As a perimeter security SME, you will be Act as the subject matter expert and System Lead for Perimeter security tools like WAF (Imperva Secure sphere, F5), DDOS (Arbor APS), NIPS(TippingPoint), Deception (Smokescreen), SSLO (F5).
Your Role and Responsibilities
- Work closely with the Security Managers, Leadership and other Enterprise IT teams and be the bridge between the various departments.
- Strong Technical Knowledge and Experience in Perimeter Security management, audit and reporting.
- Act as the subject matter expert and System Lead for Perimeter security tools like WAF (Imperva Secure sphere, F5), DDOS (Arbor APS), NIPS(TippingPoint), Deception (Smokescreen), SSLO (F5)
- Good Experience in Administration of Technologies like Endpoint Security, Anti-APT Solutions Endpoint/EDR, Network, Email (FireEye HX, EX, NX, MVX), WAF (Imperva Secure sphere), Smokescreen, DDOS (Arbor APS), NIPS(TippingPoint) & F5 SSLO & WAF Solution and should be Certified in at least 3 Products
- SIEM Event Analysis and manual Co-relation of Events to narrow down the analysis to Threat Vector.
- Coordinate and work along with Threat Intel, Incident Response Team and SOC Analysts
- Service Delivery and Operations Support
- Participate in defining and refining security baselines for our systems.
- Interact with vendors, researchers, and other 3rd parties to collaborate on security issues or processes.
- Work with the Team Manager to develop and maintain security Key Performance Indicators.
- Responsible for tuning various security tools & technologies already in place.
- Review the SOPs & technical runbooks & also create new SOP documents/runbooks for innovative technologies/process.
- Signature Definitions SLA Maintenance
- Support required 24×7 as and when need arises to cater client needs
- Exploring new features in all tools and sharing the data with trend analysis
- Complete O&M for all Perimeter Security Tools includes troubleshooting, RMA, upgradation, etc
- Maintain 100% compliance of all Landmine Agents as per the inventory list of customer
- Perform VA tasks when required
- Automation – Should think of automating tasks to reduce load on daily BAU activities.
- Work closely with the Security Managers, Leadership and other Enterprise IT teams and be the bridge between the various departments.
Required Technical and Professional Expertise
- Strong Technical Knowledge and Experience in Data Loss Prevention, Data Classification Tool
- Act as the subject matter expert and system lead for Data Security.
- Good Experience in Administration of Technologies/Products mentioned below
- Data Loss Prevention (Symantec / Forcepoint)
- Data Classification Tool (Titus)
- SIEM Event Analysis and manual Co-relation of Events to narrow down the analysis to Threat Vector.
- Coordinate and work along with Threat Intel, Incident Response Team and SOC Analysts
- Service Delivery and Operations Support
- Participate in defining and refining security baselines for our systems.
- Interact with vendors, researchers, and other 3rd parties to collaborate on security issues or processes.
- Work with the Team Manager to develop and maintain security Key Performance Indicators.
- Troubleshoot Endpoint security agent (DLP/DCT) software issues.
- Responsible for tuning various security tools & technologies already in place.
- Review the SOPs & technical runbooks & also create new SOP documents/runbooks for innovative technologies/process.
Preferred Technical and Professional Expertise
- Experience/Knowledge in Database Activity Monitoring is plus.