Staff Security Operations Engineer
Pure Storage
- Location
- Bangalore, India
- Work model
- On-Site
- Level
- Staff
- H-1B history
- 67 approvals (FY2023)
- Posted
- 7h ago
Skills
About this role
Everpure (NYSE: P) has evolved from storage pioneer to data platform, closing fiscal 2026 with $3.7 billion in revenue, its first billion-dollar quarter, and accelerating growth into FY27. Our strategic agenda spans the companies defining the next era of technology - hyperscalers, AI labs, the AI hardware supply chain, data platform providers, and the broader AI ecosystem.
This type of work—work that changes the world—is what the tech industry was founded on. So, if you're ready to seize the endless opportunities and leave your mark, come join us.
THE ROLE
As a Staff Security Operations Engineer, you will own and continuously mature capabilities across Attack Surface Management, Vulnerability Management, Zero Trust, Secrets and Credential Security, Detection Engineering, and Security Automation. This is a hands-on role requiring strong security engineering expertise combined with the ability to build teams, establish operating processes, measure outcomes, and drive remediation across Engineering, Cloud, Infrastructure, and Product organizations.
You will partner closely with GISO leadership and global security teams to translate security strategy into measurable execution and risk reduction.
WHAT YOU'LL DO
• Lead and mature enterprise Attack Surface and Vulnerability Management capabilities across cloud, infrastructure, endpoints, applications, and internet-facing environments.
• Drive risk-based vulnerability prioritization using asset criticality, exposure, exploitability, known exploitation, threat intelligence, and compensating controls.
• Establish operating processes, remediation SLAs, KPIs/KRIs, dashboards, and governance to measure and drive security risk reduction.
• Identify systemic security gaps and develop scalable technical and operational solutions.
• Provide technical leadership across Zscaler/Zero Trust, secrets and credential security, SIEM/detection engineering, EDR, cloud security, and security automation.
• Drive automation and integrations using APIs, scripting, and SOAR to reduce manual effort and improve operational efficiency.
• Partner with Engineering, Product Security, Cloud, Network, Infrastructure, and business leaders to establish ownership and drive remediation of security exposures.
• Translate complex security risks and technical findings into clear recommendations for engineering teams and senior leadership.
WHAT YOU BRING
• 8+ years of cybersecurity experience, including significant experience in Security Operations, Attack Surface Management, Vulnerability Management, or Security Engineering.
• Proven experience building, operating, or significantly improving an enterprise Vulnerability Management or Attack Surface Management program.
• Strong understanding of asset discovery, vulnerability lifecycle, risk-based prioritization, remediation governance, and exposure management.
• Hands-on technical experience with platforms such as Tenable, Qualys, Wiz, Prisma Cloud, Zscaler, CrowdStrike, Splunk, or comparable technologies.
• Experience with security automation, REST APIs, scripting, and SOAR, with the ability to guide engineers in building scalable solutions.
• Strong security fundamentals across networking, cloud, endpoints, identity, Zero Trust, detection, and incident response.
• Demonstrated ability to define KPIs, SLAs, operational processes, and security metrics and use them to drive measurable improvements.
• Strong stakeholder management skills with demonstrated ability to influence engineering and business leaders and drive remediation without direct authority.
• Ability to communicate technical security risk clearly to both engineering teams and senior