Job Description
Job Description - IT / Security Engineer
1. Position Summary
Position Title
IT / Security Engineer
Department
Information Technology & Information Security
Reports To
Head of PMO
Level
Mid/Sr. Engineer Individual Contributor
(One Person Department)
Experience
4+ years relevant experience
Location
Remote India
Working Pattern
US Shift
Employment Type
Full-time, Permanent
Vacancies
01
2. Purpose of the Role
The IT / Security Engineer is responsible for the day-to-day management, security and compliance of PATeam's IT environment. The role combines IT infrastructure, cybersecurity, ISO 27001 implementation, IT asset management, Microsoft licensing and SaaS subscription governance.
3. Key Responsibilities
IT Infrastructure & Security
Manage Microsoft 365, Entra ID, Intune, Active Directory, Windows infrastructure, endpoints, networks, VPNs and firewalls.
Manage MFA, Conditional Access, endpoint security, patching, vulnerability management, backups and disaster recovery.
Maintain IT security policies, access controls and security monitoring.
Manage security incidents, investigations, remediation and root cause analysis.
Compliance & ISO
Implement and maintain the ISO/IEC 27001:2022 ISMS.
Manage security risk assessments, Statement of Applicability, internal audits, corrective actions and audit evidence.
Support GDPR, India DPDP Act, SOC 2, NIST, HIPAA and PCI DSS requirements as applicable.
Support client security questionnaires, due diligence and external audits.
Microsoft License Management
Manage Microsoft licenses, allocations, renewals and utilization.
Conduct periodic license audits and identify unused or underutilized licenses.
Recommend license optimization and cost-saving opportunities.
SaaS & Subscription Management
Maintain an inventory of all SaaS applications and subscriptions.
Conduct an annual review of SaaS applications for business fit, usage, security, duplication and cost effectiveness.
Recommend renewal, consolidation, right-sizing, replacement or termination of subscriptions.
IT Asset Management India
Maintain the physical IT inventory in India, including laptops, monitors, peripherals and other IT equipment.
Track asset allocation, employee assignment, transfers, returns, repairs and disposal.
Conduct periodic physical inventory audits and reconcile records.
Ensure secure recovery, data sanitization and disposal of IT assets.
4. Essential Criteria
4+ years of hands-on IT infrastructure and security experience.
Practical experience with Microsoft 365, Entra ID, Intune, Active Directory and endpoint security.
Experience with ISO/IEC 27001 implementation, audits and compliance.
Working knowledge of GDPR, DPDP Act, SOC 2 and NIST.
Experience with vulnerability management, incident response, backups and network security.
Experience managing IT assets, Microsoft licenses and SaaS subscriptions.
Strong documentation, analytical and communication skills.
Ability to work independently during US hours from India.
5. Desirable
ISO 27001 Lead Implementer/Lead Auditor.
Security certifications such as Security+, CISM, CISA, CEH or Microsoft security certifications.
ITIL Foundation.
PowerShell/automation experience.
Azure security, SIEM, DLP, PAM or Zero Trust experience.
Experience in software consulting or IT services.