Padmi

Security Engineering - Analyst

BangalorePosted 3 months ago
CybersecurityMid-levelFull Time, Permanent
Apply at MUFG Bank

Opens the source posting on naukri.com

Source description

About the role

View original

EDUCATION Degree or equivalent work experience equally preferable Degree in computer science, information security, or related discipline Knowledge in cybersecurity CERTIFICATIONS Certified Ethical Hacker (CEH) Certified in Governance, Risk and Compliance (CGRC; formerly Certified Authorization Professional [CAP]) Certified Information System Auditor (CISA) Certified Information Systems Manager (CISM) Certified Information Systems Security Professional (CISSP) Certified Project Management Professional (CPMP) GIAC Certified Incident Handler (GCIH) GIAC Security Essentials Certification (GSEC) Global Information Assurance Certification (GIAC) Imperva Database Security Specialist (IDSS) Microsoft Certified Software Engineer (MCSE) Offensive Security Certified Professional (OSCP) Security+ Six Sigma SysAdmin, Audit, Network and Security (SANS) WORK EXPERIENCE Technical experience in cybersecurity, insider threat, incident response, security operations, or related information security field Experience working in encryption engineering, network security, PKI engineering, systems and software security (SSS), threat and vulnerability management (TVM), or related field FUNCTIONAL SKILLS Access control conformance Act independently Adaptation Advanced Interactive eXecutive (AIX) Analytical (i.e. technical and non-technical problem-solving) Analytics for decision-making and measurement progress/performance Analyze various methods controlling information security problems Apache Cassandra Apache Hadoop Apache Spark Apple MAC Application security Infrastructure security Application software which effect the integrity, functionality, and reliability the Banks network and systems Application transaction Apply information security theories and concepts to specific circumstances Aptitude to lead complex efforts Architecture diagrams Articulate security risks and appropriate controls Automation through scripting and/or programming Amazon Web Services (AWS) Azure Building and operating a data protection and compliance program Business processes in the financial/government sector Capdo data analytics and draw risk conclusions based on activities seen CCPA/CPRA Certificate management tool Venafi Continuous Integration/Continuous Delivery (CI/CD) CIS-Benchmark Cloud encryption solutions Cloud PKI COBIT Common cybersecurity frameworks Common OS operation Communicate clearly and concisely with peers and all levels leadership. Communication and presentation Complex project management Conceptual processes and system characteristics in the security space Convey complex concepts to a broad audience (technical and non-technical) Convey technical findings in simple language Create a level security awareness throughout the Bank for accountability and responsibility Create native productivity aids and command scripts Creative problem solving Cryptographic implementations at media CVSS Cybersecurity DAM Data analytics and draw risk conclusions based on activities seen Data classification solutions Data protection strategies Databases security configuration DB2 Demonstrate vulnerabilities Determine the strengths and weaknesses each method and implement the best cost-justified solution Development of insider Threat policies and standards DevSecOps methodologies Distributed Denial Service (DDoS) Protection Documentation writing that present both a business and technical viewpoint Domain Name System (DNS) Drive vulnerability management reporting Email Security Encryption Engineer Encryption security products Encryption solutions Entrepreneurial mindset by applying frameworks for resource alignment on goals and objectives Evaluate application software which impact the integrity, functionality, and reliability of the banks network and systems Evaluate business process which impact the integrity, functionality, and reliability of the banks network and systems Evaluate the impact to existing security systems Exabeam Excel (VLOOKUP/pivot tables/charts) Explain risk Extranet networks Facilitate remediation coaching FFIEC File Transfer Protocol (FTP) functionality Firewalls Formal stand-up presentations to all levels management GLBA Gramm-Leach-Bliley Act (GLBA) Hyper Text Transfer Protocol/Secure (HTTP/HTTPs) Identify weak links in information security products Implement the best cost-justified solution Implementation of insider Threat policies and standards Industry trends and current security practices Influence and communicate cross-functionally all levels management. Information security theories and concepts to specific circumstances Insider risk management governance Internet Internet Relay Chat (IRC) Interpersonal communication Intrusion Detection System (IDS) ISO 27001 Lead pro-active reviews and self-assessments the policies Liaise business Linux Listener Log management solutions Mac Maintenance of insider Threat policies and standards Major database platforms Manage and lead teams multiple individuals Manage application and infrastructure security assessments Manage complex projects Manage information security control assessments Managing initiatives such as assessments Mechanics of OS exploits of preventive and detective controls Methods of controlling information security problems Microsoft SQL Mitigate the control deficiencies Mitigations changes and risks MITRE ATTCK framework Modern security principles and its practical applications. MongoDB MSSQL Multifactor Authentication (MFA) MySQL National Institute of Standards (NIST) Network Network appliances Network security Network traffic analysis Network/system forensic tools Networking fundamentals (e.g. TCP/IP) and troubleshooting NIST CSF NIST framework Nnative productivity aids and command scripts. NoSQL O365 Operating in hybrid-cloud environment Operating system (OS) internals Operating system changes evaluate the impact to existing security systems Operating systems and their versions and security systems in use at the Bank Operating systems security configuration Operational auditing in the financial/government sector Oracle Oracle TDE Oral communications Organize and establish processes in need of improvement Outstanding oral and written communications Oversee workloads and support direct reports to success while meeting objectives senior management OWASP Passionate PCI Perimeter Network Security Perl Positive and driven attitude PowerShell Prepare detailed task plans outlining all requirements to complete the given assignment Presentation Prioritizing and organizing day to day tasks and needs as appropriate Proactive mindset and actions Procedures and systems Program management Programming language to automate tasks Protection and monitoring Provide leadership and guidance to IT teams in patching and solutions to mitigate security threats Provide technical direction to other peer staff members Proxy Public Key Infrastructure (PKI) Python Qualys Rapid7 RegEx Regulatory and risk partners to satisfy legal and regulatory requirements and avoid risk Regulatory compliance Regulatory requirements affecting data integrity Reliable team management Report creation Risk assessments Router switches Ruby Safenet Syslog-NG System security System vulnerabilities Technical and non-technical problem-solving Technical direction to other peer staff members Technical Security Standards Compliance Specific Techniques and procedures (TTPs) used by threat actors against endpoints Technology and leadership partners Thales The mechanics OS exploits preventive and detective controls Threat and vulnerability management (TVM) Systems Threat detection Tooling integrations to support Agile Tools used to execute a world class offensive Security program Tools used to execute a world class Perimeter Network Security program Train new staff on the security team Transmission Control Protocol/Internet Protocol (TCP/IP) UEBA and related tools Understand security risks and controls Unix Various methods of controlling information security problems Verbal communication Visionary Voltage Vormetric Vulnerability scanning tools Web Application Firewall (WAF) Windows servers and workstations Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

One address, no account. We’ll tell you when matching roles go live.

More at MUFG Bank

Related open roles

View all roles