Home
Jobs

1684 Nist Jobs - Page 41

Filter Interviews
Min: 0 years
Max: 25 years
Min: ₹0
Max: ₹10000000
Setup a job Alert
Filter
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

5.0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

The Role The role as Senior IT Auditor is focused on global internal audits, compliance projects, and internal consultancy for information security and IT-related compliance topics. This role will report into the Global Head of Audit for ION Group. Key Responsibilities Execution of internal audits according to the global internal audit program Timely and precise reporting of audit results Follow-up of audit-related corrective actions Compliance consultancy and support of ION’s organizational units Management of certification and audit projects Continuous improvement initiatives Execution and support of Group Information Security & Compliance tasks Required Skills, Experience And Qualifications Expert-level knowledge and practical audit experience with ISO27001, other relevant ISO standards (e.g., ISO 19011, ISO9001, ISO31000, ISO22301), other IT-related control frameworks (e.g. SSAE18/SOC1, SOC2, NIST 800-53, CSA-STAR), and relevant audit frameworks (e.g., IIA GIAS, ISACA ITAF). Comprehensive understanding of IT requirements in software industry Solid knowledge of business process models based on corporate strategy, market and compliance requirements At least 5 years of lead auditor experience within IT, Information Security and Compliance Experience in certification projects Experience in project management and other personal certification are a plus Finished university study (ideally in IT, Cybersecurity, or related fields) Mandatory personal certifications: ISO27001 Lead Auditor, ISACA CISA Fluency in English Preferred Skills High degree of precision and reliability Distinct interest in workflows and processes Determined and communicative personality with excellent communication skills Networked and solution-oriented mindset Strong sense of responsibility, self-dependent work style, willingness to high initiative Worldwide willingness to travel, intercultural skills Eloquence, good manners, self-assured behaviour About Us We’re a diverse group of visionary innovators who provide trading and workflow automation software, high-value analytics, and strategic consulting to corporations, central banks, financial institutions, and governments. Founded in 1999, we’ve achieved tremendous growth by bringing together some of the best and most successful financial technology companies in the world. Over 2,000 of the world’s leading corporations, including 50% of the Fortune 500 and 30% of the world’s central banks, trust ION solutions to manage their cash, in-house banking, commodity supply chain, trading and risk. Over 800 of the world’s leading banks and broker-dealers use our electronic trading platforms to operate the world’s financial market infrastructure. ION is a rapidly expanding and dynamic group with 13,000 employees and offices in more than 40 cities around the globe, Our ever-expanding global footprint, cutting edge products, and over 40,000 customers worldwide provide an unparalleled career experience for those who share our vision. Show more Show less

Posted 2 weeks ago

Apply

130.0 years

0 Lacs

Hyderabad, Telangana, India

On-site

Linkedin logo

Job Description Current Employees apply HERE Current Contingent Workers apply HERE Secondary Language(s) Job Description Associate Manager,Cybersecurity Engineering Cloud and App Security The Opportunity Based in Hyderabad, join a global healthcare biopharma company and be part of a 130- year legacy of success backed by ethical integrity, forward momentum, and an inspiring mission to achieve new milestones in global healthcare. Be part of an organisation driven by digital technology and data-backed approaches that support a diversified portfolio of prescription medicines, vaccines, and animal health products. Drive innovation and execution excellence. Be a part of a team with passion for using data, analytics, and insights to drive decision-making, and which creates custom software, allowing us to tackle some of the world's greatest health threats. Our Technology Centers focus on creating a space where teams can come together to deliver business solutions that save and improve lives. An integral part of our company’s IT operating model, Tech Centers are globally distributed locations where each IT division has employees to enable our digital transformation journey and drive business outcomes. These locations, in addition to the other sites, are essential to supporting our business and strategy. A focused group of leaders in each Tech Center helps to ensure we can manage and improve each location, from investing in growth, success, and well-being of our people, to making sure colleagues from each IT division feel a sense of belonging to managing critical emergencies. And together, we must leverage the strength of our team to collaborate globally to optimize connections and share best practices across the Tech Centers. Role Overview As a Cybersecurity Engineer, you will be responsible for designing, implementing, and maintaining security measures to protect the organization's computer systems, networks, and data from cyber threats. This role will involve a combination of technologies, processes, and practices designed to safeguard data, applications, and networks from threats like malware, phishing, and data breaches. You will be tasked with identifying vulnerabilities, supporting the response to incidents, and ensuring that security protocols and controls are adhered to. Your role is vital in safeguarding critical assets and ensuring compliance with legal and regulatory standards. What Will You Do In This Role Contribute to the development of enhanced cloud and application security control integrations and architectural best practices. Contribute to the development and implementation of product security policies and standards to ensure that application, cloud services and infrastructure meet organizational security requirements. Help maintain and monitor security tools and dashboards, ensuring that applications deployed in our environments adhere to organizational security standards and compliance requirements. Identify and prioritize adoption of our security tools within other teams ensuring the inputs and outputs are fully integrated enabling a complete security function. Follow standard approaches and established design patterns to create new designs for systems or system components. Identify and resolve minor design issues. Assist in implementing and maintaining specific security controls as required by organisational policy and local risk assessments and contribute to identifying risks that arise from potential technical solution architectures. Monitor and log the actual service provided, compared to that required by service level agreements. Undertake low-complexity routine vulnerability assessments using automated and semi-automated tools and contribute to evaluating and documenting the scope of results. Design, implement, test, document, and support integration of security tools and technologies in pipelines, Also, assist the product teams in related activities. Assist in maintaining security infrastructure and performing system updates. Investigate minor security breaches in accordance with established procedures. Assist users in defining their access rights and privileges and perform non-standard operational security tasks. Resolve security events and operational security issues. Work closely with cross-functional Infrastructure teams on Automation and Orchestration. Create and document detailed designs for simple software applications or components. Apply agreed modelling techniques, standards, patterns, and tools. Work within a matrix organizational structure, reporting to both the functional manager and the project manager. What Should You Have Bachelors’ degree in Information Technology, Computer Science or any Technology stream. Working experience in cloud environments AWS must have and good to have Azure, or GCP. Understanding of OWASP Top 10 security risks and mitigation strategies, relevant NIST standards, and Zero Trust principles. Familiarity with programming/scripting languages like Python, Bash, Terraform, Ansible, JSON, PowerShell, or JavaScript for automating tasks. Familiarity with software development/delivery lifecycle and related technologies 1+ years of hands-on experience working with network protocols, firewalls, intrusion detection systems, encryption technologies, and endpoint security solutions. Proficiency in security tools in the areas of cloud, application, endpoint, network or identity, vulnerability scanners, and malware analysis platforms.. Knowledge of authentication methods, identity management, and security access protocols (e.g., SSO, MFA, LDAP). Ideally AWS certified. Good interpersonal and communication skills (verbal and written). Relevant certifications (e.g., CISSP, CISM, CEH, CompTIA Security+) are often required or highly desirable. Proven record of delivering high-quality results. Product and customer-centric approach. Innovative thinking, experimental mindset. Our technology teams operate as business partners, proposing ideas and innovative solutions that enable new organizational capabilities. We collaborate internationally to deliver services and solutions that help everyone be more productive and enable innovation. Who We Are We are known as Merck & Co., Inc., Rahway, New Jersey, USA in the United States and Canada and MSD everywhere else. For more than a century, we have been inventing for life, bringing forward medicines and vaccines for many of the world's most challenging diseases. Today, our company continues to be at the forefront of research to deliver innovative health solutions and advance the prevention and treatment of diseases that threaten people and animals around the world. What We Look For Imagine getting up in the morning for a job as important as helping to save and improve lives around the world. Here, you have that opportunity. You can put your empathy, creativity, digital mastery, or scientific genius to work in collaboration with a diverse group of colleagues who pursue and bring hope to countless people who are battling some of the most challenging diseases of our time. Our team is constantly evolving, so if you are among the intellectually curious, join us—and start making your impact today. #HYDIT2025 Search Firm Representatives Please Read Carefully Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails. Employee Status Regular Relocation VISA Sponsorship Travel Requirements Flexible Work Arrangements Hybrid Shift Valid Driving License Hazardous Material(s) Required Skills Design Applications, Information Security, Security Operations, SLA Management, Software Development, Software Development Life Cycle (SDLC), System Designs, Technical Advice, Vulnerability Scanning Preferred Skills Job Posting End Date 06/23/2025 A job posting is effective until 11 59 59PM on the day BEFORE the listed job posting end date. Please ensure you apply to a job posting no later than the day BEFORE the job posting end date. Requisition ID R335953 Show more Show less

Posted 2 weeks ago

Apply

130.0 years

0 Lacs

Hyderabad, Telangana, India

On-site

Linkedin logo

Job Description Current Employees apply HERE Current Contingent Workers apply HERE Secondary Language(s) Job Description Manager, Cybersecurity Engineering Cloud and App Security The Opportunity Based in Hyderabad, join a global healthcare biopharma company and be part of a 130- year legacy of success backed by ethical integrity, forward momentum, and an inspiring mission to achieve new milestones in global healthcare. Be part of an organisation driven by digital technology and data-backed approaches that support a diversified portfolio of prescription medicines, vaccines, and animal health products. Drive innovation and execution excellence. Be a part of a team with passion for using data, analytics, and insights to drive decision-making, and which creates custom software, allowing us to tackle some of the world's greatest health threats. Our Technology Centers focus on creating a space where teams can come together to deliver business solutions that save and improve lives. An integral part of our company’s IT operating model, Tech Centers are globally distributed locations where each IT division has employees to enable our digital transformation journey and drive business outcomes. These locations, in addition to the other sites, are essential to supporting our business and strategy. A focused group of leaders in each Tech Center helps to ensure we can manage and improve each location, from investing in growth, success, and well-being of our people, to making sure colleagues from each IT division feel a sense of belonging to managing critical emergencies. And together, we must leverage the strength of our team to collaborate globally to optimize connections and share best practices across the Tech Centers. Role Overview As a Cybersecurity Engineer, you will be responsible for designing, implementing, and maintaining security measures to protect the organization's computer systems, networks, and data from cyber threats. This role will involve a combination of technologies, processes, and practices designed to safeguard data, applications, and networks from threats like malware, phishing, and data breaches. You will be tasked with identifying vulnerabilities, supporting the response to incidents, and ensuring that security protocols and controls are adhered to. Your role is vital in safeguarding critical assets and ensuring compliance with legal and regulatory standards. What Will You Do In This Role Contribute to the development of enhanced cloud and application security control integrations and architectural best practices. Contribute to the development and implementation of product security policies and standards to ensure that application, cloud services and infrastructure meet organizational security requirements. Help maintain and monitor security tools and dashboards, ensuring that applications deployed in our environments adhere to organizational security standards and compliance requirements. Identify and prioritize adoption of our security tools within other teams ensuring the inputs and outputs are fully integrated enabling a complete security function. Follow standard approaches and established design patterns to create new designs for systems or system components. Identify and resolve minor design issues. Assist in implementing and maintaining specific security controls as required by organisational policy and local risk assessments and contribute to identifying risks that arise from potential technical solution architectures. Monitor and log the actual service provided, compared to that required by service level agreements. Undertake low-complexity routine vulnerability assessments using automated and semi-automated tools and contribute to evaluating and documenting the scope of results. Design, implement, test, document, and support integration of security tools and technologies in pipelines, Also, assist the product teams in related activities. Assist in maintaining security infrastructure and performing system updates. Investigate minor security breaches in accordance with established procedures. Assist users in defining their access rights and privileges and perform non-standard operational security tasks. Resolve security events and operational security issues. Work closely with cross-functional Infrastructure teams on Automation and Orchestration. Create and document detailed designs for simple software applications or components. Apply agreed modelling techniques, standards, patterns, and tools. Work within a matrix organizational structure, reporting to both the functional manager and the project manager. What Should You Have Bachelors’ degree in Information Technology, Computer Science or any Technology stream. Working experience in cloud environments AWS must have and good to have Azure, or GCP. Understanding of OWASP Top 10 security risks and mitigation strategies, relevant NIST standards, and Zero Trust principles. Familiarity with programming/scripting languages like Python, Bash, Terraform, Ansible, JSON, PowerShell, or JavaScript for automating tasks. Familiarity with software development/delivery lifecycle and related technologies 3+ years of hands-on experience working with network protocols, firewalls, intrusion detection systems, encryption technologies, and endpoint security solutions. Proficiency in security tools in the areas of cloud, application, endpoint, network or identity, vulnerability scanners, and malware analysis platforms.. Knowledge of authentication methods, identity management, and security access protocols (e.g., SSO, MFA, LDAP). Ideally AWS certified. Good interpersonal and communication skills (verbal and written). Relevant certifications (e.g., CISSP, CISM, CEH, CompTIA Security+) are often required or highly desirable. Proven record of delivering high-quality results. Product and customer-centric approach. Innovative thinking, experimental mindset. Our technology teams operate as business partners, proposing ideas and innovative solutions that enable new organizational capabilities. We collaborate internationally to deliver services and solutions that help everyone be more productive and enable innovation. Who We Are We are known as Merck & Co., Inc., Rahway, New Jersey, USA in the United States and Canada and MSD everywhere else. For more than a century, we have been inventing for life, bringing forward medicines and vaccines for many of the world's most challenging diseases. Today, our company continues to be at the forefront of research to deliver innovative health solutions and advance the prevention and treatment of diseases that threaten people and animals around the world. What We Look For Imagine getting up in the morning for a job as important as helping to save and improve lives around the world. Here, you have that opportunity. You can put your empathy, creativity, digital mastery, or scientific genius to work in collaboration with a diverse group of colleagues who pursue and bring hope to countless people who are battling some of the most challenging diseases of our time. Our team is constantly evolving, so if you are among the intellectually curious, join us—and start making your impact today. #HYDIT2025 Search Firm Representatives Please Read Carefully Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails. Employee Status Regular Relocation VISA Sponsorship Travel Requirements Flexible Work Arrangements Hybrid Shift Valid Driving License Hazardous Material(s) Required Skills Design Applications, Information Security, Security Operations, SLA Management, Software Development, Software Development Life Cycle (SDLC), System Designs, Technical Advice, Vulnerability Scanning Preferred Skills Job Posting End Date 06/23/2025 A job posting is effective until 11 59 59PM on the day BEFORE the listed job posting end date. Please ensure you apply to a job posting no later than the day BEFORE the job posting end date. Requisition ID R335945 Show more Show less

Posted 2 weeks ago

Apply

130.0 years

0 Lacs

Hyderabad, Telangana, India

On-site

Linkedin logo

Job Description Associate Specialist, Cybersecurity Operations The Opportunity Based in Hyderabad, join a global healthcare biopharma company and be part of a 130- year legacy of success backed by ethical integrity, forward momentum, and an inspiring mission to achieve new milestones in global healthcare. Be part of an organisation driven by digital technology and data-backed approaches that support a diversified portfolio of prescription medicines, vaccines, and animal health products. Drive innovation and execution excellence. Be a part of a team with passion for using data, analytics, and insights to drive decision-making, and which creates custom software, allowing us to tackle some of the world's greatest health threats. Our Technology Centers focus on creating a space where teams can come together to deliver business solutions that save and improve lives. An integral part of our company’s IT operating model, Tech Centers are globally distributed locations where each IT division has employees to enable our digital transformation journey and drive business outcomes. These locations, in addition to the other sites, are essential to supporting our business and strategy. A focused group of leaders in each Tech Center helps to ensure we can manage and improve each location, from investing in growth, success, and well-being of our people, to making sure colleagues from each IT division feel a sense of belonging to managing critical emergencies. And together, we must leverage the strength of our team to collaborate globally to optimize connections and share best practices across the Tech Centers. Role Overview As a Cybersecurity Engineer, you will be responsible for designing, implementing, and maintaining security measures to protect the organization's computer systems, networks, and data from cyber threats. This role will involve a combination of technologies, processes, and practices designed to safeguard data, applications, and networks from threats like malware, phishing, and data breaches. You will be tasked with identifying vulnerabilities, supporting the response to incidents, and ensuring that security protocols and controls are adhered to. Your role is vital in safeguarding critical assets and ensuring compliance with legal and regulatory standards. What Will You Do In This Role Collaborate with product teams to enforce application security best practices, conduct reviews, perform scans and assist in threat modeling to identify and mitigate security risks throughout the development lifecycle. Contribute with penetration testing efforts to evaluate the security posture of applications and containers, providing detailed reports on findings and working with development teams to remediate identified issues. Collaborate to the oversight of security-related bugs and vulnerabilities using tracking systems. Help prioritize security issues based on risk and impact and ensuring that reported issues are triaged and addressed in a timely manner. Contribute to the creation and delivery of training materials for the workforce to raise awareness and increase adoption of application security best practices, cloud security best practices, including secure usage of cloud applications and availability of compensating controls. Help maintain and monitor security tools and dashboards, ensuring that applications deployed in our environments adhere to organizational security standards and compliance requirements. Follow standard approaches and established design patterns to create new designs for systems or system components. Identify and resolve minor design issues. Monitor and log the actual service provided, compared to that required by service level agreements. Assist in maintaining security infrastructure and performing system updates. Investigate minor security breaches in accordance with established procedures. Assist users in defining their access rights and privileges and perform non-standard operational security tasks. Resolve security events and operational security issues. Work closely with cross-functional Infrastructure teams on Automation and Orchestration. Create and document detailed designs for simple software applications or components. Apply agreed modelling techniques, standards, patterns, and tools. Work within a matrix organizational structure, reporting to both the functional manager and the project manager. What Should You Have Bachelors’ degree in Information Technology, Computer Science or any Technology stream. 3-4 years proficiency in security tools in the areas of cloud, application, endpoint, network or identity, vulnerability scanners, and malware analysis platforms. Understanding of OWASP Top 10 security risks and mitigation strategies, relevant NIST standards, and Zero Trust principles. Working experience in cloud environments AWS must have and good to have Azure, or GCP. Familiarity with software development/delivery lifecycle and related technologies Familiarity with programming/scripting languages like Python, Bash, Terraform, Ansible, JSON, PowerShell, or JavaScript for automating tasks. Knowledge of authentication methods, identity management, and security access protocols (e.g., SSO, MFA, LDAP). Ideally AWS certified. Good interpersonal and communication skills (verbal and written). Relevant certifications (e.g., CISSP, CISM, CEH, CompTIA Security+) are often required or highly desirable. Proven record of delivering high-quality results. Product and customer-centric approach. Innovative thinking, experimental mindset. Our technology teams operate as business partners, proposing ideas and innovative solutions that enable new organizational capabilities. We collaborate internationally to deliver services and solutions that help everyone be more productive and enable innovation. Who We Are We are known as Merck & Co., Inc., Rahway, New Jersey, USA in the United States and Canada and MSD everywhere else. For more than a century, we have been inventing for life, bringing forward medicines and vaccines for many of the world's most challenging diseases. Today, our company continues to be at the forefront of research to deliver innovative health solutions and advance the prevention and treatment of diseases that threaten people and animals around the world. What We Look For Imagine getting up in the morning for a job as important as helping to save and improve lives around the world. Here, you have that opportunity. You can put your empathy, creativity, digital mastery, or scientific genius to work in collaboration with a diverse group of colleagues who pursue and bring hope to countless people who are battling some of the most challenging diseases of our time. Our team is constantly evolving, so if you are among the intellectually curious, join us—and start making your impact today. #HYDIT2025 Current Employees apply HERE Current Contingent Workers apply HERE Search Firm Representatives Please Read Carefully Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails. Employee Status Regular Relocation VISA Sponsorship Travel Requirements Flexible Work Arrangements Hybrid Shift Valid Driving License Hazardous Material(s) Job Posting End Date 04/28/2025 A job posting is effective until 11 59 59PM on the day BEFORE the listed job posting end date. Please ensure you apply to a job posting no later than the day BEFORE the job posting end date. Requisition ID R341158 Show more Show less

Posted 2 weeks ago

Apply

130.0 years

0 Lacs

Hyderabad, Telangana, India

On-site

Linkedin logo

Job Description Associate Specialist, Cybersecurity Operations The Opportunity Based in Hyderabad, join a global healthcare biopharma company and be part of a 130- year legacy of success backed by ethical integrity, forward momentum, and an inspiring mission to achieve new milestones in global healthcare. Be part of an organisation driven by digital technology and data-backed approaches that support a diversified portfolio of prescription medicines, vaccines, and animal health products. Drive innovation and execution excellence. Be a part of a team with passion for using data, analytics, and insights to drive decision-making, and which creates custom software, allowing us to tackle some of the world's greatest health threats. Our Technology Centers focus on creating a space where teams can come together to deliver business solutions that save and improve lives. An integral part of our company’s IT operating model, Tech Centers are globally distributed locations where each IT division has employees to enable our digital transformation journey and drive business outcomes. These locations, in addition to the other sites, are essential to supporting our business and strategy. A focused group of leaders in each Tech Center helps to ensure we can manage and improve each location, from investing in growth, success, and well-being of our people, to making sure colleagues from each IT division feel a sense of belonging to managing critical emergencies. And together, we must leverage the strength of our team to collaborate globally to optimize connections and share best practices across the Tech Centers. Role Overview As a Cybersecurity Engineer, you will be responsible for designing, implementing, and maintaining security measures to protect the organization's computer systems, networks, and data from cyber threats. This role will involve a combination of technologies, processes, and practices designed to safeguard data, applications, and networks from threats like malware, phishing, and data breaches. You will be tasked with identifying vulnerabilities, supporting the response to incidents, and ensuring that security protocols and controls are adhered to. Your role is vital in safeguarding critical assets and ensuring compliance with legal and regulatory standards. What Will You Do In This Role Collaborate with product teams to enforce application security best practices, conduct reviews, perform scans and assist in threat modeling to identify and mitigate security risks throughout the development lifecycle. Contribute with penetration testing efforts to evaluate the security posture of applications and containers, providing detailed reports on findings and working with development teams to remediate identified issues. Collaborate to the oversight of security-related bugs and vulnerabilities using tracking systems. Help prioritize security issues based on risk and impact and ensuring that reported issues are triaged and addressed in a timely manner. Contribute to the creation and delivery of training materials for the workforce to raise awareness and increase adoption of application security best practices, cloud security best practices, including secure usage of cloud applications and availability of compensating controls. Help maintain and monitor security tools and dashboards, ensuring that applications deployed in our environments adhere to organizational security standards and compliance requirements. Follow standard approaches and established design patterns to create new designs for systems or system components. Identify and resolve minor design issues. Monitor and log the actual service provided, compared to that required by service level agreements. Assist in maintaining security infrastructure and performing system updates. Investigate minor security breaches in accordance with established procedures. Assist users in defining their access rights and privileges and perform non-standard operational security tasks. Resolve security events and operational security issues. Work closely with cross-functional Infrastructure teams on Automation and Orchestration. Create and document detailed designs for simple software applications or components. Apply agreed modelling techniques, standards, patterns, and tools. Work within a matrix organizational structure, reporting to both the functional manager and the project manager. What Should You Have Bachelors’ degree in Information Technology, Computer Science or any Technology stream. 3-4 years experience and need proficiency in security tools in the areas of cloud, application, endpoint, network or identity, vulnerability scanners, and malware analysis platforms. Understanding of OWASP Top 10 security risks and mitigation strategies, relevant NIST standards, and Zero Trust principles. Good to have experience in any of the cloud environments. Familiarity with software development/delivery lifecycle and related technologies Familiarity with programming/scripting languages like Python, Bash, Terraform, Ansible, JSON, PowerShell, or JavaScript for automating tasks. Knowledge of authentication methods, identity management, and security access protocols (e.g., SSO, MFA, LDAP). Ideally AWS certified. Good interpersonal and communication skills (verbal and written). Relevant certifications (e.g., CISSP, CISM, CEH, CompTIA Security+) are often required or highly desirable. Proven record of delivering high-quality results. Product and customer-centric approach. Innovative thinking, experimental mindset. Our technology teams operate as business partners, proposing ideas and innovative solutions that enable new organizational capabilities. We collaborate internationally to deliver services and solutions that help everyone be more productive and enable innovation. Who We Are We are known as Merck & Co., Inc., Rahway, New Jersey, USA in the United States and Canada and MSD everywhere else. For more than a century, we have been inventing for life, bringing forward medicines and vaccines for many of the world's most challenging diseases. Today, our company continues to be at the forefront of research to deliver innovative health solutions and advance the prevention and treatment of diseases that threaten people and animals around the world. What We Look For Imagine getting up in the morning for a job as important as helping to save and improve lives around the world. Here, you have that opportunity. You can put your empathy, creativity, digital mastery, or scientific genius to work in collaboration with a diverse group of colleagues who pursue and bring hope to countless people who are battling some of the most challenging diseases of our time. Our team is constantly evolving, so if you are among the intellectually curious, join us—and start making your impact today. #HYDIT2025 Current Employees apply HERE Current Contingent Workers apply HERE Search Firm Representatives Please Read Carefully Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails. Employee Status Regular Relocation VISA Sponsorship Travel Requirements Flexible Work Arrangements Hybrid Shift Valid Driving License Hazardous Material(s) Job Posting End Date 04/28/2025 A job posting is effective until 11 59 59PM on the day BEFORE the listed job posting end date. Please ensure you apply to a job posting no later than the day BEFORE the job posting end date. Requisition ID R341159 Show more Show less

Posted 2 weeks ago

Apply

0 years

0 Lacs

India

Remote

Linkedin logo

Job Title: Cryptography and Networking Consultant Location: Remote (as per project requirements) Employment Type: Contract Reports To: Head of Cybersecurity Consultancy Job Overview: We are seeking a highly skilled Cryptography Consultant specializing in Cryptography Bill of Materials (CBOM) creation and cryptographic audits. The ideal candidate will leverage Static Application Security Testing (SAST) tools to analyze extensive codebases, identify cryptographic vulnerabilities, and help organizations prepare for post-quantum cryptographic challenges. This role will play a critical part in bridging traditional cryptographic practices and future quantum-safe security solutions. Key Responsibilities: CBOM Creation: Employ SAST tools to generate a detailed Cryptography Bill of Materials (CBOM). Design abstract models within SAST tools to represent cryptographic components and adapt these for various application-specific APIs. Catalogue cryptographic libraries and algorithms across diverse codebases to identify high-risk areas. Comprehensive Cryptographic Audits: Conduct in-depth audits of cryptographic algorithms used across on-premises and cloud systems. Develop and execute custom queries in SAST tools to detect legacy cryptographic methods vulnerable to quantum attacks. Provide clear insights into cryptographic dependencies and vulnerabilities within large code repositories. Variant Analysis: Perform multi-repository variant analysis using SAST tools to uncover obscure cryptographic dependencies. Analyse software supply chains, particularly for risks stemming from open-source components and complex dependency structures. Strategic Recommendations for Cryptographic Agility: Deliver actionable recommendations to transition organizations to quantum-resistant cryptography. Collaborate with stakeholders to develop strategic plans for cryptographic agility and resilience. Integration and Continuous Monitoring: Integrate SAST-based auditing into client workflows to ensure continuous compliance with post-quantum cryptographic standards. Establish monitoring processes for new code and periodic reassessments to detect emerging vulnerabilities. Client Engagement & Reporting: Provide detailed and clear reporting on findings, including CBOM, vulnerability assessments, and remediation plans. Communicate complex technical concepts to non-technical stakeholders in an accessible manner. SAST Query Development and Execution: Write and run custom queries within Visual Studio Code using SAST tools. Download and install the required SAST tool extensions in VS Code. Obtain and integrate SAST databases for target open-source projects: Search GitHub.com for relevant open-source projects to research. Download and add the project’s SAST database to VS Code or create one using the tool’s CLI. Clone and utilize the starter workspace provided by the SAST tool to run queries efficiently. Execute queries to identify and report vulnerabilities. Key Qualifications: Bachelor’s or Master’s degree in Computer Science, Cybersecurity, Applied Mathematics, or a related field. Proven experience in cryptography, software security analysis, and cryptographic library assessments. Proficiency in SAST tools (or equivalent static analysis tools) for codebase analysis and custom query development. Strong understanding of cryptographic algorithms, including symmetric/asymmetric encryption, hashing, and digital signatures. Familiarity with quantum computing risks and post-quantum cryptographic standards (e.g., NIST PQC algorithms). Experience with analysing large codebases across multiple programming languages (e.g., C, C++, Java, Python). Knowledge of software supply chain security, including open-source dependency management. Strong problem-solving and analytical skills. Excellent written and verbal communication for technical documentation and client reporting. Preferred Skills: Certifications such as CISSP, CCSP, or GIAC Cryptography certifications. Hands-on experience with tools such as SonarQube, SAST tools, or similar. Prior experience with infrastructure and code audits in cloud environments (AWS, Azure, GCP). Exposure to secure coding practices and cryptographic agility frameworks. Why Join Us? Opportunity to work at the forefront of quantum-safe cryptography. Collaborate with leading experts and leverage cutting-edge tools like SAST tools. Flexible work environment with opportunities for professional growth. Contribute to projects that secure the future of global organizations against emerging quantum threats. Benefits: Project-based payments. Remote-friendly working environment. Flexible working How to Apply: Via Linkedin. Equal Opportunity Employer: We welcome candidates from diverse backgrounds and are committed to fostering an inclusive workplace. Show more Show less

Posted 2 weeks ago

Apply

4.0 - 6.0 years

6 - 13 Lacs

Chennai

Work from Office

Naukri logo

ROLE AND RESPONSIBILITIES The Level 1 IT/OT Engineer executes assigned work orders, including support tickets and project tasks to meet Managed Security Services Provider (MSSP) and other contractually defined obligations for new and existing customer facilities. This role will perform routine and scheduled maintenance and support tasks, work break/fix and other trouble and support tickets, act as a subject matter expert for programs and products offered, and respond to other emergent conditions across the fleet. Candidates must possess a strong understanding of and direct experience with concepts and best practices related to IT/OT systems.This is an opportunity to be part of a world-class team operating at the nexus of two of the most exciting and fastest-growing sectors in renewable energy today: SCADA IT/OT and mission-critical software. Work Location : Chennai Notice period : Immediate Experience : 4 to 6 years Shift : UK Shift PREFERRED EXPERIENCE • Experience in NERC CIP-regulated environments is preferred. • Experience in compliance programs or standard-driven environments (e.g., PCI-DSS, NIST, ISO-27001) • SOC, NOC, or other operation center experience • Work experience in at least one of the following areas: • Network and infrastructure design, deployment, or maintenance. • Power generation, especially renewable energy. REQUIRED QUALIFICATION & EDUCATION • A university technical degree or minimum 1-2 years of relevant IT/OT professional experience. • Direct or indirect service experience and/or experience providing remote support. • Ability to read electrical, network, infrastructure, and cabling drawings. • All applicants must have prior professional IT/OT systems management experience and knowledge in at least two of the following fields: • Server hardware and OS management. • Networking and infrastructure design, implementation, and management. • Cybersecurity, including Next-Generation Firewall configuration and management. Interested candidates can apply to kinnera259@gmail.com. Regards, HR Manager

Posted 2 weeks ago

Apply

1.0 - 3.0 years

0 Lacs

Mumbai, Maharashtra, India

Remote

Linkedin logo

IT Audit Consultant Clark Schaefer Consulting a division of Clark Schaefer Hackett At Clark Schaefer Consulting, a division of Clark Schaefer Hackett, we pride ourselves on delivering impeccable accounting, operational, control, and technology services to our high-profile clientele, comprised of public and private entities. We are acknowledged for our unwavering commitment to excellence, marked by a proven track record as trusted advisors effectuating transformative results. Guided by our cornerstone values of integrity, quality, respect, and innovation, we provide consistent and superior service to our clients while also nurturing these values within our team. This role allows the flexibility of remote working, primarily serving clients across Ohio, Kentucky, and Indiana, with potential engagement on a national scale. While occasional travel might be required, it is more an exception than a norm. If you seek an enriching experience that values diversity, encourages personal growth, and welcomes you to an esteemed community, look no further. We invite skilled professionals to join our IT Risk & Cybersecurity team and help us further our exceptional work. Responsibilities Engage with diverse organizations of varying sizes across multiple industries. Deliver consulting and audit services related to IT and cybersecurity to meet specific engagement requirements. Support audit project plan, methodology, and work program development. Conduct IT audits in accordance with established audit plans. Evaluate the design and effectiveness of IT and information security controls. Identify areas of potential risk and recommend corrective actions or enhancements to mitigate risks. Prepare comprehensive audit reports detailing findings, recommendations, and management responses. Lead control walkthroughs, clearly document test procedures/results, and effectively communicate audit progress and findings. Commit to continual professional development and continuous growth. Collaborate effectively with a team of high-caliber professionals to complete assignments and deliver top-quality work. Advise clients on state and federal agency security and privacy requirements. Stay current and adaptable with emerging technologies within the cybersecurity domain. Competencies Exceptional problem-solving abilities, with a knack for thinking on your feet. Strong communication skills, with an ability to explain complex concepts to non-technical stakeholders. Team player, able to work collaboratively with diverse team members and clients. Adaptable and flexible in the face of changing client needs or new information. Self-driven in a remote working environment. Education / Work Experience A Bachelor’s degree in IT, Cybersecurity, or a related field is preferred. Minimum of 1-3 years of experience in IT Auditing. Demonstrable experience with security and compliance frameworks such as COBIT, SOX, MAR, NIST, ISO 27001/2, FFIEC, etc. Highly Desirable Certifications CISA (Certified Information Systems Auditor), CRISC (Certified in Risk and Information Systems Control), CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager) Location - Mumbai (Goregaon) Working days - Monday to Friday (Hybrid) Working hours - 12:00 noon-9:00pm Show more Show less

Posted 2 weeks ago

Apply

10.0 years

0 Lacs

Bengaluru, Karnataka, India

On-site

Linkedin logo

Note: By applying to this position you will have an opportunity to share your preferred working location from the following: Bengaluru, Karnataka, India; Mumbai, Maharashtra, India . Minimum qualifications: Bachelor's degree or equivalent practical experience. 10 years of experience with cloud native architecture in a customer-facing or support role. 7 years of experience in vendor pre-sales cybersecurity (e.g., threat detection, malware intelligence, cloud security posture management, SIEM, or SOAR). Experience with a wide variety of IT technologies and security solutions (e.g., SIEM, NGFW, Proxy, IDS/IPS, DLP, EDR, A/V, WAF, SOAR). Ability to travel up to 50% of the time as required. Preferred qualifications: Master's degree in Computer Science, Engineering, Mathematics, or a related field. Experience implementing security solutions for enterprises (e.g., threat detection and hunting, malware intelligence, cloud security posture management, SIEM or SOAR). Knowledge of product and solution market trends in the cybersecurity industry (e.g., ransomware, attack frameworks, zero trust, etc.). Knowledge of industry frameworks (e.g., MITRE, NIST, FAIR, CMMC, etc.). Knowledge of various hacking and exploitation tools and methodologies, common malware families, and Anti-Virus/IDS/IPS evasion techniques. Ability to deliver technical presentations with excellent problem-solving, communication, and presentation skills. About The Job The Google Cloud Platform team helps customers transform and build what's next for their business — all with technology built in the cloud. Our products are developed for security, reliability and scalability, running the full stack from infrastructure to applications to devices and hardware. Our teams are dedicated to helping our customers — developers, small and large businesses, educational institutions and government agencies — see the benefits of our technology come to life. As part of an entrepreneurial team in this rapidly growing business, you will play a key role in understanding the needs of our customers and help shape the future of businesses of all sizes use technology to connect with customers, employees and partners. As a Customer Engineer, you will help us grow our cybersecurity business by building and expanding relationships with customers. You will serve as an advisor to customers and an advocate for our security solutions, providing support to executive level, security leaders, architects, and analysts to lead projects forward. You will accompany customers in discovering the technology/solution and consult around the best way to secure and ensure compliance. You will optimize for results when in production, leading with empathy, while identifying innovative ways to multiply your impact and the impact of the team as a whole Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems. Responsibilities Work with Security Sales and Google Cloud teams to identify and qualify business opportunities, understand customer technical and compliance objections, and develop strategies to resolve technical blockers. Work with all Google Cloud Security products to demonstrate and validate solution benefits in customer and partner environments. Support Google Cloud Security opportunities and relationships, own technical aspects of solutions, and deliver technical presentations, product and solution briefings, proofs-of-concepts, and demos to customers, partners, and stakeholders. Prepare and deliver product messaging in an effort to highlight our solutions value proposition using techniques including presentations, product demonstrations, white papers, trial management, and response documents. Travel to customer sites, conferences, and other related events, where applicable. Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form . Show more Show less

Posted 2 weeks ago

Apply

10.0 years

0 Lacs

Mumbai, Maharashtra, India

On-site

Linkedin logo

Note: By applying to this position you will have an opportunity to share your preferred working location from the following: Bengaluru, Karnataka, India; Mumbai, Maharashtra, India . Minimum qualifications: Bachelor's degree or equivalent practical experience. 10 years of experience with cloud native architecture in a customer-facing or support role. 7 years of experience in vendor pre-sales cybersecurity (e.g., threat detection, malware intelligence, cloud security posture management, SIEM, or SOAR). Experience with a wide variety of IT technologies and security solutions (e.g., SIEM, NGFW, Proxy, IDS/IPS, DLP, EDR, A/V, WAF, SOAR). Ability to travel up to 50% of the time as required. Preferred qualifications: Master's degree in Computer Science, Engineering, Mathematics, or a related field. Experience implementing security solutions for enterprises (e.g., threat detection and hunting, malware intelligence, cloud security posture management, SIEM or SOAR). Knowledge of product and solution market trends in the cybersecurity industry (e.g., ransomware, attack frameworks, zero trust, etc.). Knowledge of industry frameworks (e.g., MITRE, NIST, FAIR, CMMC, etc.). Knowledge of various hacking and exploitation tools and methodologies, common malware families, and Anti-Virus/IDS/IPS evasion techniques. Ability to deliver technical presentations with excellent problem-solving, communication, and presentation skills. About The Job The Google Cloud Platform team helps customers transform and build what's next for their business — all with technology built in the cloud. Our products are developed for security, reliability and scalability, running the full stack from infrastructure to applications to devices and hardware. Our teams are dedicated to helping our customers — developers, small and large businesses, educational institutions and government agencies — see the benefits of our technology come to life. As part of an entrepreneurial team in this rapidly growing business, you will play a key role in understanding the needs of our customers and help shape the future of businesses of all sizes use technology to connect with customers, employees and partners. As a Customer Engineer, you will help us grow our cybersecurity business by building and expanding relationships with customers. You will serve as an advisor to customers and an advocate for our security solutions, providing support to executive level, security leaders, architects, and analysts to lead projects forward. You will accompany customers in discovering the technology/solution and consult around the best way to secure and ensure compliance. You will optimize for results when in production, leading with empathy, while identifying innovative ways to multiply your impact and the impact of the team as a whole Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems. Responsibilities Work with Security Sales and Google Cloud teams to identify and qualify business opportunities, understand customer technical and compliance objections, and develop strategies to resolve technical blockers. Work with all Google Cloud Security products to demonstrate and validate solution benefits in customer and partner environments. Support Google Cloud Security opportunities and relationships, own technical aspects of solutions, and deliver technical presentations, product and solution briefings, proofs-of-concepts, and demos to customers, partners, and stakeholders. Prepare and deliver product messaging in an effort to highlight our solutions value proposition using techniques including presentations, product demonstrations, white papers, trial management, and response documents. Travel to customer sites, conferences, and other related events, where applicable. Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form . Show more Show less

Posted 2 weeks ago

Apply

3.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Hi All, Greetings from Shivsys Softwares Pvt Ltd We are hiring for Product Security Engineer Role: Product Security Engineer Experience: 3+ Years Location: Noida Job Description: Security Specialist in areas of Security Vulnerability Assessment & Penetration Testing. Responsible for periodic assessment and implementation of remediation with the help of node owners. Job Key Tasks & Responsibilities: · Experience in developing trailored Vulnerability Assessment Profiles in collaboration with clients, outlining assessment scope, methodologies, risk assessment criteria, and reporting structures. · Have created and configured custom scan policies for vulnerability scanners, ensuring accurate, tailored scans to meet organizational needs and risk tolerance. · Configure scan policies for full network scans, application scans, compliance checks, and sensitive data exposure detection. · Performed both authenticated and unauthenticated scans across telecom networks and cloud environments (VNF, CNF). Troubleshooting and debugging scans. · Performed automated and manual scans against the CIS Benchmarks (e.g., CIS AWS Foundations, CIS Linux, CIS Windows) to ensure compliance with industry best practices. · Performed comprehensive risk triage by analyzing vulnerability reports, verifying false positives, and assigning accurate severity levels to vulnerabilities based on CVSS matrix. · Evaluate the impact of vulnerabilities and prioritize vulnerabilities based on CVSS scoring and considering exploitability in telecom environments (e.g., SS7, Diameter, GTP, VoIP, IoT, 5G). · Perform cloud-specific vulnerability assessments for containers and orchestration platforms (Docker, Kubernetes). · Provide remediation recommendations based on scan findings, including patching, work arounds, configuration hardening, and compensating controls. · Worked on remediation of non-compliant configurations and security issues based on CIS recommendations. · Experience in threat intelligence gathering to identify known exploits and determine the current exploitation risk of vulnerabilities (e.g., availability of exploit POC, exploit in wild). · Experience of working in ticketing tools i.e. ServiceNow, Jira. · Proficiency in Linux, Windows, and cloud security hardening. · Knowledge security frameworks and standards (e.g., NIST, ISO 27001, CIS) Experience & Certification: · Minimum 3+ years of relevant experience in a combination of security and operations technology jobs · Vulnerability Scanning tools: Nessus, Qualys, OpenVAS · Cloud Scanning Tools: Redhat ACS, Anchore, Trivy · Ticketing Systems: Jira, ServiceNow, Remedy Telecom Expertise: Telecom architecture(2G,3G,4G,5G), Nokia Nodes and functionalities You can also drop your CV at karan.prajapati@shivsys.com Show more Show less

Posted 2 weeks ago

Apply

3.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Hi All, Greetings from Shivsys Softwares Pvt Ltd We are hiring for Product Security Engineer Role: Product Security Engineer Experience: 3+ Years Location: Noida Job Description: Security Specialist in areas of Security Vulnerability Assessment & Penetration Testing. Responsible for periodic assessment and implementation of remediation with the help of node owners. Job Key Tasks & Responsibilities: · Experience in developing trailored Vulnerability Assessment Profiles in collaboration with clients, outlining assessment scope, methodologies, risk assessment criteria, and reporting structures. · Have created and configured custom scan policies for vulnerability scanners, ensuring accurate, tailored scans to meet organizational needs and risk tolerance. · Configure scan policies for full network scans, application scans, compliance checks, and sensitive data exposure detection. · Performed both authenticated and unauthenticated scans across telecom networks and cloud environments (VNF, CNF). Troubleshooting and debugging scans. · Performed automated and manual scans against the CIS Benchmarks (e.g., CIS AWS Foundations, CIS Linux, CIS Windows) to ensure compliance with industry best practices. · Performed comprehensive risk triage by analyzing vulnerability reports, verifying false positives, and assigning accurate severity levels to vulnerabilities based on CVSS matrix. · Evaluate the impact of vulnerabilities and prioritize vulnerabilities based on CVSS scoring and considering exploitability in telecom environments (e.g., SS7, Diameter, GTP, VoIP, IoT, 5G). · Perform cloud-specific vulnerability assessments for containers and orchestration platforms (Docker, Kubernetes). · Provide remediation recommendations based on scan findings, including patching, work arounds, configuration hardening, and compensating controls. · Worked on remediation of non-compliant configurations and security issues based on CIS recommendations. · Experience in threat intelligence gathering to identify known exploits and determine the current exploitation risk of vulnerabilities (e.g., availability of exploit POC, exploit in wild). · Experience of working in ticketing tools i.e. ServiceNow, Jira. · Proficiency in Linux, Windows, and cloud security hardening. · Knowledge security frameworks and standards (e.g., NIST, ISO 27001, CIS) Experience & Certification: · Minimum 3+ years of relevant experience in a combination of security and operations technology jobs · Vulnerability Scanning tools: Nessus, Qualys, OpenVAS · Cloud Scanning Tools: Redhat ACS, Anchore, Trivy · Ticketing Systems: Jira, ServiceNow, Remedy Telecom Expertise: Telecom architecture(2G,3G,4G,5G), Nokia Nodes and functionalities You can also drop your CV at karan.prajapati@shivsys.com Show more Show less

Posted 2 weeks ago

Apply

3.0 - 1.0 years

0 Lacs

Noida, Uttar Pradesh

On-site

Indeed logo

Job Title: DLP Operations and Trellix Security Analyst Location: Noida, India Job Type: Full-time Experience: 1+ years Job Summary: We are seeking a skilled and detail-oriented DLP (Data Loss Prevention) Operations and Trellix Security Analyst to manage and enhance data protection mechanisms using Trellix (formerly McAfee) and other DLP tools. The role requires hands-on experience in managing DLP incidents, policies, and responding to data security breaches. Key Responsibilities: Monitor, triage, and respond to DLP alerts triggered by endpoint, network, and cloud data movement using Trellix DLP platform. Analyze and investigate DLP incidents to identify root causes and recommend mitigation actions. Administer and maintain Trellix DLP solutions including policy creation, updates, and exception handling. Coordinate with IT, Legal, and HR teams on DLP incident response and investigations. Generate periodic reports and dashboards for DLP events, trends, and policy violations. Perform periodic DLP rule tuning and false positive reduction. Ensure DLP systems are updated, patched, and compliant with security policies. Collaborate with the Information Security team to improve overall data protection strategy. Participate in internal and external audits related to data protection. Required Skills: Strong hands-on experience with Trellix DLP (formerly McAfee DLP) or similar platforms (Forcepoint, Symantec, Microsoft Purview). Knowledge of data classification , content inspection , regex patterns , incident workflows . Understanding of security frameworks such as ISO 27001, NIST, GDPR, and other data privacy regulations. Experience with SIEM tools (Splunk, QRadar) is a plus. Familiarity with endpoint security, email/web gateways, and data exfiltration methods. Excellent analytical, communication, and documentation skills. Qualifications: Bachelor’s degree in Computer Science, Information Security, or related field. Relevant certifications like CEH, CISA, Trellix/McAfee Certified Product Specialist , or DLP-specific certifications preferred. Minimum 3 years of experience in DLP operations or information security roles. Preferred Attributes: Proactive attitude and ability to work independently. Strong ethical standards and attention to data privacy. Ability to manage and prioritize multiple tasks in a fast-paced environment. Job Types: Full-time, Permanent Pay: ₹20,000.00 - ₹50,000.00 per month Benefits: Internet reimbursement Supplemental Pay: Performance bonus Application Question(s): Do you have experience in DLP Operation and Trellix? Experience: minimum: 1 year (Required) Language: English (Required) Location: Noida, Uttar Pradesh (Required) Work Location: In person

Posted 2 weeks ago

Apply

0.0 - 5.0 years

0 Lacs

Hyderabad, Telangana

On-site

Indeed logo

Job Summary The Security Analyst is responsible for ensuring the security and integrity of the organization's information systems and data. This role involves identifying and mitigating security risks, reviewing project security requirements, and maintaining compliance with security standards. The Security Analyst will also focus on detection engineering by designing systems to detect malicious activities and implementing automation technologies to streamline security operations, including vulnerability management and incident response. General Duties and Responsibilities Information Security Analyst duties and responsibilities include: Identify and ensure mitigation of information security risks within the organization. standards, procedures, and practices across various types of projects. Review requests for adherence to security policies, assuring requests are executed correctly. Identify security incidents and respond to ensure threats and risks are contained. Maintain integrity of security controls, toolsets, and other security-relevant services. Develop and analyze security reports, and build presentations as required. Facilitate status reports and other relevant information to compliance staff and department leadership. Monitor and audit systems for security violations, vulnerabilities, and abnormalities. Develop, implement, and maintain alignment with security control frameworks. Make updates to security policies, standards, procedures, practices, and operating procedures, as required. Assist with incident handling and other incident response activities, as required. Complete and monitor the status of corrective action plans, resolve audit findings and security issues, ensuring problems are resolved in an effective and timely manner. Implement and evaluate the effectiveness of data loss prevention (DLP) policies and detections. Design, build, and fine-tune systems and processes to detect malicious activities or unauthorized behaviors. Implement tools, processes, and procedures to identify unusual or suspicious behavior that may indicate a breach. Create actionable alerts based on detected threats to prompt immediate response from concerned teams. Implement automation technologies to streamline security operations such as vulnerability management, threat detection, and incident response. Use automation to reduce incident response time by enabling swift threat remediation through predefined actions. Educational and Certification Requirements A degree in Cybersecurity, Information Technology, Computer Science, or related field is desirable. Industry recognized certifications are a plus. Certifications may include: CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CEH (Certified Ethical Hacker), CompTIA Security+, certifications issued by the SANS Institute, etc. Certifications issued by public cloud providers (AWS, Azure, Google, Oracle, etc.) is a plus. General Knowledge, Skills, and Abilities As well as formal qualifications, an Information Security Analyst should possess: A working level understanding of controls (e.g., access control, auditing, authentication, encryption, and system integrity). Versed in operating systems such as Linux (various distributions) and Microsoft Windows. Experience with Microsoft Active Directory, encryption and algorithms, authorization and authentication mechanisms/software, network monitoring, TCP/IP networks, DNS, next generation firewalls, and intrusion detection/prevention systems. General knowledge of network design and common network protocols, and infrastructure systems. Ability to create scripts to automate processes in PowerShell, Python or Bash is a plus. Ability to recognize and analyze malware. Ability to analyze large data sets and identify patterns and anomalies. Ability to quickly create and deploy countermeasures or mitigations under pressure. Build effective relationships. Develop and use collaborative relationships to facilitate the accomplishment of work goals. Experience with the PCI-DSS, ISO-27001, and/or SOC II compliance frameworks is a plus. Experience implementing and measuring security controls aligned with NIST 800-53 and the Center for Internet Security (CIS) is a plus. Project Management skills is a plus. Experience with the following technologies is a plus: SentinelOne Singularity Platform, Tanium, Google Chronicle SIEM, Cloudflare L3-L7 security technologies, Tenable.io, Lacework, Recorded Future, KnowBe4, ServiceNow, Jira, Microsoft Defender for Endpoints, Microsoft Security and Compliance, Microsoft Azure Key Vault. Experience with the native security service solutions for public cloud service providers (AWS, Google, Azure, Oracle) is a plus. Job Type: Contractual / Temporary Contract length: 6-12 months Pay: From ₹322,415.01 per year Schedule: Day shift Monday to Friday Morning shift Night shift Rotational shift Application Question(s): This is a 6 month contractual position are you comfortable Experience: total: 5 years (Required) SOC: 5 years (Required) Location: Hyderabad, Telangana (Preferred) Work Location: In person

Posted 2 weeks ago

Apply

130.0 years

0 Lacs

Hyderabad, Telangana, India

On-site

Linkedin logo

Job Description Current Employees apply HERE Current Contingent Workers apply HERE Secondary Language(s) Job Description Senior Manager, Cybersecurity Engineering, Identity & Access Management The Opportunity Based in Hyderabad, join a global healthcare biopharma company and be part of a 130- year legacy of success backed by ethical integrity, forward momentum, and an inspiring mission to achieve new milestones in global healthcare. Be part of an organisation driven by digital technology and data-backed approaches that support a diversified portfolio of prescription medicines, vaccines, and animal health products. Drive innovation and execution excellence. Be a part of a team with passion for using data, analytics, and insights to drive decision-making, and which creates custom software, allowing us to tackle some of the world's greatest health threats. Our Technology Centers focus on creating a space where teams can come together to deliver business solutions that save and improve lives. An integral part of our company’s IT operating model, Tech Centers are globally distributed locations where each IT division has employees to enable our digital transformation journey and drive business outcomes. These locations, in addition to the other sites, are essential to supporting our business and strategy. A focused group of leaders in each Tech Center helps to ensure we can manage and improve each location, from investing in growth, success, and well-being of our people, to making sure colleagues from each IT division feel a sense of belonging to managing critical emergencies. And together, we must leverage the strength of our team to collaborate globally to optimize connections and share best practices across the Tech Centers. Role Overview We are seeking an experienced, energetic, forward-thinking Identity and Access Management (IAM) professional to serve as a senior technical Subject Matter Expert (SME) and developer responsible for the delivery of authentication and authorization services enterprise-wide. The role requires a technically strong individual who is resourceful and highly self-motivated. The successful candidate should have 10+ years of experience working in the IAM field in a large, global enterprise environment and possess broad experience working with numerous technologies like PingOne, DaVinci, SSO, MFA etc. Additionally, the candidate will have strong communication skills that allows them to successfully work with stakeholders in diverse roles ranging from IT infrastructure to individual end-users. You will also collaborate extensively with other technical and business teams to identify, develop, and provide enhancements which support the complex security, collaboration, and productivity needs of a global organization. To help meet these emerging challenges, we are seeking an energetic, forward-thinking security professional to support the delivery of Identity and Access Management services. What Will You Do In This Role Understand divisional and site business system requirements for Authentication services. Must have experience in defining Authentication & Authorization platform requirements, designing technical solutions and executing on those designs into a highly available, fault tolerant environment. Understanding of security best practices, administration and governance of Identity and Access Management the products and services including identify and evaluate security gaps. Perform vendor and technology assessments. Recommend improvements, corrections, remediation for projects or internal processes. Advocate secure computing practices and procedures and communicate Information Security and IAM best practices throughout the company. Maintain active and direct interaction with key stakeholders. Working with various technical teams to ensure we maintain high availability and uninterrupted outage of our production environment. Demonstrate ability to stay current with all industry trends/best practices, as well as new product releases so that we can maintain a proactive 3-year systems management roadmap. Ensure all third-party monitoring solutions that are integrated into the Identity & Access Management products are properly documented and function as designed. What Should You Have 10+ years of experience with IAM solutions in the area of authentication and authorization (e.g. PingFederate, PingAccess and various multifactor authentication products) In-depth knowledge of authentication and authorization solutions such as PingFederate, PingAccess and, various multifactor authentication methods including FIDO2 for passwordless. Previous work designing / implementing EntraID authentication services such as Risk-based authentication, Azure Identity Protection and, Conditional Access Policies Strong organizational skills and able to multitask and adjust to changing priorities Ability to work efficiently in a matrixed environment with a global team comprised of company staff, contractors, and vendors Excellent interpersonal, written, and oral communication skills to effectively communicate technical ideas in business- and user-friendly language Strong analytical and problem-solving skills and demonstrable ability to work independently as well as in a team environment Well versed in Federation, SAML, OpenID, OAuth and other industry standard authentication / authorization solutions Excellent communication skills and interpersonal skills are required. A demonstrated track record of making a difference and adding value. Strong organizational skills with the ability to multi-task. Ability to work and adjust to changing deadlines. Excellent interpersonal, written and oral communication skills with the ability to communicate effectively across all levels of an organization. Able to present technical ideas in business-friendly and user-friendly language Proven analytical, evaluative, and problem-solving abilities Desired Skills & Experience Previous work designing / implementing adaptive risk authentication solutions (e.g. Ping Risk, Azure Identity Protection with Conditional Access Policies, Microsoft Defender for Cloud Applications) Hands-on experience with AWS IAM and AWS IAM related services (e.g. AWS Cognito, AWS Identity Center), Passwordless authentication (e.g. FIDO2 at the desktop) or other biometric authentication solutions Authentication enhancements to support zero-trust and SASE adoption Experience working in a large healthcare environment Demonstrated understanding of Identity-related NIST standards (e.g. 800-63-3) Prior experience with the Merck enterprise environment and business applications Good working knowledge of the ITIL framework Working knowledge and understanding of Remedy for Change, Incident and Knowledge Management CISSP, Security+ or similar industry certification Our technology teams operate as business partners, proposing ideas and innovative solutions that enable new organizational capabilities. We collaborate internationally to deliver services and solutions that help everyone be more productive and enable innovation. Who We Are We are known as Merck & Co., Inc., Rahway, New Jersey, USA in the United States and Canada and MSD everywhere else. For more than a century, we have been inventing for life, bringing forward medicines and vaccines for many of the world's most challenging diseases. Today, our company continues to be at the forefront of research to deliver innovative health solutions and advance the prevention and treatment of diseases that threaten people and animals around the world. What We Look For Imagine getting up in the morning for a job as important as helping to save and improve lives around the world. Here, you have that opportunity. You can put your empathy, creativity, digital mastery, or scientific genius to work in collaboration with a diverse group of colleagues who pursue and bring hope to countless people who are battling some of the most challenging diseases of our time. Our team is constantly evolving, so if you are among the intellectually curious, join us—and start making your impact today. #HYDIT2025 Search Firm Representatives Please Read Carefully Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails. Employee Status Regular Relocation: VISA Sponsorship Travel Requirements: Flexible Work Arrangements Hybrid Shift Valid Driving License: Hazardous Material(s) Job Posting End Date: 06/5/2025 A job posting is effective until 11:59:59PM on the day BEFORE the listed job posting end date. Please ensure you apply to a job posting no later than the day BEFORE the job posting end date. Requisition ID: R341154 Show more Show less

Posted 2 weeks ago

Apply

5.0 years

0 Lacs

Mumbai Metropolitan Region

On-site

Linkedin logo

Job Description: Cyber Maturity Assessment Consultant Team: Security Consulting Designation : Cyber Maturity Assessment Consultant Job Role: Run Cybersecurity Maturity Assessments (CMA/SMA) and risk evaluations for customers, aligned with industry frameworks to enhance client security posture and operational resilience. Experience: 5+ years in cybersecurity consulting, focused on cyber maturity assessments, risk management, and compliance programs. Job Location: Cyberjaya Shifts : Day Shift. However, flexibility is required to provide extended support and be available on-call when needed. Key Responsibilities Cyber Maturity & Risk Assessments  Conduct comprehensive CCyber Maturity Assessments for clients, aligned with frameworks such as NIST CSF, ISO 27001, CMMI, and COBIT.  Perform risk assessments—both qualitative and quantitative—to prioritize vulnerabilities and recommend mitigation strategies.  Evaluate third-party and supply chain security exposures. Strategy & Advisory  Analyse and Discover gaps in the Cybersecurity Technologies, People and Processes for clients.  Develop cybersecurity roadmaps to improve clients’ maturity and governance structures.  Recommend enhancements to cyber operating models and organizational alignment.  Deliver executive-level reports and gap analyses with clear business impact insights. Client Engagement & Training  Facilitate workshops to train clients on cybersecurity best practices and self-assessment techniques.  Mentor junior consultants on methodologies, report creation, and client communication.  Support business development initiatives, including proposal writing and client presentations. Compliance & Certification  Provide guidance for ISO 27001/20000-1 certification and audit readiness.  Ensure alignment of security programs with standards like NIST 800-30 and ISO 27005. Work Experience  5+ years of hands-on experience in cybersecurity consulting.  Demonstrated history of executing cyber maturity reviews and third-party risk assessments.  Demonstrated success in leading end-to-end client engagements, from scoping to delivery of assessment reports.  Proven ability to work cross-functionally with IT, Risk, and Compliance teams to align cybersecurity efforts with business priorities.  Delivered executive-level briefings translating technical assessment findings into strategic, business-aligned recommendations. Qualifications  Bachelor’s/Master’s degree in Cybersecurity, Information Security, or a related field. Essential Technical Skills  In-depth understanding of NIST CSF, NIST RMF, COBIT, ITIL, and ISO 31000.  Familiarity with cybersecurity governance models and risk assessment tools. Certifications  CRISC, ISO 27001 LA, CC (ISC)², or equivalent certifications. Desired Skills  Strong analytical, communication, and presentation skills.  Experience in financial services, insurance, or critical infrastructure sectors.  Ability to lead and mentor team members effectively. Performance Metrics  Client satisfaction scores and feedback.  Number and quality of assessments completed annually.  Contributions to proposals and business development success. Skills: mentoring,auditing,nist csf,cybersecurity governance models,nist 800-30,risk management,risk assessment tools,risk,cybersecurity,cmmi,maturity assessments,security,qualitative risk assessments,cybersecurity technologies,iso 27001 certification guidance,compliance programs,iso 27005,cybersecurity roadmaps,assessment,cobit,analytical skills,iso 27001/20000-1 certification,risk assessment,cybersecurity roadmap development,ccyber maturity assessments,cybersecurity maturity assessments,communication skills,security assurance,training,iso 27001,nist rmf,quantitative risk assessments,cyber,presentation skills,cybersecurity training Show more Show less

Posted 2 weeks ago

Apply

7.0 years

0 Lacs

Hyderabad, Telangana, India

Remote

Linkedin logo

Company Description We are a prominent cloud consulting and IT service provider, focusing on cloud operations, cyber security, and managed services. Based in Singapore with a strong presence in India, Cloudologic leverages the technological expertise and innovation from these tech-driven nations. Description Over the past decade, our commitment to high-quality service delivery has earned the trust of clients globally, making us a dependable and valued Description : This is a full-time hybrid role for a Senior Analyst in XMO located in Hyderabad, with some work from home acceptable. The Senior Analyst will be responsible for analyzing and optimizing cloud operations, developing and implementing security protocols, managing IT services, and providing strategic insights. Daily tasks include monitoring cloud infrastructure, conducting security assessments, managing incidents, and supporting clients with technical issues and Responsibilities : Drive the evolution and operational excellence of the HappySignals platform as part of the XMO team. Ensure platform and data security by leveraging in-depth knowledge of IT security frameworks and ServiceNow security modules (including roles, ACLs, and data protection policies). Collaborate with UX designers and service owners to ensure a seamless, engaging, and accessible user experience across the HappySignals platform. Interpret experience analytics and user feedback to identify pain points and recommend measurable improvements. Act as a liaison between technical teams, business stakeholders, and service owners to translate requirements into actionable solutions. Develop and maintain documentation, including workflows, compliance checks, and security-related best practices. Contribute to XMOs broader digital transformation efforts by embedding a strong security and UX perspective in product : Minimum 7 years of professional experience in IT product development or platform operations. Proven experience with ServiceNow security modules, including user roles, ACL management, and data security policies. Solid foundation in IT security standards, best practices, and regulatory compliance (e.g., ISO 27001, NIST). Strong understanding of user experience design principles and experience supporting user-centric platform improvements. Familiarity with experience measurement tools such as HappySignals is a strong plus. Excellent communication, collaboration, and problem-solving skills. Experience working in a cross-functional team or matrixed environment is preferred. (ref:hirist.tech) Show more Show less

Posted 2 weeks ago

Apply

0 years

0 Lacs

Mumbai Metropolitan Region

On-site

Linkedin logo

About The Role We are looking for a highly skilled and experienced Network Architect to join our team in Mumbai. In this full-time, on-site role, you will be responsible for architecting and overseeing the implementation of complex network infrastructures for enterprise environments. This includes designing secure and scalable networks, ensuring high availability, and aligning network strategy with organizational goals. The ideal candidate will bring a strong background in network engineering, architecture, security, and experience with data center and campus network design. Key Responsibilities Design and implement robust and scalable network architectures to support enterprise applications, cloud infrastructure, and hybrid IT environments. Lead end-to-end planning and deployment of data center or campus network infrastructure. Oversee the configuration and installation of routing, switching, wireless, and security equipment. Define and document High-Level Design (HLD) and Low-Level Design (LLD) for all network projects. Analyze and resolve network issues, ensuring high availability, performance, and security. Collaborate with cross-functional teams (IT, security, IoT, application teams) to support digital transformation initiatives. Conduct capacity planning, risk assessment, and network optimization activities. Lead or contribute to RFP/RFI preparation, technical proposals, and vendor evaluation. Review network architecture standards and make recommendations for improvements. Evaluate emerging technologies and tools to enhance network performance and resiliency. Maintain accurate documentation and provide training/support to network operations teams. Technical Skills And Requirements Must-Have Technical Skills : Network Design & Architecture for enterprise, data center, and campus environments. Deep understanding of network protocols : TCP/IP, BGP, OSPF, EIGRP, MPLS, STP, VLANs, VPNs. Hands-on experience in routing, switching, and wireless technologies (Cisco, Aruba, Juniper, etc.). Network Security: Firewalls, NAC, IPS/IDS, segmentation, and Zero Trust principles. Experience with wireless infrastructure planning and deployment (including security configurations). HLD/LLD documentation and technical presentation preparation. Exposure to IT and IoT network integration projects. Experience with RFP/RFI processes and responding to large enterprise tenders. Good To Have Knowledge of firewalls (e.g., Palo Alto, Cisco ASA), load balancers (e.g., F5, Citrix), WAFs, and network monitoring tools (e.g., SolarWinds, Nagios, PRTG). Familiarity with SD-WAN, VPN solutions, and cloud network architecture (AWS, Azure, GCP). Experience in network automation using Ansible, Python, or similar tools. Awareness of compliance standards (ISO, NIST, PCI-DSS, (Preferred) : Cisco Certifications : CCNA, CCNP, or ideally CCIE. Other industry-recognized certifications : CompTIA Network+, Juniper, Aruba, or Fortinet NSE. Soft Skills Strong analytical and problem-solving abilities. Excellent verbal and written communication skills. Ability to work independently and collaboratively with cross-functional teams. Detail-oriented with strong documentation and presentation skills. Proven leadership in managing network architecture projects and vendor coordination. (ref:hirist.tech) Show more Show less

Posted 2 weeks ago

Apply

0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Role & Responsibilities Security Architecture & Engineering : Design and deploy secure network, infrastructure, and Azure cloud architectures using Defender for Cloud, Sentinel, Entra ID, and Purview. Select, integrate, and optimize security tools (SIEM/SOAR, firewalls, EDR, DLP). Embed security into DevOps/CI-CD pipelines via automation (Logic Apps, PowerShell, KQL). Security Operations & Incident Response Configure and tune detection rules and workbooks in Sentinel; build automated playbooks for common incidents. Lead triage, investigation, and root-cause analysis of alerts from Defender and Sentinel. Conduct proactive threat hunting, log review, and vulnerability assessments. Identity & Access Management Implement and manage Conditional Access, MFA, Privileged Identity Management, and RBAC in Entra ID. Enforce least-privilege principles and lifecycle policies across users, groups, and service identities. Governance, Risk & Compliance Maintain alignment with ISO 27001, NIST, CIS, PCI-DSS, and GDPR using Secure Score and Compliance Manager. Develop and enforce security policies, standards, and audit controls. Team Leadership & Collaboration Mentor SOC analysts and engineers, driving continuous improvement and knowledge sharing. Collaborate closely with IT, DevOps, and business units to integrate security into all projects. (ref:hirist.tech) Show more Show less

Posted 2 weeks ago

Apply

8.0 - 12.0 years

20 - 25 Lacs

Bengaluru

Work from Office

Naukri logo

Candidate should have key understanding on technology, IT and governance aspects from Cyber Security perspective Candidate should have understanding on performing gap assessment on organizations Cyber security landscape primarily to prevent them from cyber security threats Candidate should have exposure to design, development, implementation, and maintenance information security framework aligned to framework like ISO 27001:2013 Candidate should have managed end-to-end Information security, cyber security for its organizations Experience in performing the risk assessment from Cyber Security, Business Continuity and Privacy perspective Experience on Data Privacy including design/development and review of privacy framework aligned with GDPR requirements and GAPP framework Performing maturity assessment for cyber setup; Developing cyber strategy roadmap, helping in implementation Consulting knowledge in overall cybersecurity domain with specific experience in engagements, such as NIST, BCP, ISO 27001, SSAE 18, ISAE3402, SOC 2 and regulatory compliances (RBI, SEBI, IRDA), data privacy audits. Manage / Lead engagement for data privacy, regulatory compliance, cyber strategy, ISO 27001 BCP (ISO22301) & third-party risk management (TPRM) Determine client needs, expectations & participate to develop, lead, and execute the overall client service plan Work on proposals, thought leaderships, POVs as required Demonstrate leadership, team management, problem solving and strong verbal and written communication skills Consulting experience (preferred) Immediate joiners (preferred) Certifications - ISO 27001, ISO22301, ISO 27701, CISSP, CISA (advantage)

Posted 2 weeks ago

Apply

1.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

About Noventiq Careers 2025 Noventiq (Noventiq Holdings PLC), headquartered in London, is a premier provider of digital transformation and cybersecurity solutions, serving over 80,000 organizations worldwide. We offer a bridge to digital excellence by connecting clients with leading vendors and our innovative solutions and services. With an employee strength of over 6.4k. we are operating across 60 countries in India, Asia, Latin America, Europe, the Middle East, and Africa. Candidates Also Search: Graduate Engineer Trainee Jobs Noventiq Careers 2025 Details Company Name Noventiq Job Role Junior Consultant Job Type Full Time Job Location Bangalore Education Any Graduate Career Level 0 – 1 Years Salary Not Mentioned Company Website www.noventiq.com Job Description For Noventiq Careers 2025 Candidates Also Search: Azure Jobs Assist in the development, review, and maintenance of IT security policies, procedures, and documentation. Support internal audits and assessments aligned with frameworks such as ISO 27001, NIST, SOC 2, and GDPR. Participate in risk assessments to identify and track remediation efforts for security and compliance risks. Help maintain compliance registers, risk logs, and GRC tools. Work with cross-functional teams to collect evidence for compliance and audit activities. Monitor changes in regulatory and compliance requirements relevant to the organization. Assist with third-party vendor risk management and due diligence reviews. Contribute to awareness programs to promote a culture of compliance and security. Noventiq Careers 2025 Application Process DOUBLE CLICK TO APPLY ONLINE ! We wish you the best of luck in your Noventiq Careers 2025 . May your talents shine, and may you find the perfect opportunity that not only meets your professional goals but also brings joy to your everyday work. Show more Show less

Posted 2 weeks ago

Apply

3.0 - 31.0 years

0 - 0 Lacs

Nehru Place, New Delhi

Remote

Apna logo

Network Security Engineer – Job Description Overview: A Network Security Engineer is responsible for designing, implementing, and maintaining secure network systems to protect an organization’s data, systems, and infrastructure from internal and external cyber threats. This role involves proactive monitoring, risk assessment, incident response, and continual security improvement. ⸻ Key Responsibilities: • Design and implement secure network architectures, including firewalls, VPNs, intrusion detection/prevention systems (IDS/IPS), and endpoint protection. • Monitor network traffic for suspicious behavior, investigate anomalies, and respond to security incidents. • Conduct regular vulnerability assessments, penetration testing, and risk analysis. • Maintain and enforce network security policies, protocols, and procedures. • Configure, manage, and troubleshoot network security tools and appliances (e.g., firewalls, proxies, SIEM, NAC). • Ensure compliance with relevant security standards and regulations (e.g., ISO 27001, NIST, GDPR). • Collaborate with IT and DevOps teams to integrate security into network and system operations. • Stay up to date with the latest cybersecurity threats, technologies, and best practices. Required Skills & Qualifications: • Bachelor’s degree in Computer Science, Information Security, or a related field. • Proven experience in network administration and security engineering. • Strong knowledge of TCP/IP, DNS, routing, switching, and common networking protocols. • Expertise with firewalls (e.g., Palo Alto, Fortinet, Cisco ASA), IDS/IPS, SIEM solutions, and VPN technologies. • Familiarity with scripting and automation (e.g., Python, Bash, PowerShell) for security operations. • Certifications such as CISSP, CEH, CCNP Security, or CompTIA Security+ are highly desirable. ⸻ Soft Skills: • Strong analytical and problem-solving skills. • Excellent communication and documentation abilities. • Ability to work independently and as part of a security or infrastructure team. • Proactive mindset with attention to detail and a strong sense of responsibility. ⸻ Let me know if you’d like to customize this for a junior, mid-level, or senior role, or tailor it for specific industries (e.g., finance, healthcare, government).

Posted 2 weeks ago

Apply

5.0 years

0 Lacs

Bengaluru East, Karnataka, India

Remote

Linkedin logo

All roles at JumpCloud are Remote unless otherwise specified in the Job Description. About JumpCloud JumpCloud® delivers a unified open directory platform that makes it easy to securely manage identities, devices, and access across your organization. With JumpCloud®, IT teams and MSPs enable users to work securely from anywhere and manage their Windows, Apple, Linux, and Android devices from a single platform. JumpCloud® is IT Simplified. About the Team The JumpCloud Device Management organization is changing the way IT admins and users leverage their devices to get work done. The days of the traditional corporate security perimeter are over. Remote work - and the domainless enterprise - are here to stay. As such, we believe securing all work devices is at the crux of establishing trust, granting resource access, and otherwise managing a modern workforce. Our Cloud Directory Platform, including its deep support for devices such as laptops and servers, is making it easy for IT admins to manage the entire device lifecycle, from onboarding to active use to offboarding, while also providing end users a secure and painless means of getting stuff done. JumpCloud is looking for a Senior Product Manager to help drive our device management roadmap for Apple devices and help own the future of device management at JumpCloud. You will own one or more product feature areas around systems insights, directory insights, and device management and be responsible for meeting KPIs and objectives. Responsibilities: Engage cross-functional stakeholder groups inside the company and work with customers to ensure our products to meet or exceed current and future needs Collaborate closely with Software Architects, user experience and research, marketing, business analytics, and other cross functional teams to define products with great customer experience Lead and complete efforts in defining outcomes, epics, user stories, business/technical requirements and apply customer knowledge to the software development process Alignment of the roadmap and application of our KPIs across products, as well as oversee execution and key outcomes related to device management for all our supported platforms Communicate the product vision by driving outbound communications around the product, as well as communicate to senior leadership across the Company, and customers around the World, through written and verbal efforts We’re looking for: Ideal candidate has 5+ years of Product Management experience directing strategy and execution of SaaS, Enterprise or security products and/or 10+ years in IT Management 8+ years of increasing responsibility in related roles. Experience with Unified Endpoint Management, specifically in managing Apple ecosystem of products, including Macs, iPhones, and iPads Good knowledge of IT-related technologies such as osquery, compliance standards (NIST, CIS, SOC2, HIPAA), MDM, UEM or software management, threat detection, and cybersecurity Domain knowledge in security (Ex: Zero Trust, IAM, User Directories, Software defined perimeter, security policies etc.) Solid understanding of end user device management technologies (i.e., VMware Workspace One, Apple Business Manager) Experience developing products and services for Apple environments is a differentiator Migration experience from SCCM to Intune Microsoft Endpoint Manager, including co-management and hybrid configurations Self starter with drive and demonstrated ability to execute and deliver product and achieve objectives in an innovative and fast paced environment Track record of driving impact in a cross-functional, highly collaborative environment that releases software often. We are looking for someone who can ship products Swift, high-quality decision making and prioritization, informed by customer and market data, but balanced with pragmatism and vision Excellent communication skills across all mediums (visual, written, verbal) that inspire teams, simplify complex technical concepts, and bolster your decisions with focus and clarity Passion to be successful in startup and high growth environment Where you’ll be working/Location: JumpCloud is committed to being Remote First, meaning that you are able to work remotely within the country noted in the Job Description. This role is remote in the country of India. You must be located in and authorized to work in India to be considered for this role. Language: JumpCloud® has teams in 15+ countries around the world and conducts our internal business in English. The interview and any additional screening process will take place primarily in English. To be considered for a role at JumpCloud®, you will be required to speak and write in English fluently. Any additional language requirements will be included in the details of the job description. Why JumpCloud? If you thrive working in a fast, SaaS-based environment and you are passionate about solving challenging technical problems, we look forward to hearing from you! JumpCloud® is an incredible place to share and grow your expertise! You’ll work with amazing talent across each department who are passionate about our mission. We’re out of the box thinkers, so your unique ideas and approaches for conceiving a product and/or feature will be welcome. You’ll have a voice in the organization as you work with a seasoned executive team, a supportive board and in a proven market that our customers are excited about. One of JumpCloud®'s three core values is to “Build Connections.” To us that means creating " human connection with each other regardless of our backgrounds, orientations, geographies, religions, languages, gender, race, etc. We care deeply about the people that we work with and want to see everyone succeed." - Rajat Bhargava, CEO Please submit your résumé and brief explanation about yourself and why you would be a good fit for JumpCloud®. Please note JumpCloud® is not accepting third party resumes at this time. JumpCloud® is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status. Scam Notice: Please be aware that there are individuals and organizations that may attempt to scam job seekers by offering fraudulent employment opportunities in the name of JumpCloud. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers. Please note that JumpCloud will never ask for any personal account information, such as credit card details or bank account numbers, during the recruitment process. Additionally, JumpCloud will never send you a check for any equipment prior to employment. All communication related to interviews and offers from our recruiters and hiring managers will come from official company email addresses (@jumpcloud.com) and will never ask for any payment, fee to be paid or purchases to be made by the job seeker. If you are contacted by anyone claiming to represent JumpCloud and you are unsure of their authenticity, please do not provide any personal/financial information and contact us immediately at recruiting@jumpcloud.com with the subject line "Scam Notice" #BI-Remote Show more Show less

Posted 2 weeks ago

Apply

5.0 years

0 Lacs

Greater Delhi Area

Remote

Linkedin logo

All roles at JumpCloud are Remote unless otherwise specified in the Job Description. About JumpCloud JumpCloud® delivers a unified open directory platform that makes it easy to securely manage identities, devices, and access across your organization. With JumpCloud®, IT teams and MSPs enable users to work securely from anywhere and manage their Windows, Apple, Linux, and Android devices from a single platform. JumpCloud® is IT Simplified. About the Team The JumpCloud Device Management organization is changing the way IT admins and users leverage their devices to get work done. The days of the traditional corporate security perimeter are over. Remote work - and the domainless enterprise - are here to stay. As such, we believe securing all work devices is at the crux of establishing trust, granting resource access, and otherwise managing a modern workforce. Our Cloud Directory Platform, including its deep support for devices such as laptops and servers, is making it easy for IT admins to manage the entire device lifecycle, from onboarding to active use to offboarding, while also providing end users a secure and painless means of getting stuff done. JumpCloud is looking for a Senior Product Manager to help drive our device management roadmap for Apple devices and help own the future of device management at JumpCloud. You will own one or more product feature areas around systems insights, directory insights, and device management and be responsible for meeting KPIs and objectives. Responsibilities: Engage cross-functional stakeholder groups inside the company and work with customers to ensure our products to meet or exceed current and future needs Collaborate closely with Software Architects, user experience and research, marketing, business analytics, and other cross functional teams to define products with great customer experience Lead and complete efforts in defining outcomes, epics, user stories, business/technical requirements and apply customer knowledge to the software development process Alignment of the roadmap and application of our KPIs across products, as well as oversee execution and key outcomes related to device management for all our supported platforms Communicate the product vision by driving outbound communications around the product, as well as communicate to senior leadership across the Company, and customers around the World, through written and verbal efforts We’re looking for: Ideal candidate has 5+ years of Product Management experience directing strategy and execution of SaaS, Enterprise or security products and/or 10+ years in IT Management 8+ years of increasing responsibility in related roles. Experience with Unified Endpoint Management, specifically in managing Apple ecosystem of products, including Macs, iPhones, and iPads Good knowledge of IT-related technologies such as osquery, compliance standards (NIST, CIS, SOC2, HIPAA), MDM, UEM or software management, threat detection, and cybersecurity Domain knowledge in security (Ex: Zero Trust, IAM, User Directories, Software defined perimeter, security policies etc.) Solid understanding of end user device management technologies (i.e., VMware Workspace One, Apple Business Manager) Experience developing products and services for Apple environments is a differentiator Migration experience from SCCM to Intune Microsoft Endpoint Manager, including co-management and hybrid configurations Self starter with drive and demonstrated ability to execute and deliver product and achieve objectives in an innovative and fast paced environment Track record of driving impact in a cross-functional, highly collaborative environment that releases software often. We are looking for someone who can ship products Swift, high-quality decision making and prioritization, informed by customer and market data, but balanced with pragmatism and vision Excellent communication skills across all mediums (visual, written, verbal) that inspire teams, simplify complex technical concepts, and bolster your decisions with focus and clarity Passion to be successful in startup and high growth environment Where you’ll be working/Location: JumpCloud is committed to being Remote First, meaning that you are able to work remotely within the country noted in the Job Description. This role is remote in the country of India. You must be located in and authorized to work in India to be considered for this role. Language: JumpCloud® has teams in 15+ countries around the world and conducts our internal business in English. The interview and any additional screening process will take place primarily in English. To be considered for a role at JumpCloud®, you will be required to speak and write in English fluently. Any additional language requirements will be included in the details of the job description. Why JumpCloud? If you thrive working in a fast, SaaS-based environment and you are passionate about solving challenging technical problems, we look forward to hearing from you! JumpCloud® is an incredible place to share and grow your expertise! You’ll work with amazing talent across each department who are passionate about our mission. We’re out of the box thinkers, so your unique ideas and approaches for conceiving a product and/or feature will be welcome. You’ll have a voice in the organization as you work with a seasoned executive team, a supportive board and in a proven market that our customers are excited about. One of JumpCloud®'s three core values is to “Build Connections.” To us that means creating " human connection with each other regardless of our backgrounds, orientations, geographies, religions, languages, gender, race, etc. We care deeply about the people that we work with and want to see everyone succeed." - Rajat Bhargava, CEO Please submit your résumé and brief explanation about yourself and why you would be a good fit for JumpCloud®. Please note JumpCloud® is not accepting third party resumes at this time. JumpCloud® is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status. Scam Notice: Please be aware that there are individuals and organizations that may attempt to scam job seekers by offering fraudulent employment opportunities in the name of JumpCloud. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers. Please note that JumpCloud will never ask for any personal account information, such as credit card details or bank account numbers, during the recruitment process. Additionally, JumpCloud will never send you a check for any equipment prior to employment. All communication related to interviews and offers from our recruiters and hiring managers will come from official company email addresses (@jumpcloud.com) and will never ask for any payment, fee to be paid or purchases to be made by the job seeker. If you are contacted by anyone claiming to represent JumpCloud and you are unsure of their authenticity, please do not provide any personal/financial information and contact us immediately at recruiting@jumpcloud.com with the subject line "Scam Notice" #BI-Remote Show more Show less

Posted 2 weeks ago

Apply

5.0 years

0 Lacs

Hyderabad, Telangana, India

Remote

Linkedin logo

All roles at JumpCloud are Remote unless otherwise specified in the Job Description. About JumpCloud JumpCloud® delivers a unified open directory platform that makes it easy to securely manage identities, devices, and access across your organization. With JumpCloud®, IT teams and MSPs enable users to work securely from anywhere and manage their Windows, Apple, Linux, and Android devices from a single platform. JumpCloud® is IT Simplified. About the Team The JumpCloud Device Management organization is changing the way IT admins and users leverage their devices to get work done. The days of the traditional corporate security perimeter are over. Remote work - and the domainless enterprise - are here to stay. As such, we believe securing all work devices is at the crux of establishing trust, granting resource access, and otherwise managing a modern workforce. Our Cloud Directory Platform, including its deep support for devices such as laptops and servers, is making it easy for IT admins to manage the entire device lifecycle, from onboarding to active use to offboarding, while also providing end users a secure and painless means of getting stuff done. JumpCloud is looking for a Senior Product Manager to help drive our device management roadmap for Apple devices and help own the future of device management at JumpCloud. You will own one or more product feature areas around systems insights, directory insights, and device management and be responsible for meeting KPIs and objectives. Responsibilities: Engage cross-functional stakeholder groups inside the company and work with customers to ensure our products to meet or exceed current and future needs Collaborate closely with Software Architects, user experience and research, marketing, business analytics, and other cross functional teams to define products with great customer experience Lead and complete efforts in defining outcomes, epics, user stories, business/technical requirements and apply customer knowledge to the software development process Alignment of the roadmap and application of our KPIs across products, as well as oversee execution and key outcomes related to device management for all our supported platforms Communicate the product vision by driving outbound communications around the product, as well as communicate to senior leadership across the Company, and customers around the World, through written and verbal efforts We’re looking for: Ideal candidate has 5+ years of Product Management experience directing strategy and execution of SaaS, Enterprise or security products and/or 10+ years in IT Management 8+ years of increasing responsibility in related roles. Experience with Unified Endpoint Management, specifically in managing Apple ecosystem of products, including Macs, iPhones, and iPads Good knowledge of IT-related technologies such as osquery, compliance standards (NIST, CIS, SOC2, HIPAA), MDM, UEM or software management, threat detection, and cybersecurity Domain knowledge in security (Ex: Zero Trust, IAM, User Directories, Software defined perimeter, security policies etc.) Solid understanding of end user device management technologies (i.e., VMware Workspace One, Apple Business Manager) Experience developing products and services for Apple environments is a differentiator Migration experience from SCCM to Intune Microsoft Endpoint Manager, including co-management and hybrid configurations Self starter with drive and demonstrated ability to execute and deliver product and achieve objectives in an innovative and fast paced environment Track record of driving impact in a cross-functional, highly collaborative environment that releases software often. We are looking for someone who can ship products Swift, high-quality decision making and prioritization, informed by customer and market data, but balanced with pragmatism and vision Excellent communication skills across all mediums (visual, written, verbal) that inspire teams, simplify complex technical concepts, and bolster your decisions with focus and clarity Passion to be successful in startup and high growth environment Where you’ll be working/Location: JumpCloud is committed to being Remote First, meaning that you are able to work remotely within the country noted in the Job Description. This role is remote in the country of India. You must be located in and authorized to work in India to be considered for this role. Language: JumpCloud® has teams in 15+ countries around the world and conducts our internal business in English. The interview and any additional screening process will take place primarily in English. To be considered for a role at JumpCloud®, you will be required to speak and write in English fluently. Any additional language requirements will be included in the details of the job description. Why JumpCloud? If you thrive working in a fast, SaaS-based environment and you are passionate about solving challenging technical problems, we look forward to hearing from you! JumpCloud® is an incredible place to share and grow your expertise! You’ll work with amazing talent across each department who are passionate about our mission. We’re out of the box thinkers, so your unique ideas and approaches for conceiving a product and/or feature will be welcome. You’ll have a voice in the organization as you work with a seasoned executive team, a supportive board and in a proven market that our customers are excited about. One of JumpCloud®'s three core values is to “Build Connections.” To us that means creating " human connection with each other regardless of our backgrounds, orientations, geographies, religions, languages, gender, race, etc. We care deeply about the people that we work with and want to see everyone succeed." - Rajat Bhargava, CEO Please submit your résumé and brief explanation about yourself and why you would be a good fit for JumpCloud®. Please note JumpCloud® is not accepting third party resumes at this time. JumpCloud® is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status. Scam Notice: Please be aware that there are individuals and organizations that may attempt to scam job seekers by offering fraudulent employment opportunities in the name of JumpCloud. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers. Please note that JumpCloud will never ask for any personal account information, such as credit card details or bank account numbers, during the recruitment process. Additionally, JumpCloud will never send you a check for any equipment prior to employment. All communication related to interviews and offers from our recruiters and hiring managers will come from official company email addresses (@jumpcloud.com) and will never ask for any payment, fee to be paid or purchases to be made by the job seeker. If you are contacted by anyone claiming to represent JumpCloud and you are unsure of their authenticity, please do not provide any personal/financial information and contact us immediately at recruiting@jumpcloud.com with the subject line "Scam Notice" #BI-Remote Show more Show less

Posted 2 weeks ago

Apply

Exploring NIST Jobs in India

The job market for NIST (National Institute of Standards and Technology) professionals in India is rapidly growing. As more companies focus on cybersecurity and data protection, the demand for individuals skilled in NIST guidelines and frameworks is on the rise. Job seekers with expertise in NIST can find a variety of opportunities across different industries in India.

Top Hiring Locations in India

  1. Bangalore
  2. Hyderabad
  3. Mumbai
  4. Delhi
  5. Pune

These cities are known for their thriving tech industries and have a high demand for NIST professionals.

Average Salary Range

The average salary range for NIST professionals in India varies based on experience level. Entry-level positions may start around INR 4-6 lakhs per year, while experienced professionals can earn upwards of INR 15-20 lakhs per year.

Career Path

In the field of NIST, a typical career path may include roles such as NIST Analyst, NIST Consultant, and NIST Manager. As professionals gain more experience and expertise, they can progress to Senior NIST Consultant, NIST Architect, and even Chief Information Security Officer (CISO).

Related Skills

In addition to expertise in NIST, employers often look for professionals with the following related skills: - Cybersecurity - Risk management - Compliance - Information security - Security frameworks (e.g., ISO 27001)

Interview Questions

  • What is NIST and why is it important? (basic)
  • Can you explain the difference between NIST 800-53 and NIST 800-171? (medium)
  • How do you ensure compliance with NIST guidelines in a cloud environment? (advanced)
  • What are the key components of a NIST risk management framework? (medium)
  • Have you ever led a NIST compliance audit? If so, can you describe the process? (advanced)
  • How do you stay updated with the latest NIST guidelines and updates? (basic)
  • Can you give an example of a security control outlined in NIST 800-53? (medium)
  • What is the role of NIST in incident response planning? (medium)
  • How do you handle security incidents in accordance with NIST guidelines? (advanced)
  • Have you worked with NIST SP 800-171 requirements? If so, can you describe your experience? (medium)
  • How do you prioritize security controls when implementing NIST guidelines in an organization? (advanced)
  • What are the key differences between NIST and other security frameworks like ISO 27001? (medium)
  • Can you explain the concept of continuous monitoring in the context of NIST? (medium)
  • How do you ensure data integrity in accordance with NIST guidelines? (advanced)
  • Have you implemented multi-factor authentication in compliance with NIST recommendations? If so, what challenges did you face? (medium)
  • How do you handle vulnerabilities identified through NIST risk assessments? (advanced)
  • Can you describe a successful NIST implementation project you were involved in? (medium)
  • How do you communicate NIST compliance requirements to non-technical stakeholders? (medium)
  • How do you approach security awareness training in alignment with NIST guidelines? (medium)
  • What are the key considerations when developing a NIST-compliant security policy? (medium)
  • How do you assess the effectiveness of security controls based on NIST recommendations? (advanced)
  • Can you provide an example of a security incident response plan based on NIST guidelines? (medium)
  • How do you ensure data privacy in alignment with NIST standards? (medium)
  • What are the key challenges organizations face when implementing NIST guidelines? (medium)

Closing Remark

As you explore opportunities in the NIST job market in India, remember to showcase your expertise, stay updated with industry trends, and prepare thoroughly for interviews. With the right skills and preparation, you can confidently pursue a successful career in NIST in India. Best of luck!

cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies