Job Description
SAPIENS INTERNATIONAL
Security Specialist
IT – Cybersecurity Operations | Cybersecurity Specialist | Full-Time | India
ABOUT THE ROLE
Sapiens International is looking for a Security Specialist (Cybersecurity Specialist) to join our global IT Security team. This is a hands-on role focused on administering and improving our core security tools, and on working through security tasks and projects rather than day-to-day ticket handling.
You will help manage the stability, configuration, and continuous improvement of our key security platforms — with DNS security as a priority area, alongside CSPM, Exposure Management, External Attack Surface Management, Identity Protection, Purview, vulnerability management, and other tools in our security stack.
KEY RESPONSIBILITIES
Security Platform Operations
- Manage and maintain core security products, with priority focus on DNS security, and hands-on ownership of at least four of: CSPM, Exposure Management, External Attack Surface Management, Identity Protection, Purview, DLP, email protection/mail relay, and MDM
- Configure, tune, and monitor DNS security policies to block malicious domains and prevent DNS-based threats
- Review and remediate CSPM misconfigurations and findings across cloud accounts, working with the relevant teams to get them fixed within SLA
- Track and improve the overall CSPM score by closing out misconfigurations and tightening baseline policies
- Monitor Exposure Management and External Attack Surface findings, and drive remediation of internet-facing risks
- Manage Identity Protection policies and Purview configuration, including reviewing and acting on related alerts
- Configure and maintain proxy/URL filtering and mail relay systems
Vulnerability Management & Automation
- Own the end-to-end vulnerability management lifecycle: asset discovery, scan orchestration, CVSS-based prioritization, ticketing, SLA tracking, and remediation validation
- Build automation that replaces manual reporting, speeds up remediation, and surfaces actionable risk insights for stakeholders
- Develop integrations between security tools and ITSM platforms using Python, REST APIs, and scripting
- Maintain dashboards and automated reporting for vulnerability posture and compliance KPIs
Projects & Tasks
- Work on security tool implementation, upgrades, and improvement projects assigned by the manager
- Partner with other IT and security teams to roll out new controls and policies
- Document standard operating procedures and runbooks for the tools you own
REQUIREMENTS
Experience
- 5+ years of experience in the cybersecurity field, with hands-on management of security products
- Demonstrated expertise implementing and managing at least four of: DNS security, CSPM, Exposure Management, External Attack Surface Management, Identity Protection, Purview, DLP, or Email Protection/Mail Relay
- Experience with vulnerability management programs — ownership of the full lifecycle from discovery through remediation
- Experience building security automation using Python, APIs, or scripting is a plus
Technical — Must Have
- Strong, hands-on knowledge of DNS security tools and concepts
- Working knowledge of CSPM — identifying misconfigurations, driving remediation, and improving posture score
- Familiarity with Exposure Management and External Attack Surface Management tools and findings
- Familiarity with Identity Protection and Microsoft Purview
- Practical experience with vulnerability management tools and processes
- Hands-on experience with DLP — policy design, configuration, and tuning
- Strong knowledge of Windows, Mac, and Linux platforms, including security vulnerability identification and resolution
- Proxy/URL filtering and email relay management
- Security automation: Python, REST APIs, scripting
Soft Skills & Language
- Fluent written and verbal English
- Perceptive, fast learner with a strong sense of urgency
- Able to multi-task, and remain organized in a fast-paced global environment
- Highly independent and proactive, with a team-first mindset
Advantage (Not Required)
- Security-related certifications: CISSP, CISM, CEH, CompTIA Security+, or vendor-specific (CrowdStrike, Microsoft, etc.)