Back to jobs
New

Cyber Security & Infrastructure Engineer

India (Remote)

XO Health believes healthcare is fixable. Become part of the community changing the face of the industry.

XO Health is the first health plan designed by and for self-insured employers that delivers a more unified health experience for everyone – from those who receive care, to those who deliver it, to those who pay for it.

We are growing a multi-disciplinary team of diverse and digitally empowered employees ready to rebuild trust in healthcare through comprehensive and unified transformation.

CyberSecurity & Infrastructure Engineer - India (Remote)

About the Role:

The Cybersecurity & Infrastructure Engineer is responsible for designing, implementing, monitoring, and securing the organization's hybrid cloud and infrastructure environments. This role serves as a technical leader for cybersecurity operations, cloud security, compliance initiatives, infrastructure engineering, and incident response.

The position combines hands-on infrastructure administration with cybersecurity engineering responsibilities across Microsoft Azure, Microsoft Sentinel, Microsoft 365, Entra ID, AWS, networking, endpoints, and security platforms. Engineering plays a key role in maintaining compliance with SOC 2 Type II controls, improving cyber resilience, supporting audits, and advancing the organization's security maturity.

Responsibilities:

SOC2 Audit

  • Support organization's annual SOC 2 Type II audit program, including control design, evidence collection, remediation management, auditor coordination, and continuous compliance monitoring.
  • Partner with business and technology stakeholders to ensure security, availability, confidentiality, and change management controls are effectively implemented and operating throughout the audit period.
  • Drive successful completion of SOC 2 Type II examinations with minimal findings by maintaining an audit-ready environment, strengthening internal controls, and promoting a culture of security and compliance.
  • Develop and maintain policies, procedures, risk assessments, and control documentation necessary to support ongoing compliance and future audit readiness.

Cybersecurity Operations

  • Administer and optimize Microsoft Sentinel SIEM platform.
  • Develop and maintain security monitoring, analytics rules, alerting, dashboards, and automation workflows.
  • Investigate security incidents and coordinate containment, remediation, and recovery activities.
  • Monitor and respond to threats identified through Microsoft Defender, Sentinel, AWS security services, and third-party platforms.
  • Conduct threat hunting, vulnerability management, and security assessments.
  • Lead incident response activities and coordinate forensic investigations as needed.
  • Maintain security documentation, playbooks, and response procedures.
  • Support penetration testing, tabletop exercises, and disaster recovery testing.

Cloud Security & Architecture

  • Design and maintain secure Microsoft Azure environments.
  • Implement Azure security best practices utilizing:
    • Microsoft Entra ID
    • Conditional Access
    • Privileged Identity Management (PIM)
    • Defender for Cloud
    • Azure Security Center
    • Microsoft Purview
  • Secure AWS cloud environments including:
    • IAM
    • CloudTrail
    • GuardDuty
    • Security Hub
    • Config
    • CloudWatch
  • Implement zero-trust security principles across cloud platforms.

Infrastructure Engineering

  • Maintain and support hybrid infrastructure environments including:
    • Microsoft Azure
    • AWS
    • Active Directory
    • Microsoft Entra ID
    • Windows Server
    • Virtualization platforms
    • Microsoft 365
    • Network and security appliances
  • Design and implement high-availability and disaster recovery solutions.
  • Manage identity lifecycle and privileged access controls.
  • Support cloud migrations and infrastructure modernization initiatives.

Governance, Risk & Compliance

  • Lead technical compliance activities supporting SOC 2 Type II audits.
  • Collaborate with external auditors and internal stakeholders during audit engagements.
  • Develop, maintain, and document security controls and evidence repositories.
  • Perform periodic access reviews, risk assessments, and control testing.
  • Recommend remediation activities to address audit findings and security gaps.
  • Support regulatory and contractual security requirements.

Security Automation

  • Develop automation using:
    • PowerShell
    • Azure Automation
    • Logic Apps
    • Sentinel SOAR capabilities
  • Improve security operations through automated detection, response, and reporting.
  • Create executive and operational cybersecurity metrics and dashboards.

We’re Looking for Candidates Who Have:

Education

Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field preferred.

Experience

  • 3-5+ years of cybersecurity and infrastructure engineering experience.
  • 3+ years managing Microsoft Azure environments.
  • 2+ years administering Microsoft Sentinel or comparable SIEM platforms.
  • Experience supporting SOC 2 Type II audits.
  • Experience securing AWS cloud environments.
  • Experience with incident response and vulnerability management.
  • Experience with Microsoft 365 security technologies.

Technical Skills

Required

  • Microsoft Azure
  • Microsoft Sentinel
  • Microsoft Defender Suite
  • Microsoft Entra ID (Azure AD)
  • Active Directory
  • Microsoft 365 Security
  • AWS Security Services
  • PowerShell scripting
  • Vulnerability Management Platforms
  • Incident Response Procedures
  • Security Monitoring and SIEM Operations
  • Network Security Fundamentals
  • Firewall Administration

Preferred

  • Microsoft Purview
  • Microsoft Defender XDR
  • Terraform
  • Infrastructure as Code
  • Intune
  • DLP Technologies
  • Security Automation and SOAR
  • Compliance Management Platforms

 

Preferred Certifications

One or more of the following:

  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Microsoft Security Operations Analyst (SC-200)
  • Microsoft Identity and Access Administrator (SC-300)
  • Azure Security Engineer Associate (AZ-500)
  • Azure Administrator Associate (AZ-104)
  • AWS Certified Security Specialty
  • CISSP
  • CISM
  • GIAC Certifications
  • Security+

Success Metrics

  • Successful completion of annual SOC 2 Type II audits.
  • Reduction in security incidents and mean time to respond (MTTR).
  • Increased security automation and operational efficiency.
  • Improved vulnerability remediation timelines.
  • Successful implementation and optimization of Microsoft Sentinel.
  • Cloud security posture improvements across Azure and AWS.
  • Completion of disaster recovery exercises and security testing initiatives.
  • Consistent compliance with security policies and regulatory requirements.

Physical & Work Environment

  • Fully Remote
  • Participation in an on-call rotation for security incidents and critical infrastructure support.

This position is ideal for a hands-on engineer who enjoys both infrastructure modernization and cybersecurity leadership while helping drive a mature, audit-ready security program.

Full compensation packages are based on candidate experience and relevant certifications.

₹2,000,000 - ₹2,500,000 INR

XO Health is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. XO Health promotes a drug-free workplace.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in XO Health Inc.’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 07/31/2029

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.