Upload Button Icon Add office photos
Premium Employer

i

This company page is being actively managed by Sandoz Team. If you also belong to the team, you can get access from here

Sandoz

Compare button icon Compare button icon Compare
4.0

based on 388 Reviews

filter salaries All Filters

413 Sandoz Jobs

Assoc. Dir. DDIT ISC SecOps VulnSvcs

2-5 years

₹ 3.27 - 6.1L/yr (AmbitionBox estimate)

tooltip
This is an estimate of the average salary range for this position. It has not been reviewed by the company, and the actual salary may differ.

Hyderabad / Secunderabad

1 vacancy

Assoc. Dir. DDIT ISC SecOps VulnSvcs

Sandoz

posted 8hr ago

Job Description

The role is part of DDIT ISC Security Operations in Vulnerability Services team. The person will focus on reducing risk exposure from security vulnerabilities with major focus on high risk, theme based and 0-day vulnerabilities emergency response and remediation. Flexibility with work schedule is critical.
Analyze ongoing security vulnerabilities risk posture, perform technical vulnerability/mitigations tests, collaborate with finding owners/support teams for managing resolutions, act as SME to assess discovered vulnerabilities and provide pragmatic solutions and flexibly support emergency vulnerability remediations. Collaboration with cross functional teams for threat intel, incident response, security architecture, remediation and security operations are key.
-Oversees security operations service line, technology governance and external/internal interfaces in accordance with service operations and management processes.

Job Description
  • Act as a Technical Security SME and point of contact for responding to ongoing high-risk vulnerability exposure
  • Continuously monitor and prioritize security vulnerabilities, missing controls, mitigations and defenses through risk analysis to understand potential impact and translate vulnerability severity as security risk.
  • Identify problem areas, root causes and solution to prevent/reduce vulnerabilities.
  • Support vulnerability assessments and penetration testing of infrastructure, applications, and services where needed to verify false positives or remediations.
  • Ensure that vulnerability remediation plans are delivered to the agreed SLA, engage application managers and asset owners to carry out corrective actions.
  • Identify potential improvement areas for vulnerability response and shared learned lessons with teams and stakeholders.
  • Take accountability to ensure adherence with Security and Compliance policies and procedures.
  • Stay up to date with the latest security threats and vulnerabilities, proactively recommending mitigation strategies.
  • Develop and maintain documentation of related process and best practices.
  • Implement security policies, procedures, and standards to ensure the confidentiality, integrity, and availability of cloud resources from technical vulnerabilities.
  • Provide security awareness and training to teams on security practices and vulnerability related processes.
  • Be flexible with work schedules (including support outside standard business days/hours) to coordinate emergency response for high-risk vulnerability remediation with relevant stakeholders. Drive identification of root causes and prevention of recurrences.
  • Collaborate with various stakeholders from security operations, architecture, cyber, SOC, and application teams to achieve technical risk reduction goals.
  • Defines remediation activities for security assessment gaps as they pertain to IT Security Management
Key performance indicators:
  • Stable, compliant, secure, and cost-effective operations measured by Availability, Performance, Capacity, Security Metrics -Responsiveness and Recovery Speed of critical incidents/issues in business -Learning Agility, ability to evaluate and launch new services and capabilities -Productivity gains and defect reduction through continuous improvement -Automation led Security Operations Services -Integration of Applications and Infrastructure into Centralized Security Platforms
  • Flexibility to support vulnerability response remediation with sense of urgency.
  • Technical expertise proven in identifying, reviewing, and improving vulnerabilities.
  • Ensure Application/project satisfied with the risk, security, and remediation advisory.
  • Reducing the number of vulnerabilities by adapting remediation wherever possible
  • Cross skill collaboration and feedback from the various stake holders
Minimum Requirements:
Work Experience:
  • 8+ years of overall working experience in information security preferably in Application Security and Vulnerability management domain.
  • At least 3+ years in handling security vulnerability response and remediation or SOC, coordinating with relevant stakeholders, and implementing corrective/preventive actions.
  • Experience performing passive discovery and active testing of network or application vulnerabilities for validating external threat landscape to Novartis assets.
  • Risk.
  • Accountability.
  • Strong cross functional leadership.
  • Relationship Management.
  • Strategy Development.
  • Operations Management and Execution.
  • Collaborating across boundaries.
  • Project Management.
  • Interactions with senior management.
  • People Leadership.
  • V ulnerability management, response and technical assessments
  • Threat research and correlation with vulnerabilities
Skills:
  • Strong security knowledge top security vulnerabilities, threat correlation, host/NW controls, mitigations, leading vulnerability scoring standards, such as CVSS, and ability to translate vulnerability severity as security risk.
  • Understanding of relevant industry technology environments and their in-depth information including operating system, protocols, services, applications, configurations, and firmware to review and consult on vulnerabilities.
  • Experience with security vulnerability detection tools for network, applications, web services, databases, containers, code security, cloud services, NW devices, etc.
  • Hands-on experience monitoring threat intel for high-risk vulnerabilities, finding ownerships, handling shadow IT asset scenarios, sensitizing teams for security remediation, performing tests for technical vulnerability confirmation, etc.
  • Knowledge of security patching, technical debt, SW patching, and relevant domains.
  • Escalation.
  • Information Security Audit.
  • Information Security Risk Management.
  • Quality Management.
  • Root Cause Analysis (Rca).
  • Sec Ops (Security Operations).
  • Vendor Management.
  • Persuasive communication skills
Languages :
  • English.

Skills Desired
Escalation, Information Security Audit, Information Security Risk Management, Quality Management, Root Cause Analysis (RCA), Sec Ops (Security Operations), Vendor Management

Employment Type: Full Time, Permanent

Read full job description

Prepare for Associate roles with real interview advice

People are getting interviews at Sandoz through

(based on 15 Sandoz interviews)
Job Portal
Walkin
Campus Placement
Company Website
34%
20%
13%
13%
20% candidates got the interview through other sources.
High Confidence
?
High Confidence means the data is based on a large number of responses received from the candidates.

What people at Sandoz are saying

4.0
 Rating based on 1 Associate review

Likes

Good company fundamentals and culture

Dislikes

Office politics

Read 1 review

Associate salary at Sandoz

reported by 13 employees with 2-5 years exp.
₹3.3 L/yr - ₹7.8 L/yr
26% less than the average Associate Salary in India
View more details

What Sandoz employees are saying about work life

based on 388 employees
67%
49%
56%
91%
Flexible timing
Monday to Friday
No travel
Day Shift
View more insights

Sandoz Benefits

Submitted by Company
Competitive compensation
Pay equity
Pay for sustainable performance
Differentiated benefits and wellbeing programs
Values & integrity
Balanced rewards
Submitted by Employees
Free Transport
Health Insurance
Cafeteria
Job Training
Free Food
Soft Skill Training +6 more
View more benefits

Compare Sandoz with

Cipla

4.1
Compare

Sun Pharmaceutical Industries

4.0
Compare

DRJ & CO

5.0
Compare

Biocon Limited

3.9
Compare

Zydus Lifesciences

4.1
Compare

Glenmark Pharmaceuticals

4.0
Compare

Torrent Pharmaceuticals

3.9
Compare

Lupin

4.2
Compare

Aurobindo Pharma

4.0
Compare

DIVI'S Laboratories

3.8
Compare

Micro Labs

3.7
Compare

Akums Drugs & Pharmaceuticals Limited

4.4
Compare

GlaxoSmithKline Pharmaceuticals

4.1
Compare

Pfizer

4.0
Compare

Biological E

4.2
Compare

Gland Pharma

3.8
Compare

Piramal Group

3.9
Compare

Sanofi

4.3
Compare

Fresenius Kabi

4.2
Compare

Novo Nordisk

4.1
Compare

Similar Jobs for you

Associate at Sandoz

Hyderabad / Secunderabad

5-9 Yrs

₹ 8-12 LPA

Associate at Sandoz

Hyderabad / Secunderabad

6-11 Yrs

₹ 8-13 LPA

Digital at Sandoz

Hyderabad / Secunderabad

3-6 Yrs

₹ 5-8 LPA

Digital at Novartis Healthcare Pvt. Ltd.

Hyderabad / Secunderabad

3-5 Yrs

₹ 5-7 LPA

Associate at Sandoz

Hyderabad / Secunderabad

2-5 Yrs

₹ 4-7 LPA

Ce Specialist at Sandoz

Hyderabad / Secunderabad

4-8 Yrs

₹ 6-10 LPA

Senio at Novartis Healthcare Pvt. Ltd.

Hyderabad / Secunderabad

2-4 Yrs

₹ 4-6 LPA

Ce Specialist at Novartis Healthcare Pvt. Ltd.

Hyderabad / Secunderabad

5-7 Yrs

₹ 7-9 LPA

Security Compliance Analyst at Ontic

Noida

4-7 Yrs

₹ 4-8 LPA

Assistant Manager at Deloitte Shared Services India Pvt. Ltd

Hyderabad / Secunderabad

3-5 Yrs

₹ 5-7 LPA

Assoc. Dir. DDIT ISC SecOps VulnSvcs

2-5 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com

Sr. Spec. DDIT Dev. Business Analyst GCO

5-8 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com

Associate Scientist - Analytical R&D.

2-7 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com

Financial Analyst

3-10 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com

Senior Scientific Writer II

3-6 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com

Senior Scientific Writer I

3-6 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com

Director P&O (Business Partner) International India

12-15 Yrs

Mumbai

16hr ago·via naukri.com

Medical Safety Lead

4-8 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com

Scientist - Analytical R&D.

4-10 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com

Senior Expert Data Science

4-8 Yrs

Hyderabad / Secunderabad

16hr ago·via naukri.com
write
Share an Interview