Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Security Engineer - DNS Security (Immediate Joiner) @ SHI

Home > IT Security

 Security Engineer - DNS Security (Immediate Joiner)

Job Description

Role & responsibilities

We are looking for a Security Engineer - DNS Security with min 5 years exp and who can be an immediate joiner. If interested, please send your resume to re***********r@lo**z.com.


The design, deployment, tuning and operationalization of enterprise-grade DNS security using Cisco Umbrella, Infoblox DDI, and related tooling. This is a hands-on technical role that works across networking, cloud, SOC, and incident response teams.

  • Design, deploy and manage Cisco Umbrella policies (DNS-layer protection, content filtering, secure proxy) across hybrid environments.
  • Administer Infoblox DDI (DNS/DHCP/IPAM) zone management, DNSSEC, DHCP scopes, and IP address lifecycle.
  • Implement DNS security controls: RPZ, DNSSEC, response rate limiting, and sinkholing workflows.
  • Integrate DNS telemetry with SIEM/SOAR for detection, alerting and automated response.
  • Perform threat hunting and malware/ransomware detection using DNS query patterns and threat intelligence.
  • Triage and lead DNS-related security incidents containment, root-cause analysis, remediation and post-incident reporting.
  • Tune and operate DNS resilience and availability: monitoring, capacity planning, and failover testing.
  • Manage change control for DDI changes RFCs, peer reviews, and rollback procedures.
  • Conduct security assessments and configuration hardening for DNS servers, resolvers and forwarders.
  • Liaise with network, cloud and application teams to deploy DNS mitigations and ensure least-privilege DNS access.

Required skills & qualifications

  • 5+ years in network/security engineering with demonstrable DNS experience.
  • Hands-on experience with Cisco Umbrella and Infoblox (production deployments).
  • Strong DNS protocol knowledge (A/AAAA/CNAME/NS/SOA, DNSSEC, TSIG, recursion, EDNS).
  • Experience integrating DNS telemetry into SIEM (Splunk/QRadar/Elastic) and SOAR platforms.
  • Proficiency in scripting (Python, Bash) and REST API automation.
  • Bachelors degree in CS/IT/EE or equivalent; relevant certifications preferred

Desired qualities

  • Strong cross-team communicator; translates technical DNS issues for non-technical stakeholders.
  • Security-first mindset with attention to operational rigor and documentation.
  • Curious and proactive keeps up with DNS-based attack trends and emerging tooling.
  • Comfortable with cloud-native DNS (Route53, Azure DNS, Cloud DNS) and hybrid architectures.

Preferred candidate profile

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: IT Security - Other
Employement Type: Full time

Contact Details:

Company: SHI
Location(s): Bengaluru

+ View Contactajax loader


Keyskills:   DNS security controls cisco umbrella DNS SIEM Infoblox

 Fraud Alert to job seekers!

₹ 6-10 Lacs P.A

Similar positions

Security Engineer Waf & Sslo (l1)

  • NTT DATA
  • 2 - 3 years
  • Pune
  • 14 days ago
₹ Not Disclosed

Security Architect

  • Accenture HR Aditi
  • 8 - 13 years
  • Coimbatore
  • 15 days ago
₹ Not Disclosed

Senior Engineer - Technology

  • Iris Software
  • 4 - 7 years
  • Noida, Gurugram
  • 15 days ago
₹ Not Disclosed

Cloud Platform Engineer

  • Accenture HR Aditi
  • 3 - 8 years
  • Noida, Gurugram
  • 16 days ago
₹ Not Disclosed

SHI

Shiprocket is Indias largest eCommerce enablement platform providing digital retailers an end-to-end customer experience platform. The platform which is creating an operating system for direct commerce enables shipping, fulfillment, customer communication and marketing tools as well as providers for...