About Us
What s in it for YOU
- SBI Card truly lives by the work-life balance philosophy. We offer a robust wellness and wellbeing program to support mental and physical health of our employees
- Admirable work deserves to be rewarded! We have a well curated bouquet of rewards and recognition program for the employees
- Dynamic, Inclusive and Diverse team culture
- Gender Neutral Policy
- Inclusive Health Benefits for all - Medical Insurance, Personal Accidental, Group Term Life Insurance and Annual Health Checkup, Dental and OPD benefits
- Commitment to overall development of an employee through comprehensive learning & development framework
Role Purpose
Responsible for reviewing, operationalizing and maturing overall security controls for Databases. This role is also responsible to serve as a security expert in data/base design, helping project teams comply with enterprise and IT security policies, industry regulations, and best practices and establish data protection strategy.
Role Accountability
Network Security Management:
- Serve as a Network Security expert in Network design & Implementation, helping project teams comply with enterprise and IT security policies, industry regulations, and best practices
- Design framework to include database security review for installation, database migration and development of new features/functionality
- Collaborate with systems, network, database, vendor teams to ensure security is maintained at all layers
- Develop framework for securely implementing, integrating and managing Network
- Prepare Network hardening standards in-line with organizations security policy
- Conduct Network Architecture Review periodically inline with the Policy requirement
- Conduct Firewall Configuration & Rule Review periodically inline with the Policy requirement
Database Security Management:
- Serves as a security expert in database design, helping project teams comply with enterprise and IT security policies, industry regulations, and best practices
- Establish data protection strategy and coordinate data protection solution design, architecture and implementation
- Lead secure configuration assessment of databases
- Implement, maintain and review database security standards, guidelines and operational policies and procedures
- Develop framework for secure implementation and management of databases
- Manage preparation of database hardening standards in-line with organizations security policy
- Provide consultation to DB admins on key Cyber Security risks and mitigations (technology and manual) around database integrations & implementations
- Ensure consulting on full life cycle and building capability of Database Activity Monitoring and related technologies
- Review applications access to the database structures
- Design and review appropriate users/authority/roles within the Database
- Maintain and monitor database security, integrity and access controls
- Ensure process documentation and compliance adherence
Measures of Success
- Successful development and operationalize Database security programmed
- Setup and Increase in maturity of Network security Programs (Adoption & Capabilities)
- Successful Database & Firewall security implementation, upgrade and life-cycle management
- Hardening of network and database as per policy
- Implementation of security controls as per policy
- Related security metrics within acceptable threshold
- Availability of DAM services in line with the enterprise expectations
- Resolution of all technical issues reported by users within agreed TAT
- Timely updation of DAM related SOPs and other documents
- No adverse observations in Internal / External Audits
- Process Adherence as per MOU
Technical Skills / Experience / Certifications
- Technical knowledge and Work experience on
- Operating Systems - Unix/Linux/Window Servers etc.
- Network technologies - Firewall, IPS, VPN, APT, proxy etc.
- Databases - MySQL, Oracle, SQL etc.
- Hands on experience of implementing and operating Database Activity Monitoring (DAM) in a complex hybrid environment
- Well versed with key Cyber Security risks and mitigations (technology and manual) around database integrations & implementations
- Industry standard certifications such as Oracle / SQL DBA, CISSP etc.
Competencies critical to the role
- Stakeholder Management
- Analytical ability
- Process Orientation
- Problem Solving
- Detail Orientation
Qualification
Bachelor degree / B.tech in Computer Science / IT or related area
Preferred Industry
BFSI / NBFC /E-commerce/IT & ITES / Telecom