09 Sep
|
Senvion India
|
Alibag
09 Sep
Senvion India
Alibag
Job DescriptionKey Responsibilities NCyber Security Operations& Governance Nn Lead and manage enterprise cyber security operations across on-premises infrastructure, cloud platforms, applications, and end-user environments. N Define and implement cyber security strategies, policies, standards, and operational procedures aligned with business objectives. N Ensure adherence to security governance frameworks including NIST, ISO 27001, MITRE ATT&CK;®, COBIT, ITIL, and other industry best practices N Drive continuous improvement initiatives to enhance organizational cyber resilience and security maturity. NnSecurity Incident Response Nn Lead cyber security incident detection, analysis, containment, eradication, recovery, and post-incident review activities. N Develop, maintain, and periodically test incident response plans, runbooks, and playbooks. N Coordinate with business stakeholders, IT teams, MSSPs, and external partners during security incidents. N Ensure timely reporting, escalation, and communication of security incidents according to defined escalation matrices. N Conduct root cause analysis and implement preventive controls to reduce recurrence of security incidents. NnVulnerability Management & Security Assurance Nn Own and manage enterprise vulnerability management programs across infrastructure, applications, cloud platforms, and endpoints. N Conduct and oversee Vulnerability Assessment and Penetration Testing (VAPT) activities. N Drive operating system,infrastructure, and application patch management programs. N Prioritize remediation activities based on business impact and risk exposure.
N Validate security fixesand remediation effectiveness through regular assessments and reviews. N Identify security weaknesses and recommend risk mitigation strategies. NnRisk Management, Compliance & Audits Nn Conduct enterprise security risk assessments and security reviews. N Ensure compliance with regulatory, legal, and internal security requirements. N Support internal audits, external audits, customer audits, and certification activities for ISO 27001:2022. N Establish and maintain security controls to protect organizational assets and sensitive information. N Develop security metrics, dashboards, and executive-level reporting. NnRisk Management, Compliance & Audits Nn Conduct enterprise security risk assessments and security reviews. N Ensure compliance with regulatory, legal, and internal security requirements viz CERT in, CEA,PDP, ISO 27001 etc N Support internal audits, external audits, customer audits, and certification activities for ISO 27001:2022. N Establish and maintain security controls to protect organizational assets and sensitive information. N Develop security metrics, dashboards, and executive-level reporting. NnVendor, Partner & Service Management Nn Manage MSSPs, OEMs, consultants, and technology partners. N Establish and govern security service delivery processes, SLAs, SLOs, and performance metrics. N Conduct regular servicereviews and ensure contractual compliance. NnDrive partner accountability for security deliverables and operational effectiveness. NCertifications preferred: Nn CISSPn CISM NnQualificationnBSC /BE with 8 +Years of experience
📌 Information Technology Security Specialist (Alibag)
🏢 Senvion India
📍 Alibag