Senior Database Security Engineer

Hyderabad, India

Experian

Experian is committed to helping you protect, understand, and improve your credit. Start with your free Experian credit report and FICO® score.

View all jobs at Experian

Apply now Apply later

Company Description

Experian is the world’s leading global information services company. During life’s big moments — from buying a home or a car to sending a child to college to growing a business by connecting with new customers — we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organizations to prevent identity fraud and crime.

We have 17,800 people operating across 44 countries, and every day we’re investing in new technologies, talented people and innovation to help all our clients maximize every opportunity. We are listed on the London Stock Exchange (EXPN) and are a constituent of the FTSE 100 Index.

Learn more at www.experianplc.com or visit our global content hub at our global news blog for the latest news and insights from the Group

Job Description

The mission of the EGSO Engineering and Architecture Database Activity Monitoring (DAM) team is to monitor Experian sensitive data, safeguarding against negative impacting cyber events that compromise the Confidentiality, Integrity, and Availability of that data. 

The EGSO Engineering and Innovation DAM Team performs the following key functions: 

  • Identify Sensitive Data and Protection of that sensitive data through suitable logging and monitoring methods. 

  • Perform Control Engineering of security tools to detect, monitor and protect sensitive data against potential malicious activity. Currently focused on logging and monitoring Database activity using tools such as IBM Guardium. 

  • Ensuring Security Compliance against regulations enforced by respective governments. 

  • Identify restricted data (PII, PCI and PHI) in structured and unstructured data both On-Prem and cloud platforms. 

  • The focus for the role will be on Data identification and Monitoring both in cloud and on-premises data repositories. 

The Senior Data Security Engineer develops roadmaps and sets the technical direction for data protection service areas such as database activity monitoring On-Prem and in Cloud (AWS, AZURE ,GCP and OCI).  This engineer will establish the tactical roadmap (aligned to the tower strategy) that is focused on the implementation of future state security controls following these guiding principles: Agile, Available, Simple to implement, and Automated. 

The Senior Data Security Engineer is responsible for the build-out of the data security controls and for planning  to ensure health and data protection is maintained at the highest levels. This role is the escalation point for Data Protection technical gaps and provides change governance. 

Senior Data Security Engineer Functions 

  • Provide SME expertise on security tool capabilities and configuration adjustments, when needed, to implement controls such as: Identify restricted Data, Implement database monitoring, Perform Active Threat Analytics, Database misconfiguration and Database Entitlement reporting as well as during security incidents or block future security attacks 

  • Collaborate with the Manager to identify capability gaps and operational inconsistencies within the Data Protection controls environment and develop a plan to address through product enhancement, reconfiguration, upgrades and/or automation of processes 

  • Build, manage, and maintain the automated reporting dashboards system 

  • Provide on-call support 

  • Collaborate with Customers and other technology teams to ensure operational requests and incidents are resolved within defined SLAs 

  • Leverage tooling to monitor and optimize the performance of the wider data protection operations team 

  • Analyze, troubleshoot, and resolve complex technical Data Protection control issues 

  • Build, manage, and maintain the intake process for requests on service now or a suitable tool. 

  • Examine concepts, work on Proof of Concepts, develop Minimum Viable Product and scale and operationalize the product including documentation and process development, 

Senior Data Security Engineer Responsibilities 

TIMELY COMPLETION OF WORK: 

  • Establish a baseline plan and corresponding execution roadmaps. 

  • Refresh and re-publish tactical Plan for advanced data protection controls in June of every year 

  • Report progress against roadmap every month 

  • Refresh Data Protection roadmap/s quarterly 

  • Define plan and roadmap for dashboard automation and service now intake process and report weekly progress against plan 

QUALITY OF WORK: 

  • Ensure Technical and Process documentation is 100% current all the time (all changes thoroughly documented) 

  • Ensure new builds/integrations/agent implementation follow operational readiness processes, are fully documented, health/performance KPIs are defined and in place, and monitoring and alerting is in place before promoting to production 

  • Provide change governance 

EDUCATE SELF AND PEERS: 

  • Demonstrate continual progress toward obtaining a security-specific (or specific security product certification)- or maintain a current certification 

  • Complete two career-related training courses per year 

  • Perform monthly training sessions for business teams 

  • Attend lunch and learn sessions to share knowledge with Engineering group 

  • Mentors team members to promote continual growth 

  • Independently/informally leading teams on projects through completion 

FOLLOW PROCESS: 

  • Publish build documentation for the Relevant Data Protection controls on the EGSO WiKi 

EFFECTIVE COMMUNICATION: 

  • Advocate Data Protection Controls across Experian 

  • Maintain objective progress documentation. 

  • Documentation – documentation of business cases, POCs, Procedures, results of POCs, Test cases, integration guides and relevant runbooks to operationalize database activity monitoring and data discovery for Experian., 

Qualifications

Must have: 

  • BS in Science and technology or Engineering or Equivalent 8+ years of job experience in IT and at least 5+ years in security 

  • Database administration skill of 2+ years 

  • Strong leadership skills 

  • In-depth knowledge of various operation systems On-Premise: Windows, Linux/Unix , Mainframe and shell scripts Cloud:AWS, Azure, OCI, Google 

  • Experience working with cloud platforms like AWS, Oracle, Azure , Google 

  • Experience with Data activity monitoring tools like IBM Guardium, Imperva 

  • Knowledge of Network technologies 

  • Knowledge of SIEM tools 

Preferable: 

  • Certified in DAM tools 

  • Experience with Splunk and Exabeam tools 

  • Knowledge and Experience with Data Governance tools like IBM Watson Knowledge catalog, Data360, ASG 

Additional Information

Additional Information

Why choose us?

Our colleagues’ health and wellbeing are a top priority for us, that’s why our reward, benefits and wellbeing programmes are designed so you can come to work feeling your very best self. Our benefits focus on health, money, and lifestyle so you can tailor your benefits to your own personal needs. Whether it’s your physical and mental wellness, getting to work or preparing for the next big milestone in your life, we have a range of flexible options to have you covered!

To learn more about our culture and what it’s really like to work here, check out our interactive guide here: https://view.pagetiger.com/experianguideforcandidates/1

Could this be the role for you? Apply now to start your journey with Experian.

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: Agile Analytics Automation AWS Azure Cloud Compliance Exabeam GCP Governance KPIs Linux Mainframe Monitoring Oracle POCs SIEM SLAs Splunk Strategy UNIX Windows

Perks/benefits: Career development Equity / stock options Flex hours Health care Team events Wellness

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.