Responsibilities
- Design a security architecture blueprint covering DevSecOps, application, infrastructure, operational security. Define processes, provisioning, interfaces, provide recommendations.
- Build workplan and drive the team.
- Engage and execute Security Vulnerability Scanning activities (HCR/NVA/Pen Test/SAST/DAST) & resolve findings.
- Implement HSM, EDRs, DLP, enterprise antivirus product implementation & operationalization.
- Secure container orchestration (OpenShift/CloudFoundation/Kubernetes). Secure containers, monitor traffic, repository security, secure images.
- Secure enterprise BigData architectures with RBAC, DLP tools, monitoring tools to ensure proper data usage & reporting & prevention.
- Perform operational security processes, OS level patching, application-level patching, operational housekeeping and archival.
- Server and application hardening procedure & steps.
- Implement Thales CipherTrust & HSM, vmWare CarbonBlack EDR, TrendMicro DeepSecurity Product Suite.
Requirements
- Bachelor's degree / Diploma in Computer Science, Information Security, or related field.
- Minimum 5 years of experience as a Security Solution Architect.
- CISSP/CCSP/CCSK certification or equivalent preferred.
- Specialization in 1-2 areas of Cyber domains such as Identity Access Management, Cloud-native Security, Container orchestration platform security with broad understanding of other areas.
Good to have skills (Optional)
- Familiar with Gov standard of security posture including planning and running SSAT, Security Compliance Check, Security Vulnerability Scanning, DAST & SAST.
- Able to defend and articulate security posture to ACISO.
- Work with cloud native security tools & environment.