06 Aug
|
Anaplan
|
Gurugram
What You'll Be Doing
- SSPM: Lead the implementation and management of the SSPM program, addressing misconfigurations in SaaS applications. Prioritize findings, create actionable remediation plans, and collaborate with application owners and IT to resolve issues.
- Endpoint Vulnerability Management: Oversee the endpoint vulnerability management lifecycle, from scanning to remediation tracking and reporting. Work with IT and infrastructure teams to ensure timely patching and configuration hardening, providing risk-based guidance on vulnerabilities.
- Office & Corporate Network Security: Design and enhance the security posture of office and corporate networks, including firewall management, network segmentation, DNS security, and monitoring for unusual traffic.
- Email Security: Manage email security measures to protect against phishing, spoofing, and malware. Maintain anti-spam and anti-phishing configurations, ensuring strict enforcement of SPF, DKIM, and DMARC policies.
- DNS & Web Security: Oversee DNS security controls to block malicious domains and prevent data exfiltration. Manage web security gateways and content filtering to enforce acceptable use policies and protect against web threats.
- Security Tooling Administration: Handle daily administration of enterprise security platforms, including configuration management and vendor engagement. Ensure effective operation and integration of tools for clear visibility across the enterprise.
- Cross-Functional Collaboration: Serve as a security partner to IT and infrastructure teams, providing guidance on new tools and projects. Support the broader security program through risk assessments and policy development.
What You'll Bring to the Role
- Enterprise Security Experience: Proven experience in a corporate security role,
with hands-on responsibility for protecting systems, endpoints, and networks. Strong understanding of the enterprise threat landscape and risk management controls.
- SSPM & SaaS Security: Experience with SSPM tools (e.g., Adaptive Shield, AppOmni) and knowledge of SaaS misconfiguration risks. Ability to communicate findings and drive remediation with stakeholders.
- Endpoint Vulnerability Management: Experience with vulnerability scanning platforms (e.g., Qualys, Tenable) and familiarity with prioritization frameworks. Ability to work with IT for effective remediation.
- Email Security: Technical expertise in email security controls and experience with platforms like Proofpoint or Mimecast. Capability to investigate email threats and phishing incidents.
- DNS & Web Security: Experience with protective DNS solutions and web security gateways. Understanding of DNS attack techniques and detection methods.
- Network Security: Knowledge of corporate network security principles and experience with vendors like Palo Alto Networks or Fortinet.
- Security Tooling Administration: Proven ability to manage and maintain security platforms effectively. Comfort with configuring integrations and managing alert workflows.
- Security Frameworks & Standards: Familiarity with frameworks like NIST CSF and ISO 27001, and understanding of how security controls align with compliance requirements.
- Communication & Collaboration: Robust communication skills to convey technical risks to diverse audiences. Ability to work collaboratively across teams to achieve security objectives without hindering productivity.
Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Security Engineer III (Gurugram)
🏢 Anaplan
📍 Gurugram