Senior Database Security Engineer
Hyderabad, India
Experian
Experian is committed to helping you protect, understand, and improve your credit. Start with your free Experian credit report and FICO® score.Company Description
Experian is the world’s leading global information services company. During life’s big moments — from buying a home or a car to sending a child to college to growing a business by connecting with new customers — we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organizations to prevent identity fraud and crime.
We have 17,800 people operating across 44 countries, and every day we’re investing in new technologies, talented people and innovation to help all our clients maximize every opportunity. We are listed on the London Stock Exchange (EXPN) and are a constituent of the FTSE 100 Index.
Learn more at www.experianplc.com or visit our global content hub at our global news blog for the latest news and insights from the Group
Job Description
The mission of the EGSO Engineering and Architecture Database Activity Monitoring (DAM) team is to monitor Experian sensitive data, safeguarding against negative impacting cyber events that compromise the Confidentiality, Integrity, and Availability of that data.
The EGSO Engineering and Innovation DAM Team performs the following key functions:
Identify Sensitive Data and Protection of that sensitive data through suitable logging and monitoring methods.
Perform Control Engineering of security tools to detect, monitor and protect sensitive data against potential malicious activity. Currently focused on logging and monitoring Database activity using tools such as IBM Guardium.
Ensuring Security Compliance against regulations enforced by respective governments.
Identify restricted data (PII, PCI and PHI) in structured and unstructured data both On-Prem and cloud platforms.
The focus for the role will be on Data identification and Monitoring both in cloud and on-premises data repositories.
The Senior Data Security Engineer develops roadmaps and sets the technical direction for data protection service areas such as database activity monitoring On-Prem and in Cloud (AWS, AZURE ,GCP and OCI). This engineer will establish the tactical roadmap (aligned to the tower strategy) that is focused on the implementation of future state security controls following these guiding principles: Agile, Available, Simple to implement, and Automated.
The Senior Data Security Engineer is responsible for the build-out of the data security controls and for planning to ensure health and data protection is maintained at the highest levels. This role is the escalation point for Data Protection technical gaps and provides change governance.
Senior Data Security Engineer Functions
Provide SME expertise on security tool capabilities and configuration adjustments, when needed, to implement controls such as: Identify restricted Data, Implement database monitoring, Perform Active Threat Analytics, Database misconfiguration and Database Entitlement reporting as well as during security incidents or block future security attacks
Collaborate with the Manager to identify capability gaps and operational inconsistencies within the Data Protection controls environment and develop a plan to address through product enhancement, reconfiguration, upgrades and/or automation of processes
Build, manage, and maintain the automated reporting dashboards system
Provide on-call support
Collaborate with Customers and other technology teams to ensure operational requests and incidents are resolved within defined SLAs
Leverage tooling to monitor and optimize the performance of the wider data protection operations team
Analyze, troubleshoot, and resolve complex technical Data Protection control issues
Build, manage, and maintain the intake process for requests on service now or a suitable tool.
Examine concepts, work on Proof of Concepts, develop Minimum Viable Product and scale and operationalize the product including documentation and process development,
Senior Data Security Engineer Responsibilities
TIMELY COMPLETION OF WORK:
Establish a baseline plan and corresponding execution roadmaps.
Refresh and re-publish tactical Plan for advanced data protection controls in June of every year
Report progress against roadmap every month
Refresh Data Protection roadmap/s quarterly
Define plan and roadmap for dashboard automation and service now intake process and report weekly progress against plan
QUALITY OF WORK:
Ensure Technical and Process documentation is 100% current all the time (all changes thoroughly documented)
Ensure new builds/integrations/agent implementation follow operational readiness processes, are fully documented, health/performance KPIs are defined and in place, and monitoring and alerting is in place before promoting to production
Provide change governance
EDUCATE SELF AND PEERS:
Demonstrate continual progress toward obtaining a security-specific (or specific security product certification)- or maintain a current certification
Complete two career-related training courses per year
Perform monthly training sessions for business teams
Attend lunch and learn sessions to share knowledge with Engineering group
Mentors team members to promote continual growth
Independently/informally leading teams on projects through completion
FOLLOW PROCESS:
Publish build documentation for the Relevant Data Protection controls on the EGSO WiKi
EFFECTIVE COMMUNICATION:
Advocate Data Protection Controls across Experian
Maintain objective progress documentation.
Documentation – documentation of business cases, POCs, Procedures, results of POCs, Test cases, integration guides and relevant runbooks to operationalize database activity monitoring and data discovery for Experian.,
Qualifications
Must have:
BS in Science and technology or Engineering or Equivalent 8+ years of job experience in IT and at least 5+ years in security
Database administration skill of 2+ years
Strong leadership skills
In-depth knowledge of various operation systems On-Premise: Windows, Linux/Unix , Mainframe and shell scripts Cloud:AWS, Azure, OCI, Google
Experience working with cloud platforms like AWS, Oracle, Azure , Google
Experience with Data activity monitoring tools like IBM Guardium, Imperva
Knowledge of Network technologies
Knowledge of SIEM tools
Preferable:
Certified in DAM tools
Experience with Splunk and Exabeam tools
Knowledge and Experience with Data Governance tools like IBM Watson Knowledge catalog, Data360, ASG
Additional Information
Additional Information
Why choose us?
Our colleagues’ health and wellbeing are a top priority for us, that’s why our reward, benefits and wellbeing programmes are designed so you can come to work feeling your very best self. Our benefits focus on health, money, and lifestyle so you can tailor your benefits to your own personal needs. Whether it’s your physical and mental wellness, getting to work or preparing for the next big milestone in your life, we have a range of flexible options to have you covered!
To learn more about our culture and what it’s really like to work here, check out our interactive guide here: https://view.pagetiger.com/experianguideforcandidates/1
Could this be the role for you? Apply now to start your journey with Experian.
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Analytics Automation AWS Azure Cloud Compliance Exabeam GCP Governance KPIs Linux Mainframe Monitoring Oracle POCs SIEM SLAs Splunk Strategy UNIX Windows
Perks/benefits: Career development Equity / stock options Flex hours Health care Team events Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.