
SME - CheckPoint PPC (Software), Cloud Security
About the role
Job Summary
Security Ops Technical Lead/Sr. Security Operations Analyst \\r\\n\\r\\n Job Responsibility \\r\\n\\r\\n Drive Cyber Security industry related best practice. \\r\\n\\r\\n Should be able to lead a complex portfolio of Security and Operational services in a multi-site organization. \\r\\n\\r\\n End-to-end ownership of security across: IAM, Firewalls (Palo Alto, Cisco), Cloud Security, firewall/NAT policies. \\r\\n\\r\\n Also manages Tenable & Cloud audit workflows. \\r\\n\\r\\n Patching, compliance, SOC2/NCA audits, log correlation \\r\\n\\r\\n Commitment to plan complex tasks, organize professional teams and communicate technical subjects to non-technical staff. \\r\\n\\r\\n Handle escalated cases \\r\\n\\r\\n Provide guidance to team during cyber security incident \\r\\n\\r\\n Ability to interpret use cases and configure threat monitoring rules in the relevant toolset \\r\\n\\r\\n Perform analysis during security incidents to support the response procedures \\r\\n\\r\\n Mentor team of security analysis and incident responder \\r\\n\\r\\n Skills and qualification \\r\\n\\r\\n Proven leadership & team management skills \\r\\n\\r\\n Strong knowledge and deep understanding of multiple technologies (e.g. firewalls, proxies, IDS/IPS,SIEM etc). \\r\\n\\r\\n Strong operational knowledge and architectural understanding of various platforms and Operating Systems in a multi-domain environment. \\r\\n\\r\\n Knowledge of Threat Intelligence feeds and issues \\r\\n\\r\\n Experience of processes used in security incident detection and handling. \\r\\n\\r\\n Experience of delivering enhancements to security controls. \\r\\n\\r\\n Minimum 6-8 year experience in Security Operations and, at least 3 year experience in a technical lead role. \\r\\n\\r\\n Holds CISSP, CISM, GIAC, CEH or similar security related qualifications \\r\\n\\r\\n Excellent communication skills and ability to effectively communicate complex messages to senior stakeholders. \\r\\n\\r\\n Strong diagnostic skills and an ability to analyze technical information from multiple sources.
Key Responsibilities
Drive Cyber Security industry related best practice. Should be able to lead a complex portfolio of Security and Operational services in a multi-site organization. End-to-end ownership of security across: IAM, Firewalls (Palo Alto, Cisco), Cloud Security, firewall/NAT policies. Also manages Tenable & Cloud audit workflows. Patching, compliance, SOC2/NCA audits, log correlation Commitment to plan complex tasks, organize professional teams and communicate technical subjects to non-technical staff. Handle escalated cases Provide guidance to team during cyber security incident Ability to interpret use cases and configure threat monitoring rules in the relevant toolset Perform analysis during security incidents to support the response procedures Mentor team of security analysis and incident responder
Skill Requirements
Proven leadership & team management skills Strong knowledge and deep understanding of multiple technologies (e.g. firewalls, proxies, IDS/IPS,SIEM etc). Strong operational knowledge and architectural understanding of various platforms and Operating Systems in a multi-domain environment. Knowledge of Threat Intelligence feeds and issues Experience of processes used in security incident detection and handling. Experience of delivering enhancements to security controls. Minimum 6-8 year experience in Security Operations and, at least 3 year experience in a technical lead role. Holds CISSP, CISM, GIAC, CEH or similar security related qualifications Excellent communication skills and ability to effectively communicate complex messages to senior stakeholders. Strong diagnostic skills and an ability to analyze technical information from multiple sources.
Other Requirements
Proven leadership & team management skills Strong knowledge and deep understanding of multiple technologies (e.g. firewalls, proxies, IDS/IPS,SIEM etc). Strong operational knowledge and architectural understanding of various platforms and Operating Systems in a multi-domain environment. Knowledge of Threat Intelligence feeds and issues Experience of processes used in security incident detection and handling. Experience of delivering enhancements to security controls. Minimum 6-8 year experience in Security Operations and, at least 3 year experience in a technical lead role. Holds CISSP, CISM, GIAC, CEH or similar security related qualifications Excellent communication skills and ability to effectively communicate complex messages to senior stakeholders. Strong diagnostic skills and an ability to analyze technical information from multiple sources.
Required skills
Cloud security
Firewalls
SIEM
Threat monitoring
Compliance
About HCL Technologies
Others
Headquarters