Performs basic computer and/or network security vulnerability assessments to identify, evaluate and mitigate security risks, threats and vulnerabilities. Assists in integrating, configuring and testing computer and network security solutions to manage the network/systems firewalls and intrusion detection systems.
Performs basic vulnerability scans using vendor utility tools. Monitors security audit and intrusion detection system logs for system and network anomalies. Investigates and/or escalates security violations, attempts to gain unauthorized access, virus infections that may affect the network or other event affecting security. Documents and reports event(s).
Assists in providing engineering analysis, design and support for firewalls, routers, networks and operating systems. Assists in performing product evaluations and recommends products/services for network security. Validates and tests basic security architecture and design solutions to produce detailed engineering specifications with recommended vendor technologies.Develops, tests and operates firewalls, intrusion detection systems, enterprise anti-virus systems and software deployment tools. Assists in the review and recommends the installation, modification or replacement of hardware or software components and any configuration change(s) that affects security.Assists in providing oversight and enforcement of security directives, orders, standards, plans and procedures at server sites.
Root cause analysis of true intrusion events detected.
Appropriate actions and resolution to respective stakeholder/owner of detected events.
Daily, weekly and Monthly MIS reporting of all the IPS events triggered to provide attack insight details.
Fine tuning policies of IPS signatures for false positive events triggered.
Incident tickets for all positive intrusions detected along with RCA.
Health monitoring of IPS components & its signatures so to ensure that it's up-to-date which in turn help in securing EXL traffic in Cyber security.
Patching of vulnerabilities/ firmware up-gradation
Follow escalation matrix of OEM, if the resolution is not provided within the SLA defined.