Associate - Specialist - Infrastructure Security

Nuveen

Pune District

On-site

INR 3,000,000 - 5,500,000

Full time

39 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

TIAA Global Capabilities is seeking a Specialist - Infrastructure Security to support Data Protection initiatives, analyze security events from email, web, and endpoints, and escalate incidents as required.

The role requires deep DLP experience, familiarity with enterprise SIEM/EDR tools, and strong communication to convey findings to non-technical audiences. This position is office-based and aligned with our security program teams.

Qualifications

  • Experience with enterprise DLP and security incident response.
  • Knowledge of data privacy regulations and compliance requirements.
  • Experience with incident management tools and workflows.

Responsibilities

  • Conduct and triage anomalous incidents using DLP tools (Symantec DLP, Splunk, Zscaler, CASB).
  • Evaluate incidents, reduce false positives, determine policy violations.
  • Escalate incidents per DLP triage workflow.
  • Identify root causes with peers to remediate control gaps.
  • Provide clear reports and statements of findings.

Skills

DLP platforms
SIEM
SOAR
EDR
Python
PowerShell
RSA Archer
ServiceNow
Windows admin

Education

University degree

Tools

Symantec DLP
Microsoft Defender
Zscaler ZIA
Microsoft Purview
DLP data at rest scanners
Splunk
QRadar
LogRhythm
RSA Archer
ServiceNow
Windows

Job description

Specialist - Infrastructure Security - IN Professionals

In this group engineer, implement and monitor security measures for the protection of physical IT systems, networks and information for the organization infrastructure.

Key Responsibilities and Duties
  • They Identify and define system security requirements, networking threats, storage requirements and design computer security architecture.
  • They also develop detailed cyber security designs and prepare and document standard operating procedures and protocols to maintain infrastructure security.
Educational Requirements
  • University (Degree)
Preferred Work Experience
  • 3+ Years Required; 5+ Years Preferred
Physical Requirements

Physical Requirements: Sedentary Work

Career Level

7IC

POSITION SUMMARY:

This person will support the establishment and execution of the Data Protection program by analyzing, monitoring and appropriately responding to security events from email, web or end-users’ workstations. The Data Loss Prevention Analyst will be responsible for assisting with the monitoring of all Data Loss Prevention Incidents, completing initial investigations, and escalating all necessary events to appropriate incident teams. The Analyst must be able to identify potential data leaks and determine if information constitutes a violation of company policies related to Personal Identifiable Information (PII) or Intellectual Property (IP), and effectively communicate findings in written and oral format when required to a non-technical audience.

KEY RESPONSIBILITIES AND DUTIES:
  • Conduct and triage anomalous incidents of concern using industry data loss prevention tools to include Symantec DLP, Splunk, Zscaler proxy, and CASB products.
  • Evaluate DLP incidents, eliminate false positives, and determine if a violation of corporate data policies has occurred.
  • Escalate incidents according to the Data Loss Prevention triage workflow process.
  • Identification of root cause in partnership with peer groups on remediation of control gaps/failure.
  • Provision of reports and statements in clear unambiguous language.
Technical Skills & Expertise

8-12 years of triage experience with deep expertise with enterprise DLP platforms such as Symantec DLP, Microsoft Defender, Zscaler ZIA, Microsoft Purview, DLP data at rest scanners or similar solutions. Advanced knowledge of data classification methodologies, including manual tagging, automated classification, and machine learning-based approaches. Proficiency in content inspection techniques including regular expressions, exact data matching, indexed document matching, and fingerprinting technologies. Strong understanding of network protocols, encryption standards, cloud security architectures (AWS, Azure, GCP), and API integrations. Experience with SIEM platforms (Splunk, QRadar, LogRhythm), security orchestration and automation (SOAR) tools, and endpoint detection and response (EDR) solutions. Expertise in scripting and automation using Python, PowerShell, or similar languages for custom policy development and response workflows. Hands on experience with an Incident Management Tool (RSA Archer, ServiceNow) Windows admin experience will be a plus.

Security & Compliance Knowledge

Comprehensive understanding of information security frameworks including NIST Cybersecurity Framework, ISO 27001, CIS Controls, and SANS Critical Security Controls. Deep knowledge of data privacy regulations such as GDPR, CCPA, HIPAA, PCI-DSS, SOX, and FERPA, with practical experience implementing technical controls to ensure compliance. Understanding of insider threat programs, forensics methodologies, and incident response frameworks.

Certifications (Preferred)

CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), GIAC Security Essentials (GSEC), or GIAC Certified Incident Handler (GCIH). Vendor-specific DLP certifications (Symantec DLP Administrator/Engineer, Microsoft Information Protection) highly valued. Additional certifications in cloud security (CCSP), privacy (CIPM, CIPP), or forensics (EnCE, GCFA) are advantageous.

Policy Development & Governance

The specialist develops, implements, and maintains sophisticated DLP policies based on data classification frameworks, regulatory requirements (such as GDPR, CCPA, HIPAA, PCI-DSS), and industry best practices. This involves conducting thorough business impact assessments, collaborating with legal and compliance teams to interpret regulatory mandates, and translating technical requirements into enforceable policies. The role includes establishing policy hierarchies, exception management processes, and regular policy effectiveness reviews

DLP Program Management & Strategy

The specialist leads the development and continuous enhancement of the organization's DLP program, ensuring alignment with business objectives and regulatory requirements. This includes establishing comprehensive data protection strategies that address email, endpoint, network, and cloud environments. The role involves collaborating with executive leadership to define data protection priorities, creating multi-year roadmaps, and ensuring the DLP program evolves with emerging threats and business needs.

Related Skills
  • Accountability
  • Adaptability
  • Business Continuity Planning
  • Cloud Computing Security
  • Collaboration
  • Communication
  • Compliance
  • Consultative Communication
  • Cybersecurity
  • Detail-Oriented
  • General Risk Management
  • Network Security
  • Prioritizes Effectively
Company Overview

TIAA Global Capabilities was established in 2016 with a mission to tap into a vast pool of talent, reduce risk by insourcing key platforms and processes, as well as contribute to innovation with a focus on enhancing our technology stack. TIAA Global Capabilities is focused on building a scalable and sustainable organization , with a focus on technology , operations and expanding into the shared services business space. Working closely with our U.S. colleagues and other partners, our goal is to reduce risk, improve the efficiency of our technology and processes and develop innovative ideas to increase throughput and productivity. We are an Equal Opportunity Employer. TIAA does not discriminate against any candidate or employee on the basis of age, race, color, national origin, sex, religion, veteran status, disability, sexual orientation, gender identity, or any other legally protected status. Our Culture of Impact At TIAA, we're on a mission to build on our 100+ year legacy of delivering for our clients while evolving to meet tomorrow's challenges. We equip our associates with future-focused skills and AI tools that enable us to advance our mission. Together, we are fighting to ensure a more secure financial future for all and for generations to come. We are guided by our values: Champion Our People, Be Client Obsessed, Lead with Integrity, Own It, and Win As One. They influence every decision we make and how we work together to serve our clients every day. We thrive in a collaborative in-office environment where teams work across organizational boundaries with shared purpose, accelerating innovation and delivering meaningful results. Our workplace brings together TIAA and Nuveen's entrepreneurial spirit, where we work hard and work together to create lasting impact. Here, every associate can grow through meaningful learning experiences and development pathways—because when our people succeed, our impact on clients' lives grows stronger.

Accessibility Support

Accessibility Support TIAA offers support for those who need assistance with our online application process to provide an equal employment opportunity to all job seekers, including individuals with disabilities.

Nondiscrimination & Equal Opportunity Employment

TIAA is committed to providing equal opportunity across all employment practices and we believe our employees have a right to a diverse and inclusive workplace. EEO is the Law Pay Transparency Philadelphia Ban the Box

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Specialist - Server, OS & Virtualization - IN
Specialist - Server, OS & Virtualization - IN

Nuveen • Mumbai

On-site
INR 900,000 - 1,300,000
Associate - Specialist - Data Engineering - Cloud & Analytics
Associate - Specialist - Data Engineering - Cloud & Analytics

Nuveen • Pune District

On-site
INR 3,000,000 - 5,000,000
Analyst - Cyber Penetration Testing
Analyst - Cyber Penetration Testing

Nuveen • Pune District

On-site
INR 900,000 - 1,500,000
Analyst - Digital Forensics - SOC Tier1
Analyst - Digital Forensics - SOC Tier1

Nuveen • Pune District

On-site
INR 900,000 - 1,500,000
Specialist - Infra - Generalist - IN
Specialist - Infra - Generalist - IN

Nuveen • Pune District

On-site
INR 1,500,000 - 2,300,000
Analyst - Business Risk Controls Management
Analyst - Business Risk Controls Management

Nuveen • Pune District

On-site
INR 900,000 - 1,500,000
Analyst - Application Security
Analyst - Application Security

Nuveen • Pune District

On-site
INR 1,800,000 - 2,400,000
Associate - Cyber Security
Associate - Cyber Security

TIAA • Pune District

On-site
INR 1,800,000 - 3,200,000
Sr. Associate Business Management
Sr. Associate Business Management

Nuveen • Pune District

On-site
INR 1,200,000 - 1,800,000
Analyst - Data Engineering
Analyst - Data Engineering

Nuveen • Mumbai

On-site
INR 1,200,000 - 1,800,000