Security Tower Lead

Ampool, Inc.

Ampool, Inc.

Multiple locations
Posted 6+ months ago
Security Risk Consultant

This role has been designated as ‘Hybrid’ with an expectation that you will work on average 2-3 days per week from an HPE office.

Who We Are:

Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today’s complex world. Our culture thrives on finding new and better ways to accelerate what’s next. We know diverse backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.

Job Description:

HPE Services is our innovative IT services organization. It provides the expertise to advise, integrate, and accelerate our customers’ outcomes from their digital transformation. Our teams collaborate to transform insight into innovation. In today’s fast paced, hybrid IT world, being at business speed means overcoming IT complexity to match the speed of actions to the speed of opportunities. Deploy the right technology to respond quickly to market possibilities. Join us and redefine what’s next for you.

What you’ll do:

A Security Consultant undertakes complex work of a high-risk level, often working on several projects. In this role, you will:

  • Interact with senior stakeholders across departments

  • Reach and influence a wide range of people across larger teams and communities

  • Develop vision, principles, and strategy for security architects for one project or technology.

  • Understand the impact of decisions, balancing requirements and deciding between approaches.

  • Be the point of escalation for architects.

  • Minimum 5 years of working experience in Cyber Security Consulting or Advisory in Risk Assessment, BCP/DR, Data Privacy.

  • Successfully delivered at-least 2 (two) Cyber Security consulting projects as consultant in recent years (2 years).

  • Good understanding on the ISO 22301, COBIT and ISO 27001, NIST, PCI-DSS standards

Certification:

Preferred Certification (VALID):

  • Certified Information Security Auditor (CISA)

  • Certified Information Security Manager (CISM)

  • CDPSE, CIPP, CIPE

  • ISO 22301

What you need to bring:

Candidate should have experience in the below domains

  • Security Compliance & Governance Service

    • Policy, procedure & framework design, and implementation

    • Risk Management

    • Security Baselining

    • Best Practice Recommendation

  • Public & Private Cloud security assessment & recommendation.

  • Hands on experience on Cloud Security framework like CSA CCM, ISO 27017

  • Hands on experience at GRC tool (e.g., RSA Archer, MetricStream, ServiceNow GRC etc.)

  • End to End knowledge and hands on experience of Risk Management Lifecycle (Risk Identification, Risk Assessment, Risk Response, Risk & Control Monitoring & Reporting)

  • Excellent understanding and hands on experience at Business Continuity Lifecycles, Business Impact Analysis, Crisis Communication, Maturity Analysis

  • Hands on experience of driving Disaster Recovery strategy, well depth understanding on DR technology assessment.

  • Exposure with Tool based BCP, DR module implementation is desired

  • Good understanding on the COBIT, NIST CSF, ISO 27001, ISO 31000, ISO 22301, HIPAA, GDPR, CCPA

  • Cloud Security Trust, Assurance & Governance

  • Audit Automation

  • Service Organization Control (SOC1, SOC2) Audit & Compliance

  • Software Security Framework (e.g., BSSIM, OWASP SAMM)

Additional Skills:

Accountability, Accountability, Action Planning, Active Learning, Active Listening, Bias, Business Growth, Business Planning, Coaching, Commercial Acumen, Creativity, Critical Thinking, Cross-Functional Teamwork, Customer Experience Strategy, Customer Solutions, Data Analysis Management, Data Collection Management, Data Controls, Design Thinking, Empathy, Follow-Through, Growth Mindset, Intellectual Curiosity, Long Term Planning, Managing Ambiguity {+ 5 more}

What We Can Offer You:

Health & Wellbeing

We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.

Personal & Professional Development

We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have — whether you want to become a knowledge expert in your field or apply your skills to another division.

Diversity, Inclusion & Belonging

We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know diverse backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.

Let's Stay Connected:

Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE.

#india

#servicesandsupport

Job:

Services

Job Level:

Specialist

HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT and Affirmative Action employer. We are committed to diversity and building a team that represents a variety of backgrounds, perspectives, and skills. We do not discriminate and all decisions we make are made on the basis of qualifications, merit, and business need. Our goal is to be one global diverse team that is representative of our customers, in an inclusive environment where we can continue to innovate and grow together. Please click here: Equal Employment Opportunity.

Hewlett Packard Enterprise is EEO F/M/Protected Veteran/ Individual with Disabilities.

HPE will comply with all applicable laws related to employer use of arrest and conviction records, including laws requiring employers to consider for employment qualified applicants with criminal histories.