PitchMeAI
21K School

Cyber Security Engineer

21K School · Bengaluru, Karnataka, India

This listing has closed — view similar roles below.

  • On site
  • Full-time
  • ₹1,500,000 / year
  • Bengaluru, Karnataka, India

Job highlights

  • Secure applications, infrastructure, data, and systems.
  • Hands-on in cloud, app security, and audits.
  • Collaborate with engineering, product, and operations.
  • Drive compliance with SOC 2, GDPR, DPDP.
  • Monitor security logs and respond to incidents.

About the role

About Us

21K School, promoted by Bangalore-based Mindreflex Technologies Private Limited, is Asia's largest online school, offering virtual education to over 7,500 students across 72 countries. At 21K School, we're not just building an online school; we're building the future of education. We believe every student deserves a personalised, world-class learning experience, regardless of location. We're leveraging cutting edge technology, AI, and data-driven insights to realise this vision.

Role Overview

We are looking for a Cybersecurity Engineer to strengthen 21K School’s overall security posture across applications, infrastructure, data, and systems. This role involves hands-on execution across application security, cloud and infrastructure security, data protection, compliance readiness, and security audits. The candidate will work closely with engineering, product, and operations teams to ensure secure design and implementation across all systems.

Key Responsibilities

  • Application & API Security: Perform Vulnerability Assessment and Penetration Testing (VAPT) on web applications and APIs. Identify and remediate OWASP Top 10 vulnerabilities. Ensure adherence to secure coding practices. Secure third-party integrations and APIs.
  • Infrastructure & Cloud Security: Implement and manage cloud security (AWS preferred). IAM policies, access control, encryption. Network security (VPC, security groups, firewalls). Configure and manage WAF, IDS/IPS, and firewall rules. Ensure secure configurations for servers and databases.
  • Data & Information Security: Define and enforce data protection policies and access controls. Implement encryption mechanisms (data at rest and in transit). Manage data classification and handling of sensitive/PII data.
  • Compliance & Security Audits: Support and drive compliance initiatives such as SOC 2, DPDP (India Data Protection Act), GDPR. Prepare and maintain security policies, controls, and audit documentation. Coordinate with internal and external auditors.
  • System & Device Security: Implement endpoint/device security policies. Manage user access control and permissions. Ensure secure configurations across organizational systems.
  • Security Monitoring & Incident Response: Monitor security logs and alerts using SIEM tools (Splunk/ELK or similar). Detect and respond to security incidents and threats. Maintain incident response plans and reports.

Key skills/competency

  • Cybersecurity Engineering
  • Application Security
  • Cloud Security (AWS)
  • Data Protection
  • Compliance Audits
  • Incident Response
  • Vulnerability Assessment
  • Penetration Testing
  • Network Security
  • SIEM Tools (Splunk/ELK)

Skills & topics

  • Cyber Security Engineer
  • Cybersecurity
  • Information Security
  • Network Security
  • Cloud Security
  • Application Security
  • Data Protection
  • Compliance
  • Incident Response
  • Vulnerability Assessment
  • Penetration Testing
  • AWS
  • SOC 2
  • GDPR
  • DPDP
  • SIEM
  • Splunk
  • ELK
  • API Security
  • Security Audits

How to get hired

  • Tailor your resume: Highlight cybersecurity skills relevant to application, cloud, and data security.
  • Showcase experience: Emphasize VAPT, OWASP, cloud security (AWS), and SIEM tools.
  • Demonstrate knowledge: Prepare for questions on compliance (SOC 2, GDPR) and incident response.
  • Research 21K School: Understand their mission in online education and technology use.
  • Apply strategically: Clearly articulate your contributions to security posture enhancement.

Technical preparation

Master AWS security best practices.,Practice VAPT and OWASP Top 10 remediation.,Familiarize with SIEM tools like Splunk/ELK.,Study data protection and compliance frameworks.

Behavioral questions

Describe a complex security incident.,How do you ensure secure coding practices?,Explain your approach to compliance audits.,How do you handle sensitive data protection?

Frequently asked questions

What are the key responsibilities for a Cyber Security Engineer at 21K School?
As a Cyber Security Engineer at 21K School, your key responsibilities will include hands-on execution across application security, cloud and infrastructure security, data protection, compliance readiness, and security audits. You will perform VAPT, manage cloud security (AWS), enforce data protection policies, support compliance initiatives like SOC 2 and GDPR, and handle security monitoring and incident response.
What kind of security certifications are beneficial for this Cyber Security Engineer role at 21K School?
While not strictly required, certifications such as CISSP, CompTIA Security+, CEH, or cloud-specific security certifications (e.g., AWS Certified Security - Specialty) can significantly strengthen your application for the Cyber Security Engineer position at 21K School. They demonstrate a commitment to the field and a validated level of expertise.
Does 21K School prefer experience with specific cloud platforms for their Cyber Security Engineer role?
Yes, the job description explicitly mentions a preference for experience with AWS for cloud security implementation and management within the Cyber Security Engineer role at 21K School.
How important is knowledge of data protection regulations like GDPR and DPDP for this role?
Knowledge of data protection regulations like GDPR and DPDP is very important. The Cyber Security Engineer will be expected to support and drive compliance initiatives related to these acts, including defining and enforcing data protection policies and managing sensitive data.
What are the typical next steps after applying for the Cyber Security Engineer position at 21K School?
After applying for the Cyber Security Engineer position at 21K School, the typical next steps usually involve a review of your application and resume by the HR and hiring team. If your qualifications match the requirements, you will likely be contacted for an initial screening call, followed by technical interviews and possibly an interview with the hiring manager.
What is the expected level of hands-on technical work for the Cyber Security Engineer at 21K School?
The role of Cyber Security Engineer at 21K School is highly hands-on. It involves direct execution in areas like vulnerability assessment, penetration testing, cloud security implementation, configuring security tools, and responding to security incidents, rather than purely strategic or oversight duties.