Salary (CTC)
₹16.3L - ₹22.6L
Designation
Senior Domain Manager
Job Description
Job Purpose
Deploy, configure, and manage BitLocker across enterprise endpoints.
Monitor encryption compliance and ensure endpoint security standards are maintained.
Implement security baselines, hardening policies, and compliance controls for Windows devices.
Configure and manage Group Policies (GPO), device encryption keys, and recovery processes.
Troubleshoot BitLocker recovery issues, TPM-related issues, and endpoint security incidents.
Maintain documentation for encryption policies, endpoint configurations, and operational procedures.
Investigate and respond to endpoint security incidents, ensuring timely resolution and reporting.
Conduct periodic reviews of BitLocker policies, ensuring alignment with organizational security frameworks and regulatory standards.
Track and escalate error logs from non-compliant or failed encryption machines, coordinating with Microsoft support for resolution.
Manage endpoint protection platforms such as Microsoft Defender for Endpoint, CrowdStrike Falcon.
Integrate endpoint security controls with SIEM and SOC monitoring solutions.
Perform endpoint vulnerability assessments and remediation activities.
Collaborate with IT infrastructure, desktop support, and cybersecurity teams.
Duties and Responsibilities
A-Minimum required Accountabilities for this role
Engineering / Computer Graduate with 3-5 years of Information / Cyber Security Experience
B-Additional Accountabilities pertaining to the role
Relevant Security Certifications like CEH, CISSP, CISM, ISO 27001 Lead Implementer, etc. preferred (Good to Have)
Key Decisions / Dimensions
Strategic Decisions
Deciding encryption policies for different device categories (laptops, desktops, servers).
Define the problem clearly
Security Audits preparedness
Deciding compliance enforcement policies for non-compliant or unencrypted devices.
Major Challenges
Managing BitLocker encryption compliance across thousands of enterprise devices.
Handling BitLocker recovery key management and recovery incidents securely.
Ensuring endpoint security without impacting user productivity or system performance.
Handling encryption deployment during OS upgrades and device refresh cycles.
Maintaining compliance with organizational and regulatory security standards.
Supporting audit requirements and maintaining accurate security documentation.
Required Qualifications and Experience
a)Qualifications
Engineering/Computer Graduates with relevant security experience of 3-5years
b)Work Experience
Relevant security certifications such as EC-Council CEH, ISC2 CISSP, ISACA CISM, or Microsoft Security certifications are preferred.
Strong knowledge of Endpoint Security, Disk Encryption, Data Protection, and Windows Security Administration.
Hands-on experience in managing and supporting BitLocker across enterprise environments.
Experience in BitLocker deployment, configuration, recovery key management, TPM troubleshooting, and encryption compliance monitoring.
Hands-on experience with Microsoft Intune, Group Policy (GPO), Active Directory, and endpoint management tools.
Experience with endpoint protection and EDR solutions such as Microsoft Defender for Endpoint.
c)