hireejobs
Hyderabad Jobs
Banglore Jobs
Chennai Jobs
Delhi Jobs
Ahmedabad Jobs
Mumbai Jobs
Pune Jobs
Vijayawada Jobs
Gurgaon Jobs
Noida Jobs
Oil & Gas Jobs
Banking Jobs
Construction Jobs
Top Management Jobs
IT - Software Jobs
Medical Healthcare Jobs
Purchase / Logistics Jobs
Sales
Ajax Jobs
Designing Jobs
ASP .NET Jobs
Java Jobs
MySQL Jobs
Sap hr Jobs
Software Testing Jobs
Html Jobs
IT Jobs
Logistics Jobs
Customer Service Jobs
Airport Jobs
Banking Jobs
Driver Jobs
Part Time Jobs
Civil Engineering Jobs
Accountant Jobs
Safety Officer Jobs
Nursing Jobs
Civil Engineering Jobs
Hospitality Jobs
Part Time Jobs
Security Jobs
Finance Jobs
Marketing Jobs
Shipping Jobs
Real Estate Jobs
Telecom Jobs

Assistant Manager / Manager Information Security

4.00 to 7.00 Years   Mumbai City   25 Feb, 2020
Job LocationMumbai City
EducationNot Mentioned
SalaryNot Disclosed
IndustryBPO / Call Center
Functional AreaOperations Management / Process Analysis
EmploymentTypeFull-time

Job Description

Dear Candidate,Greetings for the day!We are hiring forAssistant Manager / Manager - Information SecurityRoles and Responsibilities:DESIRED YEARS OF EXPERIENCE:Minimum 4 / 8 Years of experience in Information security field in the Security domain expertise on Network Architecture review , Log analysis and review and response management , Should have experience of one ISO27001 / PCI implementation experienceArcSight Log Monitoring:

  • Navigate ArcSight ESM Console and Web Components to correlate , investigate , Analyze , and remediate both exposed and obscure threats.
  • Develop and direct the development of content for a complex and growing ArcSight SOC infrastructure. This includes use cases for Dashboards , Active Channels , Reports , Rules , Filters , Trends , and Active Lists to meet customer requirements.
  • Perform Tier 1 real - time monitoring and reporting of IPS / IDS systems , including correlating data from IDS , IPS , Firewalls , Servers and application systems.
  • Produce reports identifying significant or suspicious security events.
  • Analyzing the raw packet for basic protocol , source , destination and function to locate and identify threats.
  • Identifying the current vulnerabilities , affected platforms , and possible impact of them and taking action as per the Threat analysis process.
  • Checking running ESM , Logger and connectors health and database statistic. Generating daily reports for internal Infra.
Tripwire: Configuration & Change MonitoringAudit closure review: Conduct reviews for closures of vulnerability assessment scans performed on IT assets of business processes during internal / external audits.Security Incident evidence collection & Root Cause Analysis: Ensure to collect digital evidences of security violations , evidences should not be tampered and identify root cause of security incidentsMail log review: Periodic mail logs review is carried out to ensure compliance as per SGS email security policies.Internet log review: Periodic internet access logs review is carried out to ensure compliance as per SGS internet access policiesPrivilege access review: Privilege access reviews need to be carried out on business process domain as per internal audit calendar and track till closers for the identified gapsProviding MI for Dashboard: Prepare daily / weekly / monthly MI reports and dashboard for security operation and reviews conducted.Server logs & ACLs: Periodic Servers event logs need to be reviewed for Logon Failure , Account lockouts , Server Administrators activities , configuration changes etc.Firewall / IPS logs review: Periodic Firewall & IPS logs need to be reviewed for External / Internal intrusions for PUBLICLY NATTED Servers on Internet.Network ACLs review: Periodic Network ACLs need to be reviewed to ensure the access is provisioned on need to have basis.Capacity review: Ensure to assess capacity planning as a part of change management process for IT infrastructureBCP / DR IT Technology review: Ensure to review BCP / DR test for IT infrastructure is carried out as per BCM test schedule for business processes.Network Architecture review: Ensure to review network architecture for new business processes as well as any modification or enhancement in existing network infrastructure.Risk Assessment: Ensure to carry out risk assessment of access provisioning , using exceptional or open source software / application / tools.Windows Group Policy review: Periodic Group Policies need to be reviewed for configuration changes or during scheduled internal / external audits of business processes.Antivirus signatures update and patch compliance review: Ensure to review AV signature and MS OS patch compliance is met up as per SGS policy on daily basis.Change Management review: Ensure change management process is followed across all regions for any configuration changes on IT infrastructureNew Security Product technology evaluations: Periodic evaluation of new technologies on security products are carried out to recommend prevention of latest threatsVendor liaison: Ensure liaising with security vendors for support during products issues and implementationsSecurity Products Experience: (Any of Below)
  • SIEM - ARCSIGHT / RSA EnVISION Log Monitoring Tool
  • IPS / IDS - IBM ISS IPS Proventia / Cisco Intrusion Prevention System (IPS)
  • Configuration Change Monitoring - TRIPWIRE Enterprise Application
  • Endpoint Security - McAfee / Symantec Antivirus / Data Loss Prevention / Device Control
  • Email Security - Ironport / Proofpoint
  • Web Security - Websense / Ironport Web Security Gateway
  • Firewall - Cisco / Checkpoint
  • SSL VPN - SonicWall Aventail
  • Patch Management - Manager Engine Desktop Central
  • Vulnerability Scanner - Nessus / Retina / FoundStone / NMAP
  • Proxy Servers - Microsoft ISA / Threat Management Gateway (TMG) / SQUID
  • Endpoint Encryption - McAfee Safeboot / Truecrypt
  • Wireless Technologies - RUCKUS / Cisco
Professional Certifications: (Any of Below)
  • Certified Ethical Hacker (CEH) / Certified Professional Hacker (CPH)
  • Certified Security Analyst (CSA)
  • Certified Information System Security Professional (CISSP)
  • Certified Cisco Network Associate (CCNA - Security)
  • Certified Cisco Security Professional (CCSP)
  • Certified Checkpoint Security Administrator (CCSA)
  • Certified HP ATP - ArcSight Security V1
A quick pointers for candidates: -
  • Should be in security for 4 years
  • Should have performed Network Architecture review based on PCI requirements
  • Should have worked on arcsight SIEM
  • Should have worked on any antivirus
  • Should have worked on any DLP
  • Should have worked on any patch management solution
RegardsTeam HR

Keyskills :
siem arcsight dlp soc infrastructure security ssistant manager information

Assistant Manager / Manager Information Security Related Jobs

© 2019 Hireejobs All Rights Reserved