Project Role : Security Architect
Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.
Must have skills : Splunk Security Information and Event Management (SIEM)
Good to have skills : NA
Minimum
3 year(s) of experience is required
Educational Qualification : Bachelor or college degree in related field or equivalent work experience
Summary:
As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. You will also document the implementation of the cloud security controls and transition to cloud security-managed operations. Your typical day will involve designing and implementing security solutions, collaborating with cross-functional teams, and staying updated with the latest security trends and technologies.
Roles & Responsibilities:
• 6-8 years of work experience with Information Security preferred SIEM technology as Splunk.
• Experience in Azure security center, Crowdstrike, ProofPoint , Microsoft Defender is required.
• Develop, Maintain, and manage security technology and process solution in providing Cyber Security.
• Hands on experience in Analyze, Mitigate, and manage Cyber Security risk and create process in alignment with policies and standards.
• Proficient understanding of networks management and network security.
• Proficient understanding of log management and security assessment tools.
• Good understanding of relevant security technologies, such as Malware Management, Network IDS/IPS, etc.
• Hands on exposure in Splunk and managing L1 & L2 escalations.
• Resolve problems independently and understand escalation procedure.
• Knowledge in EndPoint, Cloud Security and Email analysis.
• Validation, analysis of investigations within Security Operations Centre (SOC) Analysts with complete documentation; determine the validity and priority of the activity and escalate to L3 SOC team
• Carry out Level 2 triage of incoming issues and operate as Shift Lead as necessary or nominated
• Proactively identify and suggest updating of SIEM use cases to generate alerts
• Provide support to L1 as necessary throughout the incident per the SOC guidelines.
• Identify and manage a wide range of intelligence sources to provide a holistic view of the threat landscape and filter out noise in order to focus and execute upon actionable intelligence
• Leading the development of actionable use cases to detect, triage, investigate and remediate based on latest threat actor trends, support teams with the technical implementation of parsing log sources creating, validating and testing alerting queries to reduce false positives
• Ensure that all security events and incidents (internal / external) are logged and regularly updated and closed within the set SLA’s
Professional & Technical Skills:
- Must To Have Skills: Proficiency in Splunk Security Information and Event Management (SIEM).
- Strong understanding of cloud security principles and best practices.
- Experience with designing and implementing security controls in cloud environments.
- Knowledge of network security protocols and technologies.
- Familiarity with security frameworks such as NIST, ISO 27001, and CIS.
- Good To Have Skills: Experience with security incident response and threat intelligence analysis.
- Experience with cloud security platforms such as AWS Security Hub or Azure Security Center.
- Knowledge of scripting languages such as Python or PowerShell.
Additional Information:
- The candidate should have a minimum of 3 years of experience in Splunk Security Information and Event Management (SIEM).
- This position is based at our Bengaluru office.
- A Bachelor or college degree in a related field or equivalent work experience is required.
Bachelor or college degree in related field or equivalent work experience
About Accenture
Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with 750,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. We are uniquely able to deliver tangible outcomes because of our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song. These capabilities, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities. Visit us at www.accenture.com
Equal Employment Opportunity Statement
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process.
Accenture is committed to providing veteran employment opportunities to our service men and women.