Daily Activities:
- Review of SOC dashboards for P1/P2 incidents and any repeated alerts or anomalies.
- Review of SOC incidents for proper categorisation & SLA adherence.
- Review ongoing incidents and identify any incident which qualifies for Cert-In reporting and coordinate with the regulatory team to notify Cert-In within the 06 hrs timeframe.
- Check all the SLA breach incidents and ensure proper RCA is done and documented.
- Tracking of all Critical/ High Vulnerabilities for timely closure, and in case of exceptions, risk is documented and approved.
- Approval of daily change tickets from cybersecurity GRC and joining daily CAB calls.
- Track and close New circulars/advisories from the Reserve Bank of India and CERT-In
Weekly, Monthly & Adhoc Activities:
- Conduct weekly review meeting with SOC, MSS and GRC to review the incident trends and patterns.
- Review patch compliance reports and delays in remediation.
- Perform a gap assessment around applicable regulatory requirements and standards.
- Track and close any open risks in the risk register.
- Monitor and track periodic security awareness activities
- Prepare any new SOPs/policies as required by different teams.
- Timely annual or mid-term review of all the documents, like SOPs, policy documents and process flows.
- All compliance activities like User access reviews, firewall rules review, SOC use cases review and other reviews are done as per the mentioned regulatory requirement.
- Prepare monthly, weekly and daily reports and dashboards for leadership consumption.
- Monitor Data privacy requirements and gaps.
- Drive and perform periodic cyber assessments and internal audits.
- Align & liaise with external auditors and successfully conduct external regulatory and certification audits.
- Coordinate with the BCP/DR team for timely BCP/DR tests, and ensure that RTO/RPO is achieved.
- Perform periodic cyber risk assessments and track any open risks.
- Maintain and update the Risk Register.
- Track and monitor security exceptions and ensure adherence.
- Track and monitor any zero-day vulnerabilities and their closure.