hireejobs
Hyderabad Jobs
Banglore Jobs
Chennai Jobs
Delhi Jobs
Ahmedabad Jobs
Mumbai Jobs
Pune Jobs
Vijayawada Jobs
Gurgaon Jobs
Noida Jobs
Oil & Gas Jobs
Banking Jobs
Construction Jobs
Top Management Jobs
IT - Software Jobs
Medical Healthcare Jobs
Purchase / Logistics Jobs
Sales
Ajax Jobs
Designing Jobs
ASP .NET Jobs
Java Jobs
MySQL Jobs
Sap hr Jobs
Software Testing Jobs
Html Jobs
IT Jobs
Logistics Jobs
Customer Service Jobs
Airport Jobs
Banking Jobs
Driver Jobs
Part Time Jobs
Civil Engineering Jobs
Accountant Jobs
Safety Officer Jobs
Nursing Jobs
Civil Engineering Jobs
Hospitality Jobs
Part Time Jobs
Security Jobs
Finance Jobs
Marketing Jobs
Shipping Jobs
Real Estate Jobs
Telecom Jobs

IT Security Engineer and Architect ( L2 )

7.00 to 12.00 Years   Bangalore   29 Jan, 2021
Job LocationBangalore
EducationNot Mentioned
SalaryNot Disclosed
IndustryEducation / Training
Functional AreaGeneral / Other Software
EmploymentTypeFull-time

Job Description

Experience 7 years of experience working in a dedicated Information Security (InfoSec) role is essential Qualifications Active CISSP, CISM, CISA, CEH, SANS certifications or equivalents is essential You will work as a Subject Matter Expert (SME) within the Security Engineering and Architecture team by leveraging your SME knowledge of industry best practices, cyber security, se

Core Responsibilities

Design, implement, test and maintain enterprise class security systems and services to mitigate current and emerging threats while ensuring operational resilience and alignment to recognised frameworks, regulatory requirements and the business and technology strategies

Define and maintain technical security standards and key controls for the Bank s IT infrastructure

Act as an escalation point for the investigation of security events and incidents; lead investigations for root cause analysis and impact assessments of affected critical systems or data and manage the necessary corrective action plan

Provide specialist support as a Subject Matter Expert in all areas of IT Security including alignment of standards, frameworks and security with overall business and technology strategies

Guiding the security team, cultivating a sense of security awareness and developing top talent within the team

Identify and drive improvements on security assessments and internal investigation capabilities through improved technologies, processes and practices

Define cloud security architectures and internal systems designs with appropriate controls and monitoring capabilities through centrally managed monitoring and response services

Create Information Security Reporting and Metrics for new platforms and capabilities

Defining configuration policies and active tuning of DLP, L7 Firewalls, VPN, AV, IDS, W/IPS, SIEM, SSL Inspection, Endpoint Protection, mobile device computing, DB Security and similar security technologies/services.

Conduct research on emerging threats to support security enhancement and development efforts; recommend security improvements, upgrades, and/or purchases.

Drive the continuous improvement of security technologies, services and MSS providers to improve detection and reduced false positives.

Manage security work-streams for new business and IT initiatives through guidance on implementing security by design.

Develop project plans with estimated effort, delivery schedule and cost estimates for new initiatives and existing system upgrades.

Manage Ethical Hacking engagements through specialist third parties to define scope, manage daily debriefings, deliverables and defined corrective action plans.

Conduct first response IT Forensics activities to support incidents.

Design and deliver secure application architectures with appropriate segregation patterns and integration with standardised security services

Work with IT Technical teams in ensuring Vulnerability Management analysis and prioritisation is implemented managed in collaboration with the IT Teams.

Provide audit management support and SME views on risks, controls and operating practices.

Review, challenge and contribute to technical designs and discussions at the Architecture and Change Management Committee s to ensure that security is designed into new solutions

Ensure that you fully understand and comply with the organisation s Risk Management Policies as they relate to your area of responsibility and demonstrate in your day to day work that you put customers at the heart of everything you do.

Ensure that you fully understand and comply with the organisation s Data Governance Policies as they relate to your area of responsibility and demonstrate in your day to day work that you treat data as an important corporate asset which must be protected and managed.

Relationship owner for key security products and solutions managing 3rd party and vendor risks, service levels and metrics.

Maintain the company s compliance standards and ensure timely completion of all mandatory on-line training modules and attestations.

Qualifications/Certifications

  • GSCE/GCE qualifications in both maths and English are essential
  • Active CISSP, CISM, CISA, CEH, SANS certifications or equivalents is essential
  • Professional IT accreditation such as ITIL, Network +, CCNA is desirable

Experience Details

  • 7 years of experience working in a dedicated Information Security (InfoSec) role is essential
  • 5 years of experience implementing and managing AV, perimeter defences, network access controls and cyber countermeasures is essential
  • 5 years experience working in financial services is desirable
  • 3 years of experience documenting and reviewing security and IT designs to identify security risks and gaps is essential
  • 3 years of experience managing vulnerability scanning and remediation is essential
  • 3 years of experience implementing and managing website and e-mail content filtering, data loss prevention is essential
  • 3 years of experience with Cloud-based services and securing cloud architectures is essential
  • 2 years of experience analysing and investigating security incidents including root-cause analysis is essential, leading a CSIRT is desirable.
  • 2 years of experience managing IPS custom rules and SIEM tuning is essential
  • 1 year of experience implementing security quality gates and tooling for development teams and the SDLC process including training developers on secure coding practices is essential
  • 1 years of experience implementing PCIDSS controls is essential

Knowledge Requirements

  • Specialist knowledge of threats, vulnerabilities and countermeasures is essential
  • Detailed knowledge of log analysis and IT forensic tools and investigation methodologies is essential
  • Specialist knowledge of security incident response is essential
  • Basic knowledge of the UK Data Protection Act/GDPR is essential
  • Detailed knowledge of PCIDSS is essential
  • Detailed knowledge of Cloud computing and security is essential
  • Detailed knowledge of Network Security is essential
  • Basic knowledge of Application Security is essential
  • Basic knowledge of Enterprise Architecture (TOGAF ) is desired
  • Basic knowledge of IT Change Management and Service Delivery (ITIL) is desired
,

Keyskills :
it securitycloud computingsecure codingproject planspci dsscustomer relationspenetration testingcyber securitysecurity incident responsenetworkinglog analysisservice levelsdata loss preventionnew businessroot cause analysiscloud security

IT Security Engineer and Architect ( L2 ) Related Jobs

© 2019 Hireejobs All Rights Reserved