Area Manager Cyber Security

Department Icon Audit & Control
129+ Applicants
Posted: 1 week ago
0-1 years
Jamshedpur, Jharkhand
work from office

Posted: 1 week ago
|
Applicants: 129+
Job Description
About Company
Similar Jobs
Please verify your account first! Send OTP

Job Description

Role Description
  • Providing assurance to the Audit Committee (AC) of Board of Directors (BOD), the CEO & MD and the Senior Management, on control adequacy and effectiveness on Cyber Posture internal & external threats / Cloud Computing / IT Infrastructure / Data Security / Application Security / Social Engineering / Governance & Risk Management for uninterrupted business operations.
Executing audits, advisory, and other special projects in accordance with the approved audit plan. Auditor shall undertake reviews of the organizations cyber threats, cloud infrastructure, Vulnerability Assessment & Penetration Testing, processes and controls to protect its intellectual property, using industry standards as a guide, and provide recommendations for improvements.
Skills
  • Reviewing and documenting the existing TSL and Group Company IT security architecture to determine security posture w.r.t regulatory, contractual requirements, industry best practices
Identification and categorization of information assets based on confidentiality, integrity and availability (CIA) triad
Identifying associated threats, vulnerabilities and the risk impacts with each of the information assets
Safeguarding the information assets such as Software, Hardware, Network etc.
Reviewing IT Systems controls, Mail Messaging System and End User Computing, Risk Management and Threat Intelligence etc.
Reviewing security controls related to hybrid cloud infrastructure, service contract, design and architecture, Business Continuity plan
Auditing controls for cyber threats pertaining to infrastructure, application, operating system and database, and other controls related to backup, DR/ BCP plans, patch management and version control, license control, virus control processes etc.
Application Security Audit including Vulnerability Assessment and Penetration Testing, Network Security Testing, Application Security Testing, Social Engg. etc
Network resilience and recovery mechanism, control on social media access and data exchange through the same, control on data and information storage and access in cloud etc
Performing configuration control audit for all the IT systems as per best practices
Create security policy and guidelines document for user access management, password policy, data exchange with agencies and vulnerabilities mitigation
Testing for security audit cover cross-site scripting (XSS), cross-site reference forgery, SQL injection flaws, input validation flaws, malicious file execution, insecure direct object references, information leakage and improper error handling, broken authentication and session management, failure to restrict URL access, and denial of services etc.
Conducting audit of assigned activities for IT enabled systems as per the approved Annual Audit Plan, including any special audit/ project assigned by the respective Group Head
Other Details
  • Mandatory: BE, B-Tech, BSc (Engineering), ME/MTech, MBA/PGDM, MCA, MSc (Maths, Statistics or Physics)

    Looking to get Placed? Try our Placement Guarantee Plan

  • Preferred: Exposure to information security and various standards in the form of project experience of one semester or completion of two related courses as a part of the curriculum.
  • Preferred: CISA / CEH / CISSP
  • Strong knowledge and experience in domains covering - Vulnerability assessment and penetration testing (VAPT), Risk management, Business continuity, Access and authorization, Web application security, Threat detection (SOC, NOC), Ethical Hacking, Social Engineering, Phishing simulation (email, CH, attachment)
  • Exposure on performing vulnerability assessment and penetration testing (black box) including red teaming
  • Information systems industry and best practices in network, application and hardware platform security
  • Audit and assessment methodologies, procedures and best practices that relate to information networks, systems, and applications
Risk Management, security program policies, processes, standards, requirements and procedures and various supporting security technologies.
Desirable: Understanding of NIST / ISO 27001 / CIS framework

Skills

AuditAssuranceAudit CommitteeAuditingAuditsCiaGovernanceSoc

If an employer asks you to pay any kind of fee, please notify us immediately. Jobaaj does not charge any fee from the applicants and we do not allow other companies also to do so.

About Company

Tata Steel Limited is an Indian multinational steel-making company, based in Jamshedpur and headquartered in Mumbai. It is a part of the Tata Group.

Important dates & deadlines?

Application Deadline

01 Apr 26, 01:33 PM IST

Similar Jobs

View All
Loading...
Bag Logo
Jobaaj
Don't Miss out any Updates

Subscribe now for the latest job alerts
and never miss an update

Job Alert
Google hiring for Specific Roles Apply Now!
1 min ago
New Opportunity
Amazon is hiring freshers Apply Now!
5 min ago
Featured Jobs
Microsoft opening 50+ positions Apply Now!
10 min ago

Area Manager Cyber Security

Share with