Elastic Enterprise Security Administrator

4 weeks ago


Pune, India Qualys Full time
Description

-As an Elastic Enterprise Security Administrator, you will hold a pivotal position within our SIEM Engineering & Administration team. Your primary responsibility will be to fortify the security infrastructure of Qualys by meticulously managing and optimizing the Elastic Stack environment. This includes Elastic Search, Kibana, Beats, and Logstash components. Your expertise will be instrumental in ensuring the confidentiality, integrity, and availability of our critical data.

Responsibilities:Elastic Stack Administration:Design, Deploy, and Maintain: You will be responsible for the complete lifecycle of Elastic Stack components, including Elastic Search, Kibana, Beats, and Logstash. This involves designing the architecture, deploying the stack, and ensuring its ongoing maintenance and stability.Optimization for Performance and Scalability: It will be your duty to fine-tune the Elastic Stack clusters to ensure optimal performance, scalability, and availability. This includes configuring settings, adjusting resource allocation, and implementing best practices for cluster management.Security Configuration and Hardening:Authentication and Authorization: You will implement robust security features such as authentication and authorization mechanisms to control access to the Elastic Stack. This involves setting up user accounts, roles, and permissions, as well as integrating with existing authentication systems if applicable.Encryption and Secure Communication: You'll ensure that data in transit is encrypted using SSL/TLS protocols. This safeguards sensitive information from interception or tampering during communication between Elastic Stack components.Incident Detection and Response:Alerting and Monitoring Configuration: You will set up and configure alerting mechanisms to promptly detect security incidents and anomalies. This involves defining thresholds, creating watchers, and integrating with notification systems for immediate response.Incident Response Coordination: In the event of a security incident, you will closely work with Qualys Security Operations Center for response efforts. Help create custom dashboards and alerts for assisting the ongoing investigation.Continuous Monitoring and Threat Hunting:Real-time Visibility: You'll implement advanced monitoring solutions to provide real-time visibility into the health and security posture of the Elastic Stack environment. This ensures that any unusual activity or potential threats are detected promptly.Proactive Threat Hunting: As part of a proactive security strategy, you'll conduct threat hunting exercises. This involves actively searching for signs of potential security threats within the environment, even before they trigger alerts.Patch Management and Upgrades:Stay Current with Releases: You'll stay up-to-date with the latest Elastic Stack releases, applying security patches and updates in a controlled and tested environment. This ensures that known vulnerabilities are promptly addressed.Version Upgrades: You'll plan and execute version upgrades of Elastic Stack components, carefully managing the process to minimize disruption to ongoing operations.Compliance and Audit Support:Adherence to Compliance Standards: You'll be responsible for ensuring that Elastic Stack configurations align with relevant industry compliance standards and internal policies. This ensures that the organization meets regulatory requirements.Documentation and Evidence Preparation: You'll assist in preparing comprehensive documentation and evidence for regulatory compliance audits. This includes providing detailed information on configurations, access controls, and security measures.Capacity Planning and Performance Optimization:Resource Utilization Monitoring: You'll monitor resource utilization within the Elastic Stack environment and plan for capacity upgrades based on data growth projections. This ensures that the infrastructure can support the organization's evolving needs.Performance Tuning: You'll conduct performance tuning to optimize resource utilization and responsiveness. This involves fine-tuning configurations, adjusting hardware allocation, and making adjustments to meet performance objectives.Collaboration and Knowledge Sharing:Alignment with Security Policies: You'll work closely with IT and security teams to align Elastic Stack configurations with organizational security policies and initiatives. This includes ensuring that security measures are consistent with broader company objectives.Mentorship and Training: You'll share your expertise through workshops, training sessions, and mentorship of team members. This helps to build the collective knowledge and capability of Qualys Security Operations Center.Qualifications we seek in you -Experience in design, development, integration, testing, and implementation of a large-scale analytical data sets in

ELASTICProficient in Parsing, Indexing, Searching Concepts like Hot, Warm, Cold Frozen bucketing.Good understanding of log collection methodologies and aggregation techniques such as syslog-ng, Windows event forwarding, API base log collection etc.Good understanding of SIEM architecture, log ingestion, indexing, parsing2+ years of relevant experience with Elastic technologiesWorking knowledge of cloud technologies such as AWS, Azure, GCP, OCIPeriodically Develop and maintain support documentation for technical add-onsAble to optimize queries, use data models and summary indexes in appropriate way to ensure searches run in most efficient and cost effective wayHelp the team with analyzing, identifying, and tuning user applications/dashboards for performanceStrong knowledge and experience of scripting language such as Python, Bash, PowershellAbility to communicate effectively with all levels audience in organizationSuperior analytical and problem-solving skillsKnowledge of IT production operations is desiredCertifications (Preferred):Elastic Certified Engineer (ECE) or equivalent.Relevant industry certifications in information security or systems administration.

  • Pune, India Qualys Full time

    Description -As an Elastic Enterprise Security Administrator, you will hold a pivotal position within our SIEM Engineering & Administration team. Your primary responsibility will be to fortify the security infrastructure of Qualys by meticulously managing and optimizing the Elastic Stack environment. This includes Elastic Search, Kibana, Beats, and...


  • pune, India Qualys Full time

    Description -As an Elastic Enterprise Security Administrator, you will hold a pivotal position within our SIEM Engineering & Administration team. Your primary responsibility will be to fortify the security infrastructure of Qualys by meticulously managing and optimizing the Elastic Stack environment. This includes Elastic Search, Kibana, Beats, and...


  • Pune, India Customized Energy Solutions Full time

    Company DescriptionCustomized Energy Solutions (CES), a privately-held company, is a leading service provider of market intelligence and operational support services to companies participating in the retail and wholesale electric and natural gas markets. Utilizing deep know-how developed since the inception of the deregulated energy markets, CES provides...


  • Pune, India Customized Energy Solutions Full time

    Company Description Customized Energy Solutions (CES), a privately-held company, is a leading service provider of market intelligence and operational support services to companies participating in the retail and wholesale electric and natural gas markets. Utilizing deep know-how developed since the inception of the deregulated energy markets, CES...


  • pune, India Customized Energy Solutions Full time

    Company Description Customized Energy Solutions (CES), a privately-held company, is a leading service provider of market intelligence and operational support services to companies participating in the retail and wholesale electric and natural gas markets. Utilizing deep know-how developed since the inception of the deregulated energy markets, CES...

  • Security guards

    1 month ago


    Pune, Maharashtra, India Enterprise Company Full time

    Job Requirements Job Title: Security GuardCompany Name: Enterprise CompanyLocation: Pune, MaharashtraSalary: ₹ ₹21000/monthQualification: 10th Standard / SSLCJob Description:Join our team as a Security Guard at Enterprise Company in Pune. As a Security Guard, you will play a vital role in maintaining the safety and security of our premises and personnel....

  • Security guards

    1 month ago


    Pune, India Enterprise Company Full time

    Job Requirements Job Title: Security GuardCompany Name: Enterprise CompanyLocation: Pune, MaharashtraSalary: ₹19000 - ₹21000/monthQualification: 10th Standard / SSLCJob Description:Join our team as a Security Guard at Enterprise Company in Pune. As a Security Guard, you will play a vital role in maintaining the safety and security of our premises...


  • Pune, India Looper Development Services Private Limited Full time

    **Slack Admin** As the Slack Admin, you would be responsible for the administration of the Slack Enterprise grid. You will work with partners from across different organizations. You will be able to enforce existing Slack standards and review policies and procedures and monitor its success in the enterprise grid. You will spearhead the technical design of...


  • Pune, India Zap Tech Pvt ltd Full time

    **Job Summary**: We are looking for a qualified Information Security Officer that will Oversee activities related to the availability, integrity, and confidentiality of customer, business partner, employee, and business information in compliance with the organization's information security policies. Being responsible for determining acceptable levels of...


  • Pune, India IDeaS Revenue Solutions Full time

    Summary: The Enterprise Project Administrator will assist the Enterprise Project Team in the planning; implementation and completion of projects to achieve objectives. The Enterprise Team is responsible for the administration and monitoring of the the project from initiation through delivery. Major Responsibilities: • Monitors and coordinates project...


  • pune, India IDeaS Revenue Solutions Full time

    Summary: The Enterprise Project Administrator will assist the Enterprise Project Team in the planning; implementation and completion of projects to achieve objectives. The Enterprise Team is responsible for the administration and monitoring of the the project from initiation through delivery. Major Responsibilities: • Monitors and coordinates project...

  • Security Eng

    1 month ago


    Pune, Maharashtra, India Blue Hexagon Full time

    Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! **Job Description**: As our Security Operations Engineer L1 you will be part of a fast-paced SOC team and cover broad aspects of Qualys Cyber security monitoring and incident response operations. Working closely with SOC Manager/lead and...

  • Enterprise Architect

    1 month ago


    Pune, India Perforce Software Full time

    **Job Position**: Enterprise Architect **Position Location**: Pune, India. Perforce develops DevOps tools that improve software quality and security as well as team productivity for several of the world’s leading companies, such as PIXAR, CD Projekt Red, NASA, Verizon, Honda, NVIDIA. **Position Summary**: **Responsibilities**: - Interact with end users...

  • Elk Admin

    1 month ago


    Pune, Maharashtra, India Phygital Insights Full time

    Full time- |- Work From Office*** **Department**: **ADMIN** - Listed on Apr 16, 2024 **PUNE** 8+ Years Relevant Experience - Advance skills in Elasticsearch, OpenSearch, Prometheus, Logstash, Kibana and or Grafana, and Beats. - Evaluating existing Elastic clusters, configuration parameters, indexing, search and query performance tuning, security and...

  • Security Analyst

    4 weeks ago


    Pune, India Forescout Technologies Inc Full time

    What We DoManaging cyber risk, together– Today the modern enterprise is an Enterprise of Things. We are on a mission to secure the Enterprise of Things with active defense by identifying, segmenting, and enforcing compliance of every connected thing in a real-time and at scale. Our unified security platform enables enterprises and government agencies to...

  • Enterprise IT

    1 month ago


    Pune, India systems plus Full time

    **Location: Pune** **Employment Type: full-time** **Designation: Enterprise IT - Sitecore CMS Architect** **Job Details**: **Enterprise CMS Application** **_Senior Sitecore developer/Lead _** Experience : 8 + years **Qualifications**: - MVP Certification is mandatory Minimum 5 years of experience with WCM implementation (Sitecore minimum 3-4 years) -...


  • pune, India 5100 Kyndryl Solutions Private Limited Full time

    Description We are looking for a motivated software development engineer who can utilize his Programming knowledge & skill sets to implement high-quality solutions. Strong analytical, programming, and troubleshooting skills to understand, analyse business requirements and build quality deliverables or operate and sustain complex systems. The...


  • Pune, India 5100 Kyndryl Solutions Private Limited Full time

    Description We are looking for a motivated software development engineer who can utilize his Programming knowledge & skill sets to implement high-quality solutions. Strong analytical, programming, and troubleshooting skills to understand, analyse business requirements and build quality deliverables or operate and sustain complex systems. The person...


  • Pune, India Jade Global Full time

    ID: 6611 | 10-15 yrs | Pune | careers **Skills** 10+ years of experience in driving large scale, cross-functional security architecture strategy blending technical operations and business strategy - Experience with infrastructure automation through DevOps in cloud environments and familiarity with CI/CD tools such as Git, Terraform, and Ansible -...


  • pune, India DHANI Full time

    ABOUT THE ROLE: We are seeking a highly skilled Cyber Defense Incident Responder to join our enterprise-wide cyber security team. The incumbent will be responsible for promptly identifying, mitigating, and resolving cyber defense incidents to ensure the security and integrity of our systems and data. This role requires expertise in incident response...