Job Description
Managing and supporting all infrastructure information security activities in India.
Attend to security reviews, assessment or advice related to infrastructure security.
Lead the infrastructure risk global programs.
Ensuring India-based vendors and service providers meet the firm’s InfoSec expectations, controls in managed service agreement.
Work with the other technology support groups to ensure the right solutions are deployed from a security standpoint.
Provide guidance and expertise to the tech risk service center operations.
Liaising with local vendors and service providers to provide guidance and supervision to ensure information security standards are upheld.Overseeing the implementation of Group information security policies
Working effectively within a large global information security team, overall security strategy of the firm.
Desired Candidate Profile
Nine to twelve years experience in information security, risk or related fields preferred.
Must have strong knowledge of most infrastructure technologies, including Windows, Linux, Solaris, and Networking, Storage, Virtualization and Remote computing technologies. CCNP and MCSE certifications will be a definite plus.
Experience working for financial institutions preferred.
Bachelors / Masters Degree preferred, or other professional qualifications. Industry certifications such as GIAC, CISSP etc. desirable but not necessary.
Written and verbal communication skills a must; strong interpersonal skills and ability to work with global teams are essential.
Sound understanding of security risk management and the ability to evaluate and communicate these risks to local management and staff.
Must be able to manage both time and work load without constant supervision
Must understand general information security operations. A broad based understanding of security, technology and business is necessary.
Must have experience of risk-based assessment of new infrastructure technologies and architectures, using principles- and objectives-based approaches.
Should have hands-on experience with infrastructure control technologies, including firewalls, anti-virus, intrusion detection and prevention, vulnerability scanners and patch management solutions. |