22 Aug
|
Long Shot Assignment
|
Mumbai City
22 Aug
Long Shot Assignment
Mumbai City
– Infrastructure & Security Solutions
Position: Infrastructure & Security Audit / Assessment Consultant
Department: IT Infrastructure & Information Security
Industry: IT / BFSI / Financial Services
Employment Type: Based Assignment
Assignment Duration: 4 Months
Job Summary
We are looking for an experienced Infrastructure & Security skilled to assess and review IT infrastructure and security controls across operating systems, databases, networks, firewalls, and enterprise security solutions.
The consultant will be responsible for identifying configuration gaps, security vulnerabilities, control weaknesses, and potential risks, and providing recommendations for strengthening the organization's overall security posture.
Key Responsibilities
1. Infrastructure Security Review
- Review Operating System security configurations and identify potential security gaps.
- Conduct Database Security and Configuration Reviews.
- Review system configurations against defined security standards and organizational policies.
- Identify configuration weaknesses and recommend appropriate remediation measures.
- Review infrastructure security controls and assess their effectiveness.
1. Network Security & Architecture Review
- Conduct Network Architecture Reviews to identify security gaps and potential vulnerabilities.
- Review Network Device Configurations, including routers, switches, and other network infrastructure.
- Assess network segmentation and security controls where applicable.
- Review Firewall Rules to identify inappropriate, unnecessary, or potentially risky rules.
- Evaluate firewall configuration and access controls against security requirements.
1. Vulnerability & Patch Management
- Review patching processes for operating systems, applications, and infrastructure components.
- Assess whether critical security patches are identified and deployed within appropriate timelines.
- Review vulnerability management processes and identify gaps.
- Support Vulnerability Assessment and Penetration Testing (VAPT) activities.
- Analyse identified vulnerabilities and recommend appropriate remediation actions.
Security Solutions Review The consultant will review and assess the implementation, configuration, and effectiveness of relevant enterprise security solutions, including:
- Anti-Virus / Antivirus Solutions
- NIDS / NIPS – Network Intrusion Detection & Prevention Systems
- SOC & SIEM – Security Operations Center and Security Information & Event Management
- EDR – Endpoint Detection & Response
- HIPS – Host-based Intrusion Prevention System
- WAF – Web Application Firewall
- DLP – Data Loss Prevention
- Email Security
- URL Filtering / Proxy
- Endpoint Security
- Mobile Device Management (MDM)
1. Security Controls Assessment
- Assess the effectiveness of security solutions and associated controls.
- Review security configurations, policies, and monitoring mechanisms.
- Identify gaps in security implementation and control coverage.
- Review security monitoring and alert-management capabilities where applicable.
- Evaluate whether security controls are appropriately configured and aligned with organizational requirements.
- Provide practical recommendations for addressing identified risks.
1. Reporting & Recommendations
- Document identified security gaps, vulnerabilities, and configuration weaknesses.
- Prepare detailed assessment/audit reports.
- Assign appropriate risk ratings to identified observations.
- Provide clear remediation recommendations.
- Discuss findings with relevant infrastructure, network, security, and IT teams.
- Track remediation actions and support follow-up reviews where required.
Required Skills
- Infrastructure Security
- Operating System Security
- Database Security
- Configuration Review
- Network Architecture Review
- Network Device Configuration Review
- Firewall Rule Review
- Patch Management
- Vulnerability Assessment
- VAPT
- Network Security
- Endpoint Security
- Security Monitoring
- SIEM / SOC
- EDR
- NIDS / NIPS
- HIPS
- WAF
- DLP
- Email Security
- URL Filtering / Proxy
- Mobile Device Management (MDM)
Preferred Candidate Profile
- Bachelor's/Master's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Relevant experience in Infrastructure Security, Network Security, IT Security Audit, Cybersecurity, or Security Assessment.
- Strong understanding of infrastructure and network security controls.
- Experience reviewing security configurations and identifying control gaps.
- Knowledge of enterprise security solutions such as SIEM, EDR, WAF, DLP, NIDS/NIPS, and endpoint security.
- Strong analytical, documentation, and report-writing skills.
- Ability to work independently and deliver project outcomes within defined timelines.
Pay: ₹50,000.00 - ₹55,000.00 per month
Work Location: In person
📌 Infrastructure & Security Solutions (Mumbai City)
🏢 Long Shot Assignment
📍 Mumbai City