App security analyst 1

4 weeks ago


Pune, Maharashtra, India Michelin Full time
Job Description

Job description

App security analyst 1

MISSION

As part of the Michelin Groups Cybersecurity Expert (Business Support, Business Protection, Promotion of Responsible Security Behavior), in a field defined by the Michelin (Department DOTI) for ISIT security activities at DOTI and as a member of the CSSI team at DOTI :

- He/she is the privileged point of contact for all security aspects of his/her entity and liaises with his/her management team for the implementation of and compliance with security rules and practices.
- Together with DOTI/SSI, he/she defines the security roadmap for his/her entity, communicates it and contributes to its adoption.
- Provides the necessary support to project teams and day-to-day operations to ensure that security requirements are effectively implemented (e.g. follow-up of action plans following penetration tests, MGSR (security guidelines by Michelin).
- Deploys theSecurity by designapproach within the entity and contributes to security education and training, which includes but not limited to SAT (security acceptance testing), vulnerability management, obsolescence management, patch management, enforcement of strong authentication and security by design framework.
- Participates in the network of entity security correspondents and monitors the various ad-hoc subjects initiated with Group Security.
- Maintains a technological and innovation watch for elements specific to his entity in terms of safety, in line with the entitys needs and requirements (for all non-specific matters, other entities oversee safety watch).
- Conducts and provides first-level support for risk analysis within the entitys application perimeter and contributes to vulnerability detection and remediation (EBIOS analysis, vulnerability scan follow-up, patch forum).
- He/she contributes to the dissemination and evangelization of best practices and safety regulations, by coordinating a network of safety contacts within his/her entity.
- He/she will act as backup to the Team Lead technical team.

KEY EXPECTED RESULTS

PERFORMANCE MEASUREMENT

1Security by design enforcement

- All projects should follow the best practices of SecByDesign, max deviation should not cross 0.02% defects

2Vulnerability Patch management

- Maintain the N-1 cycle and approach and ensure all assets, library and platform is updated with latest patch

3Security Acceptance Testing

- All project should qualify the specific security requirement on project and should not over-cross the requirement

4Obsolescence Management

- Life-cycle management of all ISIT assets, platform, OS, DB, Middleware, front-end, back-end and libraries
- Deviation should be mitigated within stipulated time-frame, maintain proactive eol and eos information and communicate with business for refresh

5Security Authentication / Privilege management

- Strong security authentication for integrated system and human interacted software systems, if user is privilege then it must go thru MFA or Passwordless authentication mechanism.
- Generic ID s and PKI certificate life-cycle should be maintained and managed within due course of time-line.

MAIN ACTIVITIES

By following security charter process:

- Identifies evolution of critical assets and local points of contacts.
- Contributes to cybersecurity plan and evolutions of cybersecurity methods.
- Select CIS Framework controls, validate what is needed with respect to business services solution
- Lead the business team to create right synergies between core security team and PNI security team
- Work with the business to promote a culture of Risk awareness and control and to ensure consistency of practice and approach.
- Being proactive to provide right learning content to your team of developer to adopt the security by design framework
- Ensure the implementation of good security practices bydev/indus/test/operationteams, including in devops mode.
- Ensure regular reviews of user accounts on the scope of consolidation to ensure a good level of security
- Ensure regular reviews to ensure that the observed scope is compliant and that there is no shadow IT, identify the possible shadow IT.
- Verifies project security architectures in conjunction with the DOTI and group security teams.
- Controls the security level of dev/indus/test/prod environments and compliance with security rules for multi-tenant cloud environments and outsourcing actions.
- Ensure timely creation of roadmap and leading discussion with business to ensure all platforms are refreshed on timely manner, OS/DB s are updated once they are reaching their life-cycle, middleware, libraries are refreshed and used as and when they become obsolete
- Follows up progress of corrective action plans until closure.
  • Security Analyst 1

    4 weeks ago


    Pune, Maharashtra, India Michelin Full time

    Job DescriptionJob descriptionSecurity Analyst 1KEY EXPECTED ACHIEVEMENTS- The basic threats, risks and security vulnerabilities of the companys IT and digital solutions are known and evaluated.- Contribute to technical watch to anticipate the evolution of the risks.- The safety requirements and their implementation are a good compromise between the costs,...

  • Security Analyst

    3 weeks ago


    Pune, Maharashtra, India Exela Technologies Full time

    Job DescriptionGlobal - Risk & Compliance - Senior Security Analyst will play a significant role in our SOX ComplianceDepartment to standardize and operationalize our Regulatory and internal Compliance framework.Job Details:- Role: Global - Risk & Compliance - Senior Security Analyst- Work Location: Pune- Work Type: Work From OfficeResponsibilities:-...

  • Security Analyst

    3 hours ago


    Pune, Maharashtra, India Exela Technologies Full time

    Job Description Global - Risk & Compliance - Senior Security Analyst will play a significant role in our SOX Compliance Department to standardize and operationalize our Regulatory and internal Compliance framework. Job Details: Role: Global - Risk & Compliance - Senior Security Analyst Work Location: Pune Work Type: Work From Office Responsibilities:...

  • Security Analyst

    4 days ago


    Pune, Maharashtra, India Exela Technologies Full time

    Job DescriptionGlobal - Risk & Compliance - Senior Security Analyst will play a significant role in our SOX ComplianceDepartment to standardize and operationalize our Regulatory and internal Compliance framework.Job Details:Role: Global - Risk & Compliance - Senior Security AnalystWork Location: PuneWork Type: Work From OfficeResponsibilities:Collaborate...

  • Security Analyst

    4 days ago


    Pune, Maharashtra, India Hitachi Full time ₹ 5,00,000 - ₹ 10,00,000 per year

    Location:Pune, Maharashtra, IndiaJob ID: R0104933Date Posted: Company Name:HITACHI INDIA PVT. LTDProfession (Job Category):OtherJob Schedule: Full timeRemote:NoJob Description:Job Title: Security Analyst - ISA Azure Senitel Designation: Security Analyst Company: Cumulus Systems Pvt. Ltd.Location: Pune, IndiaSalary: As per IndustryCompany...

  • IT Security Analyst

    4 weeks ago


    Pune, Maharashtra, India MNR Solutions Full time

    Job Description :- Significant experience in SOC, CERT, or CSIRT environments, with expertise in Threat Hunting, Detection Engineering, and Incident Response.- Proficiency in creating and simulating hypothetical threat scenarios to anticipate and combat potential attack vectors.- Hands-on experience in developing advanced threat detection analytics rules in...


  • Pune, Maharashtra, India Citi Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    The Apps Support Intmd Analyst is a developing professional role. Deals with most problems independently and has some latitude to solve complex problems. Integrates in-depth specialty area knowledge with a solid understanding of industry standards and practices. Good understanding of how the team and area integrate with others in accomplishing the objectives...


  • Pune, Maharashtra, India Airtel Digital Full time

    SOC Analyst | JOB Description | Airtel 2 – 6 Years of Experience Role – SOC Analyst – A2 Roles and Requirements The Level 2 SOC Security Analyst is responsible for conducting information security investigations due to security incidents identified from various SOC entry channels (SIEM, Tickets, Email and Phone). Act as a point of escalation in...

  • Security Analyst

    4 weeks ago


    Pune, Maharashtra, India Michelin Full time

    Job DescriptionJob descriptionSecurity Analyst - CERT TeamKEY EXPECTED ACHIEVEMENTS1. Security Incident Handling:- Analyze and confirm the severity of security incidents based on available data.- Follow documented incident response procedures to resolve threats efficiently.- Collaborate with technical experts to develop and implement remediation plans.-...


  • Pune, Maharashtra, India Citigroup Full time

    The Securities Derivative Analyst 1 is an entry level position responsible for processing orders and transactions originating from trading desks and branch offices in coordination with the Operations - Transaction Services team The overall objective of this role is to assist in the clearance settlement and investigation of client securities and...