• Strong understanding of the threat landscape, risk management, patch management
• Expertise in one or more of the following areas: Incident Response, Security Operations, Security Governance, Threat Intel, Cloud Security, Architecture, Data Protection, Network Security, Endpoint Security, server management, compliance, vulnerability assessment
• Data protection, DLP, DRM, Data classification etc
• Good understanding of regulatory requirements such as ISR
• Good understanding of security frameworks, such as ISO 27001, NIST 800-53, HIPAA/HITECH, or PCI DSS
• Good knowledge of tools used in security event analysis, incident response, computer forensics, malware analysis or other areas of security operations
• Good understanding of networking, including TCP/IP protocols and network topology
• Good understanding of security controls for common platforms and devices
• Ability to successfully communicate with a range of technical and executive stakeholders
• Ability to explain technical details in a clear and concise manner
• Good report writing skills
• Good to be certified in any of the following, CISA, CISM, CISSP