Free cookie consent management tool by TermsFeed CyberArk, Security Cloud Consultant | Antal Tech Jobs
Back to Jobs
2 Days ago

CyberArk, Security Cloud Consultant

decor
Bangalore, Karnataka, India
Information Technology
Full-Time
Atos

Overview

Role of Wealth Management Operational Security Engineer, being understood this role includes delegations from APAC WM CISO.

The incumbent will be responsible for managing and implementing technical access controls, privilege access management, data leakage prevention and other related technologies to ensure the confidentiality, integrity, and availability of our organization’s data and systems.

Responsibilities

Direct Responsibilities

ü Technical Access Management / Privilege Access Management

  • Manage and maintain technical/privilege access controls for production and development environments
  • Ensure compliance with organizational technical access control security policies and procedures
  • Collaborate with IT teams to implement least privilege access and resolve access-related non-compliance
  • Review existing CyberArk password management policies and assess the effectiveness of the enforcement through password rotation
  • Review technical access segregation between production and development environments with respective support teams


ü Data Leakage Prevention (DLP)

  • Create, management and maintain DLP policies to detect and prevent data leaks
  • Deploy and maintain DLP infrastructure
  • Collaborate with IT teams to investigate and respond to data leak incidents


ü Identity and Access Management (IAM)

  • Collaborate with IT teams to deploy and maintain data encryption solutions
  • IAM team to ensure seamless integration with technical access management solutions
  • Ensure compliance with organizational IAM policies and procedures


ü Data Encryption Deployment & Monitoring

  • Collaborate with IT teams to deploy and maintain data encryption solutions
  • Ensure compliance with organizational data encryption policies and procedures


ü Unstructured & Structured Data Discovery & Activity Monitoring

  • Collaborate with IT teams to
  • Deploy and maintain unstructured & structured data discovery and activity monitoring solution
  • Identify and classify sensitive data
  • Monitor and analyse restricted and sensitive database activities
  • Remediate any non-compliant finding reported


ü Infrastructure Vulnerability Management

  • Responsible to identify, classify, prioritize and remediate vulnerabilities in organization infrastructure.
  • Ensure the regular coverage of infrastructure assets in vulnerability assessment by service providers
  • Collaborate with IT Dev and Prod teams to remediate identified vulnerabilities and ensure that all remediation efforts are tracked and documented.
  • Provide regular reports to management on vulnerability management activities, including identified vulnerabilities, remediation efforts and compliance status.
  • Collaborate with IT teams, management and other stakeholders to ensure that vulnerability management efforts are aligned with business objectives.
  • Ensure that vulnerability assessment tools such as Rapid7 Nexpose, Tanium, Qualys are configured to meet the expected quality assessment and by fine-tuning the vulnerability assessment plugins.


ü Application Security

  • Ensure the effective implementation of Secure SDL including the DevSecOps and Threat modelling practices.
  • Identify and implement the latest security standards for internet facing and internal assets
  • Improve the Vulnerability Management at the application level in terms of efficiency as well as effectiveness (including Static Acceptance Security Testing – SAST, Dynamic Acceptance Security Testing – DAST and Software Composition Analysis – SCA).
  • Perform Security risk assessments and reviews to be presented to respective committees
  • Ensure the adequate security level for all WM GAIM applications, whatever the IT project manager’s location and hosting provider


ü Cybersecurity

  • Ensure the protection of WM business data with an adequate security level of WM assets based on review processes
  • Ensure the coordination with other IT security or other actors in the region or globally
  • Assist for a Risk Treatment for any APAC WM issue, based on the processes
  • Identify the IT security risks in advance, record and follow-up them
  • Define and contribute to processes from cybersecurity perspective
  • Periodic reporting of security status to IT Security Domain Head
  • Ensure the regular reporting for management follow-up
  • Ensure to follow-up on the DLP, Incident Management topics with by investigating and following with handlers until the issue is closed.
  • Ensure to onboard the Assets & Applications in SIEM and handling BAU, create / update relevant documents.


ü Production Security

  • Ensure the effectiveness and success of vulnerability management process
  • Ensure the compliance level of the production environment and integrate to reporting


ü IT Security Compliance (delegation on WM APAC scope)

  • Ensure the alignment with the Group and WM GAIM security policies, for both project and production assets
  • Ensure the compliance with regulatory bodies requirements, including for APAC (HKMA, MAS), EU (GDPR), Switzerland (FINMA)
  • Leveraging on a deep knowledge of Security standards such as NIST, CIS, ISO2700x, ensure the compliance with the IT security requirements
  • Ensure the compliance with the Third-party Technology risks and the Cloud security
  • Identify the process gaps and provide solutions


ü Coordination with IT Security actors

  • Alignment on the objectives and means, contribution to the different global reporting (WM Cybersecurity Committee, Application Security Dashboard…)
  • Coordination and control of security activities performed by APAC Business Information Security and Production Security teams, including production security review, user security awareness for the WM scope.
  • Coordination with the global security teams concerning integration of WM assets within production sites
  • Keeping abreast of initiatives by the IT Security community within the Group and other IT Security stakeholders within the Group
Share job
Similar Jobs
View All
6 Hours ago
Head of AI Cybersecurity
Information Technology
  • 8 - 13 Yrs
  • Chennai, Mumbai (All Areas)
Location: Mumbai & Chennai- Hybrid (1 week WFO in a month) | Experience: 8+ years Type: Full-time Seeking a visionary and hands-on Head of AI Cybersecurity to lead the end-to-end security of AI/ML systems. This role will drive strategy, implement...
decor
1 Day ago
Full Stack Developer (React + Python + AWS)
Information Technology
  • 5 - 8 Yrs
  • Pune
About the Client: They are a Global leader in delivering cutting-edge inflight entertainment and connectivity (IFEC) solutions. About the Role: Roles and Responsibilites Lead Frontend Development (70%): Design, build, and optimize inte...
decor
1 Day ago
Senior Full Stack Software Engineer
Information Technology
  • 5 - 10 Yrs
  • Bangalore
Job Title: Senior Full Stack Software Engineer Location: Bengaluru Experience: 5+ Years Job Type: Full Time What our client offer Our client believes in rewarding our employees for their hard work. Our client offer competitive sala...
decor
1 Day ago
Technical Delivery Engineer
Information Technology
  • 10 - 15 Yrs
  • Bangalore, Gurgaon / Gurugram
Location: Bangalore / Gurugram Mode: Hybrid (2–3 days in office per week) Experience Required: 10+ years Employment Type: Permanent Role Overview As a Technical Delivery Engineer, you will be a key member of our infrastructure delivery t...
decor
1 Day ago
Lead Endur Specialist
Information Technology
  • 13 - 20 Yrs
  • Bangalore
What we offer: Our Client, believes in rewarding our employees for their hard work. We offer competitive salaries, company pensions and performance related benefits. Our people can also take advantage of our extensive flexible benefits package and...
decor
1 Day ago
Associate Data Scientist in Gurgaon, Jaipur
Information Technology
  • Bangalore, Karnataka, India
Key Responsibilities Utilize data analysis tools and software to extract meaningful insights from raw data. Collaborate with data engineers to design and implement databases, data collection systems, and analytical frameworks for optimized statist...
decor
1 Day ago
Eloelo - Android Developer - Mobile App Integration
Information Technology
  • Bangalore, Karnataka, India
Are you ready to be a part of the dynamic world of live streaming and social gaming? Look no further! Eloelo, an innovative Indian platform founded in February 2020 by ex-Flipkart veteran Saurabh Pandey, is on the lookout for passionate individuals ...
decor
1 Day ago
Senior Business Analyst
Information Technology
  • Bangalore, Karnataka, India
Backdrop AVIZVA is a Healthcare Technology Organization that harnesses technology to simplify, accelerate, & optimize the way healthcare enterprises deliver care. Established in 2011, we have served as strategic enablers for healthcare enterprises,...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media