Search by job, company or skills
About the role:
As a Lead - Cybersecurity Compliance, you will focus on securing the Digital estate both existing and new
and largely on-cloud but includes on-prem and hybrid as well. You as an individual contributor will
Assess the effectiveness of the cybersecurity controls implemented via assessments and audits.
Analyse and correlate information security events to identify appropriate event handling actions.
Propose cybersecurity process improvements.
Implement cybersecurity tools & technologies in liaison with tech team.
Monitor the SOC activities and action on incidents identified - EDR, XDR, MDR, DLP, firewall, etc.
Initiate and track VAPT, configuration reviews & threat intel activities.
Work with the project teams and track code repository security.
Monitor cloud security compliance.
Collaborate with development teams to ensure the adoption of Secure SDLC best practices across the
entire application lifecycle and propose process improvements as required.
Take part in client, internal and external audits.
Required Experience, Skills & Competencies:
8-years, of which at least 5 years relevant experience in Cybersecurity Governance and Compliance.
Experience in management of cybersecurity control effectiveness in Technology Infrastructure and
Application domains.
Handson experience with Cybersecurity technologies including firewalls/UTMs, EDR/XDR/MDR, DLP,
Authentication, content filtering, SIEM, SOC.
In-depth awareness and knowledge of security ecosystem and tech stack including NIST cyber security
framework, threat modelling, attack vectors and nature of cybersecurity attacks, incident response, tools
for security assessment as well as vulnerability and other types of testing.
Proficiency and expertise in defining and implementing security best practices and guidelines to be
followed during each phase of the software development lifecycle starting from architecture and design to
implementation, testing and deployment.
Deep understanding of OWASP Top 10 and experience in implementing and integrating remediation
strategies.
Familiarity with information security standards and best practices like ISO 27001, SOC 2 Control
frameworks, NIST, CIS Benchmarks etc.
Good to have: Any one of the Certifications; CISSP, CEH, CompTIA Security+ or similar.
Bachelors in engineering.
Login to check your skill match score
Date Posted: 11/11/2024
Job ID: 99860755