19 Aug
|
Recruise
|
India
Job Title: Cybersecurity SME – Technology
Industry: Technology & Engineering
Seniority Level: Lead / Principal
Overview
This role is responsible for the design, operation, and continuous monitoring of cybersecurity technology controls across enterprise IT environments. The Cybersecurity SME – Technology will work closely with the CISO, IT Infrastructure, Digital Applications, SOC, and GRC teams to ensure that security tools are effectively deployed, configured, monitored, and aligned with regulatory and business requirements.
The role requires a hands-on, techno-functional security professional with a solid understanding of modern security technologies and how they support compliance, risk reduction, and incident response.
Key Responsibilities
- Own and manage enterprise cybersecurity technology controls across endpoints, networks, identities, cloud, and data environments.
- Implement, operate, and optimize security solutions including:
- Endpoint Detection & Response (EDR)
- Data Loss Prevention (DLP)
- Active Directory / Identity & Access Management (IAM)
- Firewalls (NGFW) and Network Security Controls
- Secure Web Gateway / Zscaler
- SIEM and SOAR platforms
- SOC operations
- DAST & Infrastructure Vulnerability Assessment & Penetration Testing (VAPT)
- Ensure security tool configurations align with policies, risk assessments, and compliance requirements defined by the GRC function.
- Act as the technical SME during security incidents, investigations, root cause analysis, and post-incident corrective actions.
- Drive log ingestion, correlation, alert tuning, and use-case development within SIEM and SOAR platforms.
- Oversee endpoint hardening, patching validation, and vulnerability remediation activities.
- Coordinate internal and external VAPT exercises and ensure timely closure of findings.
- Work with IT and Digital teams to embed security controls into applications, cloud platforms, and infrastructure changes.
- Support SOC maturity improvements,
playbook development, and continuous monitoring enhancements.
- Provide periodic security posture reports and dashboards to the CISO covering control effectiveness, tool coverage gaps, and incident trends and metrics.
- Assist during audits and assessments by providing technical evidence and control demonstrations.
- Contribute to security architecture reviews for new initiatives, tools, and integrations.
Required Qualifications
- Bachelor's or Master's degree in Information Security, Computer Science, IT, or equivalent.
- 6–8 years of hands-on experience in cybersecurity technology implementation and operations.
- Proven experience across multiple security domains, including endpoint, network, identity, data, and monitoring.
- Prior experience working alongside SOC, GRC, and IT Infrastructure teams in an enterprise environment.
- Strong hands-on technical depth with a practical, problem-solving mindset.
- Ability to translate technical security controls into business risk language.
- Ability to work effectively in high-pressure incident scenarios.
- Strong stakeholder management skills across IT, Compliance, Digital, and Business teams.
- Continuous learning attitude with curiosity across evolving security technologies.
Technical Skills & Tools
- Endpoint Security: EDR/XDR platforms, including Defender, SentinelOne, or similar.
- Network Security: Firewalls, IDS/IPS, VPNs, and Secure Web Gateways.
- Identity & Access: Active Directory, IAM, MFA, and Privileged Access concepts.
- Data Security: DLP, Encryption, and Data Classification.
- Monitoring & Response: SIEM, SOAR, and SOC operations.
- Cloud & SaaS Security: Exposure to cloud and SaaS security.
- Vulnerability Management: Scanning tools, VAPT coordination, and remediation tracking.
Preferred Qualifications
- CEH, Security , or CySA certification.
- Vendor certifications such as Microsoft Security, Zscaler, Palo Alto, or Fortinet.
- SIEM / SOAR platform certification.
- Experience with cloud and SaaS security environments.
📌 Cybersecurity SME (India)
🏢 Recruise
📍 India