Information & Cybersec Associate
About this role
Job Summary
Role Summary
The GitHub Security Engineer will support secure software development practices across GitHub Enterprise and GitHub Advanced Security. The role will focus on onboarding support, security control enablement, alert monitoring, governance, reporting, and coordination with engineering teams for timely remediation of security issues.
Key Responsibilities
- Support GitHub Enterprise onboarding, access coordination, and repository governance activities.
- Configure and maintain GitHub Advanced Security capabilities such as Secret Scanning, Push Protection, Dependabot, and Code Scanning.
- Monitor GitHub security alerts and coordinate remediation with repository owners and development teams.
- Validate remediation evidence for GitHub security findings, including secret exposure and vulnerable dependency alerts.
- Maintain organization and repository-level security configurations in alignment with enterprise security requirements.
- Manage exception, bypass, and risk acceptance requests with appropriate documentation and approval tracking.
- Prepare dashboards, metrics, and status reports for GitHub security coverage, alert trends, and remediation progress.
- Support audits by collecting evidence related to repository controls, security settings, and remediation actions.
- Assist teams in integrating security checks into CI/CD pipelines and developer workflows.
- Conduct awareness and enablement sessions for development and repository admin teams.
Required Technical Skills
- Working knowledge of GitHub Enterprise and GitHub Advanced Security.
- Understanding of secure SDLC, DevSecOps, source code management, and CI/CD security practices.
- Hands-on exposure to Code Scanning, Secret Scanning, Dependency/SCA alerts, and GitHub Actions workflows.
- Familiarity with Git, YAML, scripting basics, and repository administration concepts.
- Understanding of OWASP Top 10, secure coding practices, and vulnerability remediation lifecycle.
- Ability to review security alerts, coordinate with technical teams, and track closure with evidence.
Preferred Skills
- Experience with enterprise-scale GitHub governance or repository onboarding.
- Exposure to GitHub migration, branch protection, code owners, and pull request governance.
- Knowledge of REST APIs, dashboards, automation scripts, and security reporting.
- GitHub, DevSecOps, Cloud Security, or Application Security certifications are added advantage.
Experience
- 4 to 8 years of experience in Application Security, DevSecOps, Platform Security, or Source Code Management security.
- Prior experience working with enterprise development teams, repository owners, DevOps teams, and application security stakeholders.
Expected Deliverables
- GitHub security onboarding support and governance tracking.
- Security alert triage and remediation coordination.
- Repository security configuration review and evidence collection.
- Periodic GitHub security dashboards and management reporting.
- Developer enablement material and awareness support.
Key Responsibilities
Key Responsibilities
- Support GitHub Enterprise onboarding, access coordination, and repository governance activities.
- Configure and maintain GitHub Advanced Security capabilities such as Secret Scanning, Push Protection, Dependabot, and Code Scanning.
- Monitor GitHub security alerts and coordinate remediation with repository owners and development teams.
- Validate remediation evidence for GitHub security findings, including secret exposure and vulnerable dependency alerts.
- Maintain organization and repository-level security configurations in alignment with enterprise security requirements.
- Manage exception, bypass, and risk acceptance requests with appropriate documentation and approval tracking.
- Prepare dashboards, metrics, and status reports for GitHub security coverage, alert trends, and remediation progress.
- Support audits by collecting evidence related to repository controls, security settings, and remediation actions.
- Assist teams in integrating security checks into CI/CD pipelines and developer workflows.
- Conduct awareness and enablement sessions for development and repository admin teams.
Skill Requirements
Other Requirements
Frequently Asked Questions
Is the salary disclosed for the Information & Cybersec Associate position at HCLTech?
The salary for this Information & Cybersec Associate role at HCLTech is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Information & Cybersec Associate position at HCLTech located?
This Information & Cybersec Associate role at HCLTech is based in Gautam Buddha Nagar, India. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
How do I apply for the Information & Cybersec Associate position at HCLTech?
Click the "Apply Now" button on this page. You will be redirected to HCLTech's official application portal hosted on successfactors where you can submit your application directly.
When was the Information & Cybersec Associate job at HCLTech posted?
This Information & Cybersec Associate position at HCLTech was posted on Aug 31, 2026. Apply as soon as possible โ early applications are often reviewed first.
Information & Cybersec Associate
HCLTech
You'll be redirected to HCLTech's official application page on successfactors.