The purpose of this role is to design the organisation’s computer and network security infrastructure and protect its systems and sensitive information from cyber threats. This involves designing and developing enterprise cyber security strategy and architecture, understanding security requirements by evaluating business strategies and conducting system security vulnerability and risk analyses, identifying risks associated with business processes, operations, information security programs and technology projects, and identifying and communicating current and emerging security threats and designing security architecture elements to mitigate threats as they emerge. The role also involves identifying security design gaps in existing and proposed architectures and recommending changes or enhancements, providing product best fit analysis to ensure end-to-end security covering different facets of architecture (e.g., Layered security, Zoning, Integration aspects, API, Endpoint security, Data security, Compliance and regulations), and demonstrating experience in doing security assessment against NIST Frameworks, SANS, CIS, etc. Additionally, the role provides support during technical deployment, configuration, integration and administration of security technologies, demonstrates experience around ITIL or Key process-oriented domains like incident management, configuration management, change management, problem management etc., and provides assistance for disaster recovery in the event of any security breaches, attacks, intrusions and unusual, unauthorized or illegal activity. The role also involves providing solutions for RFPs received from clients and ensuring overall design assurance. This includes developing a direction to manage the portfolio of to-be-solutions including systems, shared infrastructure services, applications, hardware related to cyber risk security in order to better match business outcome objectives. It also involves analyzing the technology environment, enterprise specifics, and client requirements to set a collaboration design framework/architecture. Depending on the client’s need with particular standards and technology stacks, the role creates complete RFPs, provides technical leadership to the design, development and implementation of custom solutions through thoughtful use of modern technology, defines and understands current state solutions and identifies improvements, options & tradeoffs to define target state solutions, clearly articulates and sells architectural targets, recommendations and reusable patterns and accordingly proposes investment roadmaps, and evaluates and recommends solutions to integrate with the overall technology ecosystem. The role also tracks industry and application trends and relates these to planning current and future IT needs. Furthermore, the role involves stakeholder coordination and audit assistance, liaising with stakeholders in relation to cyber security issues and providing timely support and future recommendations. It also provides assistance in maintaining an information security risk register and helps with internal and external audits relating to information security. The role supports the audit of security best practices and implementation of security principles across the organization, to meet business goals along with customer and regulatory requirements. It also assists with the creation, maintenance and delivery of cyber security awareness training to team members and customers, and provides training to employees on issues such as spam and unwanted or malicious emails.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed