16 Sep
|
ValueLabs
|
Himachal Pradesh
16 Sep
ValueLabs
Himachal Pradesh
Job Description
n
Note: Need Immediate Joiners.
n
n
Security Architecture & Design:
n
Design and implement comprehensive, end-to-end security frameworks for OCI tenancies, aligned with industry standards including the CIS OCI Foundations Benchmark, NIST Cybersecurity Framework (CSF), and ISO/IEC 27001.
n
Develop multi-layered security architectures encompassing perimeter, network, workload, data, and identity security domains.
n
Perform cloud security architecture reviews and threat modeling for applications and infrastructure hosted on OCI.
n
Establish and enforce security baselines, guardrails, and secure landing zones to ensure consistent and compliant deployment across OCI environments.
n
Evaluate, recommend, and integrate OCI-native and third-party security tools and services to strengthen the overall security posture.
n
n
Identity & Access Management (IAM):
n
Design and deploy scalable OCI IAM solutions, including policies, compartments, groups, dynamic groups, and identity federation via SAML, SCIM, and LDAP.
n
Enforce the Principle of Least Privilege (PoLP) and Role-Based Access Control (RBAC) across all OCI resources.
n
Manage OCI Identity Domains, Multi-Factor Authentication (MFA), and integrate Privileged Access Management (PAM) solutions.
n
Conduct regular access reviews and entitlement certifications to ensure ongoing access governance.
n
Implement lifecycle management for service accounts and API keys across OCI resources.
n
n
Data Security & Encryption:
n
Architect and implement robust data protection strategies for data at rest and in transit across OCI services.
n
Manage OCI Vault (Key Management Service) for customer-managed encryption keys (CMEKs), secrets, and digital certificates.
n
Utilize OCI Data Protected for database security assessments, sensitive data discovery, and data masking.
n
Configure encryption for OCI Object Storage, Block Volumes, and Oracle Databases.
n
Define and enforce data classification and handling policies to support compliance and risk mitigation.
n
n
Network Security:
n
Design and deploy network security controls using OCI Network Firewall, Web Application Firewall (WAF), Security Lists, and Network Security Groups (NSGs).
n
Implement DDoS protection, rate limiting, and traffic scrubbing for internet-facing workloads.
n
Apply Zero Trust Network Access (ZTNA) principles to secure access to internal resources.
n
Monitor and analyze VCN Flow Logs, firewall logs, and WAF logs to detect and respond to threats.
n
Conduct network security assessments and coordinate penetration testing activities.
n
n
Threat Detection, Monitoring & Incident Response:
n
Implement and manage OCI Cloud Guard for continuous security posture monitoring, threat detection, and automated remediation.
n
Configure Security Zones and Security Advisor to enforce security policies at the compartment level.
n
Integrate OCI Logging, OCI Logging Analytics, and OCI Events with SIEM platforms (e.g., Splunk, IBM QRadar, Microsoft Sentinel) for centralized visibility.
n
Lead security incident response efforts, including investigation, containment, eradication, and recovery.
n
Develop and maintain incident response plans, playbooks, and runbooks tailored to OCI environments.
n
Conduct proactive threat hunting and ongoing vulnerability management.
n
n
Vulnerability Management & Compliance:
n
Perform regular security assessments, vulnerability scans, and CIS benchmark compliance checks across OCI environments.
n
Track and manage remediation of vulnerabilities across workloads and infrastructure.
n
Ensure adherence to regulatory requirements such as PCI-DSS, HIPAA, GDPR, SOC 2, and ISO 27001.
n
Leverage OCI Compliance Documents and collect audit evidence to support certification processes.
n
Implement OCI Audit Service to enable comprehensive...
n
n
n
Note: Need Immediate Joiners.
📌 OCI IAM Security architect (Himachal Pradesh)
🏢 ValueLabs
📍 Himachal Pradesh