Experience
5 - 7 yrs
Job Location
Kolkata, India
Vacancy
1
Designation
Security Engineer
Job Type
ONSITE
Job Description
- This leader will work with various security and project teams to make sure policies and controls are implemented and operationalized
- They will also be responsible for doing threat models and risk mitigation strategies for various initiatives at Lexmark
- This person will be responsible for working with the CISO and Security Operations daily to balance security and operational concerns
- They must have a strong ability to communicate and balance competing priorities
Key Responsibilities:
- Responsible for implementing controls and securing enterprise information systems by developing and reviewing security requirements and technology solutions
- Analyze and build automation scripts to improve security of information systems Analyze after action reviews, tabletop, red team and penetration testers reports to develop risk mitigations
- Participate and validate security threat intelligence and assess solutions
- Collaborate with hardware and software engineering teams to ensure alignment with security requirements and architecture standards
- Coordinate with DevOps teams to advocate secure coding practices, and to escalate concerns related to poor coding practices
- Coordinate with the privacy officer or office to document data flows of sensitive information in the organization (e.g, PII or ePHI) and recommend controls to ensure that this data is adequately secured (e.g, encryption and tokenization)
- Validate IT infrastructure and other reference architectures for security best practices and recommend changes to enhance security and reduce risks, where applicable
- Educate and train staff on information system security best practices by being a security advocate
- Assist security operation teams during incident response or business continuity scenarios
Preferred Qualifications:
- Bachelor s degree in Computer Science, Engineering, Cybersecurity or related field with 5 years of Information Technology experience
- Experience with MITRE AT&TCK, ISO, NIST Frameworks
- Excellent organizational, communication, documentation, and project management skills
- In-depth knowledge of Operational Processes (Event, Incident, Change, Problem)
- In-depth knowledge of SIRP (Security Incident Response Process)
- Has familiarity and general understanding of cryptography, cloud security, data security, common vulnerabilities, and attack patterns
Preferred Certifications:
- CISSP: Certified Information Systems Security Professional CISSP: (ISSAP or ISSEP): Information Systems Security Architecture or Engineering Professional CCSP: Certified Cloud Security Professional OSCP: Offensive Security Certified Professional
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
