Ernst and Young

Security Engineer

Ernst and Young
Apply
1 day ago
Bengaluru, IndiaStaff+

Responsibilities

  • Own end-to-end engineering, configuration, integration, and lifecycle management of Zscaler, Qualys, Wiz, and CSPM platforms across multi-cloud environments.
  • Design and implement integrations with Microsoft Sentinel, Defender XDR, Event Hubs, REST APIs, and other security-stack components.
  • Engineer CSPM capabilities, including policy frameworks, CIS/NIST/PCI-DSS benchmark mappings, and remediation workflows across Azure, AWS, and GCP.
  • Configure vulnerability scanning infrastructure, asset inventories, reporting pipelines, and downstream risk-remediation workflows.
  • Build and maintain log-ingestion pipelines, KQL detection rules, dashboards, and workbooks in Microsoft Sentinel and Log Analytics Workspaces.
  • Develop Python and/or PowerShell automation and GitHub Actions workflows for platform operations, policy deployment, and integrations.
  • Build and maintain lab environments for evaluating third-party tooling, proof-of-concept integrations, and product updates.
  • Create engineering documentation, integration runbooks, configuration standards, and operational guides.

Requirements

  • At least 5 years of experience in security engineering, cloud security, or a related technical discipline, including hands-on ownership of third-party security tooling.
  • At least 3 years of direct hands-on enterprise experience with at least two of Zscaler, Qualys, Wiz, or CSPM platforms.
  • Proven ability to integrate third-party security platforms with SIEM, SOAR, or cloud-native security stacks.
  • Technical proficiency with Microsoft Azure, including subscriptions, RBAC, Log Analytics Workspaces, Event Hubs, and Microsoft Sentinel.
  • Python and/or PowerShell scripting experience for automation, API integrations, and platform configuration.
  • Hands-on or working security-posture knowledge of Azure, AWS, and/or GCP multi-cloud environments.
  • Understanding of CSPM, Zero Trust, proxy, CASB, identity-aware access controls, SIEM integration patterns, and KQL.
  • Bachelor’s degree in computer science, engineering, IT, or a related field, or equivalent work experience.
  • Preferred certifications include AZ-104, AZ-204, AZ-500, SC-200, SC-100, CISSP, CCSP, GSEC, GCLD, GIAC, or relevant Zscaler, Qualys, or Wiz certifications.
  • Experience with GitHub Actions or Azure DevOps for version-controlled configuration and policy deployment, and familiarity with MITRE ATT&CK.

Benefits

  • Access to EY global learning platforms, technical training, and certification sponsorship.
  • Flexible working arrangements and a diverse, inclusive culture.
  • Coaching and opportunities to grow as a technical leader or into cloud engineering and architecture roles.
  • Competitive compensation aligned to the Argentine senior technology market, including performance-based incentives.

Tech Stack

AWSAzureGitHub ActionsGoogle Cloud PlatformPowerShellPython

Categories

Ernst and Young

About Ernst and Young

10,000+ employees
Contact me