Senior Information Security Analyst

4 months ago


Noida, India Ameriprise Financial Full time
Function as the local point of contact and information security subject matter expert for Operational Security and Information Security initiatives being delivered across EMEA and APAC. This role will ensure security controls are robust and policies are being met through operational oversight of day-to-day activity, balanced risk assessment across all pillars using intelligence and business awareness.

Qualifications and skills (Required):

Cloud experience Understanding of Windows/Linux/Network Devices Some level of exposure to any of the following security tools:SecuronixSymantec Endpoint ProtectionCarbon Black (Response and protect)FireEyeSymantec DLPTrellixIronPortSUMOZscalerCyberArkVulnerability scanning tools.

Qualifications and Experience (Preferred):

Familiarity with foundational programming languages Degree in technology, cyber security or similar CISSP qualification

Role Responsibilities and Key Capabilities:

At least 5 years of Information Security exposure, building on a technical understanding of Windows operating systems through a hands-on technical operation role. Serve as the Operational Security SME for both local and global technical teams across EUC, Servers and Networks on all platforms from Windows, Linux, and Network devices.Using security tooling currently employed within the business you will need to investigate across platforms using experience and awareness to understand vulnerabilities and system hardening (TVM), incident response and triage (Cybersecurity/SOC), data loss prevention (DLP), identity and access management (IAM) and privilege access management (PAM). Time spent on “BAU” OpSec activity.To ensure the health and hygiene of the environment you will be working across pillars of the ISS (Information Security Services) security programme.Working across all areas you will need to have a thorough understanding of all areas, delivering daily update calls for current state in time, before ensuring all actions are assigned within the team.Operationally understand and deliver KRI (Key Risk Indictor) reports for senior leadership through the collaboration across all technical teams where Columbia Threadneedle has a technical presence for business deliveryUnderstand the use of patching mechanisms such as SCCM and IntuneKnowledge of report creation within ServiceNowAbility to build out formulas within Excel to cross verify and validate technical team controls.Delivery of Regulatory audit requirements for the business risk teams through coordination with the Risk team, internal team leadership and business system owners. This activity is completed to deliver audit evidence in an accepted format in a timely manner in parallel with lights on activity within the team.Deep understanding of process and ability to not only act but able to put down process into operational guidelines. Able to follow process but also feedback potential gaps in the same to ensure continuous process improvement. Ability to work independently to manage own workload in a well organised and analytical approach with a keen attention to detail. Operationally you will have a good understanding of business policy and with an ability to arrive at a non-technical understanding to deliver to those with less security understanding. Ability to use PowerShell scripting, MS Office, and MS power tools (PowerBi, Power Query) necessary. Time spent on Vulnerability management:Ability to take industry standards such as CIS (Center for Internet Security) along with vendor Security hardening baselines. Identify appropriate controls from these standards and communicate and collaborate with technical teams on a balanced approach on implementation to meet business policy.Ability to obtain and parse scan outputs from both IP360 and Flexera scan reports to dissect and identify opportunities to remediate risk items using a technical understanding of risks and compensating controls and how these affect the need to remediate.Where items have been identified, ticket within ServiceNow, identify appropriate teams to remediate through understanding for corporate structures. Should conflict arise, mediate between teams to push for resolution without a need to bring in leadership to assist with resolution.Monitor external threat feeds and media information around latest Vulnerability information and through the understanding of CVE (Common Vulnerabilities and Exposures) and risk assessments, proceed with escalation only when the risk to the business is sufficient to react. Outputs will be clear and concise on risk and mitigationAttend and feed into global TVM team operation and approach, putting forward not only the CTI (Columbia Threadneedle Investment) viewpoint and risks in the EMEA/APAC time zones but assist with delivery of a global operation for Vulnerability management for the wider bank. Time spent on Cybersecurity:Act as an EMEA/APAC InfoSec point of contact in the event of an internal incident as well as a coordinator for any Vendor incident.Working with both internal and external partners, through experience, coordinate and question the response in a balanced manner to both understand the risk and drive to an incident resolution. Operate as part of the global SOC (Security Operations Center) operation on a regular basis, delivering on incident response for both the bank and CTI using securonix through both workflows and experiences as an information security SME.Operate in a controlled manner to control the risk of actions when dealing with requests using sandboxes and internally controlled tooling.Operate with a thorough understanding across all security tools available to investigate through to a risk-based decision on next actions.SecuronixSymantec Endpoint ProtectionCarbon Black (Response and protect)FireEyeSymantec DLPTrellixIronPortSUMOZscaler Time spent on Identity and Access Management (IAM) and Privileged Access Management (PAM):Coordinate with the IAM and IAG global team on the successful delivery of regular quarterly reviews using the bank Aveksa system.You will need an understanding of SQL queries against the back-end Database to obtain outstanding reviews in a timely manner.Where reviews are not closed in a timely manner, you will coordinate with end users to coach, direct, and explain in non-technical terms the regulatory reason for the delivery of the reviews. Where resistance is faced, coordinate and act as a mediator between the user and the line manager to arrive at a successful review completion.Work within the PAM tool to provide governance over the Privileged Account Management Lifecyle. You will coordinate with external business partners within alternate LOB (Line of Business) to complete the same reviews in a manual manner, both working within the OpSec the team tracking review responses, speaking to users, and submitting reviews on the user behalf.

About Our Company
Ameriprise India LLP has been providing client based financial solutions to help clients plan and achieve their financial objectives for 125 years. We are a U.S. based financial planning company headquartered in Minneapolis with a global presence. The firm’s focus areas include Asset Management and Advice, Retirement Planning and Insurance Protection. Be part of an inclusive, collaborative culture that rewards you for your contributions and work with other talented individuals who share your passion for doing great work. You’ll also have plenty of opportunities to make your mark at the office and a difference in your community. So if you're talented, driven and want to work for a strong ethical company that cares, take the next step and create a career at Ameriprise India LLP.

Ameriprise India LLP is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, genetic information, age, sexual orientation, gender identity, disability, veteran status, marital status, family status or any other basis prohibited by law.

Full-Time/Part-Time

Full time

Timings

(2:00p-10:30p)

India Business Unit

AWMPO AWMP&S President's Office

Job Family Group

Technology

  • Noida, Uttar Pradesh, India Ameriprise Financial Full time

    About the RoleWe are seeking a highly skilled and experienced Senior Information Security Analyst to join our team at Ameriprise India LLP. As a key member of our Information Security Services team, you will be responsible for ensuring the security and integrity of our systems and data.Key ResponsibilitiesAct as the local point of contact for Operational...


  • Noida, India Clearwater Analytics Full time

    As an L3 Security Analyst, you will play a critical role in our Security Operations Center (SOC). You will lead advanced security monitoring incident response, threat intelligence, vulnerability management and email security. Your expertise will help protect our organization and customer’s information from sophisticated cyber threats. Your proactive...


  • Noida, Uttar Pradesh, India UnitedHealth Group Full time

    Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives.The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best.We believe everyone–of every race, gender, sexuality, age, location...


  • Noida, Uttar Pradesh, India UnitedHealth Group Full time

    At UnitedHealth Group, we're committed to helping people live healthier lives and making the health system work better for everyone. As a Senior Information Security Engineering Analyst, you'll play a critical role in ensuring the security and integrity of our systems and data. Your expertise in access control will be instrumental in protecting our...


  • Noida, Uttar Pradesh, India Openwave Messaging GLBH Full time

    Job SummaryAs a Senior SOC Analyst at Openwave Messaging GLBH, you will be responsible for overseeing security event monitoring, incident handling, reporting, and escalations. You will manage and mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational...


  • Noida, India NTT DATA Full time

    **Req ID**: 267160 We are currently seeking a Information Security Advisor to join our team in Noida, Uttar Pradesh (IN-UP), India (IN). Security Analyst/Engineer Skills/Requirements - Experience with security response automation and orchestration implementation (SOAR) - Crowdstrike experience - fusion automation, endpoint detection, logscale, CSPM,...


  • Noida, Uttar Pradesh, India Ameriprise Financial Full time

    Job DescriptionThe Senior Information Security Manager will oversee the development and implementation of information security policies and procedures to ensure the confidentiality, integrity, and availability of enterprise systems and data. This role will also be responsible for monitoring and reporting on security incidents and vulnerabilities, as well as...


  • Noida, Uttar Pradesh, India TSYS Card Tech Services India LLP Full time

    At TSYS Card Tech Services India LLP, we are seeking a highly skilled Information Security Manager to lead our security engineering efforts. The ideal candidate will have a strong background in information security and experience in managing complex security projects.Key Responsibilities:Develop and implement enterprise security controls and defenses.Monitor...


  • Noida, Uttar Pradesh, India NTT DATA Services Full time

    Job DescriptionJob Title: SIEM-Securonix Security Center Operations Senior AnalystJob Summary: We are seeking a highly skilled Security Operations Center Senior Analyst to join our team at NTT DATA Services. The successful candidate will be responsible for providing security monitoring, event analysis, and countermeasure proposals to reduce the impact of...


  • Noida, Uttar Pradesh, India TSYS Card Tech Services India LLP Full time

    Global Payments is seeking an accomplished Information Security Manager to spearhead the development and implementation of cutting-edge security solutions. The ideal candidate will possess a strong background in information security, with a proven track record of managing complex security projects and initiatives.About This RoleThis is a highly technical and...


  • Noida, Uttar Pradesh, India Ameriprise Financial Full time

    About the RoleThe Senior Tech Lead - Information Security is a vital part of a team that establishes, supports, and continuously improves enterprise information security policies, practices, and standards. This role participates in ongoing operational activities that serve to establish appropriate access to and provide the appropriate protection,...


  • Noida, Uttar Pradesh, India TSYS Card Tech Services India LLP Full time

    At TSYS Card Tech Services India LLP, we are driven by our passion for success and our commitment to delivering best-in-class payment technology and software solutions. We are seeking a highly skilled and experienced Information Security Manager to join our dynamic team and contribute to the development and execution of our enterprise security controls and...


  • Noida, Uttar Pradesh, India NIS Full time

    **Job Description for Risk Advisory Profile (Full time internship program with no Stipend)**: **ROLE PURPOSE**: Post: Intern Information Security Analyst involves supporting, monitoring and documenting the effectiveness of the program. This is a hands-on position that requires practical experience in the areas of information security, policies and...


  • Noida, Uttar Pradesh, India NTT DATA Services Full time

    Job DescriptionJob Title: SIEM-Securonix Security Center Operations Senior AnalystJob Summary: We are seeking a highly skilled Security Operations Center Analyst to join our team at NTT DATA Services. The successful candidate will be responsible for providing security monitoring, event analysis, and countermeasure proposals to reduce the impact of security...


  • Noida, Uttar Pradesh, India Sumo Logic Full time

    This position is responsible for leading security incident triage and analysis at Sumo Logic. The analyst will monitor various security tools and security logs, responding to security alerts generated by those tools or noted within the security logs. The analyst will also assist in periodic security tasks such as vulnerability scanning and secure...


  • Noida, India Sumo Logic Full time

    This position is responsible for security incident triage and analysis. The analyst will monitor various security tools and security logs and respond to security alerts generated by those tools or noted within the security logs. The analyst would also assist in periodic security tasks such as vulnerability scanning and secure configuration management. ...


  • Noida, Uttar Pradesh, India Stefanini Full time

    Job Title: SOC ManagerLocation: Full-time onsite (Noida) with Monthly Travel to HyderabadReports To: Head of CybersecurityAbout UsStefanini is a leading provider of cybersecurity solutions committed to protecting our clients from digital threats and ensuring the safety of their data.Position SummaryThe Cybersecurity Operations Center Manager will oversee the...


  • Noida, Uttar Pradesh, India TSYS Card Tech Services India LLP Full time

    We are seeking an experienced Senior Information Security Manager to lead our Threat Response team at TSYS Card Tech Services India LLP. This is a critical role requiring strong technical skills, business acumen, and leadership abilities to develop and execute enterprise security controls and defenses.Key Responsibilities:Develop and lead the Threat Response...


  • Noida, Uttar Pradesh, India Infogain Full time

    Information Security RoleWe are seeking a highly motivated and results-oriented Security Senior Executive to join our team. As the Compliance and Security Lead, you will play a vital role in supporting the development, implementation, and maintenance of our information security program, ensuring compliance with relevant...


  • Noida, Uttar Pradesh, India NTT DATA Full time

    About the Role:We are seeking an experienced Information Security Threat Hunter and Analyst to join our team in Noida, Uttar Pradesh, India.Job Description:The successful candidate will provide security monitoring, level 2 and 3 event analysis, and countermeasure proposals. This position requires shift work in a 9/5 environment during US business hours and...