Security Engineer

  • Navi Mumbai
  • Bdx Data Centers
ROLE SUMMARY The Security Operations Engineer will have several areas of focus. Provide security incident response and readiness as part of a 24x7 Security Operations Centre within and in support of the IT Infrastructure and Operations team. Direct report to the Information Security Architecture and Engineering Lead, this role will work closely with IT Innovation Lab, software engineering teams, IT infrastructure team, IT compliance, security operations and cyber technology risk team. Operate security related tools (HIDS, NIDS, IPS, Analyzers, Scanners, etc.) to identify active threats, attacks, vulnerabilities, exposures, etc., and prioritize for activity within the team. Assist in speedy identification of mitigation/remediation solutions.

DUTIES AND RESPONSIBILITIES Engineer, implement and monitor security measures for the protection of computer systems, networks and information. Hands-on experience on one or more Security Technologies (Firewall, IPS/IDS, Proxy, Web Security, Mail Security, DNS, AAA, WAF, Two Factor Authentication, Cloud security, DDoS. Identify and define system security requirements. Develop, implement, and administer security policies, security foundations and security standards. Perform vulnerability assessments and secure configuration reviews using Tenable.sc (Nessus) to identify potential security risks. Develop and maintain detailed documentation of vulnerability assessment and secure configuration review processes and findings. Strong experience in building site to site VPN tunnels Experienced with troubleshooting Firewalls during design deployments. Design computer security architecture and develop detailed cyber security designs. Prepare and document standard operating procedures and protocols. Configure and troubleshoot security systems and infrastructure devices. Develop technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks Work with product vendors and suppliers to maintain and enhance existing security tooling and products incidents Apply a risk-based approach to prioritize security-related efforts within the Infrastructure and Operations teams; follow-up with team members on deliverables, communicate status and liaise with global security teams and management. Provide security-related input to the Infrastructure and Operations teams' processes, deployments, changes, etc. Ensure security and compliance of the systems, processes and solutions with internal standards, industry compliance standards and best practices. Analyse and report accurately and regularly on gaps, risks, failures, efficiencies, improvements, coverage, licensing, etc.

QUALIFICATION AND EXPERIENCE Graduate or equivalent AND/OR Evidence of Exceptional ability for the role. 5 to 8 years’ background in a similar position. Certified Ethical Hacker. Strong Knowledge of cyber security or security products such as firewall, IDS/IPS, web proxy, EDR/XDR, IAM, Sandbox, WAF, cloud is preferred. Familiar with Cybersecurity frameworks, such as MITRE ATT&CK, OWASP, NIST, is preferred.