Description
We are looking for Cybersecurity Engineer with 6 to 10 years of experience.Job Summary:Cyber Security Operation (CSO) is a critical function within Standard Chartered Bank operating under the overall purview of Enterprise Technology (ET). ET is accountable for enterprise-wide infrastructure, data centres, Cloud, network, end-user services (EUS) and security (STS).The CS team is made up of cyber security thought leaders, who are accountable for the provision of a global set of cyber security services and products to maintain and continuously improve Bank’s cyber security posture in today’s ever evolving cyber security landscape.
Requirements
- Accountable for managing the SME team, address the gaps in the process, automate manual tasks and address any failures in the automation or systems supporting it.
- Responsible for managing SME tasks for some of the below services
- Authentication and PIM technologies BeyondTrust, ForgeRock, HashiCorp Vault. Secret Double Octopus.
- Identify tasks with repetitive nature and automate wherever feasible.
- Align and adopt SRE practices in day-to-day operations.
- Work closely with related teams, viz. platform, infra, SCM on a day to day basis.
- Able to Provide artefacts from the service when required.
- Work closely with business and other stakeholders to deliver their security requirements.
- Participate in security incident response activities.
- Be a subject matter expert within security production support by providing solutions to complex problem statements.
- Adoption of standard tools and techniques for support management including event monitoring, batch management for routine activities, resiliency, capacity and for other standard core support processes like Incident, Problem and Change.
- Ensure IT assets of STS are appropriately recorded and recertified; This includes maintaining list of security services, service and support ownership, assets – servers, software and relationship with upstream and downstream systems.
- Proactive review of production platform related risks or non-compliances like resiliency, capacity, obsolescence, event monitoring and reporting controls, and ensure full risks awareness is in place.