30 Sep
|
Dharshanova It Solutions
|
India
30 Sep
Dharshanova It Solutions
India
Role & responsibilities
Role & Responsibilities
- Design, implement, monitor, and maintain Cyber Security and Information Security controls across enterprise environments.
- Monitor security events, alerts, and incidents through SOC and SIEM platforms; perform investigation, triage, escalation, and resolution.
- Work with SIEM tools such as Splunk for log analysis, event correlation, alert management, and security monitoring.
- Handle Incident Response and Security Incident Management activities, including containment, remediation, root cause analysis, and post-incident reporting.
- Manage IAM and PAM activities including user access, privileged access, authentication, authorization, role-based access, and periodic access reviews.
- Work with PAM solutions such as CyberArk and support identity and privileged access security processes.
- Support NOC and Network Security operations including network monitoring, firewall, VPN, IDS/IPS, and security troubleshooting.
- Perform Vulnerability Management, Vulnerability Assessment, VAPT, and Penetration Testing activities and track remediation to closure.
- Manage Endpoint Security and EDR solutions including SentinelOne, CrowdStrike, and similar endpoint protection platforms.
- Investigate endpoint alerts, suspicious activities, malware/ransomware events, and coordinate remediation actions.
- Implement and monitor Cloud Security controls across AWS, Azure, GCP, and other cloud environments.
- Support Application Security and DevSecOps activities across the Software Development Life Cycle.
- Perform Threat Intelligence and Threat Management activities to identify emerging threats,
indicators of compromise, attack patterns, and security risks.
- Support threat hunting and proactive security investigations using SIEM, EDR, and threat intelligence data.
- Participate in GRC, security risk management, compliance, audit, and security assessment activities.
- Maintain security policies, procedures, standards, controls, incident records, risk registers, and audit documentation.
- Collaborate with Network, Infrastructure, Cloud, Application, IAM, SOC, NOC, and other technology teams on security requirements and remediation.
- Prepare security reports, dashboards, incident metrics, vulnerability reports, and management updates.
- Ensure security incidents, vulnerabilities, access issues, and remediation activities are tracked and closed within defined timelines.
- Stay updated with emerging cyber threats, attack techniques, security technologies, and industry best practices.
Preferred candidate profile
Preferred Candidate Profile
- 512 years of relevant experience in Cyber Security, Information Security, IT Security, Security Operations, or related security domains.
- Strong experience in one or more areas such as SOC, SIEM, IAM, PAM, NOC, Network Security, VAPT, Vulnerability Management, Endpoint Security, Cloud Security,
Application Security, GRC, or Incident Response.
- Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, IBM QRadar, or equivalent tools.
- Experience in IAM/PAM technologies and solutions such as CyberArk, SailPoint, Okta, or Microsoft Entra ID is preferred.
- Experience with Endpoint Detection and Response (EDR) solutions such as SentinelOne, CrowdStrike, Microsoft Defender, or equivalent.
- Strong understanding of Network Security concepts including Firewalls, IDS/IPS, VPN, NAC, and network monitoring.
- Hands-on experience in Vulnerability Management, VAPT, Penetration Testing, Vulnerability Assessment, and security remediation.
- Good understanding of Cloud Security across AWS, Azure, GCP, or other cloud platforms.
- Knowledge of Application Security, DevSecOps, API Security, SAST/DAST, and Secure SDLC is preferred.
- Robust understanding of Threat Intelligence, Threat Management, Threat Hunting, Incident Response, and Security Incident Management.
- Experience with GRC, Risk Management, Compliance, Security Audits, and security frameworks such as ISO 27001 and NIST is preferred.
- Strong analytical, troubleshooting, investigation, and debugging skills.
- Ability to analyze security alerts, logs, vulnerabilities, incidents, and security events effectively.
- Good communication and stakeholder management skills with the ability to work with cross-functional technical teams.
- Ability to work independently as well as collaboratively in a 24x7 security operations environment, wherever required.
📌 Cyber Security / Information Security Engineer (India)
🏢 Dharshanova It Solutions
📍 India