Company

AstrazenecaSee more

addressAddressChennai, Tamil Nadu
CategoryIT

Job description

Cybersecurity Engineer – Network and Endpoint Security

AstraZeneca is a global, science-led biopharmaceutical business whose innovative medicines are used by hundreds of millions of patients worldwide. Our IT 2025 strategy is focused on Smarter, Faster, Leaner and Better and we are looking for a Cybersecurity Engineer to play an active part in helping make this strategy a reality.

At AstraZeneca we:

  • Believe in lifelong learning.
  • Endeavor to be a great place to work.
  • Encourage a “speak up” culture.
  • Lead the way in sustainable IT & social impact.
  • Actively work towards becoming a digital organization.

Cybersecurity is key to our IT strategy as we move towards our future objectives. We are looking for IT security professionals that can help us on the journey through this challenging and ever-changing technology landscape.

We are looking for Individuals who:

  • Understand that security is a journey and not a destination.
  • Understand that we cannot just buy our way in cybersecurity.
  • Focus on innovation to maintain a sustainable risk position against the evolving threat landscape.
  • Understand that we could be working against organized crime syndicates or state-sponsored attackers.
  • Understand attackers’ motivations and their ways of working.

Accountabilities

In this role you will operate within AstraZeneca’s global cybersecurity organization to deliver quality services and solutions that meet both business and IT needs. You will need to collaborate and influence multiple functions across a global organisation spanning Mexico, US, UK, Sweden, China, India and beyond.

The core accountabilities for the role include:

  • Engineer cybersecurity solutions spanning cloud, on-premises, and third-party collaboration environments, with a predominant focus on network and endpoint security.
  • Collaborate with other teams in performing, assessing, and evolving IT processes that intersect any of our cybersecurity priorities.
  • Map governance and compliance frameworks and their controls to technical implementation, shifting hardening processes as far left as possible.
  • Leverage understanding of threats, weaknesses, and vulnerabilities around network and endpoint security to assist other areas in responding promptly and effectively to contain breaches or to address areas of concern.
  • Contribute to defining the future state of cybersecurity within the organisation by conducting gap analysis between our current state and the desired state for tools and services around network and endpoint security.

Qualifications and Experience

  • Must have enterprise IT experience, ideally with networking and endpoint security exposure.
  • Must have experience designing, deploying, and operating secure networks, systems, devices, and security architectures at scale.
  • Should have experience working in a systems administration organization – ideally implementing process automation.
  • Must have experience researching, designing, and implementing security policies, standards, and procedures, including those in cybersecurity frameworks such as MITRE ATT&CK, NIST CSF, NIST SP.800-53, and NIST SP.800-61, as well as implementing network security reference architectures.
  • Understanding of security protocols, cryptography, identity management and access control.
  • Ability to conduct post-mortem on security incidents and take post-mortem data to drive uplift in policies, procedures, standards.
  • Experience with SIEM, CSPM, DSPM, IDS, XDR, SOAR technologies.
  • Familiarity with common attack techniques and their remediation or defence including social engineering, phishing, worms, trojans, rootkits, ransomware, XSS, SQL injection, remote command execution, session hijacking, DDoS, etc.
  • Must have experience identifying, deploying, and managing network security services, ideally with exposure to a multi-cloud environment spanning AWS, GCP and Azure.
  • Knowledge of business continuity, risk assessment, disaster recovery, and computer forensics.

Skills & Capabilities

  • Lead projects delivering prioritised initiatives at challenging deadlines.
  • Ability to positively collaborate in a matrixed organization to drive technology evolution.
  • Ability to identify and articulate architectural trade-offs when choosing network and endpoint security services.
  • Ability to embed process, governance and security into workflow and technology.
  • Design and implement software tools and services using modern scripting languages.
  • Strong drive to push for process and technology improvement at scale.

AstraZeneca is an equal opportunity employer. AstraZeneca will consider all qualified applicants for employment without discrimination on grounds of disability, sex or sexual orientation, pregnancy or maternity leave status, race or national or ethnic origin, age, religion or belief, gender identity or re-assignment, marital or civil partnership status, protected veteran status (if applicable) or any other characteristic protected by law.

Refer code: 962882. Astrazeneca - The previous day - 2024-03-22 18:18

Astrazeneca

Chennai, Tamil Nadu

Share jobs with friends

Engineer, Cyber -Cloud security ( 3 to 6 years only )

Nielsen Consumer Llc

Unspecified

Chennai, Tamil Nadu

3 months ago - seen

Senior Cyber Security Engineer

Golden Hippo Technology Pvt Ltd

10000 - 50000 INR per year

Madurai, Tamil Nadu

4 months ago - seen