02 Sep
|
Genpact
|
Karnataka
Tech Lead - Cybersecurity Location: Bangalore, Hyderabad, Delhi NCR Experience: 8-14 years Immediate Joiners Preferred. For Immediate Response, Kindly share resume to with Sub of " with Sub of "Lead - Cyber Security" along with notice period. Job Description : Responsible for monitoring cyber risk and facilitating the remediation of identified vulnerabilities for digital systems across Lightsource bp. Must have at least 5yrs experience in cybersecurity, a strong understanding of threat landscapes, and the ability to work independently. This role will leverage global resources and tools to develop business cyber maturity, with a strong focus on the Microsoft security stack. Role also requires running third-party cyber risk management assessments. Core Responsibilities • Continually monitor the organization’s security systems and related infrastructure for signs of compromise • Proactively make use of available toolsets such as Azure Sentinel, Defender XDR, Global Secure Access, Purview and Tenable to hunt for issues, using threat intelligence relevant to the organisation • Assess recent threats to the business, seeking to optimise existing technology to better counter the issues identified • Identify vulnerabilities in our systems and applications, working alongside Infrastructure, Digital Workplace and Support teams to proactively patch and remediate in a timely manner • Working via Cyber Security Managers, communicate to stakeholders around the business and provide timely updates during an investigation.
• Ensure all security events are investigated and documented to completion • Support the development and enforcement of cloud security policies, standards and procedures. Ensure alignment with industry standards (e.g., NIST, CIS), regulations, and best practices. • Run third party cyber risk management assessments. • Managing the core SecOps tooling platforms, ensuring they are correctly configured and maximizing security value from existing investments • Understand the key risks the organisation faces, the key tactics techniques and procedures that likely threat actors will use and create mitigation options to overcome them. • Designing, producing and maintaining high quality configuration documentation for all technologies in your area of responsibility • Generate reports for both technical and non-technical staff and stakeholders • Assist with the creation, maintenance and delivery of cyber security awareness training for colleagues Technical Skillsets • SIEM –Defender XDR/Sentinel, Defender for Cloud, Defender for Cloud Apps, Defender EASM, Copilot for Security • Vulnerability Management – Defender XDR, Tenable IO/Nessus, Defender EASM • EDR – Defender for Endpoint • SSE – Microsoft Global Secure Access (Entra Internet and Private Access) • Data Governance – Purview, focused on DLP, Information Protection,
Insider Risk Management • IDAM – Entra, with strong knowledge of conditional access policies • TPCRM - Panorays • Device Management - working understanding of Intune including MDM/MAM • Networking/Firewalls – exposure to Cisco Meraki required, Fortinet desirable • Good understanding of ISO27001 and Cyber Essentials Plus requirements required • Knowledge of NIST 2.0 Cyber Security Framework required • Knowledge of Global OT legislation/standards desirable - NERC CIP (USA) SOCI (APAC) and NIS2 (EMEA) • Knowledge of IEC 62443 OT standard desirable • ITIL Knowledge - Good understanding of ITIL principles and their application required • Good experience in security incident handling and security incident response • Demonstratable experience of working in an Azure focused cloud environment. • Extensive experience in managing and utilizing Azure Sentinel, Defender XDR, Defender for Cloud Apps and Defender for Cloud/EASM • Proven experience of understanding and responding to cyber threats • Expertise in information security technologies: Firewalls, intrusion detection, vulnerability assessment tools, logging solutions, gateway security products, end-point security products, authentication mechanisms, etc. • Experience of the Cyber Kill Chain, MITRE ATT&CK; and other information security defence and intelligence frameworks. • OT Cyber Security experience is desirable but not required • Experience in stakeholder management and engagement to C-Suite level. Management Level : 4C Time Type : Full time Remote type : Hybrid Shift : Rotational
📌 Tech Lead - Cybersecurity (Karnataka)
🏢 Genpact
📍 Karnataka