Associate Director DDIT ISC CSOC Onboarding

hace 1 semana


victoria, México Novartis Farmacéutica A tiempo completo
Associate Director DDIT ISC CSOC Onboarding

Job ID: REQ-10023036

Date: Sep 26, 2024

Location: Mexico

Summary

The CSOC Engineering team is an integral part of the Novartis Cyber Security Operations Center (CSOC). The CSOC is an advanced global team passionate about the active defense against sophisticated cyber threats and attacks. By leveraging various tools and resources, the CSOC Engineer Lead will help proactively detect, investigate, and mitigate emerging and persistent threats that pose a risk to Novartis' networks, systems, users, and applications.
The main objective of the CSOC Engineering Lead is to design, develop, implement, and manage dataflow pipelines and integrate them with SIEM platforms such as Sentinel and Splunk. The data onboarded to SIEM will be crucial for CSOC Analysts and the content development and SOAR Engineers to develop monitoring alerts and automation playbooks. Collaboration with internal and external stakeholders will be crucial, including Novartis' internal teams, external vendors, and Product/Platform engineers. The CSOC Engineering Lead will work closely with these stakeholders to understand and integrate various data sources, utilizing services such as Cribl, Syslog NG, Azure Monitoring Agent, Universal Forwarder, etc.
Furthermore, the CSOC Engineering Lead will work in partnership with the CSOC stakeholders, including TDR, THR, Forensic, Content Development, and SOAR teams. Their expertise and collaboration will be instrumental in quickly resolving any data onboarding requests or issues that arise. Overall, the CSOC Engineering Lead role is pivotal in ensuring the proactive defense of Novartis' critical assets, systems, and infrastructure against the evolving landscape of cyber threats.

About the Role

MAJOR ACCOUNTABILITIES

In addition to accountabilities listed above:

  • Lead and manage a geographically distributed team of skilled engineers, providing guidance and support while leveraging their diverse skillsets.
  • Evaluate and review performance metrics and KPIs to ensure the onboarding team meets targets and delivers effective results.
  • Take accountability for the team's performance in various areas, including but not limited to data onboarding to:
    • SIEM platforms such as Sentinel and Splunk
    • Supporting audit requests and reports
    • Engaging with product teams to address technical challenges
    • Managing stakeholders' commitments
  • Act as the primary point of contact for first-level escalations, addressing issues or concerns and ensuring timely resolution.
  • Develop and maintain comprehensive documentation to facilitate knowledge sharing and ensure quality outcomes.
  • Drive a culture of continuous improvement and innovation within the team, identifying opportunities to optimize processes.
  • Serve as a subject matter expert in onboarding processes, guiding the team and providing expertise as needed.
  • Data Onboarding and Technical Management:
    • Evaluate and onboard new data sources, performing data analysis to identify anomalies and trends, and developing dashboards for reporting.
    • Collaborate with CSOC engineers, Threat Hunters, and CSOC Analysts to gather requirements and develop solutions.
    • Troubleshoot and provide support for onboarding issues with platforms like Sentinel, Splunk, and Cribl.
    • Validate and ensure proper configuration and implementation of new logics with security system and application owners.
    • Perform data normalization, establish datasets, and develop data models.
    • Manage backlog of customer requests for onboarding new data sources.
    • Detect and resolve issues in various data sources, implementing health monitoring for feeds.
    • Identify opportunities for automation in data onboarding and proactively detect parsing/missing-data issues.

Mandatory Requirements:

  • Previous experience as a Team Leader.
  • Hands-on experience with SIEM tools, preferably with certifications in Splunk and Sentinel, and experience managing data ingestion pipelines through Cribl.
  • Understanding of security systems (such as AV, IPS, Proxy, FWs).
  • Solid understanding of error messages and logs displayed by various software.
  • Understanding of network protocols and topologies.
  • Excellent communication skills in written and spoken English.
  • Security use-case design and development.
  • Understanding of SOAR.

CORE COMPETENCIES

  • Leadership
  • Customer/Quality Focus
  • Fast, Action-Oriented
  • Results Driven

Why Novartis: Helping people with disease and their families takes more than innovative science. It takes a community of smart, passionate people like you. Collaborating, supporting, and inspiring each other to achieve breakthroughs that change patients’ lives. Ready to create a brighter future together?

Join our Novartis Network: Not the right Novartis role for you? Sign up to our talent community to stay connected and learn about suitable career opportunities as soon as they come up.

#J-18808-Ljbffr

  • Cd. Victoria, Tamaulipas, México Novartis Farmacéutica A tiempo completo

    About the RoleThe CSOC Engineering team is a critical component of the Novartis Cyber Security Operations Center (CSOC). As a key member of this team, you will play a pivotal role in designing, developing, and implementing dataflow pipelines and integrating them with SIEM platforms such as Sentinel and Splunk.Key ResponsibilitiesLead and manage a...


  • victoria, México Novartis Farmacéutica A tiempo completo

    Job ID: REQ-10023687 Date: Sep 26, 2024 Location: Mexico Summary CSOC Engineering will be an integral part of the Novartis Cyber Security Operations Center (CSOC). The CSOC is an advanced global team passionate about the active defense against the most sophisticated cyber threats and attacks. By leveraging various tools and resources, the CSOC Engineer will...


  • victoria, México Novartis Farmacéutica A tiempo completo

    Director DDIT US&I Product Management Medical Eng. Job ID: REQ-10023942 Date: Oct 02, 2024 Location: Mexico Summary This role will work with Senior Medical Leaders to define, maintain, and evolve the medical IT product(s) and strategies for Medical Engagement including medical field force, medical information, and CRM engagement. This work includes engaging...


  • victoria, México Healthcare Businesswomen’s Association A tiempo completo

    Job Description Summary This role will work with Senior Medical Leaders to define, maintain and evolve the medical IT product(s) and strategies for Medical Engagement including medical field force, medical information, CRM engagement. This work includes working with the engagement data, analytics and associated insights products. You will align the IT...


  • victoria, México Novartis A tiempo completo

    Job Description Summary Associate Director who possesses robust communication abilities and excels in managing teams, with a solid track record in Video Conferencing space. The ideal applicant will have a minimum of 5 years managing global scale services / operations and a demonstrated proficiency in overseeing video conferencing systems. Job Description ...

  • Director Data Science

    hace 1 semana


    victoria, México Novartis Farmacéutica A tiempo completo

    -Independently lead Data or Data Science and AI global initiatives part of the overall Enterprise and Divisional Data or Data Science Strategy to contribute solving unmet medical needs, in collaboration with various stakeholders. -Role model a culture of analytical and data driven decision making and data/data sciences across Novartis leadership in...


  • Cd. Victoria, Tamaulipas, México Novartis A tiempo completo

    Job DescriptionNovartis is seeking an experienced Associate Director to lead its Conferencing Platform Services team. The ideal candidate will possess robust communication skills and have a proven track record in managing global scale services/operations in the video conferencing space.Key Responsibilities:Define standards, governance, and run & build...


  • Victoria de Durango, Durango, México Novartis A tiempo completo

    Job SummaryWe are seeking an experienced Associate Director to lead our Conferencing Platform Services team at Novartis. The ideal candidate will have a strong background in managing global conferencing solutions, with a minimum of 8 years of experience in this field.Key ResponsibilitiesDefine and implement standards, governance, and run & build services for...


  • Victoria de Durango, Durango, México Novartis A tiempo completo

    Associate Director IT Quality ControlJob SummaryWe are seeking a highly skilled Associate Director IT Quality Control to join our Quality IT Global Team. As a key member of the team, you will be responsible for supporting the delivery and operations of IT applications that enable Quality Control laboratories across all Novartis Operations sites.Your Key...


  • Cd. Victoria, Tamaulipas, México Healthcare Businesswomen'S Association A tiempo completo

    Job DescriptionJob Summary: We are seeking a highly skilled People Partner to join our team. As a trusted advisor, you will provide in-country policy expertise and knowledge to support and educate leaders, managers, and associates on all P&O topics.Key Responsibilities:Partner with managers and associates to drive P&O initiatives and support the overall P&O...


  • Salinas Victoria, México LinkEazi A tiempo completo

    **Vacante para la empresa LinkEazi en Salinas Victoria, Nuevo León**: La empresa de origen chino XZB Tech, se dedica al giro automotriz, es proveedora de piezas para Volkswagen, de la cual nuestro principal mercado esAmérica del Norte. **Responsabilidades**: Calcular la asistencia mensual, actualizar la base de datos internamente (como bajas por...

  • Recursos Humanos

    hace 4 meses


    Salinas Victoria, México LinkEazi A tiempo completo

    **Vacante para la empresa LinkEazi en Salinas Victoria, Nuevo León**: La empresa de origen chino XZB Tech, se dedica al giro automotriz, es proveedora de piezas para Volkswagen, de la cual nuestro principal mercado esAmérica del Norte. Buscamos**:Human Resources Administrator** **Responsabilidades** - Calcular la asistencia mensual, actualizar la base de...


  • Salinas Victoria, México Linkeazi A tiempo completo

    **Vacante en Linkeazi, Salinas Victoria, Nuevo León**:La empresa XZB Tech, proveedora de piezas para Volkswagen, busca un profesional para cubrir la vacante de Analista de Recursos Humanos en su planta de Salinas Victoria, Nuevo León.**Responsabilidades**:Calcular la asistencia mensual y actualizar la base de datos interna.Calcular el salario y enviarlo al...

  • People Partner

    hace 7 días


    Cd. Victoria, Tamaulipas, México Healthcare Businesswomen'S Association A tiempo completo

    Job DescriptionJob Summary: We are seeking a highly skilled and experienced People Partner to join our team. As a trusted advisor, you will provide in-country policy expertise and knowledge to support and educate leaders, managers, and associates on all P&O topics.Main Responsibilities:Partner with managers and associates to drive P&O initiatives and support...

  • People Partner US

    hace 1 semana


    victoria, México Healthcare Businesswomen’s Association A tiempo completo

    Job Description Summary To act as a trusted advisor offering in-country policy expertise and knowledge to support and educate leaders, managers, and associates on all P&O topics on the moments that matter. People Partners support all divisional customer groups in country enabling the delivery of lifecycle events, the employee value proposition, talent...