Principal - Cyber Security - Network Security
Location
Bangalore | India
Job description
2089124
Job Description Job Title : Principal - Cyber Security - Network Security The Purpose and Value you Deliver to this Role Principal Perimeter Security Engineer (Principal, Edge Security Ops)
The job involves performing functions related to Network and Perimeter specialized Security Engineers including Web Application Firewall, Email Security, , Network and cloud security. Looking for an energetic, hard charging individual able to keep up in an exciting and fast-moving security operations team that is engaged in several high-profile security projects to enhance Fidelity's security posture. The candidate will be immersed in a quick changing environment in a very rapid changing threat landscape, working with numerous security professionals. The qualified candidate must be adaptable and able to work in a fast-paced environment where learning new skills and understanding new system architectures quickly is a key to success.
How Your Work Impacts The Organization The Team The Principal Cybersecurity Analyst will be working on external defense team to ensure indications of compromise are promptly identified and stakeholders are informed with actionable and complete information. This role will assist and coordinate with incident response staff, threat intelligence, vulnerability management, and perimeter security teams during response activities and cyber investigations. This position works closely with our ISO for each Business Unit and directly with internal and external customers.
The Expertise You Have Technical - Strong experience in Web application firewall and API Security. Good exposure to how to proactively combat OWASP top 10, Account take over , API and other bot external attacks .
- Evaluate, deploying and managing Akamai / AWS / Azure Web Application Firewall security configuration.
- Strong knowledge of Email Security, Network IDS/IPS, WAF, DDoS Control and Cloud Security.
- Analyzing web traffic patterns to improve protections.
- Reviewing policy enforcement change requests; interviewing submitters who have requested security configuration changes and require additional requirements gathering.
- Perimeter and cloud security Expert with an outstanding understanding of the latest practices and trends in edge security.
- Advance experience on Splunk or other SIEM (Security information and event management) Monitoring. Log Analysis Expertise - Web logs, NetFlow and Packet Analysis
Behavioral - Positive personality and can-do attitude; you also have good communication skills with an excellent command of the English language.
- Open-minded, empathic and a team-mate with a partnering approach and an enthusiastic and motivated personality, with demonstrated experience in solving complex challenges
- Intellectually curious and therefore remain abreast of new technologies and developments relating to technical products that might be used enterprise wide and software delivery methodologies
- Proficient in balancing business partner views and interests
- Team player with excellent interpersonal & communication skills (written and verbal)
- Senior technical and non-technical Stake holder management skills
The Skills That Are Key To This Role - Security experience with any WAF provider, API definitions, custom rules, writing bot management rules and analyzing traffic logs.
- Proven experience troubleshooting and simulating client requests (e.g., curl, postman, HAR file analysis).
- Strong understanding of core networking concepts (e.g. – TCP/IP, DNS, proxy, load-balancing, etc.).
- Functional experience with Splunk, SIEM, or other log aggregation & analysis technologies.
- Experience with cloud solutions such as AWS or other IaaS/PaaS/SaaS environments.
- Ability to interact with both technical and non-technical staff, including management and executives, with experience articulating technical material in business terms.
- Functional understanding of network controls and policies to stop cyber threats.
- Familiarity with external facing security controls that can stop external attacks that may occur: such as WAF tuning, Bot management, API protection, network policy governance, troubleshooting, and incident response.
- Familiarity with criminal activities and the attacks that may occur in each layer of the OSI model.
- Ability to make information security risk determinations based on intelligence analysis.
- Understanding cyber threats, malicious cyber threat actor motivations, and capabilities relevant to regions of interest.
Education and Certification - Bachelor's degree in computer science or in lieu of:
- Industry certifications in cyber security incident management, such as, Certified Information Systems Security Professional (CISSP), GIAC and other related credentials.
- 10-14 years experience
Certifications At Fidelity, building a better financial future— for everyone— is our mission. For the last 75+ years, our privately-held company has remained committed to supporting our clients throughout their lifelong financial journeys.
Our formula is simple: we support our team, and they support our customers. That culture begins with our employees, whose personal and professional growth is key to our collective success. In keeping with that legacy, our privately-held company offers associates career stability and security, while at the same time encouraging your professional exploration and growth. At Fidelity India, we are proud to continue that legacy. With offices in Bangalore and Chennai, our Indian branch is now celebrating 20 years as a Global Capability Center. To find out more, visit India.Fidelity.com, or our global site at fidelitycareers.com.
Fidelity Investments is an equal opportunity employer, and whenever possible we accommodate applicants with disabilities who need adjustments to complete the application or interview process. Please email us at [HIDDEN TEXT] or call 800-835-5099 for more information
Job tags
Salary