Position: Senior Security Manager
Band: F (TSU), Salary 2030 LPA
Location: UIDAI Technology Centre, Bengaluru
Number of Positions: 1
Educational Qualification
- BE / B.Tech / M.Sc. Computers/M.Sc. IT/ MCA.
- Mandatory Certification (any one): CISSP, CISM, CCSP
Experience
- Minimum 10 years of work experience in: Cyber Security, Security Operations Center (SOC), Network Security, Cloud Security.
- Experience in management of security operations and security organization
- Experience in managing external audits
- Experience in facing client, internal stakeholder management and team management
- Ability to develop solution architecture designs
- Good understanding of Cloud Security and Control Matrix
- Experience in drafting and implementing policies, procedures and standards
- Knowledge of information security standards such as ISO 27001 and other cyber security standards
- In-depth knowledge of cyber-attacks, threat vectors, risk management and security concepts
- Experience in driving security projects
Key Responsibilities
- Credible team management and project management capabilities
- Improve perimeter defense solutions in the environment as per agreed architecture with the following solutions: Firewall, Web Gateway, Cloud Security, WAF, NIPS etc.
- Provide strategic direction to SOC team and organization for security posture improvements.
- Manage centralized incident response management, continuous and proactive monitoring and preventive maintenance.
- Oversee deployment and continuous improvement of: Security Operations, Threat Management processes, Security technologies, Automations and integrations.
- Research emerging threats, publicly disclosed vulnerabilities or attack vectors and proactively push mitigating controls to services.
- Maintain proficient knowledge of organization's controls, roadmap and service architecture.
- Oversee Cloud Security assessment and posture management.
- Prepare and deliver meaningful metrics representative of the Security Operations and Threat Management programs.
- Improve implementation of security processes in compliance with: ISO 27001, Aadhaar Act, IT Act.
- Provide technical security expertise to other departments with the organization including: IT teams, Software development and Operations teams.
- Develop strong relationships with external auditors and key stakeholders to ensure risk management oversight is understood, managed appropriately and current with all standards, guidelines and regulations that are applicable.
- Release information security metrics to stakeholders regarding compliance levels
- Perform any other related duties as required or assigned.