Elastic Enterprise Security Administrator

1 month ago


pune, India Qualys Full time

Description

-As an Elastic Enterprise Security Administrator, you will hold a pivotal position within our SIEM Engineering & Administration team. Your primary responsibility will be to fortify the security infrastructure of Qualys by meticulously managing and optimizing the Elastic Stack environment. This includes Elastic Search, Kibana, Beats, and Logstash components. Your expertise will be instrumental in ensuring the confidentiality, integrity, and availability of our critical data.

Responsibilities:

Elastic Stack Administration: 

Design, Deploy, and Maintain: You will be responsible for the complete lifecycle of Elastic Stack components, including Elastic Search, Kibana, Beats, and Logstash. This involves designing the architecture, deploying the stack, and ensuring its ongoing maintenance and stability. Optimization for Performance and Scalability: It will be your duty to fine-tune the Elastic Stack clusters to ensure optimal performance, scalability, and availability. This includes configuring settings, adjusting resource allocation, and implementing best practices for cluster management.

Security Configuration and Hardening:

Authentication and Authorization: You will implement robust security features such as authentication and authorization mechanisms to control access to the Elastic Stack. This involves setting up user accounts, roles, and permissions, as well as integrating with existing authentication systems if applicable. Encryption and Secure Communication: You'll ensure that data in transit is encrypted using SSL/TLS protocols. This safeguards sensitive information from interception or tampering during communication between Elastic Stack components.

Incident Detection and Response:

Alerting and Monitoring Configuration: You will set up and configure alerting mechanisms to promptly detect security incidents and anomalies. This involves defining thresholds, creating watchers, and integrating with notification systems for immediate response. Incident Response Coordination: In the event of a security incident, you will closely work with Qualys Security Operations Center for response efforts. Help create custom dashboards and alerts for assisting the ongoing investigation.

Continuous Monitoring and Threat Hunting:

Real-time Visibility: You'll implement advanced monitoring solutions to provide real-time visibility into the health and security posture of the Elastic Stack environment. This ensures that any unusual activity or potential threats are detected promptly. Proactive Threat Hunting: As part of a proactive security strategy, you'll conduct threat hunting exercises. This involves actively searching for signs of potential security threats within the environment, even before they trigger alerts.

Patch Management and Upgrades:

Stay Current with Releases: You'll stay up-to-date with the latest Elastic Stack releases, applying security patches and updates in a controlled and tested environment. This ensures that known vulnerabilities are promptly addressed. Version Upgrades: You'll plan and execute version upgrades of Elastic Stack components, carefully managing the process to minimize disruption to ongoing operations.

Compliance and Audit Support:

Adherence to Compliance Standards: You'll be responsible for ensuring that Elastic Stack configurations align with relevant industry compliance standards and internal policies. This ensures that the organization meets regulatory requirements. Documentation and Evidence Preparation: You'll assist in preparing comprehensive documentation and evidence for regulatory compliance audits. This includes providing detailed information on configurations, access controls, and security measures.

Capacity Planning and Performance Optimization:

Resource Utilization Monitoring: You'll monitor resource utilization within the Elastic Stack environment and plan for capacity upgrades based on data growth projections. This ensures that the infrastructure can support the organization's evolving needs. Performance Tuning: You'll conduct performance tuning to optimize resource utilization and responsiveness. This involves fine-tuning configurations, adjusting hardware allocation, and making adjustments to meet performance objectives.

Collaboration and Knowledge Sharing:

Alignment with Security Policies: You'll work closely with IT and security teams to align Elastic Stack configurations with organizational security policies and initiatives. This includes ensuring that security measures are consistent with broader company objectives. Mentorship and Training: You'll share your expertise through workshops, training sessions, and mentorship of team members. This helps to build the collective knowledge and capability of Qualys Security Operations Center.

Qualifications we seek in you -

Experience in design, development, integration, testing, and implementation of a large-scale analytical data sets in ELASTIC Proficient in Parsing, Indexing, Searching Concepts like Hot, Warm, Cold Frozen bucketing. Good understanding of log collection methodologies and aggregation techniques such as syslog-ng, Windows event forwarding, API base log collection etc. Good understanding of SIEM architecture, log ingestion, indexing, parsing 2+ years of relevant experience with Elastic technologies Working knowledge of cloud technologies such as AWS, Azure, GCP, OCI Periodically Develop and maintain support documentation for technical add-ons Able to optimize queries, use data models and summary indexes in appropriate way to ensure searches run in most efficient and cost effective way Help the team with analyzing, identifying, and tuning user applications/dashboards for performance Strong knowledge and experience of scripting language such as Python, Bash, Powershell Ability to communicate effectively with all levels audience in organization Superior analytical and problem-solving skills Knowledge of IT production operations is desired

Certifications (Preferred):

Elastic Certified Engineer (ECE) or equivalent. Relevant industry certifications in information security or systems administration.

  • Pune, India Qualys Full time

    Description-As an Elastic Enterprise Security Administrator, you will hold a pivotal position within our SIEM Engineering & Administration team. Your primary responsibility will be to fortify the security infrastructure of Qualys by meticulously managing and optimizing the Elastic Stack environment. This includes Elastic Search, Kibana, Beats, and Logstash...


  • Pune, India Qualys Full time

    Description -As an Elastic Enterprise Security Administrator, you will hold a pivotal position within our SIEM Engineering & Administration team. Your primary responsibility will be to fortify the security infrastructure of Qualys by meticulously managing and optimizing the Elastic Stack environment. This includes Elastic Search, Kibana, Beats, and...


  • Pune, India Customized Energy Solutions Full time

    Company DescriptionCustomized Energy Solutions (CES), a privately-held company, is a leading service provider of market intelligence and operational support services to companies participating in the retail and wholesale electric and natural gas markets. Utilizing deep know-how developed since the inception of the deregulated energy markets, CES provides...


  • Pune, India Customized Energy Solutions Full time

    Company Description Customized Energy Solutions (CES), a privately-held company, is a leading service provider of market intelligence and operational support services to companies participating in the retail and wholesale electric and natural gas markets. Utilizing deep know-how developed since the inception of the deregulated energy markets, CES...


  • pune, India Customized Energy Solutions Full time

    Company Description Customized Energy Solutions (CES), a privately-held company, is a leading service provider of market intelligence and operational support services to companies participating in the retail and wholesale electric and natural gas markets. Utilizing deep know-how developed since the inception of the deregulated energy markets, CES...

  • Security guards

    1 month ago


    Pune, Maharashtra, India Enterprise Company Full time

    Job Requirements Job Title: Security GuardCompany Name: Enterprise CompanyLocation: Pune, MaharashtraSalary: ₹ ₹21000/monthQualification: 10th Standard / SSLCJob Description:Join our team as a Security Guard at Enterprise Company in Pune. As a Security Guard, you will play a vital role in maintaining the safety and security of our premises and personnel....

  • Security guards

    1 month ago


    Pune, India Enterprise Company Full time

    Job Requirements Job Title: Security GuardCompany Name: Enterprise CompanyLocation: Pune, MaharashtraSalary: ₹19000 - ₹21000/monthQualification: 10th Standard / SSLCJob Description:Join our team as a Security Guard at Enterprise Company in Pune. As a Security Guard, you will play a vital role in maintaining the safety and security of our premises...


  • Pune, India Looper Development Services Private Limited Full time

    **Slack Admin** As the Slack Admin, you would be responsible for the administration of the Slack Enterprise grid. You will work with partners from across different organizations. You will be able to enforce existing Slack standards and review policies and procedures and monitor its success in the enterprise grid. You will spearhead the technical design of...


  • pune, India TAC Security Full time

    Company DescriptionTAC Security is a global leader in vulnerability management that protects Fortune 500 companies, leading enterprises, and governments around the world. TAC Security manages 5+ million vulnerabilities through its Artificial Intelligence (AI) based Vulnerability Management Platform ESOF (Enterprise Security in One Framework). ESOF is...


  • Pune, India TAC Security Full time

    Company DescriptionTAC Security is a global leader in vulnerability management that protects Fortune 500 companies, leading enterprises, and governments around the world. TAC Security manages 5+ million vulnerabilities through its Artificial Intelligence (AI) based Vulnerability Management Platform ESOF (Enterprise Security in One Framework). ESOF is...


  • Pune, India TAC Security Full time

    Company Description TAC Security is a global leader in vulnerability management that protects Fortune 500 companies, leading enterprises, and governments around the world. TAC Security manages 5+ million vulnerabilities through its Artificial Intelligence (AI) based Vulnerability Management Platform ESOF (Enterprise Security in One Framework). ESOF is...


  • Pune, India IDeaS Revenue Solutions Full time

    Summary: The Enterprise Project Administrator will assist the Enterprise Project Team in the planning; implementation and completion of projects to achieve objectives. The Enterprise Team is responsible for the administration and monitoring of the the project from initiation through delivery. Major Responsibilities: • Monitors and coordinates project...


  • pune, India IDeaS Revenue Solutions Full time

    Summary: The Enterprise Project Administrator will assist the Enterprise Project Team in the planning; implementation and completion of projects to achieve objectives. The Enterprise Team is responsible for the administration and monitoring of the the project from initiation through delivery. Major Responsibilities: • Monitors and coordinates project...


  • Pune, India TAC Security Full time

    Company DescriptionTAC Security is a global leader in vulnerability management, providing protection for Fortune 500 companies, leading enterprises, and governments worldwide. TAC Security's Artificial Intelligence (AI) based Vulnerability Management Platform, ESOF (Enterprise Security in One Framework), manages over 5 million vulnerabilities. ESOF has been...


  • Pune, India TAC Security Full time

    Company DescriptionTAC Security is a global leader in vulnerability management, providing protection for Fortune 500 companies, leading enterprises, and governments worldwide. TAC Security's Artificial Intelligence (AI) based Vulnerability Management Platform, ESOF (Enterprise Security in One Framework), manages over 5 million vulnerabilities. ESOF has been...


  • Pune, India TAC Security Full time

    Company DescriptionTAC Security is a global leader in vulnerability management, providing protection for Fortune 500 companies, leading enterprises, and governments worldwide. TAC Security's Artificial Intelligence (AI) based Vulnerability Management Platform, ESOF (Enterprise Security in One Framework), manages over 5 million vulnerabilities. ESOF has been...

  • Security Eng

    4 weeks ago


    Pune, Maharashtra, India Blue Hexagon Full time

    Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! **Job Description**: As our Security Operations Engineer L1 you will be part of a fast-paced SOC team and cover broad aspects of Qualys Cyber security monitoring and incident response operations. Working closely with SOC Manager/lead and...


  • Pune, India Northern Trust Full time

    Working with Us:As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working...

  • Enterprise Architect

    4 weeks ago


    Pune, India Perforce Software Full time

    **Job Position**: Enterprise Architect **Position Location**: Pune, India. Perforce develops DevOps tools that improve software quality and security as well as team productivity for several of the world’s leading companies, such as PIXAR, CD Projekt Red, NASA, Verizon, Honda, NVIDIA. **Position Summary**: **Responsibilities**: - Interact with end users...


  • pune, India Northern Trust Full time

    Working with Us:As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working...