2,218 IT Security Manager jobs in India
Security Operations Manager

Posted 3 days ago
Job Viewed
Job Description
Tradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients - including the world's largest banks, asset managers, hedge funds, insurance companies, wealth managers and retail clients -- in more than 65 countries across the globe. Since our first trade in 1998, we have helped transform and electronify the fixed income markets. Tradeweb is a culture built on innovation, creativity and collaboration. Through a combination of very talented and driven people, innovative products and solutions, cutting-edge technology, market data, and a vast network of clients, we continue to work together to improve the way financial markets trade.
Mission: Move first and never stop. Collaborate with clients to create and build solutions that drive efficiency, connectivity, and transparency in electronic trading.
Tradeweb Markets LLC ("Tradeweb") is proud to be an EEO Minorities/Females/Protected Veterans/Disabled/Affirmative Action Employer.
Details**
Tradeweb's Security Operations team is on the front lines, protecting Tradeweb's clients and employees from the constantly evolving threat landscape. This role will help support and enhance our existing Security Operations program as part of our transformation into a hybrid operating model. The ideal candidate will have a combination of hands-on, technical experience and excellent written and verbal communication skills to explain complex issues in non-technical terms. The role will also have a chance to work with subject matter experts within cyber security, across infrastructure, data analytics, application development, and business teams.
**Job Responsibilities**
- Reporting to the Director of Security Operations, this role will oversee a team of security operations (SOC) engineers that provide 24x7x365 detection and response capabilities for Tradeweb.
- Mature existing processes to provide measurable results across SecOps OKRs.
- As a member of Tradeweb's technical incident response team, you will be responsible for executing Tradeweb's technical incident response process focusing on disk/memory forensics, log analysis, evidence handling and formal report creation.
- Collaborate with Tradeweb's Cyber Threat Intelligence teams to ensure operations engineers are aware of current threat actor tools, techniques and procedures (TTPs).
- Manage relationships with critical security vendors in local regions to ensure they are providing a level of excellence in line with Tradeweb standards.
- Train and mentor security engineers, primarily focused on incident response, threat hunting, and security automation.
- Build internal partnerships with key business stakeholders, particularly those in our Compliance, Infrastructure, and Risk organizations.
- Publish related metrics, key performance indicators (KPIs) and key risk indicators (KRIs) as well as providing regular updates to the senior management.
**Qualifications**
- Minimum of 10 years of combined experience in information security and related technical disciplines, with at least 6 years focusing on security operations, incident response or cyber threat investigations.
- In-depth experience with Windows and Unix operating environments with a focus on disk and memory forensic analysis.
- Demonstrated experience leading and maturing security teams with a deep technical focus.
- Strong knowledge of SIEM technologies and hands-on experience with at least one of the following technologies: Splunk, ELK, XSIAM, QRadar.
- Ability to translate and operationalize technical, legal, and compliance requirements in a heavily regulated environment.
- Clear and concise communicator, can articulate cyber risk and impact across a wide range of audiences, to ensure decision makers have the information they need.
- Deep knowledge of network security architecture, internet protocols and web service technologies.
- Financial services experience is preferable, or experience in the financial technology (FinTech) area
- CISSP, CISM or equivalent qualifications preferred.
Security Operations Manager
Posted 2 days ago
Job Viewed
Job Description
Company Description
JOB DESCRIPTION
Tradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients – including the world’s largest banks, asset managers, hedge funds, insurance companies, wealth managers and retail clients -- in more than 65 countries across the globe. Since our first trade in 1998, we have helped transform and electronify the fixed income markets. Tradeweb is a culture built on innovation, creativity and collaboration. Through a combination of very talented and driven people, innovative products and solutions, cutting-edge technology, market data, and a vast network of clients, we continue to work together to improve the way financial markets trade.
Mission: Move first and never stop. Collaborate with clients to create and build solutions that drive efficiency, connectivity, and transparency in electronic trading.
Tradeweb Markets LLC ("Tradeweb") is proud to be an EEO Minorities/Females/Protected Veterans/Disabled/Affirmative Action Employer.
Group Details
Tradeweb’s Security Operations team is on the front lines, protecting Tradeweb’s clients and employees from the constantly evolving threat landscape. This role will help support and enhance our existing Security Operations program as part of our transformation into a hybrid operating model. The ideal candidate will have a combination of hands-on, technical experience and excellent written and verbal communication skills to explain complex issues in non-technical terms. The role will also have a chance to work with subject matter experts within cyber security, across infrastructure, data analytics, application development, and business teams.
Job Responsibilities
- Reporting to the Director of Security Operations, this role will oversee a team of security operations (SOC) engineers that provide 24x7x365 detection and response capabilities for Tradeweb.
- Mature existing processes to provide measurable results across SecOps OKRs.
- As a member of Tradeweb’s technical incident response team, you will be responsible for executing Tradeweb’s technical incident response process focusing on disk/memory forensics, log analysis, evidence handling and formal report creation.
- Collaborate with Tradeweb’s Cyber Threat Intelligence teams to ensure operations engineers are aware of current threat actor tools, techniques and procedures (TTPs).
- Manage relationships with critical security vendors in local regions to ensure they are providing a level of excellence in line with Tradeweb standards.
- Train and mentor security engineers, primarily focused on incident response, threat hunting, and security automation.
- Build internal partnerships with key business stakeholders, particularly those in our Compliance, Infrastructure, and Risk organizations.
- Publish related metrics, key performance indicators (KPIs) and key risk indicators (KRIs) as well as providing regular updates to the senior management.
Qualifications
- Minimum of 10 years of combined experience in information security and related technical disciplines, with at least 6 years focusing on security operations, incident response or cyber threat investigations.
- In-depth experience with Windows and Unix operating environments with a focus on disk and memory forensic analysis.
- Demonstrated experience leading and maturing security teams with a deep technical focus.
- Strong knowledge of SIEM technologies and hands-on experience with at least one of the following technologies: Splunk, ELK, XSIAM, QRadar.
- Ability to translate and operationalize technical, legal, and compliance requirements in a heavily regulated environment.
- Clear and concise communicator, can articulate cyber risk and impact across a wide range of audiences, to ensure decision makers have the information they need.
- Deep knowledge of network security architecture, internet protocols and web service technologies.
- Financial services experience is preferable, or experience in the financial technology (FinTech) area
- CISSP, CISM or equivalent qualifications preferred.
Security Operations Manager
Posted today
Job Viewed
Job Description
Company Description
JOB DESCRIPTION
Tradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients – including the world’s largest banks, asset managers, hedge funds, insurance companies, wealth managers and retail clients -- in more than 65 countries across the globe. Since our first trade in 1998, we have helped transform and electronify the fixed income markets. Tradeweb is a culture built on innovation, creativity and collaboration. Through a combination of very talented and driven people, innovative products and solutions, cutting-edge technology, market data, and a vast network of clients, we continue to work together to improve the way financial markets trade.
Mission: Move first and never stop. Collaborate with clients to create and build solutions that drive efficiency, connectivity, and transparency in electronic trading.
Tradeweb Markets LLC ("Tradeweb") is proud to be an EEO Minorities/Females/Protected Veterans/Disabled/Affirmative Action Employer.
Group Details
Tradeweb’s Security Operations team is on the front lines, protecting Tradeweb’s clients and employees from the constantly evolving threat landscape. This role will help support and enhance our existing Security Operations program as part of our transformation into a hybrid operating model. The ideal candidate will have a combination of hands-on, technical experience and excellent written and verbal communication skills to explain complex issues in non-technical terms. The role will also have a chance to work with subject matter experts within cyber security, across infrastructure, data analytics, application development, and business teams.
Job Responsibilities
- Reporting to the Director of Security Operations, this role will oversee a team of security operations (SOC) engineers that provide 24x7x365 detection and response capabilities for Tradeweb.
- Mature existing processes to provide measurable results across SecOps OKRs.
- As a member of Tradeweb’s technical incident response team, you will be responsible for executing Tradeweb’s technical incident response process focusing on disk/memory forensics, log analysis, evidence handling and formal report creation.
- Collaborate with Tradeweb’s Cyber Threat Intelligence teams to ensure operations engineers are aware of current threat actor tools, techniques and procedures (TTPs).
- Manage relationships with critical security vendors in local regions to ensure they are providing a level of excellence in line with Tradeweb standards.
- Train and mentor security engineers, primarily focused on incident response, threat hunting, and security automation.
- Build internal partnerships with key business stakeholders, particularly those in our Compliance, Infrastructure, and Risk organizations.
- Publish related metrics, key performance indicators (KPIs) and key risk indicators (KRIs) as well as providing regular updates to the senior management.
Qualifications
- Minimum of 10 years of combined experience in information security and related technical disciplines, with at least 6 years focusing on security operations, incident response or cyber threat investigations.
- In-depth experience with Windows and Unix operating environments with a focus on disk and memory forensic analysis.
- Demonstrated experience leading and maturing security teams with a deep technical focus.
- Strong knowledge of SIEM technologies and hands-on experience with at least one of the following technologies: Splunk, ELK, XSIAM, QRadar.
- Ability to translate and operationalize technical, legal, and compliance requirements in a heavily regulated environment.
- Clear and concise communicator, can articulate cyber risk and impact across a wide range of audiences, to ensure decision makers have the information they need.
- Deep knowledge of network security architecture, internet protocols and web service technologies.
- Financial services experience is preferable, or experience in the financial technology (FinTech) area
- CISSP, CISM or equivalent qualifications preferred.
Security Operations Manager
Posted 2 days ago
Job Viewed
Job Description
JOB DESCRIPTION
Tradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients – including the world’s largest banks, asset managers, hedge funds, insurance companies, wealth managers and retail clients -- in more than 65 countries across the globe. Since our first trade in 1998, we have helped transform and electronify the fixed income markets. Tradeweb is a culture built on innovation, creativity and collaboration. Through a combination of very talented and driven people, innovative products and solutions, cutting-edge technology, market data, and a vast network of clients, we continue to work together to improve the way financial markets trade.
Mission: Move first and never stop. Collaborate with clients to create and build solutions that drive efficiency, connectivity, and transparency in electronic trading.
Tradeweb Markets LLC ("Tradeweb") is proud to be an EEO Minorities/Females/Protected Veterans/Disabled/Affirmative Action Employer.
Details
Tradeweb’s Security Operations team is on the front lines, protecting Tradeweb’s clients and employees from the constantly evolving threat landscape. This role will help support and enhance our existing Security Operations program as part of our transformation into a hybrid operating model. The ideal candidate will have a combination of hands-on, technical experience and excellent written and verbal communication skills to explain complex issues in non-technical terms. The role will also have a chance to work with subject matter experts within cyber security, across infrastructure, data analytics, application development, and business teams.
Job Responsibilities
Reporting to the Director of Security Operations, this role will oversee a team of security operations (SOC) engineers that provide 24x7x365 detection and response capabilities for Tradeweb.
Mature existing processes to provide measurable results across SecOps OKRs.
As a member of Tradeweb’s technical incident response team, you will be responsible for executing Tradeweb’s technical incident response process focusing on disk/memory forensics, log analysis, evidence handling and formal report creation.
Collaborate with Tradeweb’s Cyber Threat Intelligence teams to ensure operations engineers are aware of current threat actor tools, techniques and procedures (TTPs).
Manage relationships with critical security vendors in local regions to ensure they are providing a level of excellence in line with Tradeweb standards.
Train and mentor security engineers, primarily focused on incident response, threat hunting, and security automation.
Build internal partnerships with key business stakeholders, particularly those in our Compliance, Infrastructure, and Risk organizations.
Publish related metrics, key performance indicators (KPIs) and key risk indicators (KRIs) as well as providing regular updates to the senior management.
Qualifications
Minimum of 10 years of combined experience in information security and related technical disciplines, with at least 6 years focusing on security operations, incident response or cyber threat investigations.
In-depth experience with Windows and Unix operating environments with a focus on disk and memory forensic analysis.
Demonstrated experience leading and maturing security teams with a deep technical focus.
Strong knowledge of SIEM technologies and hands-on experience with at least one of the following technologies: Splunk, ELK, XSIAM, QRadar.
Ability to translate and operationalize technical, legal, and compliance requirements in a heavily regulated environment.
Clear and concise communicator, can articulate cyber risk and impact across a wide range of audiences, to ensure decision makers have the information they need.
Deep knowledge of network security architecture, internet protocols and web service technologies.
Financial services experience is preferable, or experience in the financial technology (FinTech) area
CISSP, CISM or equivalent qualifications preferred.
Security Operations Manager
Posted today
Job Viewed
Job Description
Company Description
JOB DESCRIPTION
Tradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients – including the world’s largest banks, asset managers, hedge funds, insurance companies, wealth managers and retail clients -- in more than 65 countries across the globe. Since our first trade in 1998, we have helped transform and electronify the fixed income markets. Tradeweb is a culture built on innovation, creativity and collaboration. Through a combination of very talented and driven people, innovative products and solutions, cutting-edge technology, market data, and a vast network of clients, we continue to work together to improve the way financial markets trade.
Mission: Move first and never stop. Collaborate with clients to create and build solutions that drive efficiency, connectivity, and transparency in electronic trading.
Tradeweb Markets LLC ("Tradeweb") is proud to be an EEO Minorities/Females/Protected Veterans/Disabled/Affirmative Action Employer.
Group Details
Tradeweb’s Security Operations team is on the front lines, protecting Tradeweb’s clients and employees from the constantly evolving threat landscape. This role will help support and enhance our existing Security Operations program as part of our transformation into a hybrid operating model. The ideal candidate will have a combination of hands-on, technical experience and excellent written and verbal communication skills to explain complex issues in non-technical terms. The role will also have a chance to work with subject matter experts within cyber security, across infrastructure, data analytics, application development, and business teams.
Job Responsibilities
- Reporting to the Director of Security Operations, this role will oversee a team of security operations (SOC) engineers that provide 24x7x365 detection and response capabilities for Tradeweb.
- Mature existing processes to provide measurable results across SecOps OKRs.
- As a member of Tradeweb’s technical incident response team, you will be responsible for executing Tradeweb’s technical incident response process focusing on disk/memory forensics, log analysis, evidence handling and formal report creation.
- Collaborate with Tradeweb’s Cyber Threat Intelligence teams to ensure operations engineers are aware of current threat actor tools, techniques and procedures (TTPs).
- Manage relationships with critical security vendors in local regions to ensure they are providing a level of excellence in line with Tradeweb standards.
- Train and mentor security engineers, primarily focused on incident response, threat hunting, and security automation.
- Build internal partnerships with key business stakeholders, particularly those in our Compliance, Infrastructure, and Risk organizations.
- Publish related metrics, key performance indicators (KPIs) and key risk indicators (KRIs) as well as providing regular updates to the senior management.
Qualifications
- Minimum of 10 years of combined experience in information security and related technical disciplines, with at least 6 years focusing on security operations, incident response or cyber threat investigations.
- In-depth experience with Windows and Unix operating environments with a focus on disk and memory forensic analysis.
- Demonstrated experience leading and maturing security teams with a deep technical focus.
- Strong knowledge of SIEM technologies and hands-on experience with at least one of the following technologies: Splunk, ELK, XSIAM, QRadar.
- Ability to translate and operationalize technical, legal, and compliance requirements in a heavily regulated environment.
- Clear and concise communicator, can articulate cyber risk and impact across a wide range of audiences, to ensure decision makers have the information they need.
- Deep knowledge of network security architecture, internet protocols and web service technologies.
- Financial services experience is preferable, or experience in the financial technology (FinTech) area
- CISSP, CISM or equivalent qualifications preferred.
Security Operations Manager
Posted today
Job Viewed
Job Description
Company Description
Protect Threat is a leading provider of advanced cybersecurity and IT services based in Mumbai. Our certified experts deliver tailored cybersecurity strategies to safeguard digital assets and strengthen security postures. We offer a comprehensive suite of services, including penetration testing, cloud security, threat intelligence, compliance, and incident response.
We are currently hiring for our client a leading private sector bank , to strengthen their Security Operations Center (SOC) capabilities.
Role Description: SOC Manager (On-Site, Mumbai)
This is a full-time on-site role for a SOC Manager , who will lead a 20-member SOC team and oversee security operations for our client's banking environment. The SOC Manager will report directly to the CISO and collaborate closely with incident response teams to manage SIEM platforms, monitor security events, and ensure rapid incident detection and response.
Key responsibilities include:
- Leading SOC operations and managing day-to-day security monitoring.
- Overseeing incident detection, triage, and response activities.
- Managing SIEM platforms (Securonix preferred; QRadar/Splunk/Arcsight acceptable).
- Coordinating with incident response teams in a large-scale enterprise environment.
- Mentoring SOC analysts and ensuring adherence to security processes.
Qualifications
- 10+ years of experience in Cybersecurity and SOC Management.
- Proven experience with SIEM platforms (Securonix, QRadar, Splunk, or Arcsight).
- Strong background in cybersecurity operations, vulnerability management, and network security .
- Excellent leadership, communication, and analytical skills.
- Experience managing SOC teams (L1, L2, L3 mix) in enterprise/banking environments.
- Relevant certifications such as CISSP, CISM or CISA (preferred).
- Bachelor's degree in Cybersecurity, Information Technology, or related field .
Job Highlights
- Work on-site in Mumbai (Kanjurmarg & Airoli) , Monday to Friday.
- Lead SOC operations for our client – a large private sector bank .
- Manage a high-performing SOC team and collaborate with advanced IR teams.
- Projection for 10–12 additional security roles through November.
How to Apply
? Send your resume to (HIDDEN TEXT) with the subject line:
"Application for SOC Manager Role - 10 Years Experience"
#Cybersecurity #SOC #SOCManager #MumbaiJobs #BankingSecurity #SIEM #IncidentResponse
Skills Required
Arcsight, Network Security, Vulnerability Management, Splunk, Qradar
Security Operations Manager
Posted today
Job Viewed
Job Description
Job Purpose:
Security Manager will be responsible for providing secure and safe environment to visitors in a multi-business facility. He will also be responsible for implementing security protocols and creating emergency response procedure during any event in the facility. He will be responsible for screening of personnel and vehicles with minimum customer inconvenience to the people.
Accountabilities:
1. Implement security policies, protocols and procedures in the facility.
2. Ensure operational readiness of satellite operation centre and functioning of and its equipment.
3. Ensure security of all assets placed inside the facility and security of own equipment.
4. Plan and coordinate security for all events.
5. Keep good liaison with cross functional teams and ensure smooth security operations.
6. Identify and resolve security breaches during events.
7. Ensure timely reporting of incidents to IOC/Head of operations.
8. Conduct regular mock drills and training of all stakeholders.
9. Respond to all emergencies as per procedures.
10. Investigate, resolve issues and create reports for management on security status.
Skills & Competencies (Unique characteristics):
1. Knowledge of asset protection and access control management.
2. Should have customer oriented/ hospitality mindset yet an eye for security gaps.
3. Demonstrate excellent surveillance and emergency response skills.
4. Knowledge of all hazards and threats to safety.
Be The First To Know
About the latest It security manager Jobs in India !
Security Operations Manager
Posted 2 days ago
Job Viewed
Job Description
Company Description
JOB DESCRIPTION
Tradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients – including the world’s largest banks, asset managers, hedge funds, insurance companies, wealth managers and retail clients -- in more than 65 countries across the globe. Since our first trade in 1998, we have helped transform and electronify the fixed income markets. Tradeweb is a culture built on innovation, creativity and collaboration. Through a combination of very talented and driven people, innovative products and solutions, cutting-edge technology, market data, and a vast network of clients, we continue to work together to improve the way financial markets trade.
Mission: Move first and never stop. Collaborate with clients to create and build solutions that drive efficiency, connectivity, and transparency in electronic trading.
Tradeweb Markets LLC ("Tradeweb") is proud to be an EEO Minorities/Females/Protected Veterans/Disabled/Affirmative Action Employer.
Group Details
Tradeweb’s Security Operations team is on the front lines, protecting Tradeweb’s clients and employees from the constantly evolving threat landscape. This role will help support and enhance our existing Security Operations program as part of our transformation into a hybrid operating model. The ideal candidate will have a combination of hands-on, technical experience and excellent written and verbal communication skills to explain complex issues in non-technical terms. The role will also have a chance to work with subject matter experts within cyber security, across infrastructure, data analytics, application development, and business teams.
Job Responsibilities
- Reporting to the Director of Security Operations, this role will oversee a team of security operations (SOC) engineers that provide 24x7x365 detection and response capabilities for Tradeweb.
- Mature existing processes to provide measurable results across SecOps OKRs.
- As a member of Tradeweb’s technical incident response team, you will be responsible for executing Tradeweb’s technical incident response process focusing on disk/memory forensics, log analysis, evidence handling and formal report creation.
- Collaborate with Tradeweb’s Cyber Threat Intelligence teams to ensure operations engineers are aware of current threat actor tools, techniques and procedures (TTPs).
- Manage relationships with critical security vendors in local regions to ensure they are providing a level of excellence in line with Tradeweb standards.
- Train and mentor security engineers, primarily focused on incident response, threat hunting, and security automation.
- Build internal partnerships with key business stakeholders, particularly those in our Compliance, Infrastructure, and Risk organizations.
- Publish related metrics, key performance indicators (KPIs) and key risk indicators (KRIs) as well as providing regular updates to the senior management.
Qualifications
- Minimum of 10 years of combined experience in information security and related technical disciplines, with at least 6 years focusing on security operations, incident response or cyber threat investigations.
- In-depth experience with Windows and Unix operating environments with a focus on disk and memory forensic analysis.
- Demonstrated experience leading and maturing security teams with a deep technical focus.
- Strong knowledge of SIEM technologies and hands-on experience with at least one of the following technologies: Splunk, ELK, XSIAM, QRadar.
- Ability to translate and operationalize technical, legal, and compliance requirements in a heavily regulated environment.
- Clear and concise communicator, can articulate cyber risk and impact across a wide range of audiences, to ensure decision makers have the information they need.
- Deep knowledge of network security architecture, internet protocols and web service technologies.
- Financial services experience is preferable, or experience in the financial technology (FinTech) area
- CISSP, CISM or equivalent qualifications preferred.
Security Operations Manager
Posted 14 days ago
Job Viewed
Job Description
Job Purpose:
Security Manager will be responsible for providing secure and safe environment to visitors in a multi-business facility. He will also be responsible for implementing security protocols and creating emergency response procedure during any event in the facility. He will be responsible for screening of personnel and vehicles with minimum customer inconvenience to the people.
Accountabilities:
1. Implement security policies, protocols and procedures in the facility.
2. Ensure operational readiness of satellite operation centre and functioning of and its equipment.
3. Ensure security of all assets placed inside the facility and security of own equipment.
4. Plan and coordinate security for all events.
5. Keep good liaison with cross functional teams and ensure smooth security operations.
6. Identify and resolve security breaches during events.
7. Ensure timely reporting of incidents to IOC/Head of operations.
8. Conduct regular mock drills and training of all stakeholders.
9. Respond to all emergencies as per procedures.
10. Investigate, resolve issues and create reports for management on security status.
Skills & Competencies (Unique characteristics):
1. Knowledge of asset protection and access control management.
2. Should have customer oriented/ hospitality mindset yet an eye for security gaps.
3. Demonstrate excellent surveillance and emergency response skills.
4. Knowledge of all hazards and threats to safety.
Network Security Operations Manager
Posted 4 days ago
Job Viewed
Job Description
Hi,
We are having an opening for Network Security Operations Manager at our Mumbai location.
Job Summary :
We are looking for a highly capable Network Security Operations Manager to lead, manage, and enhance the organizations network security infrastructure and operations. This role will be responsible for managing key security technologies such as firewalls, proxies, VPNs, NAC, DNS security, WAF , EDR & Data Security and ensuring operational governance and compliance. The ideal candidate should have hands-on experience managing large-scale network security operations and coordinating with cross-functional and incident response teams.
Areas Of Responsibility :
Security Operations Management
- Lead day-to-day operations of all network security tools and platforms , including:
- Firewalls (NGFW Palo Alto, Fortinet, Cisco)- Policy governance, segmentation, and high-availability
- Web Proxy & Cloud Proxy (e.g., Zscaler, Netskope)- URL filtering, threat prevention, and data leak protection
- VPN (IPSec, SSL VPN, Remote Access Solutions)- Strong encryption and access control for workforce and partner
- Network Access Control (NAC)- Role-based access, posture checks, and OT/IoT security
- DNS Security & Filtering- DNS-layer protection, malicious domain filtering, and response management
- Web Application Firewall (WAF) On-prem & Cloud-based- Protection of patient data, portals, financial apps, and APIs
- Ensure continuous monitoring, tuning, and updating of policies and signatures across platforms.
- Manage security device configurations, rule optimization, and lifecycle management.
Compliance, Audit & Governance
- Ensure adherence to security compliance requirements such as ISO 27001, NIST, GDPR, and internal IT security policies .
- Ensure full compliance with sector-specific regulations (Pharma: GxP, 21 CFR Part 11, HIPAA)
- Prepare and present periodic audit reports, incident reports, and configuration review summaries .
- Drive risk assessments and remediation plans for security operations. Maintain security documentation, SOPs, and audit trails
Team & Vendor Management
- Lead and mentor a team of network security engineers and analysts.
- Oversee vendor engagements, support contracts, SLAs, and AMC renewals for security technologies.
- Engage with audit, QA, compliance, and legal teams for incident reporting and regulatory inspections
- Coordinate with for integrated security coverage (EDR/DS, if escalation/overlap arises).
Incident Response & Troubleshooting
- Collaborate with SOC for effective investigation and response to network security incidents .
- Coordinate the response to security incidents, including detection, analysis, containment, eradication, and recovery.
- Lead root cause analysis and containment for network-based threats (e.g., suspicious VPN activity, firewall rule violations).
- Manage escalations and coordinate with external vendors or OEMs for critical issues.
Projects & Improvements
- Drive security hardening and optimization projects related to network security tools.
- Lead or support security hardening, firewall rule optimization, and proxy architecture redesign projects
- Lead or contribute to technology upgrades, migration projects, mergers, acquisitions, data center shifts.
- Maintain security documentation, playbooks, and standard operating procedures.
- Prepare and validate BOM, BOQ, and risk registers for new deployments
Educational Qualification : Bachelor's or Masters in Computer Science, Information Security, or related field
Specific Certification : CISSP, CISM, CCNP Security, CP, Palo Alto PCNSE, Fortinet NSE, ISO 27001 LA
Experience : 10-12 years of experience in network operations, with 3-5 years in leadership or managerial role
Skill (Functional & Behavioural):
Firewalls: Checkpoint, Fortinet, Palo Alto, Cisco Firepower
Proxies: Netskope, Forcepoint, Zscaler
VPN: Cloudflare, Cisco AnyConnect, FortiClient, GlobalProtect
NAC: Forescout, Cisco ISE, Aruba ClearPass
DNS Security: Cisco Umbrella, Infoblox, Cloudflare DNS
WAF: AWS/Azure WAF, F5, Imperva, Akamai, Cloudflare
EDR & DS: Crowdstrike, Falcon, Trellix, MS Defender, Sentinel, etc