Information Security Engineer III - SurveyMonkey | Bengaluru | Hybrid

RemoteNest 0
Information Security Engineer III - Job Header

Information Security Engineer III

Global IT, Security, & Business Systems Bengaluru, India (Hybrid)
Link copied to clipboard!

Resume Match Score - Information Security Engineer III

Required Job Skills (Check Your Match Below):

SurveyMonkey: We Are Hiring Information Security Engineer III

Company Overview: SurveyMonkey

**SurveyMonkey** is the world’s most popular platform for surveys and forms, built for business—loved by users. We are not just a tool; we are a foundational resource trusted by organizations globally to gather insights that inspire better decisions. We combine powerful capabilities with intuitive design, effectively serving every mission-critical use case, from customer experience optimization to boosting employee engagement, conducting rigorous market research, and streamlining payment and registration forms. Our platform is continuously evolving, embedding **built-in research expertise** and **AI-powered technology** to provide sophisticated, actionable intelligence, making it feel like users have a team of expert researchers at their fingertips.

Trusted by millions—from innovative startups to the vast majority of Fortune 500 companies—SurveyMonkey is dedicated to helping teams drive business growth. Our milestones are a testament to our commitment, including celebrating a quarter-century of curiosity, opening new hubs globally, and crossing the threshold of **100 billion questions answered**. We are recognized as one of the Most Inspiring Workplaces across North America and Asia, reflecting our vibrant, growth-focused culture. Discover how at surveymonkey.com.

What we’re looking for: Information Security Engineer III

In this dynamic **Information Security Engineer III** role, you will hold a critical position as the primary driver of **security automation** within our specialized Security Operations (SecOps) team. This isn't merely a scripting role; your main responsibility is to engineer, develop, and implement **scalable, automated solutions** that significantly enhance our capability to rapidly detect, analyze, and respond to cyber threats across our expansive cloud environment and corporate infrastructure. This involves not only initial development but continuous maintenance and enhancement of operational efficiency playbooks. We are looking for a visionary engineer who thrives on tackling complex security challenges, building resilient, auto-remediating systems, and constantly expanding their knowledge of the latest security trends to ensure the protection of a widely trusted, high-volume service. You will be instrumental in strengthening our defenses and responses, reporting directly to the Information Security Manager and collaborating closely with our DevOps, SRE, and product engineering teams.

Core Responsibilities

  • **Developing and Implementing Automated Workflows:** Design, code, and implement security automation workflows using Python, integrating various security tools (SIEM, EDR, SOAR) via their APIs to reduce human interaction and decrease Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR).
  • **Maintaining and Improving the Automation Infrastructure:** Ensure the stability, scalability, and security of our cloud-native automation environment (e.g., managing serverless functions like AWS Lambda and containerized jobs) to support continuous security operations.
  • **Monitoring, Triage, and Incident Response:** Actively monitor and perform triage on security events, conduct in-depth log analysis to identify precursors to incidents, and execute well-defined incident response procedures, contributing to post-incident review (PIR) documentation and continuous process improvement.
  • **Threat Detection Expertise:** Demonstrate expertise in creating sophisticated threat detections, transitioning from basic signatures to advanced behavioral and heuristic rules within our SIEM. This includes proactively hunting for novel threats and translating current threat intelligence into actionable detection logic.
  • **Security Tool Management:** Responsible for the entire lifecycle of various security tools, including deployment, configuration management, and ongoing maintenance to ensure optimal performance and strong security posture across all corporate and production devices.

Required Experience and Qualifications

  • **Academic Foundation: Bachelor's degree in Information Security, Cybersecurity, Information Technology, or a closely related technical field is essential.
  • **Experience:** A minimum of **5+ years** of hands-on, progressive experience in IT security, specializing in security automation, compliance, or complex incident response scenarios. This senior level requires high autonomy and proven problem-solving abilities.
  • **Security Platforms:** Deep familiarity and operational experience with key security components, including Security Information and Event Management (**SIEMs** - e.g., LogScale), Endpoint Detection and Response (**EDR** - e.g., CrowdStrike), and Security Orchestration, Automation, and Response (**SOAR** - e.g., XSOAR).
  • **Threat Frameworks:** Proven working experience with industry-standard threat modeling and defense frameworks, particularly **MITRE ATT&CK** and the **Cyber Kill Chain**, using them to inform detection engineering and improve incident simulation exercises.
  • **Cloud Security Expertise:** Extensive, practical experience with AWS cloud security monitoring and detection tools, including **AWS GuardDuty**, and a strong understanding of foundational services like AWS Cloudwatch and AWS CloudTrail for comprehensive log analysis and centralised security logging.
  • **Soft Skills:** Demonstrated ability to effectively prioritise competing tasks and execute complex security projects reliably in a high-pressure, fast-paced technology environment.
  • **Certifications preferred**: Professional certifications such as **CISSP** (Certified Information Systems Security Professional), **CEH** (Certified Ethical Hacker), CompTIA Security+, or **CISM** (Certified Information Security Manager) are highly valued as evidence of foundational knowledge.

Our Culture and Commitment

SurveyMonkey believes in-person collaboration is valuable for building relationships, fostering community, and enhancing our speed and execution in problem-solving and decision-making. As such, this opportunity is **hybrid** and requires you to work from the SurveyMonkey office in Bengaluru **3 days per week**.

At SurveyMonkey, **curiosity powers everything we do**. We’re a global company where people from all backgrounds can make an impact, build meaningful connections, and grow their careers. Our teams work in a flexible, hybrid environment with thoughtfully designed offices and programs like the **CHOICE Fund** to help employees thrive in work and life. We live our company values—like championing inclusion and making it happen—by embedding them into how we hire, collaborate, and grow.

Commitment to an Inclusive Workplace

SurveyMonkey is an equal opportunity employer committed to providing a workplace free from harassment and discrimination. We celebrate the unique differences of our employees because that is what drives curiosity, innovation, and the success of our business. We do not discriminate on the basis of race, religion, colour, national origin, gender, sexual orientation, gender identity or expression, age, marital status, veteran status, disability status, pregnancy, parental status, genetic information, political affiliation, or any other status protected by the laws or regulations in the locations where we operate. Accommodations are available for applicants with disabilities.

Link copied to clipboard!

Post a Comment

0 Comments
* Please Don't Spam Here. All the Comments are Reviewed by Admin.

About Us

Joblyst 2025 is your go-to hub for the latest job updates, career tips, and opportunities to shape a brighter future.