
Principal Managed Services Information Security
2 weeks ago
**Make an impact with NTT DATA**
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it’s a place where you can grow, belong and thrive.
**Your day at NTT DATA**
This role includes performing tasks such as security incident detection and response, security event reporting, threat hunting, content maintenance (tuning) and interacting with clients to ensure their understanding of the information generated, recommending client system changes as well as answering security related queries from the clients.
The Principal Managed Services Information Security Analyst typically provides coaching and guidance to less experienced analysts within the team.
**What you'll be doing**
**Key Responsibilities**:
- Works as part of a global Cyber Defense Centre (CDC) team that works 24/7 on rotational shifts.
- Works with client stakeholders and relevant internal teams to tune the MSSP platform and client SIEM to enable more efficient detection, analysis and reporting.
- Monitors relevant security tools to review and analyze security logs from client environments.
- Generates continuous improvement ideas for supported security tools/technologies, to enable improvements to company services, employee experience and client experience.
- Adheres to SOPs, customer Run Books and standard processes to ensure a globally consistent delivery whilst also proposing changes and improvements to these standards.
- Utilizes and documents best practices and amend existing documentation as required.
- Identifies opportunities to make automations which will help the clients and security delivery teams.
- Performs security incident handling and response from several vectors including End Point Protection and Enterprise Detection and response tools, attack analysis, malware analysis, network forensics, computer forensics.,
- Utilizes a broad range of skills in LAN technologies, Windows and Linux O/S’s, and general security infrastructure.
- Ensures usage of knowledge articles in incident diagnosis and resolution and assist with updating as and when required.
- Performs defined tasks to inform and monitor service delivery against service level agreements and maintain records of relevant information.
- Undertakes threat hunting activities across both individual client estates, as well as cross client hunting.
- Works closely with client delivery teams to support their activities related to client delivery.
- Cooperates closely with colleagues to share knowledge and build a cohesive and effective team environment, benefiting the individual, the business and the client.
- Mentors and supports other team members to increase their security knowledge and delivery expertise.
- Supports major incident management processes and incident escalations from both internal and client sources.
- Performs any other related task as required.
**Knowledge and Attributes**:
- Extended knowledge on implementation and monitoring of a company supported SIEM or security tools/technologies/concepts.
- Extended knowledge on security architecture, worked across different security technologies.
- Extended knowledge and understanding of the operation of modern computer systems and networks and how they can be compromised.
- Displays excellent customer service orientation and pro-active thinking.
- Displays problem solving abilities and is highly driven and self-organized.
- Excellent attention to detail.
- Excellent analytical and logical thinking.
- Excellent spoken and written communication abilities.
- Team player with the ability to work well with others and in group with colleagues and stakeholders.
- Ability to remain calm in pressurized situations.
- Ability to keep current on emerging trends and new technologies in area of specialization.
**Academic Qualifications and Certifications**:
- Bachelor's degree or relevant qualification in Information Technology or Computing or a related field.
- Security certifications such as (but not limited to) AZ-500, SC-200, Security+, CEH, CISSP, CISM or similar Certification in different networking technologies such as CCNA, JNCIA, ACCA, PCNSA, CCSA is advantageous.
**Required Experience**:
- Extended experience in SOC Analysis Operations.
- Extended experience in SIEM usage for investigations.
- Extended experience in Security technologies such as (but not limited to) Firewall, IPS, IDS, Proxy.
- Extended experience in dealing with technical support to clients.
- Extended experience in handling security incidents end to end.
- Extended experience in configuring/managing security controls, such as SIEM, Firewall, IDS/IPS, EDR, NDR, UTM, Proxy, SOAR, Honeypots and other security tools.
- Extended experience in Security Analysis or Engineering preferably gained within a global services organization.
**Workplace type**:
Hybrid Workin
-
Information Security Principal Consultant
6 days ago
Sydney, Australia Westpac Group Full time**How will I help?** Westpac’s Detection and Response team sits within our Information Security Group and is responsible for monitoring and detecting cyber threats. We analyse and respond to attacks from adversaries targeting the Westpac Group or its customers. We are looking for an Information Security Principal Consultant to join the Security...
-
Information Security Principal Consultant
3 days ago
Sydney, New South Wales, Australia Westpac Group Full timeOverviewJoin to apply for the Information Security Principal Consultant - Threat Hunting role at Westpac Group.Create your best future and join Westpac as an Information Security Principal Consultant.ResponsibilitiesThe Principal Information Security Consultant is responsible for providing expert technical support to the SOC, with a focus on threat hunting.A...
-
Information Security Principal Consultant
3 days ago
Sydney, New South Wales, Australia Westpac Group Full timeOverviewJoin to apply for the Information Security Principal Consultant - Threat Hunting role at Westpac Group.Create your best future and join Westpac as an Information Security Principal Consultant.ResponsibilitiesThe Principal Information Security Consultant is responsible for providing expert technical support to the SOC, with a focus on threat hunting.A...
-
Information Security Principal Consultant
1 week ago
Sydney, Australia Westpac Group Full time**How will I help?** We are looking for an Information Security Principal Consultant to join the Security Information and Event Management (SIEM) team. This will lead the team responsible for project engagement with stakeholders requiring SIEM Services including emerging technology, onboarding of new services and capability enhancements across the Westpac...
-
Principal Security Engineer, AWS Security
3 weeks ago
Sydney, New South Wales, Australia Amazon Web Services (AWS) Full timePrincipal Security Engineer, AWS SecurityJoin to apply for the Principal Security Engineer, AWS Security role at Amazon Web Services (AWS)Principal Security Engineer, AWS SecurityJoin to apply for the Principal Security Engineer, AWS Security role at Amazon Web Services (AWS)DescriptionThis position can also be based in Sydney, Australia.DescriptionThis...
-
Principal Security Engineer, AWS Security
3 weeks ago
Sydney, New South Wales, Australia Amazon Web Services (AWS) Full timePrincipal Security Engineer, AWS SecurityJoin to apply for the Principal Security Engineer, AWS Security role at Amazon Web Services (AWS)Principal Security Engineer, AWS SecurityJoin to apply for the Principal Security Engineer, AWS Security role at Amazon Web Services (AWS)DescriptionThis position can also be based in Sydney, Australia.DescriptionThis...
-
Principal Security Engineer, AWS Security
4 days ago
Sydney, New South Wales, Australia Amazon Web Services (AWS) Full timePrincipal Security Engineer, AWS SecurityJoin to apply for the Principal Security Engineer, AWS Security role at Amazon Web Services (AWS)Principal Security Engineer, AWS SecurityJoin to apply for the Principal Security Engineer, AWS Security role at Amazon Web Services (AWS)DescriptionThis position can also be based in Sydney, Australia.DescriptionThis...
-
Information Security Principal Consultant
1 week ago
Sydney, Australia Westpac Group Full timeCreate your best future and join Westpac as an Information Security Principal Consultant. The Principal Information Security Consultant is responsible for providing expert technical support to the SOC, with a focus on threat hunting. A technical specialist and escalation point for the SOC, the Principal Information Security Consultant mentors junior staff,...
-
Information Security Principal Consultant
4 days ago
Sydney, Australia Westpac Group Full timeCreate your best future and join Westpac as an Information Security Principal Consultant. The Principal Information Security Consultant is responsible for providing expert technical support to the SOC, with a focus on threat hunting. A technical specialist and escalation point for the SOC, the Principal Information Security Consultant mentors junior staff,...
-
Information Security Manager
3 weeks ago
Sydney, New South Wales, Australia Canon Australia Full timeInformation Security Manager (Corporate IT)Join to apply for the Information Security Manager (Corporate IT) role at Canon Australia Information Security Manager (Corporate IT)Join to apply for the Information Security Manager (Corporate IT) role at Canon Australia Get AI-powered advice on this job and more exclusive features.Autonomous role with a...