Senior Security Engineer, Detection & Response

4 Months ago • 5-7 Years • Cyber Security

Job Summary

Job Description

We're seeking an experienced Security Engineer for our Bangalore office. You'll monitor and analyze security alerts, conduct threat hunting, and respond to incidents. Experience with AWS security services, Python, and SIEM systems is essential.
Must have:
  • AWS Security Services
  • Python Scripting
  • SIEM Systems
  • Threat Hunting
Good to have:
  • Cloud Security
  • Vulnerability Management
  • Incident Response
  • Forensic Investigations
Perks:
  • Full Medical Coverage
  • Unlimited PTO

Job Details

Who Are We

Postman is the world’s leading API platform, used by more than 35 million developers and 500,000 organizations, including 98% of the Fortune 500. Postman is helping developers and professionals across the globe build the API-first world by simplifying each step of the API lifecycle and streamlining collaboration—enabling users to create better APIs, faster.

The company is headquartered in San Francisco and has an office in Bangalore, where it was founded. Postman is privately held, with funding from Battery Ventures, BOND, Coatue, CRV, Insight Partners, and Nexus Venture Partners. Learn more at postman.com or connect with Postman on X (formerly Twitter) via @getpostman.

P.S: We highly recommend reading The "API-First World" graphic novel to understand the bigger picture and our vision at Postman.

 

Job Summary:

We are seeking an experienced Senior Security Engineer, Detection & Response to join our dynamic security team. In this role, you will provide Level 2 support to our managed Security Operations Center (SOC), monitoring and analyzing security alerts and emerging threats across our corporate, cloud and production environments to identify and respond to potential security incidents and critical vulnerabilities.

You’ll work closely with the broader security and IT team and other engineering teams to develop a strong understanding of our ecosystem to enable you to act effectively as an Incident Commander when required, and coordinate incident resolution with cross-functional teams to ensure 24/7 coverage. This understanding will aid you in your threat hunting and forensic investigations to uncover indicators of compromise and patterns of malicious activity, as well as fine-tune and develop additional detection rules, configurations, custom playbooks and automations tailored to our environment in collaboration with our managed SOC.

In the area of vulnerability management, you will monitor security advisories and threat intelligence feeds, and drive proactive actions within the organization. Your collaboration with cross-functional teams will be essential in proactively detecting and responding to security threats and ensuring the overall security of our digital assets.

Key Responsibilities:

  • Security Operations Duties:

    • Provide Level 2 support to a managed SOC and support monitoring security alerts and events from various sources, including corporate tools, WAF, security information and event management (SIEM) systems, and AWS to identify potential security incidents, intrusions and vulnerabilities

    • Conduct threat hunting and perform forensic investigations to identify indicators of compromise (IOCs) and patterns of malicious activity.

    • Coordinate and manage incident resolution with cross-functional teams, including acting as Incident Commander during incidents to help provide 24/7 coverage with other team members.

    • Support Cloud Detection & Response platforms to enable various automated notification and containment workflows.

  • Detection Engineering :

    • Fine-tune and develop detection rules, configurations, and automations based on new threats, lessons learned, or environmental changes.

    • Work with the managed SOC to develop custom playbooks.

    • Where possible, write scripts and develop custom tools to automate the detection and response processes. Adhere to SSDLC best practices when writing scripts or developing tools.

    • Identify any gaps in logging coverage to ensure we maintain the highest visibility into any threats to our environment 

    • Manage Cloudflare security products for web application security, including WAF rules and DDoS protection.

    • Collaborate with cross-functional teams to proactively detect and respond to potential security threats and ensure the overall security of our organization's digital assets.

  • Vulnerability Management:

    • Monitor security advisories, threat intelligence feeds, and vendor updates for critical threats to drive action back into the enterprise/product organization.

 

Qualifications:

  • Education & Experience:

    • Bachelor’s degree in Computer Science, Information Security, or a related field.

    • Minimum of 5-7 years of experience in a SOC analyst or security operations role.

  • Technical Skills:

    • Proficiency in programming and relevant scripting languages such as Python, JavaScript, Bash, and PowerShell.

    • Experience with AWS security services and best practices.

    • Familiarity with Cloudflare, SentinelOne, Okta, and related security tools.

    • Understanding of network protocols, firewalls, and intrusion detection systems.

  • Soft Skills:

    • Strong analytical and problem-solving abilities.

    • Excellent communication skills, both written and verbal.

    • Ability to work independently and as part of a team.

Preferred Qualifications:

  • Certifications such as CISSP, CEH, and AWS Certified Security Specialty.

  • Experience with infrastructure as code tools (e.g., Terraform).

  • Knowledge of DevSecOps practices and CI/CD pipelines.

  • Familiarity with regulatory compliance standards (e.g., GDPR, ISO 27001).

 

Our Values:

At Postman, we create with the same curiosity that we see in our users. We value transparency and honest communication about not only successes, but also failures. In our work, we focus on specific goals that add up to a larger vision. Our inclusive work culture ensures that everyone is valued equally as important pieces of our final product. We are dedicated to delivering the best products we can.

Benefits:

We offer competitive salary and benefits, and a flexible schedule working with a fun, collaborative team. Enjoy full medical coverage, unlimited PTO, and a monthly lunch stipend. Yes, seriously. We want you to eat well wherever you’re at.) Plus, our wellness program will help you stay healthy from your location with fitness-related reimbursements. Our frequent and fascinating virtual team-building events will keep you connected, while our donation-matching program can support the causes you care about. We’re building a long-term company with an inclusive culture where everyone can be the best version of themselves, and we want you to be part of it.

This position requires you to be present in our Bangalore office on Mondays,Wednesdays & Fridays.

 

Similar Jobs

SSC Technologies - Principal SRE

SSC Technologies

New York, New York, United States (On-Site)
3 Months ago
Google - CPU Design Verification Engineer, Google Cloud

Google

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
PwC - Manager - Dev Ops lead (Risk Services)

PwC

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
4 Months ago
PwC - IN_Associate_Azure Cloud Data Engineer_OneCloud _Advisory _Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Sourcegraph  Inc  - Support Engineer

Sourcegraph Inc

(Remote)
3 Weeks ago
ION - Senior Security Architect

ION

Pisa, Tuscany, Italy (On-Site)
4 Months ago
PwC - Risk Services - Change Management Specialist

PwC

Singapore (On-Site)
4 Months ago
ION - Cyber Security Analyst, Italy

ION

Pisa, Tuscany, Italy (On-Site)
4 Months ago
Tencent - Data Compliance Manager

Tencent

Shenzhen, Guangdong Province, China (On-Site)
1 Month ago
PwC - IN-Director_Delivery and Quality Excellence_Advisory Corporate_Advisory_Kolkata

PwC

Kolkata, West Bengal, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Rockstar Games - Senior Build & Release Engineer

Rockstar Games

United States (On-Site)
1 Month ago
Easybrain - Senior Data Engineer

Easybrain

Cyprus (On-Site)
6 Months ago
ByteDance - Senior/Tech Lead Network Software Development Engineer, Switch - Seattle

ByteDance

Seattle, Washington, United States (On-Site)
3 Months ago
IGT - Temporary Systems Administrator

IGT

Providence, Rhode Island, United States (On-Site)
2 Months ago
DEVOTEAM - Distributed Cloud l Google Data Project

DEVOTEAM

Lisbon, Lisbon, Portugal (Remote)
3 Months ago
Google - CPU Design Verification Engineer, Google Cloud

Google

(On-Site)
1 Month ago
Paytm - DevOps - Lead DevOps

Paytm

Noida, Uttar Pradesh, India (Hybrid)
3 Months ago
Crunchyroll - Senior IT Engineer, Operations

Crunchyroll

Des Moines, Iowa, United States (On-Site)
4 Weeks ago
Fluence - Jr. Controls Engineer (m/f/d) - German speaker

Fluence

Erlangen, Bavaria, Germany (Hybrid)
4 Months ago
Intel Corporation - Full Stack Software Development Engineer

Intel Corporation

San José, San José Province, Costa Rica (Hybrid)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Britive - SENIOR UI ENGINEER- BANGALORE

Britive

Bengaluru, Karnataka, India (Remote)
2 Months ago
Paytm - Revenue Management - SM/AGM -  Business Enterprise Mid Market

Paytm

Noida, Uttar Pradesh, India (On-Site)
2 Months ago
Cisco Meraki - Senior Software Engineer (MS) - Ruby on Rails, React, 5+ Years

Cisco Meraki

Bengaluru, Karnataka, India (On-Site)
4 Months ago
WebMD - Associate Technical Product Manager

WebMD

Navi Mumbai, Maharashtra, India (On-Site)
3 Months ago
Simplify 360 - Tech Lead Fullstack (Java + React)

Simplify 360

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Egnyte - Marketing Operations Manager

Egnyte

India (On-Site)
2 Months ago
Pollen - Influencer Marketing Manager

Pollen

Mumbai, Maharashtra, India (On-Site)
4 Months ago
bosh group india - Attorney

bosh group india

Karnataka, India (On-Site)
1 Month ago
Devrev - Solutions Engineer - Startup

Devrev

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Springer Nature - Senior UI Developer

Springer Nature

Pune, Maharashtra, India (Hybrid)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Credit Risk Modelling Senior Associate

PwC

Montreal, Quebec, Canada (On-Site)
3 Months ago
Google - Cloud Technical Solutions Engineer, Security

Google

(On-Site)
2 Months ago
ION - Senior Security Architect

ION

Collecchio, Emilia-Romagna, Italy (On-Site)
4 Months ago
Rockstar Games - Lead Product Manager, Security

Rockstar Games

San Diego, California, United States (On-Site)
1 Month ago
Reversing Labs - Application Security Architect

Reversing Labs

Germany (Remote)
2 Weeks ago
PwC - Associate - Kolkata Y-14 - Technology Consulting

PwC

Kolkata, West Bengal, India (On-Site)
4 Months ago
Anavation - Information Security Engineer

Anavation

Reston, Virginia, United States (On-Site)
3 Months ago
PwC - IT Audit Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
4 Months ago
PwC - IT Controls Consultant

PwC

Sofia, Sofia City Province, Bulgaria (Hybrid)
4 Months ago
PwC - Risk Services - AI Strategy Lead

PwC

Singapore (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Central Sulawesi, Indonesia (Remote)

Toronto, Ontario, Canada (On-Site)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (On-Site)

New York, New York, United States (On-Site)

Bengaluru, Karnataka, India (On-Site)

San Francisco, California, United States (Hybrid)

San Francisco, California, United States (Hybrid)

View All Jobs

Get notified when new jobs are added by Postman

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug