Posted By

Chandra Prakash

Co-Founder at iRisk Placement

Last Login: 27 May 2018

691

JOB VIEWS

8

APPLICATIONS

6

RECRUITER ACTIONS

Posted in

IT & Systems

Job Code

161205

Sr Manager - Cyber Security Incident Response

16 - 25 Years.Chennai
Posted 9 years ago
Posted 9 years ago

About Global Cyber Security Services:

Cyber Security, a key organization within Cognizant Technologies Corporate Security, is chartered with managing and directing the security programs focused on the discipline of cyber security design, implementation, analytics, threats, monitoring, and response across the organization. Our core services are focused on assuring the security of the computing environment, protect customer and employee confidential information, and comply with regulatory requirements globally. This is accomplished through strong information risk governance, active collaboration with business risk managers, and providing high quality security solutions and services which enable improving the organization's overall risk posture.

About Cyber Security Incident Response:

- The Computer Security Incident Response Team (CSIRT) is a global team that manages all computer security related incidents across the firm. CSIRT's mission is to provide immediate and efficient response to computer security incidents ranging from intrusions, malware, DDoS, unauthorized access, insider attacks and loss of proprietary information.

- The CSIRT Team is part of the Global Cyber Security Services organization and maintains strong relations with all Line of Business technology groups.

- Additionally, CSIRT is responsible for Cyber Security Threat & Intelligence assessment. CSIRT conducts research and liaisons with partners in the Intelligence Community and Law Enforcement Community to develop and deliver responsible and timely protective cyber intelligence threat assessments.

Position Description:

- Cognizant requires a Security Executive to expand and manage the Cyber Security Threat Intelligence and Cyber Security Incident Response Team (CSIRT) functions globally. T

- he individual will be responsible for management and oversight of the collection and analysis of threat intelligence, security monitoring and incident response.

- Be a recognized subject matter expert in the area of security incident response and analysis of security events from multiple sources including but not limited to events from Security Information Monitoring tools, network and host based intrusion detection systems, firewall logs, system logs (Unix and Windows), mainframes, mid-range, applications, and databases.

- Demonstrable knowledge and documented experience relating to cyber intelligence threat analysis involving actual and alleged instances of information collection or physical damage/ system compromise achieved through cyber means, and trends in cyber intelligence collection including dynamic cyber capabilities of foreign actors – both national and sub-national, extent to which private sector cyber intelligence collection and analysis informs infrastructure protection, and evolving cyber targeting tools.

- Experience in conducting time-sensitive, single-topic threat analyses.

- Be able to mentor and server as a management and technical escalation point for staff managers and analysts.

- Lead the response to Cyber Security threats and incidents for the collection, analysis, and preservation of digital evidence.

- Communicate and escalate issues and incidents as required to all levels of management.

- Assemble and coordinate with technical teams and third-parties to resolve incidents as quickly and efficiently as possible.

- Ensure that all incidents are recorded and tracked to meet audit, compliance and legal requirements.

- Conduct root cause analysis to identify gaps and recommendations ultimately remediating risks to the firm.

- Gather and analyze forensic evidence for all computer security incidents.

- Provide expertise and knowledge of current industry trends in technology and cyber security risk standards to improve the security posture across the firm and with Cognizant’s business partners.

Qualifications:

- 10+ years of IT Security experience (including hands-on knowledge of network, mainframe, mid-range, and distributed systems security). A sound understanding of TCP/IP and networking concepts.

- 10+ years of direct management experience.

- Experience managing in a complex matrix organization, will need to coordinate and partner across Cognizant groups, geographic regions and other Lines of Business, while driving a specific Cyber Security agenda.

- Comfort working at all levels of seniority, both within the Cognizant organization or other client institutions, industries or government entities.

- Solid and demonstrable comprehension of Information Security including malware, emerging threats, attacks, and vulnerability management.

- Experience with reviewing raw log files, data correlation, and analysis (i.e. firewall, network flow, IDS, system logs).

- Subject matter expert (SME) in one or multiple areas such as Windows, UNIX, mid-range, mainframe, firewalls, intrusion detection, threat detection analysis, and/or information risk management.

- Understanding of network design principles with and knowledge of the OSI model.

- Network, Security, or Platform certification(s) (S+, N+, MCSP, CNA).

- Certified Forensic Examiner (GCFA-GIAC, CCFP, etc.)

- Experience assisting the resolution of customer escalations, incident handling, and response

- Experience in a fast paced, high stress environment.

- Ability to think strategically, work with a sense of urgency and pay attention to detail.

- Ability to present complex solutions and methods to a general community.

- Independent thinking, willingness to "step outside the box" and take reasonable, calculated risks.

- Must be reliable and adaptable.

- Excellent written and verbal communication and organizational skills.

- Outstanding work ethic.

- Strong team player that collaborates well with others to solve problems and actively incorporate input from various sources.

- Experience with working on global teams across time zones, cultures and languages.

- Demonstrable strong leadership skills.

- Previous 24 x 7 operations experience

About Cognizant Technology Solutions:

Cognizant is a leading provider of Information Technology, Consulting, IT Infrastructure, and Business Process Outsourcing services. Cognizant’s single-minded mission is to dedicate our business process and technology innovation know-how, deep industry expertise, and worldwide resources to working together with customers to make their businesses stronger. As a customer-centric, relationship-driven partner, we are redefining the way companies experience and benefit from global services. Our unique delivery model is infused with a distinct culture of high customer satisfaction. Cognizant delivers a trusted partnership, cost reductions and business results.

Cognizant is a member of the NASDAQ-100, the S&P 500, the Forbes Global 2000, and the Fortune 500. Cognizant is ranked among the top performing and fastest growing companies in the world. Visit us online at http://www.cognizant.com/ or follow us on Twitter: Cognizant.

Cognizant is an Equal Opportunity Employer M/F/D/V. Cognizant is committed to ensuring that all current and prospective associates are afforded equal opportunities and treatment and a work environment free of harassment.

Didn’t find the job appropriate? Report this Job

Posted By

Chandra Prakash

Co-Founder at iRisk Placement

Last Login: 27 May 2018

691

JOB VIEWS

8

APPLICATIONS

6

RECRUITER ACTIONS

Posted in

IT & Systems

Job Code

161205

UPSKILL YOURSELF

My Learning Centre

Explore CoursesArrow