Sobre este puesto de Senior Security Operations Engineer en Everpure
Everpure (NYSE: P) has evolved from storage pioneer to data platform, closing fiscal 2026 with $3.7 billion in revenue, its first billion-dollar quarter, and accelerating growth into FY27. Our strategic agenda spans the companies defining the next era of technology - hyperscalers, AI labs, the AI hardware supply chain, data platform providers, and the broader AI ecosystem.
This type of work—work that changes the world—is what the tech industry was founded on. So, if you're ready to seize the endless opportunities and leave your mark, come join us.
THE ROLE
As a Senior Security Operations Engineer – Attack Surface Management, you will help engineer, operate, and continuously improve our enterprise Attack Surface and Vulnerability Management capabilities.
You will focus on discovering and understanding our attack surface, identifying vulnerabilities and exposures, prioritizing them based on real-world risk, and driving remediation across our global environment.
The role spans Attack Surface Management, Vulnerability Management, Zero Trust, Secrets and Credential Security, SSPM, Deception, Detection Engineering and Security Automation. We are looking for engineers with strong ASM/Vulnerability Management fundamentals and deeper expertise in one or more adjacent security domains.
WHAT YOU’LL DO
- Engineer and improve enterprise Attack Surface and Vulnerability Management across cloud, infrastructure, endpoints, applications, and internet-facing environments.
- Discover and correlate assets across security platforms and identify unknown, unmanaged, stale, and externally exposed assets.
- Drive risk-based vulnerability prioritization using asset criticality, exposure, exploitability, known exploitation, threat intelligence, and compensating controls.
- Establish remediation workflows and SLAs and partner with asset owners to drive measurable risk reduction.
- Operate and troubleshoot Zscaler ZIA/ZPA, including SSL inspection, access policies, connectivity, and Zero Trust controls.
- Discover and investigate exposed secrets and credentials across source code, CI/CD, cloud, repositories, and enterprise platforms, and coordinate remediation and credential rotation.
- Develop and improve SIEM detections to identify exploitation, anomalous activity, credential abuse, and attack-surface-related threats.
- Support threat hunting and incident investigations using vulnerability, asset, endpoint, and threat intelligence context.
- Develop automation using Python, PowerShell, REST APIs, and SOAR for asset enrichment, vulnerability triage, remediation tracking, integrations, and reporting.
- Partner with Cloud, Infrastructure, Network, Product Security, and Engineering teams to investigate exposures and drive remediation.
- Translate technical findings into clear, actionable risk guidance and reporting for technical teams and leadership.
- Support security governance and compliance requirements including SOC 2, ISO 27001, and NIST.
WHAT YOU BRING
- 7+ years of cybersecurity experience, with hands-on experience in Security Operations, Attack Surface Management, Vulnerability Management, or Exposure Management.
- Strong understanding of asset discovery, vulnerability lifecycle, risk-based prioritization, remediation, and validation.
- Hands-on experience with platforms such as Tenable, Qualys, Wiz, Prisma Cloud, or similar technologies.
- Strong security fundamentals across TCP/IP, DNS, HTTP/HTTPS, TLS, proxies, firewalls, operating systems, identity, and cloud infrastructure.
- Experience automating security workflows using Python, PowerShell, REST APIs, or similar technologies.
- Strong troubleshooting and analytical skills with the ability to independently investigate complex security problems.
- Ability to influence and collaborate with engineering and infrastructure teams to drive remediation.
Experience in one or more of the following is highly valued:
- Zscaler ZIA/ZPA/ ZDeception/ Zero Trust
- Vulnerability Discovery, Reporting and Management - Tenable, Qualys,Rapid7 or similar
- Secrets Discovery & Credential/Password Security – GitGuardian, Gitleaks, TruffleHog, or similar
- SIEM / Detection Engineering – Splunk or similar
- Threat Hunting & Incident Response
- CrowdStrike / EDR/XDR
- Security Automation / SOAR - Splunk, Tines, Torq or similar
- Cloud Security – AWS, Azure, or GCP
- Network Security
- Product Security / DevSecOps / CI/CD Security
- External Attack Surface Management (EASM)
Relevant certifications such as CISSP, CISM, GIAC, Cloud security, or Zscaler Certifications are beneficial, but strong hands-on engineering experience and demonstrated technical problem-solving skills are valued most.
We are primarily an in-office environment and therefore, you will be expected to work from the Bangalore office in compliance with Everpure's policies, unless you are on PTO, or work travel, or other approved leave.
#LI-ONSITE
WHAT YOU CAN EXPECT FROM US:
- Innovation: We celebrate those who think critically, like a challenge, and aspire to be trailblazers.
- Growth: We give you the space and support to grow along with us and to contribute to something meaningful. We have been named Fortune's Best Workplaces in Technology™, Fortune's Best Workplaces in the Bay Area™, and certified as a Great Place to Work®!
- Team: We build each other up and set aside ego for the greater good.
And because we understand the value of bringing your full and best self to work, we offer a variety of perks to manage a healthy balance, including flexible time off, wellness resources, and company-sponsored team events. Check out purebenefits.com for more information.
ACCOMMODATIONS AND ACCESSIBILITY:
Candidates with disabilities may request accommodations for all aspects of our hiring process. For more on this, contact us at [email protected] if you’re invited to an interview.
OUR COMMITMENT TO A STRONG AND INCLUSIVE TEAM:
We’re forging a future where everyone finds their rightful place and where every voice matters. Where uniqueness isn’t just accepted but embraced. That’s why we are committed to fostering the growth and development of every person, cultivating a sense of community through our Employee Resource Groups and advocating for inclusive leadership.
Everpure is proud to be an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or any other characteristic legally protected by the laws of the jurisdiction in which you are being considered for hire.
Join us and bring your best.
Bring your bold.
Pure and simple.