Senior Security Analyst-1- 230922

Gurugram, Haryana, India

Applications have closed

About SirionLabs:

SirionLabs is a leading SaaS company focused on developing leading edge AI-led solutions for the legal and contract management space. Our product is trusted by Fortune 500s and major global enterprises such as Schneider, Morgan Stanley, Qantas, Unilever, IBM, Vodafone, Alstom, and Novartis, to create, negotiate, and manage +5 million contracts worth more than US$300bn across 100+ countries around the world. As a result, SirionLabs has been recognized by major industry analyst groups such as Gartner, Forrester, Spend Matters, and IDC as a leader in the contract lifecycle management (CLM) domain.

SirionLabs recently closed a US$85 million Series D funding round, which was led by Partners Group, a leading global private markets firm, along with existing investors Avatar Growth Capital, Sequoia Capital India and Tiger Global. This fresh capital infusion will help us fuel AI R&D and expand our global footprint even further.

With over 800 people working across 10+ offices in North America, Europe, and India, SirionLabs is constantly growing and expanding its global footprint

Requirements

Job Role: Senior Security Analyst 1

Years of Experience required: 7-10 Years

Work Location: Gurgaon

Responsibilities:

  • Architect and Implement security controls in local IT Data Center & multi-Cloud and multi-region hosted SaaS platforms (AWS, Azure, Google)
  • Accountable for IT Data Center & Cloud Security Compliance. Ensure consistent implementation and maintenance of secure configurations, SOD-based access controls.
  • Conduct ongoing security audits/reviews in accordance with company policy and global security standards
  • Conduct ongoing Vulnerability Assessment & Penetration Testing (Internal and External) and perform management reporting. Work with IT, DevOps and Engineering teams to remediate or mitigate identified security vulnerabilities.
  • Administer security testing tools and environment.
  • Responsible for implementing and monitoring the Patch Management process.
  • Perform ongoing review of privileged user activities. Identify, investigate and respond to unauthorized access.
  • Prepare metrics-based periodic reports and dashboards with support from the stakeholder functions for management review
  • Lead ongoing operational monitoring of the effectiveness of implemented security controls and work with IT, DevOps and Engineering teams to remediate or mitigate identified non-compliances and security weaknesses
  • Perform security monitoring, triaging, and incident response. Work closely with DevOps and Engineering teams to investigate, contain, remediate, or mitigate and respond to security incidents
  • Implement automated and proactive security alert monitoring, alerting and response
  • Provide support in implementation and maintaining Security Information and Event Management solution (Wazuh) along with ELK stack for log integration & management, correlation, security alert visualization and monitoring
  • Perform ongoing review of privileged user activities. Identify, investigate and respond to unauthorized access.
  • Perform Proof of Concept (POC) for identified security products to implement effective security controls and prepare the use cases
  • To analyse various methods of controlling information security problems, determine the strengths and weaknesses of each method and implement the best cost-effective solution
  • Research security trends, emerging methods, and techniques used in order to pre-emptively eliminate the possibility of a system breach
  • Maintain good knowledge of current technology trends and undertake training to strengthen IT Security skills as required.
  • Certifications: OSCP (preferred), Cloud Security Certification (Preferred), CCSP, CCAK, CISSP, CEH (at least two)
  • B.E / B.Tech (IT/ CS) / MCA / MSc (CS/ (CS/IT)
  • Self-driven and initiator
  • Ability to multi-task effectively and work under pressure
  • Ability to perform general mathematical calculations for the purpose of creating needs assessments, budgets, and forecasting.
  • Ability to conduct research on the latest security solutions and products as required.

Educational qualifications and certifications:

  • Certifications: OSCP (preferred), Cloud Security Certification (Preferred), CCSP, CCAK, CISSP, CEH (at least two)
  • B.E / B.Tech (IT/ CS) / MCA / MSc (CS/ (CS/IT)

Organizational skills:

  • Self-driven and initiator
  • Ability to multi-task effectively and work under pressure
  • Ability to perform general mathematical calculations for the purpose of creating needs assessments, budgets, and forecasting.
  • Ability to conduct research on the latest security solutions and products as required.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Audits AWS Azure CCSP CEH CISSP Cloud Compliance DevOps ELK Incident response Monitoring OSCP Pentesting R&D SaaS Vulnerabilities

Region: Asia/Pacific
Country: India
Job stats:  2  0  0
Category: Analyst Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.