Talent.com
IT Security Manager

IT Security Manager

ConfidentialPune, India
5 days ago
Job description

Wolters Kluwer Global Business Services (GBS) is designed to provide services to the business units in the areas of technology, sourcing, procurement, legal, finance, and human resources. These global centers promote team collaboration using best practices around a specific focus area to drive results and enhance operational efficiencies. There is a constant endeavor to benchmark against best-in-class industry standards to improve the quality of deliverables, increase cost savings, enhance productivity, and reduce time to market for products and applications.

We have an amazing opportunity for an IT Security Manager (Incident Management), available within our Global Business Services division!

This position has been created due to growth! The IT Security Analyst (Incident Management) will be responsible for monitoring and response to all emerging security incidents to protect and enhance the confidentiality, integrity, and availability of Wolters Kluwer assets.

This position is in person in either WoltersKluwer Pune or Chennai offices.

As the IT Security Manager (Incident Management), you will lead information gathering efforts during investigation into suspected and confirmed security incidents to protect personal and confidential information at WK. In this role, you will be required to demonstrate proficiency in incident analysis, data gathering and information synthesis in every area of IT security management. Your role will also include interfacing with and responding to internal business unit IT representatives and stakeholders at all levels during emerging security incidents, real or simulated.

Responsibilities :

  • Primarily responsible for the response to and recovery from emerging information security incidents, acting as the focal point leading response efforts and ensuring effective action to contain and remediate the situation
  • Respond to cybersecurity incidents and perform triage to assess the severity of the incident and determine the appropriate response.
  • Conduct open-source intelligence (OSINT) investigations to identify and track down malicious actors and their tactics, techniques, and procedures (TTPs).
  • Participate in red team / blue team exercises to test and improve the organization's incident response capabilities.
  • Collaborate with other members of the cybersecurity team to develop and implement security controls and incident response procedures.
  • Provide technical guidance and support to junior incident responders as needed.
  • Maintain up-to-date knowledge of the latest security threats and trends through continuous learning and professional development.
  • Perform forensically sound collections of ESI from laptops, desktops, mobile devices, hard drives, servers and cloud data sources both onsite and remotely.
  • Verify, extract and analyze systems, logs and malware data in support of investigations and litigation systems
  • Drive efficient, repeatable, proactive, integrated, and mature cyber defense and response
  • Supports the investigation of reported security breaches and, in coordination with WK global security operations, develop procedures to respond to security incidents and assist with investigations
  • Contributes to the analysis and delivery of findings to internal customers with impactful, comparative, interpretative security analysis in a clear, consistent, and factual manner.
  • Responsible for establishing communications bridges and meetings in support of response efforts
  • Responsible for maintaining proper group focus during investigation activities and redirecting efforts in support of timely recovery
  • Responsible for aggregating information relevant to the situation and synthesizing probable root cause
  • Responsible for developing and recommending best course of action based on solid security principles
  • Driving the incident response process from detection through containment and eradication.
  • Accountable for documenting all WK and partner activity, taken in response to emerging situations
  • Accountable for the day-to-day review and assessment of security events that may become or contribute to security incidents.
  • Ensures work is compliant with WK enterprise policies, procedures and the local business plan
  • Responsible for ensuring appropriate post-mortem and lessons-learned sessions are conducted, following incident restoration of service
  • Responsible for organizing and taking part in cross-functional incident exercise activities, ensuring that policy and procedure are followed
  • Responsible for ensuring knowledge of IT security and emerging threat scenarios is current
  • Responsible for reviewing threat intelligence sources is support of WK security situational awareness
  • Responsible for assisting in the development of vulnerability and threat related communications for potential dissemination to warn WK employees of an emerging situation
  • Responsible for ensuring information arising from incident response activities, that would result in configuration changes or other modifications to ensure WK security posture, is communicated to the proper operational contacts for execution.

Other Duties :

  • Performs other duties as assigned by supervisor
  • Job Qualifications :

    Bachelor's Degree in Computer Science / MIS or equivalent experience

  • 11+ years of total experience in Information Technology
  • 7+ years of professional experience in an information security function, including analyzing and applying information security risk management, and privacy practices
  • 3+ years in an information security incident handling role
  • Strong understanding of network protocols and security technologies, including firewalls, intrusion detection systems, and encryption.
  • Experience with open-source intelligence (OSINT) tools and techniques.
  • Experience with cloud and physical forensic investigations, delivering executive reports
  • Knowledge of red team / blue team exercises and experience participating in such exercises.
  • Technical understanding of incident response frameworks and methodologies with a focus on automation.
  • Experience with Intel, SIEM, and SOAR platforms, such as, ThreatConnect / MISP, Snowflake / Splunk, and Swimlane / DeMisto
  • Expertise with commercial and open-source digital forensic toolsets such as Encase, AccessData, SIFT, Axiom Flexible working hours to support a global operation
  • Required Interpersonal Skills
  • Experience engaging with executive level individuals during the conduct of incident response

  • Excellent oral and written communication ability
  • Ability to present complex technical issues and findings to diverse audiences in both technical and non-technical parlance, both orally and in writing
  • Diplomacy in working with customers and stakeholders
  • Ability to follow policy and procedure
  • Ability to work in a team and at times perform under stress
  • Demonstrate integrity in dealing with potentially sensitive data and restricted information
  • Exceptionally self-motivated with a superior analytical, evaluative, and problem-solving abilities
  • Ability to set and manage priorities judiciously
  • Required Technical Skills
  • Knowledge of basic security principles to include confidentiality, integrity, and availability access control, authentication, and authorization privacy and non-repudiation

  • Understanding of security vulnerabilities and exposures, and from where they arise
  • Familiarity with the Internet, its network protocols, and network applications and services
  • Knowledge of network security issues and host / system security issues
  • Understanding of malicious code of various types and various threat vectors
  • Experience with Risk Analysis and Risk Management
  • Basic understanding of programming and scripting, advanced knowledge a plus
  • Required Incident Handling Skills
  • Through good communication and documentation, presents a consistent front to customers and stakeholders

  • Ability to synthesize data from technical skills listed above to understand and identify intruder techniques
  • Ability to utilize interpersonal skills listed above to communicate with customers and stakeholders and bring quick resolution
  • Demonstrated ability to analyze ongoing situations for the potential of a security incident
  • Ability to maintain incident records in support of WK recovery, regulatory and legal requirements
  • Familiar with ITIL service management methodology.
  • Prior experience in a 24x7x365 operations environment.
  • Strong technical skills in security assessments of external service providers, providing security guidance, and participating in mock security breach exercises
  • Experience with GDPR and GDPR compliance implementations
  • Experience and / or SME knowledge of the ISO 27001, NIST 800-53, NIST CSF and PCI DSS.
  • Preferred certifications : CISSP, ITIL, GCIH, CERT / CC CSIH, GCTI, GCFR, GCFA, GIME, GCFE
  • Multiple language capability desired
  • Skills Required

    Encase, Network Protocols, Firewalls, Incident Response, Encryption, snowflake , forensic investigations, Splunk, Axiom, Security Technologies

    Create a job alert for this search

    It Security Manager • Pune, India

    Related jobs
    • Promoted
    Network and Enterprise Cyber Security Senior Manager

    Network and Enterprise Cyber Security Senior Manager

    Confidentialpune, maharashtra, in
    The Network and ECS Lead (N&ECS) will be responsible for overseeing all aspects of the Network and Cyber Security delivery. This includes ensuring that the delivery meets customer needs, resource pl...Show moreLast updated: 30+ days ago
    • Promoted
    Network Security Manager

    Network Security Manager

    Talent Topperspune, India
    Manage Day to Day Security Operations (Daily checklist, monitoring of devices for availability / performance, user access management, troubleshooting & resolving user issues, managing user queries, s...Show moreLast updated: 1 day ago
    • Promoted
    Solytics Partners - Senior Manager - Information Security

    Solytics Partners - Senior Manager - Information Security

    Solytics partnersPune
    Role : Senior Manager - Information Security Job Summary : We are looking for an immediate joiner ...Show moreLast updated: 30+ days ago
    • Promoted
    It Security Manager

    It Security Manager

    ConfidentialPune
    Collaborate with security standards, policies,& practices.Perform & share Risk Evaluation.Participation in IM Process resolution & monitoring. Monitoring for unusual activities, implement defensive ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer - IT Operations & Infrastructure

    Senior Security Engineer - IT Operations & Infrastructure

    ConfidentialPune, India
    At CertifyOS, we're building the infrastructure that powers the next generation of provider data products, making healthcare more efficient, accessible, and innovative. Our platform is the ultimate ...Show moreLast updated: 5 days ago
    • Promoted
    Security & Compliance IT Specialist / Engineer

    Security & Compliance IT Specialist / Engineer

    aecc - digital innovation hubPune, IN
    Support the organisation’s security posture through monitoring, incident response coordination, and compliance activities. Work closely with IT operations, engineering, and leadership to ensure syst...Show moreLast updated: 12 days ago
    • Promoted
    • New!
    Senior Manager – Cyber Security & Digital Infrastructure

    Senior Manager – Cyber Security & Digital Infrastructure

    Taglynkpune, India
    We are seeking a seasoned cybersecurity professional to join our Corporate Cyber Security team as Senior Manager.This role is pivotal in strengthening the Group’s enterprise-wide security posture a...Show moreLast updated: 17 hours ago
    • Promoted
    ACI Worldwide - Lead IT Security Analyst - Windows Server

    ACI Worldwide - Lead IT Security Analyst - Windows Server

    ACI worldwide consulting (India) Pvt LtdPune
    Job Summary : The Lead IT Security (SOC) Analyst will analyze dashboards, systems, and reports to mitigate risk, triage ...Show moreLast updated: 30+ days ago
    • Promoted
    IT Security Engineer

    IT Security Engineer

    ConfidentialPune, India
    At Smith+Nephew, we design and manufacture technology that takes the limits off living.Join our dynamic team and embark on an exciting journey of innovation and growth as we seek a hard-working and...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    IT Security & Data Protection Risk Manager

    IT Security & Data Protection Risk Manager

    ConfidentialPune, India
    Are you a data protection and cyber security risk SME looking for a new challenge Do you have risk and control mindset Do you enjoy working within collaborative team to improve the risk posture of ...Show moreLast updated: 12 hours ago
    • Promoted
    Information Security Manager

    Information Security Manager

    ConfidentialPune, India
    The Manager of Information Security is responsible for overseeing the development, implementation, and management of an organisation's information security program. This role involves ensuring the c...Show moreLast updated: 5 days ago
    • Promoted
    Information Security Lead - Vulnerability Management

    Information Security Lead - Vulnerability Management

    AllianzPune
    You will lead a team of dedicated security professionals, providing strategic direction and technical guidance.This position requires a strong blend of leadership, technical expertise, and a forwar...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Cyber Security Manager

    Cyber Security Manager

    CareerUS Solutionspune, maharashtra, in
    The Cyber Security Manager is responsible for.The Cyber Security Manager also leads a team of security professionals and collaborates across departments to strengthen the company’s overall.Develop,...Show moreLast updated: 10 hours ago
    • Promoted
    Manager-IT & Information Security

    Manager-IT & Information Security

    ConfidentialPune, India
    IMPORTANT : Please ensure that relevant AI-related skills are included in appropriate external job postings and coordinate this in advance with your hiring manager. Be aware that the percentage of ex...Show moreLast updated: 5 days ago
    • Promoted
    IT Security Analyst

    IT Security Analyst

    ConfidentialPune, India
    ACA Group is the leading governance, risk, and compliance (GRC) advisor in financial services.We empower our clients to reimagine GRC and protect and grow their business. Our innovative approach int...Show moreLast updated: 30+ days ago
    • Promoted
    IT Security Eng.

    IT Security Eng.

    ConfidentialPune, India
    Schaeffler is a dynamic global technology company and its success has been a result of its entrepreneurial spirit and long history of private ownership. Does that sound interesting to you As a partn...Show moreLast updated: 5 days ago
    • Promoted
    Lead IT Security Architect

    Lead IT Security Architect

    MNR SolutionsPune
    Description : We are looking for an experienced Lead IT Security Architect to design, implement, and oversee the organizations IT security architecture.The candidate ...Show moreLast updated: 15 days ago
    • Promoted
    Senior Analyst - IT & Information Security

    Senior Analyst - IT & Information Security

    ConfidentialPune
    Administration of One Identity tool and management of integrated Identities and Services.Responsible for management of incident, problem and change within the IAM Infrastructure.Responsible for doc...Show moreLast updated: 30+ days ago