Cyber Security Architect Infra Security and Cyber Drill
Education
BE/BCA/B-TEC/Bsc.IT from authorised university
Experience/ Qualifications
- Excellent written and verbal communication skills in English, with high integrity, a strong work ethic, and the ability to empathize with customers.
- Minimum 10+ years of experience in Cyber Security, including significant experience with Cyber Range platforms or similar cyber-attack simulation environments.
- Strong expertise in Enterprise Network Security Architecture, On-premises Data Center Security, and Cloud Security Architecture.
- Hands-on experience with network security technologies such as Firewalls, IDS/IPS, WAF, VPN; server and network security; Antivirus; Active Directory; CASB; email security; Cloud Security (Azure/AWS); endpoint security; and database security.
- Deep understanding of Security Frameworks including NIST, MITRE ATT&CK, and OWASP.
- Proven ability to implement proactive and reactive measures to mitigate security threats across Network, OS, and Application layers.
- Proficiency in scripting languages such as Python and PowerShell for automation and integration of security tools.
- Experience in Vulnerability Assessment and Penetration Testing.
- Familiarity with Cyber Security regulations and compliance requirements applicable to the BFSI sector (e.g., RBI Cyber Security Framework, IT Act, DPDPA).
- Knowledge of cyber-attack patterns and threat scenarios.
- Experience in Cyber Security project management and POC rollouts.
- Expertise in Cyber Security Incident Management, SOC operations, and development of related SOPs.
- Experience of drafting RPF, Security Architecture Document, Technical Specifications, Security Testing/Assessment Reports
- Exposure to Security Risk Assessment and testing of emerging technologies like AI, Blockchain, and Quantum Computing.
- Strong troubleshooting and problem-solving skills, including analytical thinking and attention to detail.
- Solid understanding of networking concepts (TCP/IP), patch management, system hardening (Windows/Linux).
- Good knowledge of encryption tools and technologies including SSL certificates, key management, HSMs, and PKI infrastructure.
- Ability to work independently and as part of a team in a fast-paced environment.
Responsibilities
- Delivery SME support for internal and client Cyber Security Technology projects.
- Work as SME for Enterprise Cyber Security Architecture and posture management.
- Drive technical specifications, evaluation, selection and deployment of suitable Cyber Range or similar attack simulation solutions.
- Develop detailed architectural blue prints (HLD & LLD), relevant policies and SoPs.
- Design and architect secure integration of between the cyber range or similar platform and various banking systems CBS, payment gateway and other critical system ensuring data isolation and integrity.
- Provide expert guidance and oversight during implementation and deployment of the solution ensuring adherence to security best practices and architecture patterns.
- Collaborate closely with vendors, partners, sister concerns, regulated entities and RBI departments including DIT & DOS.
- Identify and mitigate security risks associated with the Cyber Range or similar platform and develop robust risk management plan.
- Co-ordinate to conduct CSRA and VAPT of the platform.
- Advise on security implications of cyber drill relevant real-world scenarios.
- Support development of complex and realistic attack scenarios, incorporating various threat vectors (e.g.APT, Phishing, Ransomware, DDoS and Insider Threats.).
- Coordinating with business and understanding their requirements regarding security controls testing and enhancements.
- Communicate complex technical and security concepts effectively to technical and non-technical stakeholders.
- Review of effectiveness of controls and preparing Risk dashboards.
- Lead continual improvement and benchmarking activities for Security Technologies and Solutions.
- Collaborate with internal and external stakeholders for timely delivery of the assigned engagements/projects.
- Presenting Project updates and Technology Risks to BU Head and Vertical Head.
- Prepare Weekly/Monthly service delivery reports.
- Reviewing the status of the projects and taking corrective/preventive measures as approved.
Certifications (any 2 from the list)
ISO 27001, CISSP, CISM, TOGAF, CCSP, CISA, CEH, OSCP, Cloud Security certifications (Azure or AWS)
Location
Hyderabad or Navi Mumbai; Willingness to travel.
Employment Type
All positions are on fixed term contract on a full-time basis exclusively for ReBIT, initially for a period of five years, extendable by mutual consent
Interested candidates can share their profile on aditya.sharma@rebit.org.in