Job Description – Infra Security Architect
Responsible for the design and evaluation of a broad range of Network security technologies in Op-Prem and Cloud, processes and best practices. Should have minimum 10-15 years hands on experience in various Network Security products such as Next Generation Firewalls, IPS/IDS, Anti-APT, Web Proxy, End Point Security Solutions, Secure Access Control Servers, Web Application Firewalls, Cloud Security, DNS Security etc.
• Responsible for Design, build and periodic review of enterprise-class security systems
• Align standards, frameworks and security with overall business and technology strategy that include all legal, physical and technical controls involved in organization’s risk management
• Extensive experience in information security and/or IT risk management with a focus on security, performance and reliability
• Expertise across variety of security products including Next Generation firewalls, URL filtering, End point Security and Incident Analysis
• Review existing security architecture for On-prem and Cloud, identify security design gaps in existing architecture, and recommend changes or enhancements
• Consulting and engineering in the development and design of security best practices and implementation of solid security principles across the organization, to meet business goals along with customer and regulatory requirements
• Understanding on Security considerations of cloud computing: They include data breaches, broken authentication, hacking, account hijacking, malicious insiders, third parties, APTs, data loss and DoS attacks
• Good working knowledge on Identity and access management (IAM) and best practices.
• Solid understanding of security protocols, cryptography, authentication, authorization and security
• Experience in implementing multi-factor authentication, single sign-on, identity management or related technologies
• Maintains security by monitoring and ensuring compliance to standards, policies, and procedures; developing and conducting training programs
• Prepare comprehensive reports including assessment-based findings and propositions for further system security enhancement
• Assist in resolving technical challenges, provide solutions to Operational Team, and document the findings
• Identify and communicate current and emerging security threats/vulnerabilities and remediate them within environment
• Ability to identify risks associated with business processes, operations, information security programs and technology projects
• Sound knowledge on cloud technologies like SaaS, IaaS and PaaS , exposure to AWS, GCP and Azure Cloud stack
• Define the security control metrics for evaluating the efficiency of existing controls
• Prepare and document standard operating procedures and protocols
• Good knowledge of AAA, DNS, DHCP and related components.
• Knowledge on VPN solution like SD-WAN, DMVPN, IPSEC/GRE tunnels
• Liaising with OEMs to get best practices and optimize security controls accordingly
• Staying up to date with dynamic security landscape and technologies
• Security certifications such as CISSP, CEH, CISM etc. would be an added advantage
• Exceptional communication skills with diverse audiences. Ability to interact with a broad cross-section of personnel to explain and enforce security measures
Source link