We are looking for a System Security Engineer to design, implement, and maintain a secure enterprise environment across both on-premises and cloud platforms. This role involves deploying security controls, hardening systems, ensuring continuous protection, and proactively defending against evolving cyber threats. The ideal candidate will have hands-on experience with Windows and Linux systems, cloud security, and a strong understanding of security frameworks and tools.

Key Responsibilities:
- Design, implement, and continuously improve security controls across Windows Server and Linux environments (RHEL, Ubuntu, Debian), including system hardening, patching, and configuration management.
- Develop and enforce endpoint security policies by managing EDR/EPP solutions, anti-malware tools, device control, and host-based firewalls for both on-premises and cloud-hosted systems.
- Own cloud security posture management across AWS, Azure, and/or GCP by configuring CSPM tools, enforcing secure landing zones, managing IAM policies, and remediating misconfigurations.
- Lead application security initiatives such as secure code reviews, integrating SAST/DAST into CI/CD pipelines, container and Kubernetes security, and secrets management.
- Deploy, configure, and operationalize SIEM platforms (Splunk, Microsoft Sentinel, IBM QRadar, Elastic SIEM), including log source onboarding, data normalization, correlation rule creation, and dashboard development.
- Manage and tune SIEM, IDS/IPS, and cloud-native detection services (AWS GuardDuty, Microsoft Defender for Cloud, GCP Security Command Center); investigate alerts, develop detection content, and lead incident response efforts.
- Deploy, integrate, and maintain a broad security tooling ecosystem, including vulnerability scanners, PAM solutions, EDR/XDR platforms, DLP, NAC, and threat intelligence feeds, ensuring tools are licensed, updated, and effective.
- Oversee identity and access management across Active Directory, Entra ID/Azure AD, AWS IAM, PAM solutions, MFA enforcement, and least-privilege access reviews, including federated identities and service accounts.
- Conduct vulnerability assessments, cloud configuration audits, and penetration tests, tracking findings through to resolution with system and platform owners.
- Define and maintain security baselines using CIS Benchmarks, CIS Foundations Benchmarks for cloud, and NIST SP 800-53/CSF; support audit and compliance activities such as ISO 27001, SOC 2, GDPR, and CSA CCM.
- Evaluate, procure, and integrate security tools across on-premises and cloud platforms; maintain security architecture documentation and incident response runbooks.
- Act as a security advisor to engineering and operations teams by providing threat modeling input, training, and security reviews of infrastructure and cloud architecture changes.

Required Qualifications:
- Minimum of 3 years’ experience as a System Support Engineer or in a similar role.
- Bachelor’s degree in Computer Science, Information Technology, Software Engineering, or a related field.

Skills and Experience:
- Strong hands-on expertise securing Windows and Linux systems.
- Experience with cloud security concepts, including identity management, secure networking, and workload protection.
- Proven ability in patch management, firmware upgrades, and vulnerability remediation.
- Working knowledge of enterprise security tools such as SIEM, WAF, and EDR.
- Solid understanding of network security, firewalls, and secure architecture principles.
- Familiarity with security frameworks and standards like CIS, NIST, and ISO.
- Awareness of current cybersecurity threats, attack techniques, and mitigation strategies.
- Scripting and automation skills (PowerShell, Bash, Python, or similar) are an advantage.

Compensation:
The position offers a starting salary from Rs 100,000 per month.

Additional Information:
This role requires working onsite at the specified location. Candidates should be comfortable with the required shift timings. During the application process, candidates will be asked about their current and expected salary (gross or net), notice period, current city of residence, and willingness to work onsite.

This is an excellent opportunity for a security professional looking to advance their career by working with diverse technologies and security domains in a dynamic environment.

Job Details

Total Positions:
1 Post
Job Shift:
First Shift (Day)
Job Type:
Job Location:
Gender:
No Preference
Age:
18 - 65 Years
Minimum Education:
Bachelors
Career Level:
Mid-Level
Maximum Experience:
2 Years
Apply Before:
Sep 29, 2026
Posting Date:
Sep 23, 2026

MTBC CareCloud

· 11-50 employees - Islamabad

What is your Competitive Advantage?

Get quick competitive analysis and professional insights about yourself
Talk to our expert team of counsellors to improve your CV!
Try Rozee Premium

Similar Job Titles

Microsoft System Engineer

Posted Oct 01, 2026

System Support Engineer/Noc

Prime Broadband, Multan, Pakistan
Posted Sep 14, 2026

DevOps-Onsite-Engineer

Naseeb Enterprise Inc, Islamabad, Pakistan
Posted Sep 30, 2026
View All
I found a job on Rozee!