Description : Sr. Consultant
Job Type : Full Time
Location : Gurugram
Department : Cyber Security
Certification :
- CEH / CHFI Certification is Desirable.
 - OSCP / eWPTX and any other industry recognized security certification a plus.
 
Designation : Consultant
Role & Responsibilities : Should be open to travel.
Required Skills :
While there is no limit, mostly, languages used for storing and processing raw data.Operating Systems (OSs) Knowledge : This includes the understanding of OSs such as Windows, macOS, Linux, UNIX, and other new OSs.Penetration Testing : Through penetration testing, cyber security experts work their way into a system from the perspective of a hacker and use that hacking session to test system security and gauge the vulnerability of the clients programs and software.Ethical Hacking and Coding Practices : This is very much like the above method and requires working knowledge of threat modeling and configurations.Advanced Persistent Threat Management : This involves the understanding of concepts such as social engineering, phishing, and network access control.Firewall Safety and Management : This involves skills in fail-safe features, breach detection, backups, and prevention protocols.Encryption Techniques and Capabilities : Cyber security experts with this skill are capable of ensuring that they do not fallvictim to attacks while sending and receiving data over the internet.
Compliance Assessments : They include GLBA, HIPAA, PCI, NIST, and SOX.Frameworks : They include COBIT and ITIL.Experience :
5 years of relevant experience in cybersecurity, and / or IT systems operation (Server & endpoints), and IT solutions development and maintenance.Extensive experience with configuring and troubleshooting vulnerability management platforms such as Tenable or Qualys as well as patch management control platforms such as Microsoft MECM / SCCM and others.Experience with supporting patch management, vulnerability management, or configuration management programs.Experience in troubleshooting patch deployment and installation through log analysis and investigation.Additional :
Knowledge of OWASP top10 and any other network security framework such as NIST, ISO etc.Hands-on VAPT experience of discovering / analyzing application security and network security.Skills on Configuration Review (servers and firewall), policy review, hardening of systems and network, as well as end-pointreview.
Practical experience of Application Code Review and Testing tools (DevSecOps & SDLC Process).Excellent communication and analytical skills to face clients directly during projects as well as pre-sales activities.Has worked on Mobile AppSEC (Android and iOS).Has done API testing.Willingness to Travel.Good presentation and report making skills.Research knowledge in Cyber-Security to consult and customize services according to client needs.Hands-on expert working knowledge on tools like Burp, Nessus, Nmap, Qualys, Acunetix and Metasploit etc., and any other tools (latest).Knowledge on SIEM / SOAR, DLP, EDR / EPP, Firewall / IPS, Web Servers etc.Basic scripting knowledge in any language a plus.(ref : hirist.tech)