- Mohali Office
Job description
We are seeking a CISSP-certified Cybersecurity Specialist to join our security team, focusing on protecting our organization’s digital assets, enhancing cybersecurity protocols, and ensuring compliance with industry standards. The ideal candidate will bring expertise in information security practices, risk management, and security architecture, actively contributing to safeguarding our infrastructure and data from evolving cyber threats.
Key Responsibilities:
• Risk Management and Assessment: Conduct security risk assessments, audits, and vulnerability testing. Develop and implement mitigation strategies to address identified risks and protect information assets.
• Security Policy and Compliance: Design, enforce, and update security policies, procedures, and standards to align with industry regulations (e.g., NIST, ISO 27001) and compliance requirements (e.g., GDPR, HIPAA). Conduct regular compliance reviews and audits.
• Network and System Security: Implement and manage security solutions, such as firewalls, intrusion detection/prevention systems (IDS/IPS), VPNs, and endpoint protection. Monitor system activity for suspicious activity and respond to security incidents.
• Incident Response and Investigation: Develop and manage the incident response plan (IRP) to quickly respond to security incidents. Lead forensic investigations and root cause analysis, implementing corrective actions to prevent future incidents.
• Identity and Access Management (IAM): Manage IAM systems to control user access rights and permissions, ensuring only authorized personnel access sensitive information and resources.
• Data Protection: Implement and manage data encryption, data loss prevention (DLP), and backup solutions to protect sensitive data. Ensure the confidentiality, integrity, and availability of data across all systems.
• Security Awareness Training: Develop and deliver cybersecurity awareness training to employees, ensuring they understand best practices and are aware of potential threats.
• Collaboration with IT and DevOps Teams: Work closely with IT, development, and DevOps teams to integrate security practices into the software development lifecycle (SDLC) and infrastructure management.
Qualifications:
• CISSP Certification is required.
• Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent work experience).
• Minimum of 5 years of experience in information security or cybersecurity roles.
• Proficiency in security frameworks (e.g., NIST, ISO 27001) and regulatory compliance requirements.
• Strong understanding of network security, security architecture, and data protection techniques.
• Hands-on experience with security tools such as SIEM, IDS/IPS, DLP, firewalls, and endpoint protection.
• Knowledge of cloud security, particularly with platforms like AWS, Azure, or Google Cloud.
• Excellent analytical, problem-solving, and communication skills. Preferred Skills:
• Additional certifications, such as CISM, CEH, or CompTIA Security+, are a plus.
• Experience with security automation tools and scripting languages (e.g., Python, PowerShell).
• Familiarity with DevSecOps principles and integrating security within CI/CD pipelines. • Experience in incident response, forensics, and SOC operations.
Why Join Us:
• Competitive salary, benefits, and professional development opportunities.
• Opportunity to work with cutting-edge security technologies in a collaborative environment.
• Be part of a dedicated team working to protect critical information assets.