Information Security Manager
Level:
Assistant Manager/Manager
Reporting To:
Head of Information Security
Minimum Experience:
5-10 Years
Open Positons:
01
Qualification:
Bachelors in Technology,Engineering,Information Security
Permanent
Technology
Engineering
Information Security
Job Description:
An experienced IT Operations Manager is required to oversee the configuration, maintenance, and security of servers, network infrastructure, data centers, and email systems. The ideal candidate will manage Active Directory, VPNs, firewall systems, both Windows and Linux environments, and Exchange servers, ensuring optimal performance, security, and availability.
Key Responsibilities
- Manage day-to-day information security operations, focusing on access control for software products, networks, and processes.
- Safeguard confidential client data and information.
- Guide software architects in threat management and preventive measures throughout the application development lifecycle.
- Conduct manual security testing and source code reviews for diverse technologies.
- Perform vulnerability assessments and penetration tests on critical data, services, and environments.
- Identify and report security vulnerabilities, proposing improved security measures.
- Handle incident response and related tasks as needed.
- Develop security requirements, technical designs, and configuration recommendations to enhance security infrastructure in collaboration with teams.
- Assist in designing and implementing security solutions for the organization's technical infrastructure and business applications.
- Evaluate and deploy security tools such as firewalls, intrusion detection systems, encryption technologies, and threat management utilities.
- Execute vulnerability and penetration tests to discover security weaknesses.
- Maintain data security through encryption, tokenization, and effective key management practices.
- Analyze and adjust network, system, and application configurations for optimal security.
- Ensure routine operations comply with established security policies.
- Stay current with the latest security technologies and countermeasures against emerging threats.
- Help develop long-term security testing strategies, risk assessments, and policy development.
- Conduct post-incident analyses to prevent future breaches and identify responsible parties.
Required Skill Set:
- Proficient in information security frameworks like ISO/IEC 27001, NIST, and OWASP.
- Strong knowledge of TCP/IP networking, switching, routing, and microservices architecture.
- Experienced with Linux systems and virtualization technologies.
- Skilled in application security, including the use of tools for vulnerability scanning and code analysis.
- Capable of implementing security architecture and technologies.
- Expertise in managing DNS, email security, VPNs, DDoS prevention, and proxy services.
- Proficient with security and monitoring tools such as SIEM/SOAR, Web Application Firewalls, and risk management solutions.
- Experience conducting vulnerability assessments and penetration tests.
- Capable of writing and implementing security policies and procedures.
Qualifications and Skills:
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- Professional certifications such as VMware vSphere, MCSA, Fortinet NSE, or similar.
- Minimum of 5-10 years of experience in IT operations, network, server, and email management.
- Proficiency in managing Windows and Linux servers, Microsoft Exchange, Active Directory management, Group Policy implementation and virtualization platforms, and firewall systems.
- Microsoft Office 2003/ 2007/2010/2013/2016/2021/365.
- Strong understanding of network protocols, VPN technologies, and Microsoft Exchange & AD, operations.
- Installation & Upgradation of Window Server 2003/2008/2012/2016/2019.
- Firewall Administration
- VMware vSphere Configuration & Maintenance
- Hyper-V Management
- File Sharing Server.
- Open-Source NMS administration
- Excellent problem-solving, analytical, and communication skills.
- Manage & Troubleshooting Local Area Network and Wide Area Network.
- Diagnose and Rectify hardware/software/network issues reported in helpdesk system.
- Data Backups from Server, over all Server Management.
- Exchange Server & MDaemon.
Personal Attributes:
- Bachelor’s degree in technology, Engineering, or Information Security.
- A professional security certification (e.g., CISSP, CISM, CEH) is preferred.
- At least 4 years of hands-on experience in information security management.