ASAI job platform logo
  1. Home
  2. /Jobs
  3. /Cyber Security & Infrastructure Engineer
XO Health Inc.

Cyber Security & Infrastructure Engineer

Remote (India) · Senior · Remote

Older listing - lower visibility likelyVerified listingPosted 48d ago

Applicants who checked fit first are 3.1× more likely to hear back

Your match scoreCalculated · locked
86Overall
64Skills
97Experience

Your score for this role already exists

ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.

No credit card · 1 tap with Google

What we know about this role

Hiring pulse

LOW

XO Health Inc. is showing limited hiring activity lately. Expect slight delayed response.

Apply window

First 72 hours

Window passed - posted 48d ago

Early applicants get seen before the pile builds.

Not a repost

The first time we've seen this listing - it hasn't been closed and reopened.

Skills required

19 listed
Windows Server VirtualizationMicrosoft AzureMicrosoft 365Cyber ResilienceEvidence CollectionInternal ControlsPenetration TestingDisaster Recovery+11 more
Windows Server VirtualizationMicrosoft AzureMicrosoft 365Cyber ResilienceEvidence Collection

You almost certainly match several of these already. Unlock your skill map to see the matches, the gaps, and what to fix first.

Job description

XO Health believes healthcare is fixable. Become part of the community changing the face of the industry.

XO Health is the first health plan designed by and for self-insured employers that delivers a more unified health experience for everyone – from those who receive care, to those who deliver it, to those who pay for it.

We are growing a multi-disciplinary team of diverse and digitally empowered employees ready to rebuild trust in healthcare through comprehensive and unified transformation.

CyberSecurity & Infrastructure Engineer - India (Remote)

About the Role:

The Cybersecurity & Infrastructure Engineer is responsible for designing, implementing, monitoring, and securing the organization's hybrid cloud and infrastructure environments. This role serves as a technical leader for cybersecurity operations, cloud security, compliance initiatives, infrastructure engineering, and incident response.

The position combines hands-on infrastructure administration with cybersecurity engineering responsibilities across Microsoft Azure, Microsoft Sentinel, Microsoft 365, Entra ID, AWS, networking, endpoints, and security platforms. Engineering plays a key role in maintaining compliance with SOC 2 Type II controls, improving cyber resilience, supporting audits, and advancing the organization's security maturity.

Responsibilities:

SOC2 Audit

  • Support organization's annual SOC 2 Type II audit program, including control design, evidence collection, remediation management, auditor coordination, and continuous compliance monitoring.
  • Partner with business and technology stakeholders to ensure security, availability, confidentiality, and change management controls are effectively implemented and operating throughout the audit period.
  • Drive successful completion of SOC 2 Type II examinations with minimal findings by maintaining an audit-ready environment, strengthening internal controls, and promoting a culture of security and compliance.
  • Develop and maintain policies, procedures, risk assessments, and control documentation necessary to support ongoing compliance and future audit readiness.

Cybersecurity Operations

  • Administer and optimize Microsoft Sentinel SIEM platform.
  • Develop and maintain security monitoring, analytics rules, alerting, dashboards, and automation workflows.
  • Investigate security incidents and coordinate containment, remediation, and recovery activities.
  • Monitor and respond to threats identified through Microsoft Defender, Sentinel, AWS security services, and third-party platforms.
  • Conduct threat hunting, vulnerability management, and security assessments.
  • Lead incident response activities and coordinate forensic investigations as needed.
  • Maintain security documentation, playbooks, and response procedures.
  • Support penetration testing, tabletop exercises, and disaster recovery testing.

Cloud Security & Architecture

  • Design and maintain secure Microsoft Azure environments.
  • Implement Azure security best practices utilizing:
    • Microsoft Entra ID
    • Conditional Access
    • Privileged Identity Management (PIM)
    • Defender for Cloud
    • Azure Security Center
    • Microsoft Purview
  • Secure AWS cloud environments including:
    • IAM
    • CloudTrail
    • GuardDuty
    • Security Hub
    • Config
    • CloudWatch
  • Implement zero-trust security principles across cloud platforms.

Infrastructure Engineering

  • Maintain and support hybrid infrastructure environments including:
    • Microsoft Azure
    • AWS
    • Active Directory
    • Microsoft Entra ID
    • Windows Server
    • Virtualization platforms
    • Microsoft 365
    • Network and security appliances
  • Design and implement high-availability and disaster recovery solutions.
  • Manage identity lifecycle and privileged access controls.
  • Support cloud migrations and infrastructure modernization initiatives.

Governance, Risk & Compliance

  • Lead technical compliance activities supporting SOC 2 Type II audits.
  • Collaborate with external auditors and internal stakeholders during audit engagements.
  • Develop, maintain, and document security controls and evidence repositories.
  • Perform periodic access reviews, risk assessments, and control testing.
  • Recommend remediation activities to address audit findings and security gaps.
  • Support regulatory and contractual security requirements.

Security Automation

  • Develop automation using:
    • PowerShell
    • Azure Automation
    • Logic Apps
    • Sentinel SOAR capabilities
  • Improve security operations through automated detection, response, and reporting.
  • Create executive and operational cybersecurity metrics and dashboards.

We’re Looking for Candidates Who Have:

Education

Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field preferred.

Experience

  • 3-5+ years of cybersecurity and infrastructure engineering experience.
  • 3+ years managing Microsoft Azure environments.
  • 2+ years administering Microsoft Sentinel or comparable SIEM platforms.
  • Experience supporting SOC 2 Type II audits.
  • Experience securing AWS cloud environments.
  • Experience with incident response and vulnerability management.
  • Experience with Microsoft 365 security technologies.

Technical Skills

Required

  • Microsoft Azure
  • Microsoft Sentinel
  • Microsoft Defender Suite
  • Microsoft Entra ID (Azure AD)
  • Active Directory
  • Microsoft 365 Security
  • AWS Security Services
  • PowerShell scripting
  • Vulnerability Management Platforms
  • Incident Response Procedures
  • Security Monitoring and SIEM Operations
  • Network Security Fundamentals
  • Firewall Administration

Preferred

  • Microsoft Purview
  • Microsoft Defender XDR
  • Terraform
  • Infrastructure as Code
  • Intune
  • DLP Technologies
  • Security Automation and SOAR
  • Compliance Management Platforms

Preferred Certifications

One or more of the following:

  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Microsoft Security Operations Analyst (SC-200)
  • Microsoft Identity and Access Administrator (SC-300)
  • Azure Security Engineer Associate (AZ-500)
  • Azure Administrator Associate (AZ-104)
  • AWS Certified Security Specialty
  • CISSP
  • CISM
  • GIAC Certifications
  • Security+

Success Metrics

  • Successful completion of annual SOC 2 Type II audits.
  • Reduction in security incidents and mean time to respond (MTTR).
  • Increased security automation and operational efficiency.
  • Improved vulnerability remediation timelines.
  • Successful implementation and optimization of Microsoft Sentinel.
  • Cloud security posture improvements across Azure and AWS.
  • Completion of disaster recovery exercises and security testing initiatives.
  • Consistent compliance with security policies and regulatory requirements.

Physical & Work Environment

  • Fully Remote
  • Participation in an on-call rotation for security incidents and critical infrastructure support.

This position is ideal for a hands-on engineer who enjoys both infrastructure modernization and cybersecurity leadership while helping drive a mature, audit-ready security program.

Full compensation packages are based on candidate experience and relevant certifications.
₹2,000,000—₹2,500,000 INR

XO Health is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. XO Health promotes a drug-free workplace.

Free · no signup

Get tomorrow's jobs before you have to search

Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.

Join WhatsAppJoin Telegram

No spam. Just jobs and resources.

Why people use ASAI

Someone shared one job with you. ASAI keeps finding the rest.

  • Scored, not searched. Every role ranked against your actual profile.

  • Alerts as often as hourly. Reach new roles while the pile is still small.

  • Skill gaps, spelled out. See exactly which requirements you don't meet yet.

  • Verified jobs, only. Say no to ghost jobs. Your time deserves respect.

Two ways in

Applicants who checked fit first are 3.1× more likely to hear back

Your match scoreCalculated · locked
86Overall
64Skills
97Experience

Your score for this role already exists

ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.

No credit card · 1 tap with Google

Free · no signup

Get tomorrow's jobs before you have to search

Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.

Join WhatsAppJoin Telegram

No spam. Just jobs and resources.

Why people use ASAI

Someone shared one job with you. ASAI keeps finding the rest.

  • Scored, not searched. Every role ranked against your actual profile.

  • Alerts as often as hourly. Reach new roles while the pile is still small.

  • Skill gaps, spelled out. See exactly which requirements you don't meet yet.

  • Verified jobs, only. Say no to ghost jobs. Your time deserves respect.

ASAI job platform logo

A job platform finally, balanced in your favour.

Jobs by CityJobs by CompanyGuidesHow We VerifyAboutPrivacy PolicyTerms of Service

Built in India 🇮🇳

© 2026 ASAI. All rights reserved.