Cyber_MS_MDR_DLP - Consultant

6 hours ago


Bengaluru, Karnataka, India BSR & Co Full time ₹ 12,00,000 - ₹ 18,00,000 per year
Description

This role is for you if you have  the below

Educational qualifications 

  • 5+ years of experience in information security preferably in the areas of incident response, investigations
  • Bachelor's degree from an accredited college/university or equivalent professional experience
  • Act as an L3/SME for the pillar Data Loss Prevention with experience working with SIEM solutions (Sentinel, Splunk, LogRhythm, QRadar, etc.)
  • Familiarity performing packet analysis
  • Hands on experience & working knowledge of DLP tools such as ZScaler tools

Work experience

  • We are looking for a of DLP resource with 3.5+ years of relevant experience in DLP alert monitoring/triaging. The resource must work from our Bangalore office and willing to work on shifts
  • Candidate must be willing to Work from Office only (Bangalore Location) & willing to do 24x7 rotational shift.

The ideal candidate will:

  • At least 60 months of overall experience in information security preferably in the areas of incident response, investigations
  • Monitor and respond to alerts generated from the DLP systems and other technologies
  • Understand and follow the incident response process through event escalations
  • Respond to escalations by the Incident Response Team
  • Follow processes to maintain the DLP system
  • Utilize Sentinel/Splunk and multiple DLP solutions such as Symantec DLP, Proofpoint DLP etc. to respond to, investigate, triage and prevent client data loss via email and web
  • Implement DLP fine-tuning rules/policies in the relevant DLP solution.
  • Escalate issues or obstacles that may prevent the execution of daily DLP activities
  • Track and present DLP metrics and findings on a monthly basis to senior management
  • Recommend process enhancements to improve operational inefficiencies regarding DLP
  • A quick learner and adaptable to changing environments
  • Have strong analytical skills and communication skills
  • Build strong professional working relationships with client personnel
  • Working in rotational shifts supporting client environment.
  • Deliver timely and high-quality work diligently
  • Identify issues and opportunities, and communicate them to appropriate senior member

Mandatory Certification Required:

  • Strong knowledge base in operations, enterprise networking, systems evaluation and architecture
  • Certifications (e.g., GCIH, CISSP, CCSP) are preferred
  • Detailed, control oriented, and thorough
  • Previous experience as a member of an Incident Response team is a plus. 

This role is for you if you have  the below

Collaboration and Leadership:

  • Work closely with cross-functional teams, including IT, security, and compliance, to ensure a cohesive approach to security and privileged access management.
  • Participate in project planning and execution for initiatives related to DLP, providing expert insights and technical expertise.
  • Follow processes to maintain the DLP system.
  • Implement DLP fine-tuning rules/policies via Symantec DLP, ZScaler etc.
  • Provide mentorship and advanced training to junior support specialists and other team members on best practices and emerging technologies.

Documentation and Reporting:

  • Monitor and respond to alerts generated from the DLP systems and other technologies
  • Understand and follow the incident response process through event escalations
  • Respond to escalations by the Incident Response Team
  • Follow processes to maintain the DLP system

Behavioral / Team skills

  • Excellent communication (written and verbal) and interpersonal skills
  • Ready to work in Shifts (on 3 shift rotation pattern)
  • Flexibility to adapt to a variety of engagement types, working hours and work environments and locations
  • Proven ability to work creatively and analytically in a problemsolving environment
  • Desire to learn and contribute
  • Focused and self-motivated approach to work
  • Personal drive and positive work ethic to deliver results within tight deadlines and in demanding situations
Responsibilities

This role is for you if you have  the below

Educational qualifications 

  • 5+ years of experience in information security preferably in the areas of incident response, investigations
  • Bachelor's degree from an accredited college/university or equivalent professional experience
  • Act as an L3/SME for the pillar Data Loss Prevention with experience working with SIEM solutions (Sentinel, Splunk, LogRhythm, QRadar, etc.)
  • Familiarity performing packet analysis
  • Hands on experience & working knowledge of DLP tools such as ZScaler tools

Work experience

  • We are looking for a of DLP resource with 3.5+ years of relevant experience in DLP alert monitoring/triaging. The resource must work from our Bangalore office and willing to work on shifts
  • Candidate must be willing to Work from Office only (Bangalore Location) & willing to do 24x7 rotational shift.

The ideal candidate will:

  • At least 60 months of overall experience in information security preferably in the areas of incident response, investigations
  • Monitor and respond to alerts generated from the DLP systems and other technologies
  • Understand and follow the incident response process through event escalations
  • Respond to escalations by the Incident Response Team
  • Follow processes to maintain the DLP system
  • Utilize Sentinel/Splunk and multiple DLP solutions such as Symantec DLP, Proofpoint DLP etc. to respond to, investigate, triage and prevent client data loss via email and web
  • Implement DLP fine-tuning rules/policies in the relevant DLP solution.
  • Escalate issues or obstacles that may prevent the execution of daily DLP activities
  • Track and present DLP metrics and findings on a monthly basis to senior management
  • Recommend process enhancements to improve operational inefficiencies regarding DLP
  • A quick learner and adaptable to changing environments
  • Have strong analytical skills and communication skills
  • Build strong professional working relationships with client personnel
  • Working in rotational shifts supporting client environment.
  • Deliver timely and high-quality work diligently
  • Identify issues and opportunities, and communicate them to appropriate senior member

Mandatory Certification Required:

  • Strong knowledge base in operations, enterprise networking, systems evaluation and architecture
  • Certifications (e.g., GCIH, CISSP, CCSP) are preferred
  • Detailed, control oriented, and thorough
  • Previous experience as a member of an Incident Response team is a plus. 

This role is for you if you have  the below

Collaboration and Leadership:

  • Work closely with cross-functional teams, including IT, security, and compliance, to ensure a cohesive approach to security and privileged access management.
  • Participate in project planning and execution for initiatives related to DLP, providing expert insights and technical expertise.
  • Follow processes to maintain the DLP system.
  • Implement DLP fine-tuning rules/policies via Symantec DLP, ZScaler etc.
  • Provide mentorship and advanced training to junior support specialists and other team members on best practices and emerging technologies.

Documentation and Reporting:

  • Monitor and respond to alerts generated from the DLP systems and other technologies
  • Understand and follow the incident response process through event escalations
  • Respond to escalations by the Incident Response Team
  • Follow processes to maintain the DLP system

Behavioral / Team skills

  • Excellent communication (written and verbal) and interpersonal skills
  • Ready to work in Shifts (on 3 shift rotation pattern)
  • Flexibility to adapt to a variety of engagement types, working hours and work environments and locations
  • Proven ability to work creatively and analytically in a problemsolving environment
  • Desire to learn and contribute
  • Focused and self-motivated approach to work
  • Personal drive and positive work ethic to deliver results within tight deadlines and in demanding situations
Qualifications

This role is for you if you have  the below

Educational qualifications 

  • 5+ years of experience in information security preferably in the areas of incident response, investigations
  • Bachelor's degree from an accredited college/university or equivalent professional experience
  • Act as an L3/SME for the pillar Data Loss Prevention with experience working with SIEM solutions (Sentinel, Splunk, LogRhythm, QRadar, etc.)
  • Familiarity performing packet analysis
  • Hands on experience & working knowledge of DLP tools such as ZScaler tools

Work experience

  • We are looking for a of DLP resource with 3.5+ years of relevant experience in DLP alert monitoring/triaging. The resource must work from our Bangalore office and willing to work on shifts
  • Candidate must be willing to Work from Office only (Bangalore Location) & willing to do 24x7 rotational shift.

The ideal candidate will:

  • At least 60 months of overall experience in information security preferably in the areas of incident response, investigations
  • Monitor and respond to alerts generated from the DLP systems and other technologies
  • Understand and follow the incident response process through event escalations
  • Respond to escalations by the Incident Response Team
  • Follow processes to maintain the DLP system
  • Utilize Sentinel/Splunk and multiple DLP solutions such as Symantec DLP, Proofpoint DLP etc. to respond to, investigate, triage and prevent client data loss via email and web
  • Implement DLP fine-tuning rules/policies in the relevant DLP solution.
  • Escalate issues or obstacles that may prevent the execution of daily DLP activities
  • Track and present DLP metrics and findings on a monthly basis to senior management
  • Recommend process enhancements to improve operational inefficiencies regarding DLP
  • A quick learner and adaptable to changing environments
  • Have strong analytical skills and communication skills
  • Build strong professional working relationships with client personnel
  • Working in rotational shifts supporting client environment.
  • Deliver timely and high-quality work diligently
  • Identify issues and opportunities, and communicate them to appropriate senior member

Mandatory Certification Required:

  • Strong knowledge base in operations, enterprise networking, systems evaluation and architecture
  • Certifications (e.g., GCIH, CISSP, CCSP) are preferred
  • Detailed, control oriented, and thorough
  • Previous experience as a member of an Incident Response team is a plus. 

This role is for you if you have  the below

Collaboration and Leadership:

  • Work closely with cross-functional teams, including IT, security, and compliance, to ensure a cohesive approach to security and privileged access management.
  • Participate in project planning and execution for initiatives related to DLP, providing expert insights and technical expertise.
  • Follow processes to maintain the DLP system.
  • Implement DLP fine-tuning rules/policies via Symantec DLP, ZScaler etc.
  • Provide mentorship and advanced training to junior support specialists and other team members on best practices and emerging technologies.

Documentation and Reporting:

  • Monitor and respond to alerts generated from the DLP systems and other technologies
  • Understand and follow the incident response process through event escalations
  • Respond to escalations by the Incident Response Team
  • Follow processes to maintain the DLP system

Behavioral / Team skills

  • Excellent communication (written and verbal) and interpersonal skills
  • Ready to work in Shifts (on 3 shift rotation pattern)
  • Flexibility to adapt to a variety of engagement types, working hours and work environments and locations
  • Proven ability to work creatively and analytically in a problemsolving environment
  • Desire to learn and contribute
  • Focused and self-motivated approach to work
  • Personal drive and positive work ethic to deliver results within tight deadlines and in demanding situations