Job Description

Role Overview



The IT Security Officer will be responsible for ensuring and continuously improving the IT security posture of Kotak Education Foundation (KEF). This role involves safeguarding KEF's IT infrastructure, endpoints, applications, cloud environment, and networks from cyber threats, while ensuring compliance with security policies, frameworks, and regulatory requirements.

Key Responsibilities



1. Endpoint & Device Security

Manage and monitor Sophos Intercept X Advanced endpoint security across Windows and Ubuntu laptops.

Define policies for device hardening, patch management, and secure configuration.

Ensure data loss prevention, malware protection, and endpoint encryption are effectively enforced.

2. Network & Perimeter Security

Administer and maintain Fortinet Firewalls (FortiGate), including IPS, VPN (with 2FA), and web filtering.

Oversee Wi-Fi Cloud Access Points security, including SSID management, VLAN segregation, and access controls.

Conduct regular audits of firewall and network security policies.

3. Application Security

Coordinate Vulnerability Assessment & Penetration Testing (VAPT) for KEF applications (ERPNext, Moodle LMS, HRMS, CRM, etc.).

Implement secure development lifecycle (SDLC) practices in collaboration with application teams.

Manage application access controls and role-based access management.

4. Cloud & Data Security

Secure KEF's cloud-hosted services (ERP, LMS, HRMS, Email - Google Workspace, etc.).

Monitor identity and access management (IAM), encryption, and data residency controls.

Ensure compliance with DPDP Act, ISO 27001, and NIST best practices.

5. Security Monitoring & Incident Response

Implement centralized SIEM/log management for proactive threat monitoring.

Develop and maintain Incident Response Plan (IRP) and lead investigations of security events.

Conduct root cause analysis and implement corrective actions.

6. Policy, Awareness & Compliance

Draft, update, and enforce IT Security Policies (endpoint, access, mobile device, cloud, email).

Conduct security awareness training for staff and internal IT team.

Support audits, vendor security assessments, and compliance questionnaires.

Candidate Specification:



Educational Qualifications



? Bachelor's degree in Information Technology / Computer Science / Cybersecurity.

? Preferred certifications: CISM, CISSP, CEH, Fortinet NSE, Sophos Certified Engineer, ISO 27001 LA/LI.

Years of Experience



? 4-7 years of proven experience in IT security operations, preferably in NGO, education, or mid-sized enterprise environments.

? Hands-on experience with Sophos Intercept X Advanced and Fortinet Firewalls.

? Exposure to Ubuntu & Windows security hardening, VAPT, IAM, and cloud security.

Technical Skills



? Strong knowledge of endpoint security, firewalls, SIEM, VAPT tools, IAM solutions.

? Familiarity with Google Workspace security controls.

? Understanding of compliance frameworks (ISO 27001, DPDP Act, NIST CSF).

Soft Skills



? Strong analytical and problem-solving skills.

? Good communication and documentation ability.

? Ability to train non-technical staff in cybersecurity hygiene.

? Team player with vendor/stakeholder coordination skills.

Hours Of Work



6 days, 8 hours; 2 Saturdays off every month in addition to the regular weekly off on Sundays

Benefits



? Leave benefits from the date of joining

? Coverage under Health Medical Insurance for self & family from date of joining

? Life Cover from date of joining

Job Type: Full-time

Pay: ₹450,000.00 - ₹900,000.00 per year

Benefits:

Health insurance Life insurance Provident Fund
Application Question(s):

What is your current CTC? Are you from Mumbai? (Specify Location)
Education:

Bachelor's (Required)
Experience:

IT Security: 4 years (Required)
Work Location: In person

Beware of fraud agents! do not pay money to get a job

MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD4370590
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    MH, IN, India
  • Education
    Not mentioned
  • Experience
    Year