Job Type: Full time
Remote: Hybrid
Tech Lead - CybersecurityLocation: Bangalore, Hyderabad, Delhi NCRExperience: 8-14 yearsImmediate Joiners Preferred.For Immediate Response, Kindly share resume to
[email protected] with Sub of "
[email protected] with Sub of "Lead - Cyber Security" along with notice period.Job Description :Responsible for monitoring cyber risk and facilitating the remediation of identified vulnerabilities for digital systems across Lightsource bp. Must have at least 5yrs experience in cybersecurity, a strong understanding of threat landscapes, and the ability to work independently. This role will leverage global resources and tools to develop business cyber maturity, with a strong focus on the Microsoft security stack. Role also requires running third-party cyber risk management assessments.Core Responsibilities- Continually monitor the organization's security systems and related infrastructure for signs of compromise- Proactively make use of available toolsets such as Azure Sentinel, Defender XDR, Global Secure Access, Purview and Tenable to hunt for issues, using threat intelligence relevant to the organisation- Assess new threats to the business, seeking to optimise existing technology to better counter the issues identified- Identify vulnerabilities in our systems and applications, working alongside Infrastructure, Digital Workplace and Support teams to proactively patch and remediate in a timely manner- Working via Cyber Security Managers,
communicate to stakeholders around the business and provide timely updates during an investigation.- Ensure all security events are investigated and documented to completion- Support the development and enforcement of cloud security policies, standards and procedures. Ensure alignment with industry standards (e.g., NIST, CIS), regulations, and best practices.- Run third party cyber risk management assessments.- Managing the core SecOps tooling platforms, ensuring they are correctly configured and maximizing security value from existing investments- Understand the key risks the organisation faces, the key tactics techniques and procedures that likely threat actors will use and create mitigation options to overcome them.- Designing, producing and maintaining high quality configuration documentation for all technologies in your area of responsibility- Generate reports for both technical and non-technical staff and stakeholders- Assist with the creation, maintenance and delivery of cyber security awareness training for colleaguesTechnical Skillsets- SIEM –Defender XDR/Sentinel, Defender for Cloud, Defender for Cloud Apps, Defender EASM, Copilot for Security- Vulnerability Management – Defender XDR, Tenable IO/Nessus, Defender EASM- EDR – Defender for Endpoint- SSE – Microsoft Global Secure Access (Entra Internet and Private Access)- Data Governance – Purview, focused on DLP, Information Protection,
Insider Risk Management- IDAM – Entra, with strong knowledge of conditional access policies- TPCRM - Panorays- Device Management - working understanding of Intune including MDM/MAM- Networking/Firewalls – exposure to Cisco Meraki required, Fortinet desirable- Good understanding of ISO27001 and Cyber Essentials Plus requirements required- Knowledge of NIST 2.0 Cyber Security Framework required- Knowledge of Global OT legislation/standards desirable - NERC CIP (USA) SOCI (APAC) and NIS2 (EMEA)- Knowledge of IEC 62443 OT standard desirable- ITIL Knowledge - Good understanding of ITIL principles and their application required- Good experience in security incident handling and security incident response- Demonstratable experience of working in an Azure focused cloud environment.- Extensive experience in managing and utilizing Azure Sentinel, Defender XDR, Defender for Cloud Apps and Defender for Cloud/EASM- Proven experience of understanding and responding to cyber threats- Expertise in information security technologies: Firewalls, intrusion detection, vulnerability assessment tools, logging solutions, gateway security products, end-point security products, authentication mechanisms, etc.- Experience of the Cyber Kill Chain, MITRE ATT&CK; and other information security defence and intelligence frameworks.- OT Cyber Security experience is desirable but not required- Experience in stakeholder management and engagement to C-Suite level.- Management Level : 4C- Time Type : Full time- Remote type : Hybrid- Shift : Rotational
📌 Tech Lead - Cybersecurity (Bengaluru)
🏢 Genpact
📍 Bengaluru