Associate Consultant IT Shared Service Management1
Key Responsibilities:
Conduct and manage vulnerability assessments using appropriate tools, ensuring timely remediation efforts.
Monitor and analyze network security logs, incidents.
Troubleshoot and work on various end-user incidents and service requests to understand the user security exposure.
Collaborate with cross-functional teams to manage patching processes using Manage Engine.
Assist in compliance initiatives, including preparing for and participating in audits for ISO 27001, SOC 2 Type 2, SOC 1 Type 1, HIPPA, GDPR etc.
Utilize EDR tools to monitor and track endpoint detection and response activities, ensuring timely mitigation of threats.
Track vulnerabilities and remediation tasks using ITSM ticketing tools and maintain organized records.
Communicate security findings, audit results, and recommendations effectively to technical and non-technical stakeholders.
Key Skills and Experience:
3+ years of experience in End-user support and Information Security, with a focus on System security, VAPT, and audits.
Hands-on experience in troubleshooting end-user issues and other system admin tasks.
Hand-on experience with Windows systems and end-user business applications.
Proficiency in using tools such as Qualys, CrowdStrike EDR, GWS, and Manage Engine.
Knowledge of ISO 27001, GDPR, SOC 2 Type 2, and SOC 1 Type 1 compliance frameworks.
Experience with patch management and maintaining secure IT environments.
Strong communication and documentation skills to clearly convey technical findings.
Ability to work independently and proactively in a dynamic environment.
Preferred Qualifications:
Candidates must hold a graduate degree and possess relevant technical experience.
Experience with global workspace solutions (GWS) and end-user support.
Familiarity with Manage Engine ITSM tools for incident tracking and reporting.
This role offers an opportunity to work on critical Information security initiatives along with end-user support activities engage with industry-leading tools, and contribute to the overall security and compliance posture of the organization.