Title: Technical Lead-Cloud & Infra Engg
Area(s) of responsibility
Job Title: Technical Specialist
Role Overview
We are seeking a skilled and detail-oriented Security Hardening & Misconfiguration Remediation Specialist to drive security configuration improvements across enterprise environments. The role involves identifying, analyzing, and remediating system misconfigurations while ensuring minimal business disruption. The candidate will work closely with application owners, infrastructure teams, and clients to strengthen security posture in alignment with industry standards.
Preferred Experience
5-7 years of experience in Security Hardening, Configuration Management, or Security Operations.
Experience in enterprise environments with structured change management processes.
Key Responsibilities
Security Hardening & Misconfiguration Management
Analyze security misconfigurations across servers, endpoints, and infrastructure components.
Drive remediation activities in coordination with infrastructure and application teams.
Evaluate operational and business impact before implementing configuration changes.
Understand and analyze application dependencies prior to remediation actions.
Document exceptions and risk acceptance with proper justification and approvals.
Vulnerability & Configuration Governance
Support vulnerability management processes (knowledge of vulnerability lifecycle is an added advantage).
Interpret security baselines and compliance standards such as NIST and CIS Benchmarks.
Review and remediate insecure configurations, policies, and legacy protocols.
Ensure RBAC (Role-Based Access Control) is properly implemented and aligned with least privilege principles.
Change & Stakeholder Management
Present remediation plans in CAB (Change Advisory Board) meetings.
Coordinate change implementation through ITSM tools such as ServiceNow (SNOW).
Engage with clients and internal stakeholders to provide remediation updates and clarifications.
Provide clear risk communication and remediation timelines.
Technical Analysis & Implementation
Perform Windows OS security configuration reviews.
Implement and validate registry-level changes and system hardening controls.
Execute and analyze Windows commands and scripts for configuration validation.
Identify and validate insecure services, permissions, and system-level misconfigurations.
Reporting & Documentation
Prepare structured Excel-based tracking sheets for remediation status and risk reporting.
Generate dashboards and management-level reports.
Maintain detailed documentation of findings, remediation steps, testing results, and exceptions.
Provide audit-ready evidence for compliance reviews.
Technical Skills
Strong knowledge of Windows OS hardening and system configuration management.
Understanding security standards such as NIST and CIS Benchmarks.
Knowledge of RBAC, insecure protocols, and policy misconfigurations.
Experience in analyzing registry settings and system-level configurations.
Familiarity with ServiceNow (SNOW) or similar ITSM tools.
Proficiency in Microsoft Excel (reporting, tracking, pivot tables, data analysis).
Functional Skills
Strong analytical and problem-solving abilities.
Good understanding of business impact analysis before remediation.
Experience handling client interactions and stakeholder communications.
Ability to drive remediation initiatives end-to-end.
Experience participating in CAB discussions and change planning.
Added Advantage
Knowledge of vulnerability management lifecycle and remediation prioritization.
Experience working with enterprise security tools and compliance monitoring platforms.