Security Analyst-WAF operation and EMail security
NTT DATA North America
**Req ID:** 336406
NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.
We are currently seeking a Security Analyst-WAF operation and EMail security to join our team in Bengaluru, Karnātaka (IN-KA), India (IN).
Firewall, API Security, OWASP, EOP, IDS/IPS - Security Analyst
FMRJP00035347:: Security Analyst and IAM 3 (6-9 Years)
The Role
Principal Cybersecurity Edge Security Ops
The job involves performing functions related to Network and Perimeter specialized Security Engineers including Web Application Firewall, Email Security, , Network and cloud security Cyber Incident Response. Looking for an energetic, hard charging individual able to keep up in an exciting and fast-moving security operations team that is engaged in several high-profile security projects to enhance Fidelity’s security posture. The candidate will be immersed in a quick changing environment in a very rapid changing threat landscape, working with numerous security professionals. The qualified candidate must be adaptable and able to work in a fast-paced environment where learning new skills and understanding new system architectures quickly is a key to success.
The Team
The Principal Cybersecurity Analyst will be working on external defense team to ensure indications of compromise are promptly identified and stakeholders are informed with actionable and complete information. This role will assist and coordinate with incident response staff, threat intelligence, vulnerability management, and perimeter security teams during response activities and cyber investigations. This position works closely with our ISO for each Business Unit and directly with internal and external customers.
The Expertise You Have
Technical:
• Perimeter and cloud security Expert with an outstanding understanding of the latest practices and trends in edge security.
• Strong experience in Web application firewall and API Security. Good exposure to how to proactively combat OWASP top 10, Account take over , API and other bot external attacks .
• Evaluate, deploying and managing Akamai / AWS / Azure Web Application Firewall security configuration.
• Good knowledge of Email Security (EOP), Email Security Network IDS/IPS, WAF, DDoS Control and Cloud Security.
• Advance experience on Splunk or other SIEM (Security information and event management) Monitoring. Log Analysis Expertise - Web logs, NetFlow and Packet Analysis
• Analyzing web traffic patterns to improve protections.
• Reviewing policy enforcement change requests; interviewing submitters who have requested security configuration changes and require additional requirements gathering.
• Knowledge of Agile, DevSecOps, Open Source and a programming language is of substantial advantage
• Manage Cyber Incidents and other service incidents for WAF and other security technologies
Behavioral
• Positive personality and can-do attitude; you also have good communication skills with an excellent command of the English language.
• Open-minded, empathic and a team-mate with a partnering approach and an enthusiastic and motivated personality, with demonstrated experience in solving complex challenges
• Intellectually curious and therefore remain abreast of new technologies and developments relating to technical products that might be used enterprise wide and software delivery methodologies
• Proficient in balancing business partner views and interests
• Team player with excellent interpersonal & communication skills (written and verbal)
• Senior technical and non-technical Stake holder management skills
The Skills You Bring
• 7 to 9 years of security experience desired, preferably in a matrix-driven corporate environment.
• Mandatory is WAF Operations and E Mail Security is Secondary.
• Security experience with any WAF provider, API definitions, custom rules, writing bot management rules and analyzing traffic logs.
• Proven experience troubleshooting and simulating HTTP client requests (e.g., curl, postman, HAR file analysis).
• Strong understanding of core networking concepts (e.g. – TCP/IP, DNS, HTTP, proxy, load-balancing, etc.).
• Functional experience with Splunk, SIEM, or other log aggregation & analysis technologies.
• Experience with cloud solutions such as AWS or other IaaS/PaaS/SaaS environments.
• Ability to interact with both technical and non-technical staff, including management and executives, with experience articulating technical material in business terms.
• Functional understanding of network controls and policies to stop cyber threats.
• Familiarity with external facing security controls that can stop external attacks that may occur: such as WAF tuning, Bot management, API protection, network policy governance, troubleshooting, and incident response.
• Familiarity with criminal activities and the attacks that may occur in each layer of the OSI model.
• Ability to make information security risk determinations based on intelligence analysis.
• Understanding cyber threats, malicious cyber threat actor motivations, and capabilities relevant to regions of interest.
Shift timings
• Weekend Shift
• Weekdays : Between 8AM to 11PM
Minimum Experience on Key Skills
- 6-9 Years
General Expectation
1) Must have Good Communication
2) Must be ready to work in 10:30 AM to 8:30 PM Shift
3) Flexible to work in Client Location GV, Manyata or EGL, Bangalore
4) Must be ready to work from office in a Hybrid work environment. Full Remote work is not an option
5) Expect Full Return to office from Feb/Mar'25
Pre-Requisites before submitting profiles
1) Must have Genuine and Digitally signed Form16 for ALL employments
2) All employment history/details must be present in UAN/PPF statements
3) Candidate must be screened using Video and ensure he/she is genuine and have proper work setup
4) Candidates must have real work experience on mandatory skills mentioned in JD
5) Profiles must have the companies which they are having payroll with and not the client names as their employers
6) As these are competitive positions and client will not wait for 60 days and carry the risks of drop-out, candidates must of 0 to 3 weeks of Notice Period
7) Candidates must be screened for any gaps after education and during employment for genuineness of the reasons
**About NTT DATA**
NTT DATA is a $30 billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long term success. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure and connectivity. We are one of the leading providers of digital and AI infrastructure in the world. NTT DATA is a part of NTT Group, which invests over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. Visit us at us.nttdata.com (http://us.nttdata.com/en)
Whenever possible, we hire locally to NTT DATA offices or client sites. This ensures we can provide timely and effective support tailored to each client’s needs. While many positions offer remote or hybrid work options, these arrangements are subject to change based on client requirements. For employees near an NTT DATA office or client site, in-office attendance may be required for meetings or events, depending on business needs. At NTT DATA, we are committed to staying flexible and meeting the evolving needs of both our clients and employees. NTT DATA recruiters will never ask for payment or banking information and will only use @nttdata.com and @talent.nttdataservices.com email addresses. If you are requested to provide payment or disclose banking information, please submit a contact us form, https://us.nttdata.com/en/contact-us .
**_NTT DATA endeavors to make_** **_https://us.nttdata.com_** **_accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at_** **_https://us.nttdata.com/en/contact-us_** **_._** **_This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here (http://us.nttdata.com/en/compliance#eeos) . If you'd like more information on your EEO rights under the law, please click here (http://us.nttdata.com/en/compliance#know-your-rights) . For Pay Transparency information, please click here (http://us.nttdata.com/en/compliance#ppnp) ._**
Confirmar seu email: Enviar Email
Todos os Empregos de NTT DATA North America