# IT Security Engineer

[Clearviewhealthcarepartners](https://gurify.com/jobs?q=Clearviewhealthcarepartners) · Gurugram, India · Posted 7 months ago

[Security](https://gurify.com/jobs/security)

[Apply on the original posting → (opens in a new tab)](https://job-boards.greenhouse.io/clearviewhealthcarepartners/jobs/5125581008)

## Job description

### Company Overview

ClearView Healthcare Partners is a premier life sciences strategy consulting firm headquartered in Boston, with offices in San Francisco, New York City, London, Zurich and Gurgaon. Serving clients in the biopharmaceutical, medical device, and diagnostic spaces, we provide world-class strategic decision-making support across a diverse range of business issues. Our goal is to inform actionable recommendations that allow companies to achieve their business objectives.

ClearView is in the process of migrating a significant portion of its local, on-premises resources to the cloud, and this role will be a key player in ensuring that migration happens securely and that our Azure environment is configured and governed to a high standard. ClearView is looking for a Cloud Security-focused Information Security Professional to join our Information Technology team. This role will be responsible for three main areas: Cloud Security Architecture & Operations (with an emphasis on Azure), SIEM engineering, and Monitoring/Testing to ensure compliance. This position requires the ability to work with minimal direction, flexibility to changing demands, and having an eye for process improvement. This position will work in our India office but will be responsible for ClearView's Information Security globally.

### Responsibilities

### Cloud security architecture and operations

- Support the security workstream of ClearView's ongoing migration of on-premises resources to the cloud, helping ensure new Azure workloads are designed and configured securely from the outset.

- Help configure, monitor, and continuously improve security controls in Azure (with secondary support for AWS), including Defender for Cloud, Security Hub/GuardDuty, IAM, Network Security Groups (NSGs), and baseline configurations.

- Support identity governance in Microsoft Entra ID (Azure AD), including conditional access, privileged role assignments, and application/service principal reviews.

- Assist with authoring, deploying, and monitoring Azure Policy definitions and initiatives to enforce configuration standards and compliance guardrails across subscriptions.

- Support cloud security posture management (CSPM) efforts, identifying and remediating misconfigurations across Azure and AWS environments.

- Assist with design and review of cloud architecture for security best practices, including network segmentation (NSGs, firewalls), least-privilege IAM, and encryption at rest and in transit.

- Support secrets and key management practices using Azure Key Vault, including access policy reviews, rotation, and integration with applications and pipelines.

- Help assess and improve the security of containerized workloads (e.g., image scanning, registry access controls, AKS/container runtime configuration) as more services move to container-based architectures.

- Assist with periodic reviews of access controls, MFA configurations, and conditional access policies across cloud and on-prem environments.

- Support vulnerability management activities by collecting scan results, tracking remediation status, and validating fixes with relevant teams.

- Contribute to standard build/hardening checklists for cloud resources, servers, and laptops, and verify that new systems are deployed according to these baselines.

### Security monitoring and incident support

- Monitor cloud-native security tools and dashboards (e.g., Defender for Cloud, Security Hub, GuardDuty) as well as core SIEM, endpoint security, and email security tools for alerts and suspicious activity; help triage and escalate as needed.

- Support tuning of SIEM correlation rules and alert thresholds to reduce noise, under the guidance of senior staff.

- Build and maintain dashboards and reports (cloud and SIEM) that give IT and leadership visibility into security events and trends.

- Assist in initial investigation of security incidents (log collection, basic analysis, documentation) and support remediation steps defined by senior engineers.

- Follow established runbooks and procedures for incident response and request enhancements when gaps are identified.

### Endpoint and identity security

- Help manage endpoint security tools (EDR/AV, disk encryption, device posture checks) and respond to endpoint alerts following documented procedures.

- Assist with implementation and maintenance of identity and access controls (e.g., role-based access, privilege reviews, account lifecycle processes).

### Operational processes and documentation

- Maintain up-to-date technical documentation for cloud security controls, dashboards, playbooks, and standard operating procedures.

- Support periodic security reviews and audits by gathering evidence, screenshots, and exportable reports from cloud and security tools.

- Help implement and track security metrics (e.g., cloud misconfigurations remediated, mean time to acknowledge, patch/vulnerability closure rates) and suggest improvements.

- Assist with user onboarding/offboarding tasks related to security access, device setup, and cloud/security tooling enrollment.

### Collaboration and learning

- Partner with IT teams to ensure changes to cloud infrastructure or applications include appropriate logging and security controls.

- Stay current on security tooling and best practices relevant to cloud security, SIEM, and endpoint protection, and share useful findings with the team.

### Job Qualifications

- Bachelor's degree in technical, information security, or related discipline, or equivalent practical experience.

- 4–7 years of relevant security experience, with meaningful exposure to cloud environments (Azure and/or AWS).

- Strong technical aptitude with a primary interest in cloud security, alongside familiarity with security operations and endpoint protection.

- Experience with core Azure security services strongly preferred, such as Microsoft Entra ID, Network Security Groups (NSGs), Azure Key Vault, and Azure Policy.

- Exposure to securing containerized environments (e.g., image scanning, AKS/container runtime security) is a plus.

- Comfortable working with cloud consoles, logs, dashboards, and basic scripting or automation tools to troubleshoot and analyze issues.

- AWS Certified Security – Specialty, Microsoft Certified: Azure Security Engineer Associate (AZ-500), Security+, CySA+, or other relevant information security certifications.

- Demonstrates strong problem solving, analytical, interpersonal, and ownership skills.

- Possesses excellent collaboration skills for work with various internal team members.

### Additional Skills/Experience

- A broad understanding of how to secure cloud environments end to end — identity, network, data, and workload layers — rather than deep expertise in a single area.

- An understanding of cloud security concepts, encryption, system hardening, defense-in-depth designs, advanced persistent threats, anomaly detection, and next-generation technologies.

- Working knowledge and experience with any of the following: Microsoft Entra ID, Network Security Groups (NSGs), Azure Key Vault, Azure Policy, cloud IAM/PAM more broadly, Infrastructure-as-Code security scanning (Terraform, CloudFormation), container/Kubernetes security, CSPM/CWPP tools, and cloud logging (Azure Monitor, CloudTrail).

- Interest or prior experience supporting cloud migration initiatives, ideally with an eye toward building security in from the start rather than retrofitting it.

- Familiarity with traditional security technologies is a plus: VA, SIEM, DLP, IPS/IDS, AV, MFA, VPN, FW, AD, Wireless, ACLs, and port scanning.

- Cloud-native monitoring/log analysis experience preferred; experience with a SIEM platform (e.g., Rapid7) is a plus but not required.

- Working knowledge of Windows endpoints; familiarity with macOS or basic networking concepts is a plus.

- Awareness of security frameworks or standards (e.g., ISO 27001, NIST CSF, CIS Benchmarks for Azure/AWS) and interest in learning how they apply in practice.

- Knowledge of a variety of security tools, with depth in cloud-native security tooling.

### What We Value

We recognize that not every candidate will meet every qualification listed. If you’re excited about this role and believe you have relevant experience or transferable skills, we encourage you to apply. We value curiosity, a growth mindset, and a commitment to collaboration.

### Equal Opportunity Employer

ClearView Healthcare Partners ("CV") is an Equal Opportunity employer. All qualified applicants will be considered for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by applicable law.

**Live in Clearviewhealthcarepartners’s hiring system.** Read from the company's own applicant tracking system, not reposted from a job board — so it's a real, open requisition rather than an ad that outlived the role.

We remove it as soon as it disappears at source.

## More jobs like this

- ON [Application Security Engineer - ONE ZERO](https://gurify.com/job/application-security-engineer-one-zero-at-onezerobank-2e8386af9bda) Onezerobank · Tel Aviv-Yafo, Israel · last week
- HA [Senior Security Engineer, Detection and Response](https://gurify.com/job/senior-security-engineer-detection-and-response-at-hackerone-45f09130ce13) Hackerone · London · last week
- TA [Cloud Security Engineer](https://gurify.com/job/cloud-security-engineer-at-tango-f1269c61ab1e) Tango · Warszawa, Poland · last week
- AW [Application Security Engineer (f/m/d)](https://gurify.com/job/application-security-engineer-f-m-d-at-awin-fb24719a88c0) Awin · Berlin, Poland · last week
- DE [Senior Corporate Security Engineer](https://gurify.com/job/senior-corporate-security-engineer-at-deliveroo-4b2f2b14d016) Deliveroo · London, United Kingdom - Deliveroo · 2 days ago
- PA [Senior Security Engineer - Cloud ...](https://gurify.com/job/senior-security-engineer-cloud-at-pagerduty-ad26d9c55b80) Pagerduty · Atlanta · 3 days ago

```json
{"@context":"https://schema.org/","@type":"JobPosting","title":"IT Security Engineer","description":"\u003Ch3\u003ECompany Overview\u003C/h3\u003E\u003Cp\u003EClearView Healthcare Partners is a premier life sciences strategy consulting firm headquartered in Boston, with offices in San Francisco, New York City, London, Zurich and Gurgaon. Serving clients in the biopharmaceutical, medical device, and diagnostic spaces, we provide world-class strategic decision-making support across a diverse range of business issues. Our goal is to inform actionable recommendations that allow companies to achieve their business objectives.\u003C/p\u003E\u003Cp\u003EClearView is in the process of migrating a significant portion of its local, on-premises resources to the cloud, and this role will be a key player in ensuring that migration happens securely and that our Azure environment is configured and governed to a high standard. ClearView is looking for a Cloud Security-focused Information Security Professional to join our Information Technology team. This role will be responsible for three main areas: Cloud Security Architecture \u0026amp; Operations (with an emphasis on Azure), SIEM engineering, and Monitoring/Testing to ensure compliance. This position requires the ability to work with minimal direction, flexibility to changing demands, and having an eye for process improvement. This position will work in our India office but will be responsible for ClearView\u0026#39;s Information Security globally.\u003C/p\u003E\u003Ch3\u003EResponsibilities\u003C/h3\u003E\u003Ch3\u003ECloud security architecture and operations\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003ESupport the security workstream of ClearView\u0026#39;s ongoing migration of on-premises resources to the cloud, helping ensure new Azure workloads are designed and configured securely from the outset.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EHelp configure, monitor, and continuously improve security controls in Azure (with secondary support for AWS), including Defender for Cloud, Security Hub/GuardDuty, IAM, Network Security Groups (NSGs), and baseline configurations.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESupport identity governance in Microsoft Entra ID (Azure AD), including conditional access, privileged role assignments, and application/service principal reviews.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAssist with authoring, deploying, and monitoring Azure Policy definitions and initiatives to enforce configuration standards and compliance guardrails across subscriptions.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESupport cloud security posture management (CSPM) efforts, identifying and remediating misconfigurations across Azure and AWS environments.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAssist with design and review of cloud architecture for security best practices, including network segmentation (NSGs, firewalls), least-privilege IAM, and encryption at rest and in transit.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESupport secrets and key management practices using Azure Key Vault, including access policy reviews, rotation, and integration with applications and pipelines.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EHelp assess and improve the security of containerized workloads (e.g., image scanning, registry access controls, AKS/container runtime configuration) as more services move to container-based architectures.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAssist with periodic reviews of access controls, MFA configurations, and conditional access policies across cloud and on-prem environments.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESupport vulnerability management activities by collecting scan results, tracking remediation status, and validating fixes with relevant teams.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EContribute to standard build/hardening checklists for cloud resources, servers, and laptops, and verify that new systems are deployed according to these baselines.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003ESecurity monitoring and incident support\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EMonitor cloud-native security tools and dashboards (e.g., Defender for Cloud, Security Hub, GuardDuty) as well as core SIEM, endpoint security, and email security tools for alerts and suspicious activity; help triage and escalate as needed.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESupport tuning of SIEM correlation rules and alert thresholds to reduce noise, under the guidance of senior staff.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EBuild and maintain dashboards and reports (cloud and SIEM) that give IT and leadership visibility into security events and trends.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAssist in initial investigation of security incidents (log collection, basic analysis, documentation) and support remediation steps defined by senior engineers.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EFollow established runbooks and procedures for incident response and request enhancements when gaps are identified.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EEndpoint and identity security\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EHelp manage endpoint security tools (EDR/AV, disk encryption, device posture checks) and respond to endpoint alerts following documented procedures.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAssist with implementation and maintenance of identity and access controls (e.g., role-based access, privilege reviews, account lifecycle processes).\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EOperational processes and documentation\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EMaintain up-to-date technical documentation for cloud security controls, dashboards, playbooks, and standard operating procedures.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESupport periodic security reviews and audits by gathering evidence, screenshots, and exportable reports from cloud and security tools.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EHelp implement and track security metrics (e.g., cloud misconfigurations remediated, mean time to acknowledge, patch/vulnerability closure rates) and suggest improvements.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAssist with user onboarding/offboarding tasks related to security access, device setup, and cloud/security tooling enrollment.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003ECollaboration and learning\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EPartner with IT teams to ensure changes to cloud infrastructure or applications include appropriate logging and security controls.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EStay current on security tooling and best practices relevant to cloud security, SIEM, and endpoint protection, and share useful findings with the team.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EJob Qualifications\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EBachelor\u0026#39;s degree in technical, information security, or related discipline, or equivalent practical experience.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003E4\u20137 years of relevant security experience, with meaningful exposure to cloud environments (Azure and/or AWS).\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EStrong technical aptitude with a primary interest in cloud security, alongside familiarity with security operations and endpoint protection.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EExperience with core Azure security services strongly preferred, such as Microsoft Entra ID, Network Security Groups (NSGs), Azure Key Vault, and Azure Policy.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EExposure to securing containerized environments (e.g., image scanning, AKS/container runtime security) is a plus.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EComfortable working with cloud consoles, logs, dashboards, and basic scripting or automation tools to troubleshoot and analyze issues.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAWS Certified Security \u2013 Specialty, Microsoft Certified: Azure Security Engineer Associate (AZ-500), Security\u002B, CySA\u002B, or other relevant information security certifications.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EDemonstrates strong problem solving, analytical, interpersonal, and ownership skills.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EPossesses excellent collaboration skills for work with various internal team members.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EAdditional Skills/Experience\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EA broad understanding of how to secure cloud environments end to end \u2014 identity, network, data, and workload layers \u2014 rather than deep expertise in a single area.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAn understanding of cloud security concepts, encryption, system hardening, defense-in-depth designs, advanced persistent threats, anomaly detection, and next-generation technologies.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EWorking knowledge and experience with any of the following: Microsoft Entra ID, Network Security Groups (NSGs), Azure Key Vault, Azure Policy, cloud IAM/PAM more broadly, Infrastructure-as-Code security scanning (Terraform, CloudFormation), container/Kubernetes security, CSPM/CWPP tools, and cloud logging (Azure Monitor, CloudTrail).\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EInterest or prior experience supporting cloud migration initiatives, ideally with an eye toward building security in from the start rather than retrofitting it.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EFamiliarity with traditional security technologies is a plus: VA, SIEM, DLP, IPS/IDS, AV, MFA, VPN, FW, AD, Wireless, ACLs, and port scanning.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ECloud-native monitoring/log analysis experience preferred; experience with a SIEM platform (e.g., Rapid7) is a plus but not required.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EWorking knowledge of Windows endpoints; familiarity with macOS or basic networking concepts is a plus.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAwareness of security frameworks or standards (e.g., ISO 27001, NIST CSF, CIS Benchmarks for Azure/AWS) and interest in learning how they apply in practice.\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EKnowledge of a variety of security tools, with depth in cloud-native security tooling.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EWhat We Value\u003C/h3\u003E\u003Cp\u003EWe recognize that not every candidate will meet every qualification listed. If you\u2019re excited about this role and believe you have relevant experience or transferable skills, we encourage you to apply. We value curiosity, a growth mindset, and a commitment to collaboration.\u003C/p\u003E\u003Ch3\u003EEqual Opportunity Employer\u003C/h3\u003E\u003Cp\u003EClearView Healthcare Partners (\u0026quot;CV\u0026quot;) is an Equal Opportunity employer. All qualified applicants will be considered for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by applicable law.\u003C/p\u003E","identifier":{"@type":"PropertyValue","name":"Gurify","value":"it-security-engineer-at-clearviewhealthcarepartners-ad83e02f44b3"},"url":"https://gurify.com/job/it-security-engineer-at-clearviewhealthcarepartners-ad83e02f44b3","datePosted":"2026-02-20","validThrough":"2026-11-04T23:59:59Z","hiringOrganization":{"@type":"Organization","name":"Clearviewhealthcarepartners","sameAs":"https://job-boards.greenhouse.io/clearviewhealthcarepartners"},"directApply":false,"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressCountry":"IN","addressLocality":"Gurugram"}}}
```

```json
{"@context":"https://schema.org/","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Jobs","item":"https://gurify.com/jobs"},{"@type":"ListItem","position":2,"name":"India","item":"https://gurify.com/jobs/india"},{"@type":"ListItem","position":3,"name":"IT Security Engineer","item":"https://gurify.com/job/it-security-engineer-at-clearviewhealthcarepartners-ad83e02f44b3"}]}
```
