • Respond to cloud security incidents and drive remediation.
  • Operate, tune, and maintain SIEM platforms; develop detection rules.
  • Create dashboards and reports for security metrics; participate in on-call.

Skills

Cloud platforms
SIEM tooling
DevSecOps tooling
Threat modeling
Python scripting
Networking basics
Security governance
Vulnerability management

Education

Bachelor's degree in Computer Science or Information Security

Tools

Splunk
Microsoft Sentinel
Elastic Security
Semgrep
SonarQube
OWASP ZAP
Burp Suite
Terraform
CloudFormation

Job description

We are looking for a motivated Security Apps & Operations Engineer to join our security team. In this role you will be responsible for securing our applications and cloud infrastructure, operating and tuning our SIEM/SOC tooling, and embedding security practices into the software development lifecycle (DevSecOps). You will work cross-functionally with engineering, IT, and compliance teams to identify risks, respond to threats, and continuously improve our security posture. This is a rotational shift role with overlap with US hours.

Key Responsibilities
Application Security & DevSecOps
  • Integrate security tooling (SAST, DAST, SCA) into CI/CD pipelines and enforce security gates.
  • Conduct vulnerability assessments and coordinate remediation with development teams.
  • Perform threat modeling and security code reviews for new features and major changes.
  • Maintain and improve application security standards, policies, and secure coding guidelines.
  • Track and report on vulnerability metrics, SLA adherence, and risk exposure.
Cloud Security (AWS / Azure / GCP)
  • Monitor and enforce cloud security configurations using tools such as AWS Security Hub, Azure Defender, or GCP Security Command Center.
  • Manage Identity and Access Management (IAM) policies, least-privilege principles, and privilege access controls across cloud environments.
  • Perform cloud infrastructure security reviews and ensure compliance with CIS Benchmarks and organizational standards.
  • Respond to cloud security incidents and misconfigurations, driving root-cause analysis and remediation.
SIEM & SOC Operations
  • Operate, tune, and maintain SIEM platforms (e.g., Splunk, Microsoft Sentinel, or equivalent).
  • Develop and maintain detection rules, correlation queries, and alerting logic to reduce noise and improve fidelity.
  • Triage and investigate security alerts; elevate confirmed incidents following the IR playbook.
  • Create dashboards and reports to surface key security metrics for stakeholders.
  • Participate in on-call rotation for security incident response.
General Operations
  • Support audit activities (SOC 2, ISO 27001, or similar) by providing evidence and remediating findings.
  • Document runbooks, playbooks, and standard operating procedures.
  • Stay current with the threat landscape, emerging CVEs, and security tooling developments.
  • Contribute to day-to-day security operation (monitoring)
Requirements
Experience & Education
  • 2 – 3 years of hands‑on experience in an application security, security operations, or similar role.
  • Bachelor's degree in Computer Science, Information Security, or equivalent practical experience.
Technical Skills
  • Proficiency with at least one major cloud platform (AWS, Azure, or GCP) and its native security services.
  • Experience with SIEM platforms (Splunk, Sentinel, Elastic Security, or similar) — including writing queries/rules (SPL, KQL, etc.).
  • Familiarity with DevSecOps tooling: SAST (e.g., Semgrep, SonarQube), DAST (e.g., OWASP ZAP, Burp Suite), SCA (e.g., Snyk, Dependabot).
  • Understanding of OWASP Top 10, CVE scoring, and vulnerability management workflows.
  • Scripting ability in Python, Bash, or PowerShell for automation and tooling.
  • Working knowledge of networking concepts (TCP/IP, DNS, TLS, firewalls, proxies).
Soft Skills
  • Clear written and verbal communication — able to explain technical risk to non‑technical stakeholders.
  • Detail‑oriented with strong analytical and problem‑solving skills.
  • Collaborative team player who thrives in a fast‑paced, cross‑functional environment.
Preferred Qualifications
  • Industry certifications such as CompTIA Security+, AWS Security Specialty, GCIA, GCSA, CEH, or equivalent.
  • Experience with container security (Docker, Kubernetes) and infrastructure‑as‑code security scanning (Terraform, CloudFormation).
  • Familiarity with compliance frameworks: SOC 2, ISO 27001, NIST CSF, or PCI‑DS.
  • Prior exposure to incident response or digital forensics workflows.
  • Experience with ticketing and ITSM platforms (Jira, ServiceNow).
What We Offer
  • Competitive salary and performance‑based bonus.
  • Support for professional certifications and continuous learning.
  • Collaborative, security‑first culture where your work has real impact.
About Rediminds

At RediMinds, we build AI‑enabled systems that help complex industries operate better, faster, and more intelligently. Our work spans healthcare, legal, finance, government, and other high‑impact domains where software quality, trust, and speed truly matter.

We are a growing, entrepreneurial team that values ownership, clarity, compassion, and technical excellence. We're looking for builders who want to grow with us, contribute meaningfully, and be part of a team creating real products with real‑world impact.

RediMinds — building the future with people who care enough to get the details right.

RediMinds, Inc. is an Equal Opportunity Employer. We are committed to creating an inclusive environment for all employees and applicants and prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity or expression, age, national origin, disability, veteran status, or any other protected characteristic as outlined by federal, state, or local laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Apps & Operations Engineer
Security Apps & Operations Engineer

Rediminds • Gurugram District

On-site
INR 1,500,000 - 2,800,000
Competitive salary
Bonus program
Certifications support
+1
Security & Compliance Engineer Intern
Security & Compliance Engineer Intern

AI Prof • Hyderabad

On-site
INR 1,500,000 - 2,100,000
Cybersecurity Engineer Engineering
Cybersecurity Engineer Engineering

Practice by Numbers • Gurugram District

On-site
INR 4,000,000 - 7,000,000
AI Detection Engineer - SOC Analyst IV
AI Detection Engineer - SOC Analyst IV

Medium • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
Cybersecurity Engineer – Engineering
Cybersecurity Engineer – Engineering

Practice by Numbers • Gurugram District

On-site
INR 1,500,000 - 2,600,000
Security Operations Engineer
Security Operations Engineer

Pure Storage India Pvt Ltd • Bengaluru

On-site
INR 2,500,000 - 4,500,000
SE- Security Engineer
SE- Security Engineer

Keka Technologies Private Limited • Dadri

On-site
INR 5,709,000 - 8,563,000
Information Security Engineer
Information Security Engineer

revantage • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Senior Software Engineer, Information Security
Senior Software Engineer, Information Security

Icertis • Maharashtra

On-site
INR 4,000,000 - 7,000,000