IT Principal Security Analyst

3 weeks ago


New Delhi, India Oracle Full time
At Oracle Cloud Infrastructure (OCI), we build the future of the cloud for Enterprises. We act with the speed and attitude of a start-up along with the scale and customer focus of the leading enterprise software company in the world.
About the team:
EES Security and Compliance team defines and measures baseline standards using existing internal policies and industry standards such as CIS and SANS. The team creates tools to proactively detect gaps with baseline compliance that improve security operations (scan failure, asset management gaps, configuration drift, and drive resolution. Technical liaisons for EES teams to analyze and prioritize vulnerabilities, compliance gaps, and security programs. Provides solution guidance to optimize remediation efforts, assist with exception requests, and resolve any process inefficiencies.
Ideally, the candidate will possess several of the following skills:
Security Compliance and Auditing: Knowledge of regulatory compliance requirements (., GDPR, HIPAA, PCI, DSS, NIST) and experience with security auditing frameworks and processes
Cloud Security: Familiarity with cloud security principles and best practices, including securing cloud infrastructure, services, and applications in platforms, OCI is a plus
Security Standards: Improve security posture by defining, enhancing, and maintaining security standards based on industry leading security framework.
Forensics and Incident Response: Experience in conducting digital forensics investigations and leading incident response activities, including evidence collection, analysis, and containment
Communication and Leadership: Strong leadership, interpersonal, and communication skills, with the ability to effectively communicate security-related concepts and findings to stakeholders at all levels of the organization
Continuous Learning and Improvement: Commitment to continuous learning and professional development in the field of cybersecurity, staying updated with the latest threats, trends, and technologies
Qualifications:
Bachelor's degree in Computer Science, Information Security, or a related field. Master's degree preferred
8+ years of experience in information systems, business operations, or related fields,
3+ years of experience in security operations, with a focus on incident detection, response, and vulnerability remediation
Experience with at least 1 automation language or framework (Python, PowerShell, Terraform, or vulnerability scanning tool (Qualys, Nessus,
Strong understanding of networking protocols, operating systems (Linux, Windows), MiddleTier, Database, and cloud computing environments
Experience with security tools such as SIEM platforms, intrusion detection/prevention systems, and endpoint security solutions
Relevant certifications such as CISSP, CISM, CISA, or GIAC certifications are preferred
Excellent communication skills with the ability to effectively communicate technical concepts to both technical and non-technical stakeholders
Proven leadership abilities with experience leading security projects and initiatives
Ability to work independently and collaboratively in a fast-paced environment
Strong analytical and problem-solving skills with a keen attention to detail
Career Level -
Career Level -
Career Level -
Responsibilities:
Manage and address security audits as directed and liaison with internal teams for evidence as a security and compliance SME
Make recommendations and provide guidance/consultation regarding process improvements necessary for remediating internal control gaps. Engage with various teams, both internal and external, around data compliance efforts.
Drive a security risk management program with forensics investigations and evidence collection as a security exemption approver.
Responsible for service impact analysis (SIA) and maintaining service resilience compliance in partnership with business owner
Build and publish security standards for commonly audited areas (endpoint, application, Network) to address gap areas and drive better compliance. Work with system administrators, engineers, and the Information System Security Manager (ISSM) to create or update system/site policies, procedures, and process guides.
Build automation to detect configuration gaps that impact security operations. Collaborate with cross-functional teams to design and implement security controls and countermeasures.
Develop and maintain cybersecurity documentation such as the System Security Plan (SSP), Privacy Impact Assessment (PIA), Configuration Management Plan (CMP), Plan of Action and Milestones (POA&M), and Standard Operating Procedures (SOP) as necessary.
Define roles and responsibilities, process ownership, and operating model for all teams involved in security operations.
Develop, implement, and maintain industry best practices and regulatory security policies, procedures, and system standards (servers, databases, endpoints, and application design)
Engagement in cloud security technologies and protocols, including cloud security architecture, identity and access management, and data protection
Write stakeholder reports using accessible language to explain the assessment, audit results, and recommendations. Create and provide metrics for cybersecurity leadership. Brief executive leadership on compliance matters

  • Delhi, India Oracle Full time

    Develops and executes programs and processes to reduce information security risk and strengthen Oracle’s security posture.Oracle is seeking security analyst to support systems and security operations of Database Engineering Cloud infrastructure. The position requires proven track record in designing, implementing and running Public Cloud infrastructure ,...

  • Data Analyst

    2 weeks ago


    delhi, India Quess IT Staffing Full time

    Position: Data Analyst (Cyber Security Domain)Location: PuneDuration: Contract to HireJob Description:Data ReportingEngaging with stake holdersBuild risk analytic reportsNeed to know what is risk analysisEV, SIM, EDRPM/Data managerHow reporting is built inExcel / Power BI / QlickCyber dashboards,Trend analysis


  • Delhi, India Omm IT Solutions Full time

    Job DescriptionPlease note this is an ONSITE Position***About the Position:The Principal Software Developer is the technical authority within the development team. The person is responsible for designing scalable, maintainable, and efficient software architectures.The Principal Software Developer understands business requirements, anticipates future needs,...


  • New Delhi, India Western Alliance Bank Full time

    Job Title: Principal Network Security Engineer Location: Block 23 What you'll do: The Principal Network Security Engineer contributes to the strategic technical direction of network security infrastructure and services. They act as a trusted advisor to IT leadership, defining and delivering the engineering roadmap, driving continuous improvement and...


  • new delhi, India Western Alliance Bank Full time

    Job Title: Principal Network Security Engineer Location: Block 23 What you'll do: The Principal Network Security Engineer contributes to the strategic technical direction of network security infrastructure and services. They act as a trusted advisor to IT leadership, defining and delivering the engineering roadmap, driving continuous improvement...

  • Business Analyst

    7 days ago


    delhi, India TAC Security Full time

    Job Title: Business AnalystLocation: Pune, IndiaCompany DescriptionTAC Security is a global leader in vulnerability management that specializes in protecting Fortune 500 companies, leading enterprises, and governments worldwide. With its AI-based Vulnerability Management Platform ESOF (Enterprise Security in One Framework), TAC Security manages over 5...


  • delhi, India Flexi Analyst Full time

    Company DescriptionFlexi CTO is an upcoming product of Flexi Analyst.Flexi CTO will be a place for helping startups and enterprise to get Vetted CTO : ContractRole DescriptionThe Chief Technology Officer is responsible to define, planning, execute, maintain and own the overall IT landscape including various services in technology, software application...


  • Delhi, India Agensi Pekerjaan BTC Sdn Bhd Full time

    Job DescriptionOpen Position: Principal IT Security Engineering Specialist(APAC IT Organisation)An APAC IT Organisation is currently looking for Principal IT Security Engineering Specialist to join the team and be based in the Selangor office.Key responsibilities include:Good experience in managing Cyber Security Engineering Projects covering IT Application,...


  • Delhi, India ConnectWise Full time

    Principal Product Security EngineerPune/Mumbai (Hybrid)8+ years of experience is mustDo you breathe security?We're looking for a leader to champion secure development across our entire product line.You'll design and implement best practices, conduct assessments, and collaborate with teams to build trust in ConnectWise applications.Key...


  • New Delhi, India Western Alliance Bank Full time

    Job Title:Principal Network Security EngineerLocation:Block 23What you'll do:The Principal Network Security Engineer contributes to the strategic technical direction of network security infrastructure and services. They act as a trusted advisor to IT leadership, defining and delivering the engineering roadmap, driving continuous improvement and maturity....


  • Delhi, India ConnectWise Full time

    Principal Product Security EngineerPune/Mumbai (Hybrid)8+ years of experience is mustDo you breathe security?We're looking for a leader to champion secure development across our entire product line.You'll design and implement best practices, conduct assessments, and collaborate with teams to build trust in ConnectWise applications.Key Responsibilities:-...


  • delhi, India Black Box Full time

    Join Our Cyber Security Dream Team!Are you a fresh graduate with a passion for cyber security? Ready to kickstart your career and protect the digital world from evolving threats? We have the perfect opportunity for you!We Are Hiring Cyber Security Freshers!Positions Available:Security Operations Center (SOC) AnalystVulnerability Assessment and Penetration...


  • Delhi, India ETS Full time

    Position Summary: We are looking for a seasoned Application Security Lead Analyst to join our team. As an Application Security Analyst, you will work as a consultant to our product development staff, ensuring the security of our applications throughout their lifecycle. Your role will be to identify potential vulnerabilities, suggest mitigation strategies,...


  • Delhi, India Novalink Solutions LLC Full time

    Job DescriptionIT Security Analyst1.Monitor and advise on information security issues related to the systems and workflow at an agency to ensure the internal IT security controls for an agency are appropriate and operating as intended. Coordinate and execute IT security related projects for the agency. Coordinate response to information security incidents....


  • Delhi, India Marken Full time

    DescriptionJob Title:Information Security Operations AnalystLocation:PuneMain Purpose:The Information Security (InfoSec) Operations Analyst will be a critical member of the Information Security Operations team responsible for operational security activities and support for multi-vendor security platforms. You will actively investigate threat actor activity,...


  • Delhi, India IQ-EQ Full time

    Job DescriptionOutline of responsibilitiesWe are hiring an Information Security Analyst to work in our growing IT Security team. You will monitor our digital environment for security issues, respond to security requests, install and operate security software, and document any security issues or breaches you find. To do well in this role you should have a...

  • Security Analyst

    4 days ago


    Delhi, India BroadAxis, Inc Full time

    Job DescriptionRequired consultant experience provided by Contractor, shall include:•At least 6 years of experience using information security tools to identify vulnerabilities in custom application code, commercial software, system configurations, and networks such as vulnerability scanners, endpoint detection and response (EDR) platforms, security...


  • delhi, India Mobileum Full time

    Mobileum is a leading provider of Telecom analytics solutions for roaming, core network, security, risk management, domestic and international connectivity testing, and customer intelligence. More than 1,000 customers rely on its Active Intelligence platform, which provides advanced analytics solutions, allowing customers to connect deep network and...


  • Delhi, India Snaphunt Full time

    The OfferFlexible working optionsLeadership RoleFantastic work cultureThe JobYour responsibilities will include:Monitoring and analyzing network and system activityInvestigating and responding to security incidentsEscalating security incidents and alertsInstalling and configuring security software and hardwarePerforming security audits and...

  • Security Analyst

    2 weeks ago


    delhi, India Larsen & Toubro Full time

    Job Purpose:Ensure L&T Data Center and Customer service business continuity by providing 24/7 L2 Support. Act as escalation point for L1 team and be the SOC POC to customers. Manage security incidents through all phases of the incident response process through to Closure. The role requires working in shift schedule (to cover 24/7).Roles and...