29 Aug
|
Thoughtverve
|
Bengaluru
29 Aug
Thoughtverve
Bengaluru
About us
ThoughtVerve provides tailored software & technology solutions to clients across the globe for decisive outcomes. Headquartered in Bangalore, we are committed to long-term partnerships with our clients pivoted around sustainable, top-of-industry practices. We commit to partner with our clients every step of the way starting from conception through their evolution.
We are seeking a seasoned, high-performing Systems Support Administrator with skills in Networking and Cyber Security with 8+ years of experience specializing in enterprise vulnerability management, network mitigation, and system remediation. In this senior role, you will take ownership of end-to-end vulnerability lifecycle operations across multiple layers of the IT infrastructure.
Beyond technical oversight, you will serve as the strategic driver of enterprise risk reductioncombining hands-on technical guidance across network, system, and web application stacks with strong stakeholder management, tracking rigor, and executive reporting
Key Responsibilities
System Remediation
- Direct System Engineering teams in orchestrating large-scale patching, OS registry hardening, and configuration baselining across Windows, Linux, and virtual environments.
- Define and maintain standardized configuration baselines (CIS / DISA STIGs) across global server builds and container ecosystems.
- Validate post-remediation deployment via verification scans to confirm risk resolution with zero service disruption.
Network Remediation
- Drive cross-functional remediation efforts with Network Engineering to patch and harden routers, switches, firewalls, load balancers, and VPN appliances.
- Remediate network configuration drift, weak ACLs, insecure protocol implementations (SSL/TLS versions), and exposed administrative interfaces.
- Enforce network segmentation controls and micro-segmentation models (CIS Benchmarks / NIST SP 800-53) to minimize attack surfaces.
Vulnerability & Risk Management
- Lead end-to-end enterprise vulnerability discovery across internal/external networks, cloud environments (AWS/Azure), endpoints, and server infrastructure.
- Conduct root-cause analysis on complex security findings, distinguishing systemic infrastructure gaps from false positives.
- Manage automated scanning pipelines, sensor coverage, and asset inventories.
Web Application Security Remediation
- Oversee application vulnerability identification and remediation workflows for internal and customer-facing web applications, APIs, and microservices.
- Partner with Software Development and DevOps teams to remediate OWASP Top 10 vulnerabilities (e.g., SQLi, XSS, CSRF, broken access control, SSRF, insecure direct object references).
- Guide developers on secure code fixes, runtime application self-protection (RASP), web application firewall (WAF) rule tuning, and dependency updates (SCA/SAST/DAST/IAST).
- Conduct post-remediation verification testing and integrate security gates into CI/CD deployment pipelines.
Tracking, Stakeholder Management & Reporting
- Stakeholder Alignment: Act as the primary security advocate, working closely with IT, DevOps, Network, and Business Application owners to remove friction in patch deployment and secure maintenance windows.
- Tracking & SLAs: Maintain rigorous tracking systems (Jira/ServiceNow/Archer) to manage vulnerability open windows, extension approvals, and mitigation workflows against strict organizational SLAs.
- Executive Reporting: Design and distribute routine executive dashboards, highlighting key metrics such as Mean Time to Remediate (MTTR), SLA compliance percentages, overdue risks,
and enterprise risk trends for senior management and auditors.
Technical Skills & Requirements
System Security
Advanced administration, patch automation, and hardening for Windows Server, Linux (RHEL/Ubuntu), Active Directory, and cloud environments (AWS/Azure).
Network Security
Deep knowledge of TCP/IP, perimeter defense, firewall policy management (Palo Alto, Cisco, Fortinet), NAC, and secure network architecture.
Vulnerability Platforms
Expert proficiency with enterprise platforms (Tenable.io/Nessus, Qualys, Rapid7 InsightVM).
Qualifications
- Experience: 8+ years of dedicated, hands-on experience in System Admin, Network Admin and cybersecurity operations, enterprise vulnerability management, or network/system remediation leadership.
- Education: Bachelors or Masters degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience.
- Certifications (One or more required):
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- GIAC Strategic Planning, Policy, and Leadership (GSTRAT) / GIAC Security Essentials (GSEC)
- CompTIA Security+ / CySA+ / CASP+
Key Soft Skills & Professional Attributes
- Excellent Communication: Exceptional oral and written presentation skills, capable of explaining high-level risk to executive leadership while providing clear, technical guidance to system administrators.
- Stakeholder Management: Demonstrated capability to influence cross-functional teams, resolve prioritization conflicts, and negotiate maintenance downtime without operational disruption.
- Meticulous Tracking: Proven track record of managing multi-department ticket queues, auditing SLA compliance, and tracking thousands of enterprise assets through remediation lifecycles.
Data-Driven Reporting: Skilled in creating transparent, meaningful visual reports and KPI dashboards for both technical teams and executive committees.
📌 Sr. Systems Admin with Cyber Security skills (Bengaluru)
🏢 Thoughtverve
📍 Bengaluru