Job Description
Tech Lead - Cybersecurity
n
Location: Bangalore, Hyderabad, Delhi NCR
n
Experience: 8-14 years
n
Immediate Joiners Preferred.
n
n
For Immediate Response, Kindly share resume to
[email protected] with Sub of "
[email protected] with Sub of "Lead - Cyber Security" along with notice period.
n
n
Job Description :
n
Responsible for monitoring cyber risk and facilitating the remediation of identified vulnerabilities for digital systems across Lightsource bp. Must have at least 5yrs experience in cybersecurity, a strong understanding of threat landscapes, and the ability to work independently. This role will leverage global resources and tools to develop business cyber maturity, with a strong focus on the Microsoft security stack. Role also requires running third-party cyber risk management assessments.
n
n
Core Responsibilities
n
• Continually monitor the organization’s security systems and related infrastructure for signs of compromise
n
• Proactively make use of available toolsets such as Azure Sentinel, Defender XDR, Global Secure Access, Purview and Tenable to hunt for issues, using threat intelligence relevant to the organisation
n
• Assess current threats to the business, seeking to optimise existing technology to better counter the issues identified
n
• Identify vulnerabilities in our systems and applications, working alongside Infrastructure, Digital Workplace and Support teams to proactively patch and remediate in a timely manner
n
• Working via Cyber Security Managers, communicate to stakeholders around the business and provide timely updates during an investigation.
n
• Ensure all security events are investigated and documented to completion
n
• Support the development and enforcement of cloud security policies, standards and procedures. Ensure alignment with industry standards (e.g., NIST, CIS), regulations, and best practices.
n
• Run third party cyber risk management assessments.
n
• Managing the core SecOps tooling platforms, ensuring they are correctly configured and maximizing security value from existing investments
n
• Understand the key risks the organisation faces, the key tactics techniques and procedures that likely threat actors will use and create mitigation options to overcome them.
n
• Designing, producing and maintaining high quality configuration documentation for all technologies in your area of responsibility
n
• Generate reports for both technical and non-technical staff and stakeholders
n
• Assist with the creation, maintenance and delivery of cyber security awareness training for colleagues
n
n
Technical Skillsets
n
n
• SIEM –Defender XDR/Sentinel, Defender for Cloud, Defender for Cloud Apps, Defender EASM, Copilot for Security
n
• Vulnerability Management – Defender XDR, Tenable IO/Nessus, Defender EASM
n
• EDR – Defender for Endpoint
n
• SSE – Microsoft Global Secure Access (Entra Internet and Private Access)
n
• Data Governance – Purview, focused on DLP, Information Protection, Insider Risk Management
n
• IDAM – Entra, with strong knowledge of conditional access policies
n
• TPCRM - Panorays
n
• Device Management - working understanding of Intune including MDM/MAM
n
• Networking/Firewalls – exposure to Cisco Meraki required, Fortinet desirable
n
• Good understanding of ISO27001 and Cyber Essentials Plus requirements required
n
• Knowledge of NIST 2.0 Cyber Security Framework required
n
• Knowledge of Global OT legislation/standards desirable - NERC CIP (USA) SOCI (APAC) and NIS2 (EMEA)
n
• Knowledge of IEC 62443 OT standard desirable
n
• ITIL Knowledge - Good understanding of ITIL principles and their application required
n
n
• Good experience in security incident handling and security incident response
n
• Demonstratable experience of working in an Azure focused cloud environment.
n
• Extensive experience in managing and utilizing Azure Sentinel, Defender XDR, Defender for Cloud Apps and Defender for Cloud/EASM
n
• Proven experience of understanding and responding to cyber threats
n
• Expertise in information security technologies: Firewalls, intrusion detection, vulnerability assessment tools, logging solutions, gateway security products, end-point security products, authentication mechanisms, etc.
n
• Experience of the Cyber Kill Chain, MITRE ATT&CK; and other information security defence and intelligence frameworks.
n
• OT Cyber Security experience is desirable but not required
n
• Experience in stakeholder management and engagement to C-Suite level.
n
n
- Management Level : 4C
n
- Time Type : Full time
n
- Remote type : Hybrid
n
- Shift : Rotational
n
📌 Tech Lead - Cybersecurity (Bengaluru)
🏢 Genpact
📍 Bengaluru