Principal Information Security Engineer will implement, maintain, and monitor network, cloud, and endpoint security systems to protect sensitive data and prevent unauthorized access. They will focus on information security operations, policy / procedure development including vulnerability management and incident / event management. They will drive progress and work to enhance the cybersecurity team by developing documentation, identifying potential improvements, and work to increase overall team competency. They will also work with other security teams and application teams to troubleshoot, perform tests, and recommend improvements to remove network vulnerabilities and reduce overall risk.
Competencies :
- Follow ITIL practices regarding incident, problems and change.
- Updating, creating, and maintaining documentation on standard process and procedures for team use
- Providing guidance and support to technical teams on security standards and industry best practice
- Performing security operations and maintenance using security tools
- Manage and assist in performing on-going security monitoring of information systems including assessing information security risk through qualitative risk analysis on a regular basis
- Assessing the impact of emerging threats and managing teams to co-ordinate appropriate remedial actions
- Evaluating and recommending new information security technologies and counter-measures against threats to information or privacy
- Designing and implementing dashboards and data visualizations for various stakeholders and escalate problems to the respective authority when needed
- Ensuring that disaster recovery and emergency operating procedures are in place and tested on a regular basis - Conducting risk analysis to identify critical operations and systems that are core to continued business operations in the event of a disruption
- Applying professional judgment in complex situations and handle effectively multiple tasks, initiatives and priorities
Technical Skills :
Good understanding of network services, vulnerabilities and attacksInternet security, networking protocols, and related technologies, including IDS / IPS, firewalls such as Cisco, Palo Alto, etc., content filtering, and packet inspectionHands on experience on Palo Alto (virtual, physical and management)Hands on Experience on Palo Alto Prisma AccessHands-on experience on Cisco FirewallsGood understanding on Azure Cloud Security -or- AWS Cloud SecurityAzure / AWS / OCI - Cloud Security logging and monitoring (Splunk)Azure / AWS / OCI - Cloud Configuration and Compliance (Prisma Cloud, Prisma Compute)Azure / AWS / OCI - Cloud Security Services (Network Security Group)Good to have - Oracle Cloud SecurityFundamentals of GCPGood understanding OSI modelTechnical troubleshooting skills with emphasis in the security technologies : (Palo Alto / Cisco & (AWS or Azure))Basic knowledge of any scripting languages or automation (Automation and / or orchestration of processes)OS Concepts Windows, Linux and Unix server platformsEndpoint Security and Compliance : Microsoft defender and Sentinel OneUnderstanding of Privileged Access ManagementUnderstand networking / routing / switching and connectivity between cloudsUnderstands encryption / decryption include TLS, forward proxy, and certificate managementUnderstanding of Service First ticketing systemGood understanding of security concepts, compliance, audit and benchmarks / frameworksDriving the development and ongoing tuning and optimization of security event monitoring and analysis application platformsAssisting in establishing and supporting enterprise policies, processes, and standard Service level agreement levelsEducational Qualification and Experience :
Minimum of 15 years of formal education - Graduate / Post Graduate in Computer Science / Information Technology.Professional work experience of 5 to 8 years.Good to have Palo Alto Networks Certified Network Security Engineer ( PCNSE ) or Cisco Certified Network Professional ( CCNP )Good to have Cloud security certification for Azure (AZ-900 or AZ-500) or AWS (AWS Certified Cloud Practitioner)