Job description
Key Responsibilities
1. Endpoint Security Management
- Deploy, configure, and manage endpoint security solutions (e.g., TrendMicro, Kaspersky).
- Ensure robust protection of client infrastructure against malware, ransomware, and other cyber threats.
2. Database Activity Monitoring (DAM)
- Implement and administer DAM tools like IBM Guardium or Imperva.
- Monitor database activities to ensure security, compliance, and operational efficiency.
3. Threat Detection & Incident Response
- Continuously monitor for endpoint and database threats.
- Lead investigations, containment, and remediation of security incidents in collaboration with the Security Operations Center (SOC).
4. Patch & Vulnerability Management
- Coordinate regular updates and patch deployments for endpoint and database systems.
- Conduct routine vulnerability assessments and security audits.
5. Security Policy Compliance
- Ensure systems comply with client and regulatory security standards.
- Align all configurations with industry best practices and audit requirements.
6. Client Support & Delivery
- Serve as the primary contact for endpoint and database security concerns.
- Deliver operational support in adherence to service-level agreements (SLAs).
7. Reporting & Documentation
- Generate comprehensive reports on incidents, threat trends, and system performance.
- Maintain documentation for configurations, procedures, and response playbooks.
8. Team Collaboration & Mentorship
- Guide junior staff on security best practices and DAM operations.
- Conduct knowledge-sharing sessions and assist in skill development.
Required Technical Skills
- Strong troubleshooting skills across endpoint security domains: Antivirus, Certificate Authority (CA), Vulnerability Assessment (VA), Mobile Device Management (MDM), Data Classification, File Integrity Monitoring (FIM), Hardware Security Module (HSM)/Encryption, and Data Loss Prevention (DLP).
- Proficiency with operating systems: Linux, Windows, and macOS.
- Knowledge of network components including routing and switching.
- Up-to-date understanding of cybersecurity trends, threat landscapes, and mitigation strategies.
Identity & Access Management (IAM) Skills
- 4+ years of experience in IAM.
- Familiarity with IAM platforms such as SailPoint, Entra ID, ForgeRock, Okta, and Novell.
- Experience with directory services: LDAP, Active Directory (AD).
- Understanding of Role-Based Access Control (RBAC) and role engineering.
- Hands-on experience with Microsoft AD, Azure AD, Intra ID, MFA, SSO, PAM, IGA, and Office 365.