This job ad has been posted over 30 days ago...



IT Analyst, Security, Risk and Compliance - Incident Response (150585) Full-time

at The World Bank Group in Chennai (Published at 07-04-2015)

The Information Security Operations team is responsible for managing the operations of information security technology platforms and providing services to WBG business units with the overall objectives of: (1) managing and optimizing information security risk, (2) protecting WBG information assets, and (3) minimizing the potential business risk and impact to the WBG by providing timely incident response and proactive defense to cyber security threats. Key functions and services include: 24/7 information security event management, security engineering, threat and vulnerability management, intrusion detection, threat intelligence, security architecture, certification and accreditation, and incident response.

The ITS Information Security and Risk Management (ITSSR) unit, headed by the Chief Information Security Officer (CISO), is responsible for providing leadership in managing the information security and risk functions and activities across the World Bank Group, enabling the achievement of WBG’s business objectives. ITSSR supports and facilitates a risk aware culture, ensuring that WBG information assets are protected in an effective, efficient, and balanced manner and IT security and risk management efforts throughout the World Bank Group are coordinated and aligned to the Bank’s business and IT strategy. ITSSR comprises of the following functions: Security Operations, Risk Management and Advisory, IT Policy, IT Compliance, PMO, Business Continuity, and Sourcing and Vendor Management.

The incumbent will report to a senior information security officer leading the incident response function.

Note: If the selected candidate is a current Bank Group staff member with a Regular or Open-Ended appointment, s/he will retain his/her Regular or Open-Ended appointment. All others will be offered a 3 year term appointment.

Duties and Accountabilities:
The Information Security Analyst will be part of the Information Security Operations (ISOC) team in Chennai, India, with primary responsibilities in security monitoring, incident response and malware analysis.
Performs analysis, testing and/or reviews of information on business processes from a risk management/security/compliance perspective. Prepares standard reports, highlighting any gaps or concerns, and escalates to management as appropriate.
Proposes improvements and assists in the implementation of standards, procedures and guidelines.
Supports audits, maintaining and routing necessary documentation.
Diagnoses risk, security and compliance incidents and issues that may involve extensive analysis, and recommends resolutions to management.
Researches opportunities to improve processes and standards, and identifies best practices from the industry to promote across the organization.
Assists with the development of project proposals, ensuring that project plans are in compliance with applicable regulations and policies.
Provides technical guidance and mentorship to team members, as appropriate.
Supports the development and execution of security/compliance/risk awareness programs across the WBG.

Security Monitoring

  • Provide Information Security Operations Center (ISOC) support on a 24×7×365 basis by shift work with rotation
  • Monitor multiple security alert sources, eliminate false positives, based on impact and nature of the Security incident triage significant security events and escalate according to the established procedures
  • Review automated daily security reports of key security controls, identify anomalies and, escalate critical security events to the appropriate stakeholders and follow-up as required.

Security Incident Response

  • Conduct thorough investigative actions based on security events and remediate as dictated by standard operating procedures
  • Participate in all the phases of security incident response process, including detection, containment, eradication, and post-incident reporting.
  • Record detailed Security Incident Response activities in the Case Management System.
  • Wherever required perform memory forensics.

Malware Analysis

  • Analyze, evaluate, and document malicious code behavior. Analysis will include static and dynamic analysis using industry standard tools and techniques, identifying exploit methods and targeted vulnerabilities where applicable.
  • Ensure the accuracy and integrity of information throughout reporting.
  • Participate in directed research and development tasks.
  • Complete other tasks as directed by the ISOC Lead.
  • Enhance and develop tools to identify unknown malware (including zero-day) using various characteristics of a file format including structure and location.
  • Assist the ISOC lead in developing and setting up frameworks for developing Security incident response toolkit.
    Additional Duties
  • Act in the Shift Supervisor role when required, running the shift and assuming the shift leader responsibilities. This activity will require management of the level 1 & 2 Security incident handlers and acting as a final authority for technical expertise and escalation of Security Incidents.

Selection Criteria:

Minimum Education/Experience:

Master’s degree with 2 years relevant experience or Bachelors Degree with a minimum of 4 years relevant experience.
Understanding of how operating systems work and how malware exploits them.
Understanding of network traffic and be able to analyze network traffic introduced by the malware.
Past exposure to APT type malware and financial crime malware such as Zeus and Spyeye etc.
Thorough understanding of Windows Internals and memory management.
Knowledge of common hacking tools and techniques
Experience in understanding and analyzing various log formats from various sources.
Experience in analyzing reports generated of SIM/SEM tools
Proficient experience with the following concepts and related toolsets:
-Network sniffers
-Process analysis tools
-Registry analysis tools
-File analysis tools
-Memory analysis tools

Preferred Education/Experience:

Computer science or engineering degree.
5 years of Information Security experience required, of which the individual has worked with a CSIRT for a minimum period of 2 years
Preferred Skillsets / Requirements

  • GIAC Certified Intrusion Analyst (GCIA) or GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Forensics Examiner (GCFE), GIAC Certified Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM)

Required Competencies

Client Understanding and Advising – Looks at issues from the client’s perspective and takes action beyond normal expectations to ensure client satisfaction.
Learning Orientation – Stays abreast of new trends and developments in own specialty area, the broader industry, and exposes self to increasingly more challenging projects and opportunities to learn.
Broad Business Thinking – Maintains an in-depth understanding of the long term implications of decisions both for department and the client’s business. Ensures that decisions are supported by relevant stakeholders as well as sound performance data.
Compliance with Standards – Monitors and maintains records on requests for information and assistance.
Information Systems / Technologies / Product / Services Knowledge – Resolves escalated problems of technical support.
Knowledge of Emerging Technology – Tests new technology to evaluate capability compared to specifications.
Negotiation – Investigates areas of disagreement.
Risk Management – Reduces risk by solving day-to-day problems as they arise and takes action to prevent problems from recurring.
Lead and Innovate – Brings new and different insights.
Deliver Results for Clients – Contributes to delivery of results for clients on complex issues.
Collaborate Within Teams and Across Boundaries – Collaborates within team and across boundaries.
Create, Apply and Share Knowledge – Actively contributes to and readily applies WBG’s body of knowledge for internal and/or external client solutions.
Make Smart Decisions – Leverages available data and makes timely decisions.

The World Bank Group is committed to achieving diversity in terms of gender, nationality, culture and educational background. Individuals with disabilities are equally encouraged to apply. All applications will be treated in the strictest confidence.

Note: Applications have been closed.

Recent jobs at The World Bank Group

Viewed: 2166 times
« Go back to category
Is this job ad fake? Report it!   
Recommend to a friend