Principal Information Security Engineer

3 days ago

Lahore, Punjab, Pakistan VaporVM Full-time
We are seeking an experienced Principal Information Security Engineer to lead advanced security operations, threat detection, incident response, DLP, and enterprise security initiatives. The ideal candidate will have strong expertise in SOC, SIEM, Microsoft XDR, DLP, cloud security, and DevSecOps, along with proven team leadership experience.

Key Responsibilities
• Lead Tier-2 SOC operations, security monitoring, alert investigation, threat hunting, and incident response.
• Manage and optimize SIEM platforms such as Microsoft Sentinel and IBM QRadar.
• Administer and enhance the Microsoft Defender XDR ecosystem, including Defender for Endpoint, Identity, Cloud, and Office 365.
• Develop and tune detection rules, correlation logic, dashboards, and security use cases.
• Lead DLP strategy, policy development, incident investigation, governance, and reporting using solutions such as Microsoft Purview and Forcepoint.
• Monitor and secure Azure and AWS environments and implement cloud security controls.
• Integrate security into DevSecOps and CI/CD pipelines, including code reviews and vulnerability assessments.
• Perform Vulnerability Assessment and Penetration Testing (VAPT) and risk assessments.
• Manage security technologies including Imperva WAF, CyberArk PAM, Microsoft Intune, Fortinet, Forescout NAC, Zscaler, and Zero Trust solutions.
• Lead root cause analysis, forensic investigations, remediation, and continuous security improvement.
• Mentor SOC/DLP teams and collaborate with IT, DevOps, and business stakeholders.
• Support audits, compliance initiatives, vendor management, and security technology evaluations. Required Skills & Qualifications
• Bachelor’s/Master’s degree in Cybersecurity, Information Security, or related field.
• 6–10+ years of experience in cybersecurity, SOC, or information security.
• Strong expertise in:
• SIEM: Microsoft Sentinel, IBM QRadar
• Microsoft XDR / Defender Suite
• DLP: Microsoft Purview, Forcepoint
• Cloud Security: Azure, AWS
• DevSecOps and CI/CD Security
• Incident Response, Threat Hunting & Digital Forensics
• Hands-on knowledge of WAF, PAM, EDR/XDR, Firewalls, NAC, and Zero Trust.
• Strong understanding of networking, Active Directory, Linux, threat intelligence, and vulnerability management.
• Excellent leadership, analytical, communication, and stakeholder management skills. Preferred Certifications
• CEH
• CHFI
• Microsoft Azure Administrator (AZ-104)
• ISO/IEC 27001
• SOC Analyst Certification (LetsDefend or equivalent)
• Forcepoint or other DLP/Security certifications Key Competencies SOC Leadership | Incident Response | Threat Hunting | SIEM/XDR | DLP | Cloud Security | DevSecOps | VAPT | Risk Management | Team Leadership