Alshaya Group is a dynamic family-owned enterprise, first established in Kuwait in 1890. With a consistent record of growth and innovation, Alshaya Group is one of the worlds leading brand franchise operators, offering an unparalleled choice of well-loved international brands to customers. Alshaya Groups portfolio extends across MENA, Turkey and Europe, with thousands of stores, cafes, restaurants and leisure destinations, as well as a growing online and digital business. Operating in multiple sectors including Fashion, Food, Health & Beauty, Pharmacy, Home Furnishings and Leisure & Entertainment, Alshaya Group colleagues are united by a commitment to authentically deliver great customer service and brand experiences. Fresh, modern and relevant, Alshayas constantly evolving portfolio reflects the choices and lifestyle of its customers. From flagship stores and restaurants in prestige malls, through to local coffee shops, drive-thrus and online, Alshaya Group brings customers the brands they love in the places they want to be. Brands such as Starbucks, H&M, Mothercare, Debenhams, American Eagle Outfitters, P.F. Changs, The Cheesecake Factory, The Body Shop, M.A.C, Victorias Secret, Boots, Pottery Barn and KidZania. About the business unit: Alshaya employed a dedicated security team to implement and maintain the organization's information security program. Typically, this group is led by a chief information officer. The security group is generally responsible for conducting risk management, a process through which vulnerabilities and threats to information assets are continuously assessed, and the appropriate protective controls are decided on and applied. The value of an organization lies within its information and its security is critical for business operations, as well as retaining credibility and earning the trust of clients. Responsible to ensure timely reporting of cyber incidents with accurate, meaningful, and comprehensive understanding of cyber incident through its life cycle. Develop proactive security controls to minimize any damage or impact to Alshaya information networks, information systems, data, and services. Need to provide an effective and comprehensive response that include the recovery of any affected information systems and the return to a fully functioning, secure, operational state for all services and information systems. Effective triaging and prioritization of incoming alerts per MITRE ATT&CK framework. Expertise with host and network-based security tools Ensure the timely identification, response, investigation, and remediation of all security events and incidents Thorough understanding of advanced security and network concepts (Operating systems, intrusion/detection, TCP/IP, ports, etc.) Develop, maintain, and enhance related IR processes and playbooks, documentation,and other supporting procedures Expertise with network monitoring in a SOC environment Develop and maintain program metrics, KPIs and reporting for the incident response program to drive continuous improvement Aid in the evaluating, planning, configuration, and implementation of supporting security initiatives and solutions Ensure security industry standards and best practices are identified and integrated into the program approach and methodologies Expertise in Malware Analysis and Memory Forensics. Knowledge in cloud response and containment Ability to navigate ambiguity and develop working with Teams Excellent written and oral communication skills Knowledge of different types of vulnerabilities like OWASP Top 10/20. Programming knowledge with a popular modern language utilized by above tools (i.e. Java, PHP, Python, Ruby etc.) Life-long learner - always stay up to date with latest attack vectors, vulnerabilities, remediation and protection paradigms, etc. Knowledge: Experience managing and leading security analysts in a security operation center. Proven results developing and implementing methods, processes, and procedures for detecting, responding, and resolving computer security incidents Deep understanding of present-day cyber-threats, attacker techniques and behaviors and effective methods to both detect & repel these threats for a global organization. Experience with supporting security technologies such as firewalls, proxies, web and email filters, application whitelisting, sandboxing, SIEM, threat intelligence, vulnerability scanning, syslog, IDS/IPS, DLP,EDR, Cloud etc. Strong technology experience with IT technologies including networks, endpoints, virtualization, cloud, operating systems, email, storage, databases, etc. Proficiency leading projects and project management experience with a focus on delivery and execution Highly motivated and self-directed with a passion for solving complex problems must be able to prioritize based on risk, schedule and track to deadlines for self and team members Experience: 5-10 years experience in Information Security Domain Graduation Degree/Btech CEH / OSCP / CHF certifications is added advantage Skills: Hands on security incident investigation with good knowledge of IR reporting. Hands on creating usecases related to security controls. Strong interpersonal, oral, and written communication skill. Deep understanding of Cyber security Framework.,
Employement Category:
Employement Type: Full timeIndustry: IT Services & ConsultingRole Category: Not SpecifiedFunctional Area: Not SpecifiedRole/Responsibilies: Lead Information Security Job in Alshaya Group
Contact Details:
Company: Alshaya GroupLocation(s): Other Karnataka