MAIN RESPONSIBILITIES
Leadership
& Strategic Responsibilities
- Own and drive the organization’s
cybersecurity strategy and governance, aligning security initiatives with
business goals and risk management frameworks.
- Act as the technical authority
and escalation point for critical security decisions and incidents, ensuring
secure architecture and proactive risk mitigation.
- Lead and develop the
cybersecurity team while influencing cross-functional stakeholders, promoting a
strong security culture and improving overall security maturity.
Security Architecture &
Engineering:
- Plan,
design, implement, and manage security measures for the protection of the
organization’s data, systems, and networks.
- Maintain
and optimize core security systems, including firewalls, IDS/IPS, Endpoint
Detection and Response (EDR), SIEM, and VPN solutions.
- Collaborate
with IT and DevOps teams to ensure the secure design and deployment of new
applications and infrastructure.
- Implement
and manage system hardening standards across Windows, Linux, and cloud
environments.
Security Operations &
Incident Response:
- Monitor
networks and systems for security threats and anomalies.
- Lead and
participate in security incident response activities, including investigation,
containment, remediation, and root cause analysis.
Vulnerability & Risk
Management:
- Conduct
regular vulnerability assessments using industry-standard scanners.
- Prioritize
and track the remediation of identified vulnerabilities with relevant teams.
- Coordinate
and analyze the results of third-party or internal penetration tests,
translating findings into actionable remediation plans.
Policy & Compliance:
- Contribute
to the development, enforcement, and updating of security policies, procedures,
and best practices.
- Participate
in change management processes, ensuring all changes comply with security
standards.
- Act as a security subject matter
expert, providing guidance and technical support to employees to promote
security awareness.
JOB REQUIREMENTS
- Bachelor's or Master's degree in Computer Science,
Information Technology, Cybersecurity, or a related field.
- Minimum 7–10 years of experience in cybersecurity, with at
least 2–3 years in a senior or lead role focusing on network, system, or cloud
security.
- Proven ability to apply security concepts across diverse
technical domains, including network infrastructure, operating systems
(Linux/Windows), and cloud environments.
- Strong understanding of network protocols (TCP/IP, DNS,
Routing) and experience with network security devices (Firewalls, IDPS,
Load Balancers, VPN).
- Hands-on experience with industry-standard Vulnerability
Scanners and proficiency in conducting Penetration Testing and
interpreting results.
- Expertise in using and managing SIEM (Security
Information and Event Management) systems, EDR (Endpoint Detection and
Response) solutions, and analyzing security logs.
- In-depth knowledge of securing and hardening Windows
Server and Linux environments.
- Experience with scripting languages (e.g., Python,
Bash) for automation.
- Relevant certifications: CISSP, CISM, CCSP, OSCP, OSCE, GCIH,
GCFA, GNFA, AWS Security Specialty, Azure Security Engineer, etc.
- Experience
with SOAR platforms (Cortex XSOAR, Splunk SOAR, Demisto)
- Contributions
to open-source security tools or published research/blog posts
- Experience
securing Kubernetes/EKS/AKS/GKE environments
- Threat
intelligence analysis experience (MITRE ATT&CK framework mastery)
- Strategic Thinking &
Decision-Making
- Leadership & Team
Development
- Great Problem-Solving
Skills
- In-depth technical
knowledge of computer sciences
- Knowledge of Security
Across Various Platforms
- Attention to Detail
- Effective Communication
& Cross-Functional Collaboration
- Fundamental Computer
Forensics Skills
BENEFITS & WELFARE