This page was automatically translated and may contain errors. View in English.
A

Senior Network & Information Security Engineer

Atidiv

Pune, Maharashtra, India (Hybrid) • Vollzeit

Bewerben Sie sich als Erste/r!

Erfahrung
7–9 Jahre
Gehalt
INR 500,000 – INR 900,000 / year
Stellenangebote
1
Veröffentlicht
vor 5 Stunden
Arbeitsmodus
Hybrid
Ausbildung
Any Graduate
Teilnahmeberechtigung
Applicants must have completed any undergraduate degree.
Wieder aufnehmen
Bewerbung erforderlich

Wo Sie arbeiten werden

Stellenbeschreibung

About Atidiv

Atidiv specializes in leveraging data science and process outsourcing to enhance the efficiency of internet-based businesses. Backed by Guild Capital, a tech investor from Chicago, Atidiv employs over 500 professionals across three main solution areas, serving more than 40 clients in the US and UK. The company is led by experienced consultants, technologists, investment bankers, and entrepreneurs committed to developing innovative products and solutions for modern enterprises.

Job Overview

The Senior Network & Information Security Engineer will be the leading technical expert responsible for managing network security, data loss prevention, and overall data protection strategies at Atidiv. This position involves designing and implementing security frameworks across the infrastructure stack, which includes firewalls, switches, endpoints, data classification, and centralized asset management tools like Freshservice and Sophos. A valid and current industry certification is mandatory, emphasizing certified expertise beyond practical experience.

Certification Requirements

  • Must possess at least one of these valid certifications at joining: CEH, CompTIA Security+, SSCP, CISSP, CISM, CCNP Security, Sophos Certified Engineer, AWS Security Specialty, or ISO 27001 LA/LI.

Key Responsibilities

  • Develop and implement end-to-end Data Loss Prevention (DLP) strategies covering endpoint, email, web, cloud storage, and removable media channels.
  • Manage Sophos DLP policies including content rules and sensitive data pattern detection to prevent data exfiltration.
  • Administer Google Workspace DLP rules across Gmail, Drive, Meet, and Chat to block unauthorized data transfer.
  • Configure USB and removable media blocking using Sophos Endpoint Protection.
  • Establish workflows for DLP incident handling including alert triage, investigation, notifications, and reporting.
  • Fine-tune DLP policies to reduce false positives while maintaining effectiveness and document tuning rationale.
  • Review DLP policies quarterly in alignment with data classification updates and audit findings.
  • Provide monthly summaries of DLP incidents to the Data Protection Officer (DPO) and IT Lead.
  • Handle Sophos XGS Firewall configurations including security zones, NAT rules, VPN tunnels, failover, and firmware upgrades.
  • Manage network switches focusing on VLANs, port security, 802.1X authentication, storm control, and spanning tree protections.
  • Implement network segmentation including DMZ, inter-VLAN routing, guest VLAN isolation, and zero-trust principles.
  • Tune IDS/IPS rules and suppress unnecessary alerts, conducting firewall rule audits to identify and remediate risky or redundant rules.
  • Enforce strict switch port security measures such as disabling unused ports and limiting MAC addresses.
  • Manage dual internet link failover, bandwidth policies, and traffic prioritization.
  • Plan evaluation and deployment of Network Access Control (NAC) to strengthen corporate network device authentication.
  • Maintain comprehensive network topology documentation, configuration backups, and change logs.
  • Define and manage data classification tiers aligned with ISO 27001 standards to ensure proper handling and labeling across data stores.
  • Monitor data retention, secure disposal policies, and ensure encryption of data at rest and in transit.
  • Oversee backup security protocols including authentication, encryption, and integrity checks.
  • Assess and mitigate data exposure risks involving public servers, shared drives, and API data flow vulnerabilities.
  • Support the DPO with data subject requests, breach investigations, and regulatory compliance activities related to GDPR and CCPA.
  • Translate data protection policies into technical controls and maintain GDPR, CCPA, and ISO 27001 compliance documentation.
  • Conduct Data Protection Impact Assessments (DPIAs) for new projects and systems.
  • Manage access control hygiene by enforcing least privilege, conducting quarterly reviews, and overseeing identity lifecycle management.
  • Ensure multi-factor authentication (MFA) is enforced across all data access points with documented exceptions.
  • Oversee third-party data processor security assessments and vendor compliance monitoring.
  • Provide accurate technical information for cyber insurance questionnaires.
  • Monitor security alerts relevant to data protection and coordinate breach notifications with the DPO.
  • Develop and enforce security baseline standards for endpoints, networks, cloud platforms, SaaS, and user accounts.
  • Manage patch management lifecycle with defined SLAs, reporting, and enforcement.
  • Implement CIS Benchmark hardening on various platforms and document acceptable risks for deviations.
  • Enforce strict password policies, admin controls on software installation, and maintain a whitelist of approved software.
  • Conduct quarterly internal vulnerability scans.

Eligibility

The role is open to candidates who have completed any undergraduate degree.

Additional Information

Location: Pune, Maharashtra with hybrid and remote-first work flexibility.
Employment type is full-time.
Experience requirement: 7 to 9 years.
Annual salary range: INR 500,000 to INR 900,000.

Lassen Sie es so, wenn Sie eine Antwort wünschen – wir werden es für nichts anderes verwenden.

Zum Durchsuchen klicken, per Drag & Drop, oder Paste ein Screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Maximal 20 MB pro Datei · Bis zu 5 Dateien

🤖
Online · Sofortige KI-Hilfe