Senior Security Engineer
Mastek is looking for a Senior Security Engineer to add to our growing Threat Detection and Response (TD&R) Team. This is a hands-on technical role that will build our clients’ first line of defense against cybersecurity threats in a complex and evolving landscape. You will be responsible for our detection and response to lifecycles, identifying and preventing threats from impacting on our employees, customers and other stakeholders. As a Senior Security Engineer, you will have the opportunity to apply your experience to provide technical leadership to the team, build a platform to identify and stop threats, work with data to solve complex security challenges, and ultimately defend Client against critical threats. Roles and Responsibilities: ● Build a platform to detect threats to the company using an engineering-first approach that prioritizes reliability, maintainability and scalability.● Leverage AI and automation to streamline detection and response operations in a safe and reliable manner. ● Onboard, normalize and optimize security logging data to support detection engineering, applied ML models, and efficient querying during incidents. ● Apply an engineering mindset to develop high-fidelity, rule-based and ML-driven detections as code, utilizing automated testing and CI/CD pipelines for deployment. ● Own the end-to-end response to alerts, threats, and security incidents, including participating in on-call rotations. ● Proactively monitor the threat landscape to identify and track emerging threats, ensuring that appropriate detective and preventative controls are deployed. ● Partner with development teams to design controls for a cloud first infrastructure (AWS, Kubernetes, etc.) Qualifications: ● 5+ years of experience in software, security, and/or data engineering. ● Strong desire to apply the latest technology including AI and ML to defend against threats. ● Experience with data pipelines and data engineering, especially centralized logging, SIEM tools, and data lakes. ● Desire to measure the success of your work with quantitative tools like Precision and Recall. ● Proficiency in at least one programming language like Python, Go or similar. ● Proven experience with cloud infrastructure and technologies like AWS, Kubernetes, containers, IaC, etc. ● Proven experience with good engineering practices like git/GitHub and CI/CD automations. ● Familiarity with tactics, techniques, and procedures used by threat actors. ● Experience detecting and responding to cybersecurity incidents. ● Strong passion for continuous learning, especially relating to cybersecurity and technology. ● Team player with strong oral and written communication skills.● Effective ability to make decisions independently and provide clear technical guidance to others.