IT Security Engineer
Job Description
Position Title :
IT Security Engineer
Department :
IT Security
Reporting To :
Vikas Tiwari, Senior IT Security Engineer
Location :
Bangalore - On-site
About Savills:
Savills plc is a global real estate services provider listed on the London
Stock Exchange. We have an international network of more than 700 offices and
associates throughout the Americas, the UK, continental Europe, Asia Pacific,
Africa and the Middle East, offering a broad range of specialist advisory,
management and transactional services to clients all over the world. Our
people combine entrepreneurial spirit and a deep understanding of specialist
property sectors with the highest standards of client care.
Scope:
We are seeking a skilled and proactive IT Security Engineer to join our
growing IT security team. The ideal candidate will be responsible for
monitoring, analysing, and responding to security incidents, ensuring the
organization’s IT infrastructure is protected against cyber threats. As a
Security Engineer, you will work closely with the other IT teams to address
complex security challenges and contribute to the enhancement of our security
posture.
Responsibilities
-
Incident Response:
Act as the point of contact for L1 security incidents.
Analyse and respond to security events, alerts, and incidents, ensuring
timely resolution.
-
Threat Detection & Analysis:
Utilize advanced security tools and methodologies to detect and analyse
threats.
Perform root cause analysis and recommend preventive measures.
-
Vulnerability Management:
Conduct regular vulnerability assessments
and coordinate with relevant teams to ensure timely remediation of
identified vulnerabilities.
-
Security Monitoring:
Manage and maintain security information and event management (SIEM)
systems, intrusion detection/prevention systems (IDS/IPS), and other
security monitoring tools.
-
Security Operations:
Assist in the deployment, configuration, and management of security tools
such as firewalls, antivirus, endpoint protection, and encryption solutions.
-
Documentation & Reporting:
Document incident response activities, create detailed reports, and
maintain up-to-date records
of security incidents and actions taken. Assist in preparing training
materials to promote information security awareness across the enterprise.
-
Compliance & Audits:
Ensure adherence to security policies and compliance standards.
Support internal and external audits by providing necessary documentation
and evidence. Maintain up-to-date inventory on infrastructure equipment and
software.
-
Security Awareness:
Collaborate with the IT team to promote security awareness
within the organization by participating in training sessions and providing
guidance on best practices.
-
Continuous Improvement:
Contribute to the continuous improvement of security processes, tools, and
policies.
Stay updated with the latest security trends and technologies.
-
Statistics and Reporting:
Compose information on security statistics and reports,
support day-to-day monitoring and follow through of security alerts and
responses.
Job Requirements
Skills and Competencies:
Technical Skills:
-
Proficiency in security monitoring tools such as SIEM, IDS/IPS, EDR and
exposure to XDR concepts.
-
Strong understanding of network security principles, protocols, and
technologies (e.g., firewalls, VPNs, encryption).
-
Experience with vulnerability management tools (e.g., Qualys, Nessus).
-
Basic understanding of Microsoft security tools such as Defender for
Endpoint, Defender for Office 365, Microsoft Sentinel, and Entra ID.
-
Exposure to email security, including phishing analysis and handling
user-reported email incidents.
-
Good understanding of identity and access management concepts such as
multi-factor authentication and conditional access.
-
Basic exposure to Windows, Linux, and cloud environments such as Azure,
including general security practices.
-
Awareness of AI-based security tools and how they support threat detection
and automation in security operations.
-
Basic knowledge of scripting languages such as Python or PowerShell for
automation is a plus.
Soft Skills:
-
Communication: Excellent verbal and written communication skills, with the
ability to convey complex security issues to non-technical stakeholders.
-
Teamwork: Ability to work collaboratively in a team environment, as well as
independently when required.
-
Problem-Solving: Strong analytical and problem-solving skills with the
ability to think critically in high-pressure situations.
-
Ability to understand and follow sometimes complex oral and written
instructions.
-
Ability to multi-task and manage various project elements simultaneously.
-
Sensitive and attentive to operation details, numbers.
-
Positive, responsible, able to work with minimal supervision, and maintain
confidentiality.
Certifications:
Relevant certifications such as CompTIA Security+, CEH, CISSP, or GIAC are
preferred. Familiarity with ISO 27001 or similar standards is an added
advantage.
Preferred Qualifications:
Education:
Bachelor’s degree in computer science, Information Technology, Cybersecurity,
or a related field. Equivalent work experience may be considered.
Experience:
Minimum 3+ years of experience in IT security, with at least 1+ years in a
security operation or incident response role. Knowledge of IT security
concepts, ISO 27001, ITIL and risk management.
Equal Employment Opportunity:
Savills is an Equal Opportunity Employer. We celebrate diversity and are
committed to creating an inclusive environment for all employees.