Upload Button Icon Add office photos
filter salaries All Filters

282 Novartis Jobs

Assoc. Dir. DDIT ISC SecOps VulnSvcs

8-13 years

Hyderabad / Secunderabad

1 vacancy

Assoc. Dir. DDIT ISC SecOps VulnSvcs

Novartis

posted 13d ago

Job Description

Summary
The role is part of DDIT ISC Security Operations in Vulnerability Services team. The person will focus on reducing risk exposure from security vulnerabilities with major focus on high risk, theme based and 0-day vulnerabilities emergency response and remediation. Flexibility with work schedule is critical.
Analyze ongoing security vulnerabilities risk posture, perform technical vulnerability/mitigations tests, collaborate with finding owners/support teams for managing resolutions, act as SME to assess discovered vulnerabilities and provide pragmatic solutions and flexibly support emergency vulnerability remediations. Collaboration with cross functional teams for threat intel, incident response, security architecture, remediation and security operations are key.
-Oversees security operations service line, technology governance and external/internal interfaces in accordance with service operations and management processes.
About the Role
  • Act as a Technical Security SME and point of contact for responding to ongoing high-risk vulnerability exposure
  • Continuously monitor and prioritize security vulnerabilities, missing controls, mitigations and defenses through risk analysis to understand potential impact and translate vulnerability severity as security risk.
  • Identify problem areas, root causes and solution to prevent/reduce vulnerabilities.
  • Support vulnerability assessments and penetration testing of infrastructure, applications, and services where needed to verify false positives or remediations.
  • Ensure that vulnerability remediation plans are delivered to the agreed SLA, engage application managers and asset owners to carry out corrective actions.
  • Identify potential improvement areas for vulnerability response and shared learned lessons with teams and stakeholders.
  • Take accountability to ensure adherence with Security and Compliance policies and procedures.
  • Stay up to date with the latest security threats and vulnerabilities, proactively recommending mitigation strategies.
  • Develop and maintain documentation of related process and best practices.
  • Implement security policies, procedures, and standards to ensure the confidentiality, integrity, and availability of cloud resources from technical vulnerabilities.
  • Provide security awareness and training to teams on security practices and vulnerability related processes.
  • Be flexible with work schedules (including support outside standard business days/hours) to coordinate emergency response for high-risk vulnerability remediation with relevant stakeholders. Drive identification of root causes and prevention of recurrences.
  • Collaborate with various stakeholders from security operations, architecture, cyber, SOC, and application teams to achieve technical risk reduction goals.
  • Defines remediation activities for security assessment gaps as they pertain to IT Security Management
Key performance indicators:
  • Stable, compliant, secure, and cost-effective operations measured by Availability, Performance, Capacity, Security Metrics -Responsiveness and Recovery Speed of critical incidents/issues in business -Learning Agility, ability to evaluate and launch new services and capabilities -Productivity gains and defect reduction through continuous improvement -Automation led Security Operations Services -Integration of Applications and Infrastructure into Centralized Security Platforms
  • Flexibility to support vulnerability response remediation with sense of urgency.
  • Technical expertise proven in identifying, reviewing, and improving vulnerabilities.
  • Ensure Application/project satisfied with the risk, security, and remediation advisory.
  • Reducing the number of vulnerabilities by adapting remediation wherever possible
  • Cross skill collaboration and feedback from the various stake holders
Minimum Requirements:
Work Experience:
  • 8+ years of overall working experience in information security preferably in Application Security and Vulnerability management domain.
  • At least 3+ years in handling security vulnerability response and remediation or SOC, coordinating with relevant stakeholders, and implementing corrective/preventive actions.
  • Experience performing passive discovery and active testing of network or application vulnerabilities for validating external threat landscape to Novartis assets.
  • Risk.
  • Accountability.
  • Strong cross functional leadership.
  • Relationship Management.
  • Strategy Development.
  • Operations Management and Execution.
  • Collaborating across boundaries.
  • Project Management.
  • Interactions with senior management.
  • People Leadership.
  • V ulnerability management, response and technical assessments
  • Threat research and correlation with vulnerabilities
Skills:
  • Strong security knowledge top security vulnerabilities, threat correlation, host/NW controls, mitigations, leading vulnerability scoring standards, such as CVSS, and ability to translate vulnerability severity as security risk.
  • Understanding of relevant industry technology environments and their in-depth information including operating system, protocols, services, applications, configurations, and firmware to review and consult on vulnerabilities.
  • Experience with security vulnerability detection tools for network, applications, web services, databases, containers, code security, cloud services, NW devices, etc.
  • Hands-on experience monitoring threat intel for high-risk vulnerabilities, finding ownerships, handling shadow IT asset scenarios, sensitizing teams for security remediation, performing tests for technical vulnerability confirmation, etc.
  • Knowledge of security patching, technical debt, SW patching, and relevant domains.
  • Escalation.
  • Information Security Audit.
  • Information Security Risk Management.
  • Quality Management.
  • Root Cause Analysis (Rca).
  • Sec Ops (Security Operations).
  • Vendor Management.
  • Persuasive communication skills
Languages :
  • English.

Employment Type: Full Time, Permanent

Read full job description

Prepare for Associate roles with real interview advice

What people at Novartis are saying

4.6
 Rating based on 7 Associate reviews

Likes

work life balance

  • Salary - Excellent
    +6 more
Dislikes

No dislike as such

    Read 7 Associate reviews

    Associate salary at Novartis

    reported by 28 employees
    ₹2.9 L/yr - ₹11.7 L/yr
    11% less than the average Associate Salary in India
    View more details

    What Novartis employees are saying about work life

    based on 1.5k employees
    89%
    76%
    54%
    98%
    Flexible timing
    Monday to Friday
    No travel
    Day Shift
    View more insights

    Novartis Benefits

    Health Insurance
    Work From Home
    Free Transport
    Cafeteria
    Soft Skill Training
    Gymnasium +6 more
    View more benefits

    Compare Novartis with

    GlaxoSmithKline Pharmaceuticals

    4.1
    Compare

    Sun Pharmaceutical Industries

    4.0
    Compare

    Cipla

    4.1
    Compare

    Dr. Reddy's

    4.1
    Compare

    Pfizer

    4.0
    Compare

    Biocon Limited

    3.9
    Compare

    Aurobindo Pharma

    4.0
    Compare

    Lupin

    4.2
    Compare

    Zydus Lifesciences

    4.1
    Compare

    Torrent Pharmaceuticals

    3.9
    Compare

    Viatris

    4.2
    Compare

    Abbott

    4.2
    Compare

    Alkem Laboratories

    3.9
    Compare

    Ipca Laboratories

    4.0
    Compare

    Glenmark Pharmaceuticals

    3.9
    Compare

    Akums Drugs & Pharmaceuticals Limited

    4.4
    Compare

    DIVI'S Laboratories

    3.8
    Compare

    Piramal Group

    3.8
    Compare

    Sanofi

    4.2
    Compare

    Fresenius Kabi

    4.2
    Compare

    Similar Jobs for you

    Associate at Sandoz

    Hyderabad / Secunderabad

    5-9 Yrs

    ₹ 8-12 LPA

    Senio at Sandoz

    Hyderabad / Secunderabad

    4-7 Yrs

    ₹ 12-16 LPA

    Associate at Novartis Healthcare Pvt. Ltd.

    Hyderabad / Secunderabad

    4-8 Yrs

    ₹ 17-22 LPA

    Associate at Sandoz

    Hyderabad / Secunderabad

    8-12 Yrs

    ₹ 10-14 LPA

    Associate at Sandoz

    Hyderabad / Secunderabad

    6-11 Yrs

    ₹ 8-13 LPA

    Ce Specialist at Novartis Healthcare Pvt. Ltd.

    Hyderabad / Secunderabad

    5-8 Yrs

    ₹ 9-12 LPA

    Senio at Sandoz

    Hyderabad / Secunderabad

    10-15 Yrs

    ₹ 8-13 LPA

    Associate at Novartis Healthcare Pvt. Ltd.

    Hyderabad / Secunderabad

    12-14 Yrs

    ₹ 7-8 LPA

    Associate at Sandoz

    Hyderabad / Secunderabad

    10-12 Yrs

    ₹ 12-14 LPA

    Senio at Novartis Healthcare Pvt. Ltd.

    Hyderabad / Secunderabad

    10-15 Yrs

    ₹ 9-14 LPA

    Novartis Hyderabad / Secunderabad Office Location

    View all
    Hyderabad Office
    Novartis, Salarpuria-Sattva Knowledge City, Madhapur, Madhapur, Inorbit Mall Rd, Silpa Gram Craft Village, HITEC City Hyderabad
    Telangana 500081

    Assoc. Dir. DDIT ISC SecOps VulnSvcs

    8-13 Yrs

    Hyderabad / Secunderabad

    15d ago·via naukri.com

    Principal Statistical Programmer (Mumbai)

    8-12 Yrs

    Mumbai

    4d ago·via naukri.com

    Senior Principal Statistical Programmer (Mumbai)

    10-16 Yrs

    Mumbai

    4d ago·via naukri.com

    Sr. Spec. DDIT SecOps IAM

    10-15 Yrs

    Hyderabad / Secunderabad

    6d ago·via naukri.com

    Senior Expert, Science & Technology (EPM Specialist)

    3-8 Yrs

    Hyderabad / Secunderabad

    6d ago·via naukri.com

    Analyst - Digital

    2-3 Yrs

    Hyderabad / Secunderabad

    6d ago·via naukri.com

    Associate Director

    7-12 Yrs

    Hyderabad / Secunderabad

    6d ago·via naukri.com

    Global Category Manager Clinical

    12-15 Yrs

    Hyderabad / Secunderabad

    6d ago·via naukri.com

    Assoc. Dir. DDIT IES Cloud Engg., Azure AI

    10-15 Yrs

    Hyderabad / Secunderabad

    6d ago·via naukri.com

    Assoc. Dir. DDIT IES Cloud Engineering

    8-9 Yrs

    Hyderabad / Secunderabad

    6d ago·via naukri.com
    write
    Share an Interview