Role Overview
The Sr. SSE is responsible for IT Infrastructure Management (ensuring >95% uptime of all hardware, network, cloud, and software systems) and Information Security Posture & Standards Management (serving as APT's designated ISMS custodian in alignment with ISO 27001:2022). The role relevant experience and demands a balance of deep technical expertise, security governance ownership, and cross-functional collaboration.Β
Roles & Responsibilities
1. IT Infrastructure Management
- Troubleshoot minor and major hardware breakdowns and ensure >95% uptime by providing immediate rectification support β self or through external vendors for repair / replacement.Β
- Manage (installation, configuration, and support) all network devices, cloud servers, physical servers, software licenses, software databases, security solutions (anti-virus, etc.), and other business software / subscriptions on various computers, Cloud Systems (AWS), and laptops with >95% uptime, including Data Backup and Production Backup.Β
- Install, configure, and monitor system hardware, software, and networks on a routine basis to ensure optimal performance and application of security patch updates.Β
- Monitor system performance, capacity, and availability β proactively identify and resolve performance bottlenecks; prepare setup for VAPT (Vulnerability Assessment and Penetration Testing).Β
- Evaluate and procure hardware servers, computers, laptops, peripheral devices, security automation tools / gadgets, etc. on behalf of the company with due approval on cost.
- Evaluate and procure software solutions, licenses, domains from registrars, and subscriptions on behalf of the company.Β
- Extend support for on-site email installation and remote email server management / rectification.
- Management and maintenance of Data Backup and Restoration checks for on premise and cloud systems as per defined policy / process.
- Management of company's data and voice communication systems in liaison with AMC Partner / UPS / Cables.
- Manage physical positioning and inventory of computers, laptops, peripherals, and software β maintain an accurate and up-to-date Asset Inventory at all times.
- Timely submissions of internal reports, Subscription Renewal tracking and timely submission of CSP Evaluation with required details to the Reporting Head.
- Update all relevant trackers on a daily basis; raise CRF requests; perform Incident Reporting and timely escalation to the Reporting Head.
2. Information Security Posture & Standards ManagementΒ
- Own and maintain APT's Information Security posture across the organization in accordance with ISO 27001:2022 (ISMS) standards β as the designated custodian within APT.
- Document system configurations, procedures, and troubleshooting steps β ensuring accurate and up-to-date documentation including Knowledge Base (KB), Trackers, Asset Inventory, and all components of the Network Diagram, as per the ISO process.
- Remediate OS and other security vulnerabilities on a proactive basis; apply security patches and updates within defined TATs; maintain a Vulnerability Register.
- Implement and enforce APT's Information Security Policy across all staff β covering data handling, access controls, acceptable use, and password management.Β
- Formulate and maintain IT Audit Checklists; undertake periodic technical audit checks of hardware, software, and network infrastructure; report findings to Reporting Head.Β
- Sensitize company staff on cyber threats, vulnerabilities, and best security practices for data management β conduct ISMS Awareness / InfoSec Awareness sessions for all staff including new joinees and freshers.
- Coordinate with external IT auditors, ISO consultants, and certification bodies during ISMS audits, surveillance audits, and renewal audits β compile and submit required evidence, records, and documentation.
- Maintain and update the Risk Register, Business Continuity Plan (BCP), and Disaster Recovery (DR) documentation as per ISO 27001 requirements.Β
- Ensure access control management β provisioning, modification, and de-provisioning of system access for all employees, including joiners, transfers, and leavers β within defined TATs.
- Monitor and report on key Information Security metrics / KPIs to the Reporting Head on a periodic basis.
3. Team Support & Knowledge Management
- Provide training and documented Knowledge Base (KB) to junior team members and new joiners β covering IT Infra processes, ISMS sessions, and systems orientation.Β
- Advice the Reporting Head on best management practices for internal systems infrastructure and information security posture.
- Provide weekend / extended support in cases of critical infrastructure incidents or security events.
- Carry out multitasking and prioritization of tasks effectively to meet deadlines β or as directed by the Reporting Head.
Requirements
Qualification / Skill-sets
- B.Sc. / B.Sc. (IT) / B.E. / B.Tech. / BCA / Computer Diploma / Technical Graduate or equivalent qualification.
- Minimum 3+ years of hands-on experience in Systems, Hardware, Network, and Information Security Management.
- In-depth knowledge of installing, configuring, and maintaining various hardware and network devices β network switches, access points, routers, firewalls, printers, scanners, etc. is a prerequisite.
- In-depth knowledge of installing and maintaining various OS and SQL / Oracle databases is a pre-requisite.Β
- In-depth knowledge of Windows Server environments (2012β2022), DNS, Active Directory, Domain Control, IIS, and Group Policy is a pre-requisite.
- Working knowledge of cloud platforms (AWS / Azure / GCP) β cloud server management, cloud backup, and cloud security configurations.
- Sound knowledge and practical experience of ISO 27001:2022 (ISMS) β implementation, internal auditing, and documentation is a strong requirement.Β
- Hands-on experience with VAPT tools and vulnerability management is an added advantage.Β
- Sound skills of hardware / software troubleshooting and root-cause diagnosis.Β
- Excellent analytical ability and on-the-spot thinking β ability to work effectively under pressure and resolve incidents within TATs.
- Basic computer skills, including professional email writing are a must.
- Sound communication, inter-personal, and documentation skills.
Added Advantage Qualification / Skill-sets
- ITIL Management Certification is a strong added advantage.
- Advanced knowledge of network communication, VLAN management, and network security architecture.Β
- Advanced knowledge of Server Management β Physical, Virtual (Hyper-V / VMware), Cloud Server Management, and Email Server Management.
- Prior experience of managing IT infrastructure for 75β100 computers / laptops along with network devices simultaneously.Β
- Experience in coordinating BCP / DR drills and preparing DR runbooks.Β
- Familiarity with SIEM tools, endpoint security platforms, and DLP solutions.
Learn more about this Employer on their Career Site
