Experience
3 - 6 yrs
Job Location
Chennai, India
Vacancy
1
Designation
Information Security Specialist
Job Type
Not specified
Job Description
Infomine Software Solutions is looking for Information Security Specialist to join our dynamic team and embark on a rewarding career journey
- As an Information Security Specialist, you will play a crucial role in safeguarding the organization's sensitive information and systems from security breaches, cyberattacks, and unauthorized access
- You will be responsible for implementing, managing, and monitoring security measures to protect the confidentiality, integrity, and availability of data and IT infrastructure
- Your expertise will be essential in identifying potential security risks, developing strategies to mitigate them, and ensuring compliance with industry standards and regulatory requirements
Key Responsibilities:
- Security Infrastructure Management: Deploy, configure, and maintain security technologies such as firewalls, intrusion detection/prevention systems, antivirus software, encryption tools, and access control mechanisms
- Vulnerability Assessment and Penetration Testing: Conduct regular assessments of network, systems, and applications to identify vulnerabilities and weaknesses
- Perform penetration testing to simulate cyberattacks and assess the effectiveness of existing security controls
- Incident Response: Develop and maintain incident response plans and procedures to effectively respond to security incidents, including data breaches, malware infections, and unauthorized access attempts
- Coordinate response efforts with internal teams and external stakeholders as necessary
- Security Policy Development: Develop, review, and enforce security policies, standards, and guidelines to ensure compliance with relevant regulations (eg, GDPR, HIPAA, PCI DSS) and industry best practices
- Provide guidance and training to employees on security awareness and compliance requirements
- Security Monitoring and Analysis: Monitor security logs and alerts generated by security systems to identify suspicious activities or anomalies
- Analyze security incidents and recommend appropriate remediation actions to mitigate risks and prevent recurrence
- Security Awareness Training: Develop and deliver security awareness training programs to educate employees about common security threats, best practices for data protection, and their roles and responsibilities in maintaining a secure work environment
- Security Risk Assessment: Conduct risk assessments to identify potential security threats and vulnerabilities within the organization's infrastructure, applications, and processes
- Recommend risk mitigation strategies and controls to minimize exposure to cyber risks
- Security Compliance: Ensure compliance with regulatory requirements, industry standards, and contractual obligations related to information security
- Collaborate with internal audit teams and external regulators to demonstrate adherence to security policies and standards
- Security Incident Reporting: Prepare and maintain documentation related to security incidents, including incident reports, forensic analysis findings, and remediation measures
- Report security incidents to appropriate stakeholders and regulatory authorities as required by law or company policy
- Security Research and Innovation: Stay abreast of emerging threats, vulnerabilities, and security technologies through continuous learning and research
- Evaluate new security tools and techniques to enhance the organization's security posture and adapt to evolving cyber threats
