Associate Director Ddit Isc Csoc Onboarding
hace 1 día
**Summary**:The main objective of the CSOC Engineering Lead is to design, develop, implement, and manage dataflow pipelines and integrate them with SIEM platforms such as Sentinel and Splunk. The Data onboarded to SIEM will be Crucial for CSOC Analysts and the content development and SOAR Engineers to develop monitoring alerts and automation playbooks.Collaboration with internal and external stakeholders, including Novartis' internal teams, external vendors, and Product/Platform engineers, will be a crucial aspect of this role. The CSOC Engineering Lead will work closely with these stakeholders to understand and integrate various datasources. This may involve utilizing services such as Cribl, Syslog NG, Azure Monitoring Agent, Universal Forwarder etc. to list a few.Furthermore, the CSOC Engineering Lead will work in close partnership with the CSOC stakeholders, including TDR, THR, Forensic, Content Development, and SOAR teams. Their expertise and collaboration will be instrumental in quickly resolving any Data onboarding requests or issues that arise.Overall, the CSOC Engineering Lead role is pivotal in ensuring the proactive defense of Novartis' critical assets, systems, and infrastructure against the ever-evolving landscape of cyber threats.**About the Role**:**MAJOR ACCOUNTABILITIES**In addition to accountabilities listed above in Job Purpose:- ** Onboarding Lead**- Lead and manage a geographically distributed team of Skilled Engineers, providing guidance and support while leveraging their diverse skillsets and personalities.- Evaluate and review performance metrics and KPIs to ensure the Onboarding team is meeting targets and delivering efficient and effective results.- Take accountability for the team's performance in various areas, including but not limited to data onboarding to:- SIEM platforms such as Sentinel and Splunk- Supporting audit requests and reports- Engaging with product teams to address technical challenges- Managing stakeholders' commitments- Act as the primary point of contact for first-level escalations, addressing any issues or concerns that arise and ensuring timely resolution.- Develop and maintain comprehensive documentation to facilitate knowledge sharing and ensure quality outcomes are consistently achieved.- Drive a culture of continuous improvement and innovation within the team, identifying opportunities to optimize processes and enhance efficiency.- Data Onboarding and Technical Management- Evaluate and onboard new data sources, performing data analysis for identifying anomalies and trends, and developing dashboards and visualizations for data reporting.- Collaborate with CSOC engineers, Threat Hunters, and CSOC Analysts to gather requirements and develop solutions.- Troubleshoot and provide support for onboarding issues with platforms like Sentinel, Splunk, and Cribl.- Perform data normalization, establish datasets, and develop data models.- Manage backlog of customer requests for onboarding new data sources.- Detect and resolve issues in various data sources, implementing health monitoring for data sources and feeds.- Identify opportunities for automation in data onboarding and proactively detect parsing/missing-data issues.**Mandatory Requirements**:- Previous experience as a Team Leader- Hands-on experience of SIEM tools with preferible certification of Splunk, Sentinel etc., and experience managing Data ingestion pipeline through Cribl- Understanding of security systems (such as AV, IPS, Proxy, FWs etc.).- Solid understanding of error messages and logs displayed by various software.- Understanding of network protocols and topologies.- Excellent communications skills with written and spoken English**Desirable Requirements**:- _ Security use-case design and development_- _ Understanding of SOAR_**CORE COMPETENCIES**LeadershipCustomer/Quality FocusFast, Action-OrientedResults DrivenDivisionOperationsBusiness UnitCTSLocationMexicoSiteINSURGENTESCompany / Legal EntityMX06 (FCRS = MX006) Novartis Farmacéutica S.A. de C.V.Job TypeFull timeEmployment TypeRegularShift WorkNo
-
Associate Director Ddit Isc Csoc Onboarding
hace 1 día
Insurgentes, México Novartis A tiempo completo**Summary**: The main objective of the CSOC Engineering Lead is to design, develop, implement, and manage dataflow pipelines and integrate them with SIEM platforms such as Sentinel and Splunk. The Data onboarded to SIEM will be Crucial for CSOC Analysts and the content development and SOAR Engineers to develop monitoring alerts and automation...
-
Sr. Specialist Ddit Isc Csoc Engineering
hace 1 día
Insurgentes, México Novartis A tiempo completo**Summary**: JOB PURPOSE The main objective of the CSOC Engineering is to design, develop, implement, and manage dataflow pipelines and integrate them with SIEM platforms such as Sentinel and Splunk. The Data onboarded to SIEM will be Crucial for CSOC Analysts and the content development and SOAR Engineers to develop monitoring alerts and automation...
-
Sr. Specialist Ddit Isc Csoc Engineering
hace 1 día
Insurgentes, México Novartis A tiempo completo**Summary**:JOB PURPOSEThe main objective of the CSOC Engineering is to design, develop, implement, and manage dataflow pipelines and integrate them with SIEM platforms such as Sentinel and Splunk. The Data onboarded to SIEM will be Crucial for CSOC Analysts and the content development and SOAR Engineers to develop monitoring alerts and automation...
-
Associate Director Ddit Isc Detection
hace 1 día
Insurgentes, México Novartis A tiempo completo**Summary**:**About the Role**:**MAJOR ACCOUNTABILITIES**In addition to accountabilities listed above in Job Purpose:- Security Monitoring and Triage- Monitor in real time security controls and consoles from across the Novartis IT ecosystem- Communicate with technical and non-technical end users who report suspicious activity- Forensics and Incident...
-
Associate Director Ddit Isc Detection
hace 1 día
Insurgentes, México Novartis A tiempo completo**Summary**: **About the Role**: **MAJOR ACCOUNTABILITIES** In addition to accountabilities listed above in Job Purpose: - Security Monitoring and Triage - Monitor in real time security controls and consoles from across the Novartis IT ecosystem - Communicate with technical and non-technical end users who report suspicious activity - Forensics and Incident...
-
Business Information Security Manager Us&i
hace 3 días
Insurgentes, México Novartis A tiempo completo**Summary**:- Lead ISC compliance for a function or area of significant technology depth. Ensures the function can satisfy the governance and risk compliance requirements of the organization and/or projects**About the Role**:**Major accountabilities**:- **This role is responsible for the information management and compliance of the DDIT United States and...
-
Associate Director, Launch Excellence
hace 5 días
Insurgentes, México Novartis A tiempo completo**Summary**:Novartis is preparing to launch several innovative medicines in the U.S. across four therapeutic areas over the next five years. To drive successful launches, we are seeking an Associate Director to join the U.S. Launch Excellence Capabilities & Business Partnerships Team within the U.S. Launch & Portfolio Excellence Group. This role will lead...
-
Associate Director, Launch Excellence
hace 7 días
Insurgentes, México Novartis A tiempo completo**Summary**: Novartis is preparing to launch several innovative medicines in the U.S. across four therapeutic areas over the next five years. To drive successful launches, we are seeking an Associate Director to join the U.S. Launch Excellence Capabilities & Business Partnerships Team within the U.S. Launch & Portfolio Excellence Group. This role will lead...
-
Associate Director Innovation Lab
hace 3 semanas
Insurgentes, México Novartis A tiempo completo**Summary**:The Associate Director Innovation Lab, MAVA sits within the US Innovation Lab (iLab), a part of the Marketing Technology Product Management team. In this role, you will join a highly innovative and intrapreneurial group with a focus on accelerating experimentation of new and emerging technologies such as the metaverse, AR/VR, etc. in the US. With...
-
Insurgentes, México Novartis A tiempo completo**Summary**: As an Associate Director Assoc. Dir. DDIT M&A DE Process Governance, you will play a crucial role in the Deal Enablement team. This role acts as the guardian of process adherence, ensuring that all M&A IT teams follow the established frameworks, tools, and methodologies when planning and executing M&A IT deals. While governance is the...