Consultant - Mumbai | Zoek India | 0f0fe3
This Browser does not support all the features of .
For the best experience please use a Modern Browser.
Consultant, Cyber Security
Permanent (Full time)
India is among the top ten priority markets for General Mills, and hosts our Global Shared Services Centre. This is the Global Shared Services arm of General Mills Inc., which supports its operations worldwide. With over 1,300 employees in Mumbai, the center has capabilities in the areas of Supply Chain, Finance, HR, Digital and Technology, Sales Capabilities, Consumer Insights, ITQ (R&D & Quality), and Enterprise Business Services. Learning and capacity-building is a key ingredient of our success. Job Overview This role is responsible for building and developing General Mills adversary emulation practice to ensure General Mills detection and response capabilities are effective and train defenders in adversarial techniques. Job Responsibilities 40 % of Time Detection Testing • Develop and regularly execute an automated test suite to validate current detection rules are functioning correctly • Partner with detection engineers to test new rules • Use adversary tools (bloodhound, cobalt strike, Empire, …) to assist in the development of detection rules • Partner with detection engineers to develop rules to fill gaps in incident detection • Find an implement an open-source adversary emulation tool to regularly test detection rule coverage 30% of Time Response Process Testing • Develop rules of engagement for red team activities • Research techniques and partner with threat intel to develop response plans that model current attacker behavior • Engage with consultants to execute response process tests, while building internal capability • Develop infrastructure and processes for safely and security hosting adversary infrastructure 20% of Time Research, Development, and Training • Acquire, apply, and share expert knowledge of adversary tools and techniques • Maintain understanding of the global threat landscape and share it with the rest of the team • Partner with incident response and detection engineers to develop training exercises • Ensure processes are clearly communicated, understood, and followed • Work with others in the detection and response team to improve our ability to detect and respond to cybersecurity incidents • Research current attacker techniques to share across cyber security 10% Partnerships and Benchmarking • Maintain existing and develops new contacts within the candidate’s professional network of cyber security peers and leading security consultants/vendors. • Continuously develops knowledge of evolving best practices through peer benchmarking, industry events/associations, and educational opportunities. • Leverages partnership and relationships to benchmark existing and proposed cyber security solutions. Desired Profile Education Minimum Degree Requirements: Bachelors Preferred Degree Requirements: Bachelors Experience Minimum years of related experience required: 5 years Preferred years of related experience: 8 years Certifications Required professional certifications: None Preferred Required professional certifications: Offensive Security Certified Professional (OCSP), GIAC Penetration Tester (GPEN), Certified Ethical Hacker (CEH) Specific Job Experience or Skills Needed • Expertise in incident response processes and tools to detect, analyze, respond, and contain cyber security threats quickly and correctly • Expert at use automation, orchestration, and scripting to reduce manual processes, improving overall efficiency while also enabling new capabilities • Deep knowledge of using current tools and techniques to gain unauthorized access to systems across multiple technologies • Experience building/automating Red Team Infrastructure • Experience in software engineering including source control, automated testing, and agile development methodology • Experience building/automating attack defense labs • Experience in evading security detection controls • Strong understanding of the MITRE ATT&CK framework • Knowledge of defensive tactics designed to counter offensive cyber operations • Demonstrated ability to get things done both independently and in a collaborative, team-oriented environment • Skilled in mixed Microsoft and open-source operating system environments • Ability to support software applications in Windows and Linux environments • Create better solutions through tireless curiosity and innovation stretching beyond your area of expertise Competencies/Behaviors required for job • High levels of judgement, ethics, and discretion • Excellent analytical and conceptual problem-solving skills • Innate curiosity and desire to learn with a strong inclination to drive for results in ambiguous spaces • Strong communication, and interpersonal skills • Self-starter, proactive, demonstrated self, and team motivator • Make timely and high-quality decision Note : Looking for developer profile for one of the 2 roles COMPANY OVERVIEW We exist to make food the world loves. But we do more than that. Our company is a place that prioritizes being a force for good, a place to expand learning, explore new perspectives and reimagine new possibilities, every day. We look for people who want to bring their best — bold thinkers with big hearts who challenge one other and grow together. Because becoming the undisputed leader in food means surrounding ourselves with people who are hungry for what’s next.