Tech Lead - Cybersecurity
Location: Bangalore, Hyderabad, Delhi NCR
Experience: 8-14 years
Immediate Joiners Preferred.
For Immediate Response, Kindly share resume to
[email protected] with Sub of "
[email protected] with Sub of "Lead - Cyber Security" along with notice period.
:
Responsible for monitoring cyber risk and facilitating the remediation of identified vulnerabilities for digital systems across Lightsource bp. Must have at least 5yrs experience in cybersecurity, a strong understanding of threat landscapes, and the ability to work independently. This role will leverage global resources and tools to develop business cyber maturity, with a strong focus on the Microsoft security stack. Role also requires running third-party cyber risk management assessments.
Core Responsibilities
- Continually monitor the organization’s security systems and related infrastructure for signs of compromise
- Proactively make use of available toolsets such as Azure Sentinel, Defender XDR, Global Secure Access, Purview and Tenable to hunt for issues, using threat intelligence relevant to the organisation
- Assess new threats to the business, seeking to optimise existing technology to better counter the issues identified
- Identify vulnerabilities in our systems and applications, working alongside Infrastructure, Digital Workplace and Support teams to proactively patch and remediate in a timely manner
- Working via Cyber Security Managers, communicate to stakeholders around the business and provide timely updates during an investigation.
- Ensure all security events are investigated and documented to completion
- Support the development and enforcement of cloud security policies, standards and procedures. Ensure alignment with industry standards (e.g., NIST, CIS), regulations, and best practices.
- Run third party cyber risk management assessments.
- Managing the core SecOps tooling platforms, ensuring they are correctly configured and maximizing security value from existing investments
- Understand the key risks the organisation faces, the key tactics techniques and procedures that likely threat actors will use and create mitigation options to overcome them.
- Designing, producing and maintaining high quality configuration documentation for all technologies in your area of responsibility
- Generate reports for both technical and non-technical staff and stakeholders
- Assist with the creation, maintenance and delivery of cyber security awareness training for colleagues
Technical Skillsets
- SIEM –Defender XDR/Sentinel, Defender for Cloud, Defender for Cloud Apps, Defender EASM, Copilot for Security
- Vulnerability Management – Defender XDR, Tenable IO/Nessus, Defender EASM
- EDR – Defender for Endpoint
- SSE – Microsoft Global Secure Access (Entra Internet and Private Access)
- Data Governance – Purview, focused on DLP, Information Protection, Insider Risk Management
- IDAM – Entra, with strong knowledge of conditional access policies
- TPCRM - Panorays
- Device Management - working understanding of Intune including MDM/MAM
- Networking/Firewalls – exposure to Cisco Meraki required, Fortinet desirable
- Good understanding of ISO27001 and Cyber Essentials Plus requirements required
- Knowledge of NIST 2.0 Cyber Security Framework required
- Knowledge of Global OT legislation/standards desirable - NERC CIP (USA) SOCI (APAC) and NIS2 (EMEA)
- Knowledge of IEC 62443 OT standard desirable
- ITIL Knowledge - Positive understanding of ITIL principles and their application required
- Good experience in security incident handling and security incident response
- Demonstratable experience of working in an Azure focused cloud environment.
- Extensive experience in managing and utilizing Azure Sentinel, Defender XDR, Defender for Cloud Apps and Defender for Cloud/EASM
- Proven experience of understanding and responding to cyber threats
- Expertise in information security technologies: Firewalls, intrusion detection, vulnerability assessment tools, logging solutions, gateway security products, end-point security products, authentication mechanisms, etc.
- Experience of the Cyber Kill Chain, MITRE ATT&CK; and other information security defence and intelligence frameworks.
- OT Cyber Security experience is desirable but not required
- Experience in stakeholder management and engagement to C-Suite level.
- Management Level : 4C
- Time Type : Full time
- Remote type : Hybrid
- Shift : Rotational
📌 Tech Lead - Cybersecurity (Karnataka)
🏢 Genpact
📍 Karnataka