Tech Lead - Cybersecurity
Indexed description
Tech Lead - Cybersecurity
Location: Bangalore, Hyderabad, Delhi NCR
Experience: 8-14 years
Immediate Joiners Preferred.
For Immediate Response, Kindly share resume to [email protected] with Sub of "[email protected] with Sub of "Lead - Cyber Security" along with notice period.
Job Description :
Responsible for monitoring cyber risk and facilitating the remediation of identified vulnerabilities for digital systems across Lightsource bp. Must have at least 5yrs experience in cybersecurity, a strong understanding of threat landscapes, and the ability to work independently. This role will leverage global resources and tools to develop business cyber maturity, with a strong focus on the Microsoft security stack. Role also requires running third-party cyber risk management assessments.
Core Responsibilities
• Continually monitor the organization’s security systems and related infrastructure for signs of compromise
• Proactively make use of available toolsets such as Azure Sentinel, Defender XDR, Global Secure Access, Purview and Tenable to hunt for issues, using threat intelligence relevant to the organisation
• Assess new threats to the business, seeking to optimise existing technology to better counter the issues identified
• Identify vulnerabilities in our systems and applications, working alongside Infrastructure, Digital Workplace and Support teams to proactively patch and remediate in a timely manner
• Working via Cyber Security Managers, communicate to stakeholders around the business and provide timely updates during an investigation.
• Ensure all security events are investigated and documented to completion
• Support the development and enforcement of cloud security policies, standards and procedures. Ensure alignment with industry standards (e.g., NIST, CIS), regulations, and best practices.
• Run third party cyber risk management assessments.
• Managing the core SecOps tooling platforms, ensuring they are correctly configured and maximizing security value from existing investments
• Understand the key risks the organisation faces, the key tactics techniques and procedures that likely threat actors will use and create mitigation options to overcome them.
• Designing, producing and maintaining high quality configuration documentation for all technologies in your area of responsibility
• Generate reports for both technical and non-technical staff and stakeholders
• Assist with the creation, maintenance and delivery of cyber security awareness training for colleagues
Technical Skillsets
• SIEM –Defender XDR/Sentinel, Defender for Cloud, Defender for Cloud Apps, Defender EASM, Copilot for Security
• Vulnerability Management – Defender XDR, Tenable IO/Nessus, Defender EASM
• EDR – Defender for Endpoint
• SSE – Microsoft Global Secure Access (Entra Internet and Private Access)
• Data Governance – Purview, focused on DLP, Information Protection, Insider Risk Management
• IDAM – Entra, with strong knowledge of conditional access policies
• TPCRM - Panorays
• Device Management - working understanding of Intune including MDM/MAM
• Networking/Firewalls – exposure to Cisco Meraki required, Fortinet desirable
• Good understanding of ISO27001 and Cyber Essentials Plus requirements required
• Knowledge of NIST 2.0 Cyber Security Framework required
• Knowledge of Global OT legislation/standards desirable - NERC CIP (USA) SOCI (APAC) and NIS2 (EMEA)
• Knowledge of IEC 62443 OT standard desirable
• ITIL Knowledge - Good understanding of ITIL principles and their application required
• Good experience in security incident handling and security incident response
• Demonstratable experience of working in an Azure focused cloud environment.
• Extensive experience in managing and utilizing Azure Sentinel, Defender XDR, Defender for Cloud Apps and Defender for Cloud/EASM
• Proven experience of understanding and responding to cyber threats
• Expertise in information security technologies: Firewalls, intrusion detection, vulnerability assessment tools, logging solutions, gateway security products, end-point security products, authentication mechanisms, etc.
• Experience of the Cyber Kill Chain, MITRE ATT&CK and other information security defence and intelligence frameworks.
• OT Cyber Security experience is desirable but not required
• Experience in stakeholder management and engagement to C-Suite level.
- Management Level : 4C
- Time Type : Full time
- Remote type : Hybrid
- Shift : Rotational
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search