Key Responsibilities
Security Platform Operations & Administration
- Manage and maintain enterprise cybersecurity platforms, including:
- Next-Generation Firewalls (NGFW)
- Endpoint Detection & Response (EDR)
- Privileged Access Management (PAM)
- DDoS Protection and Web Application Security Platforms
- Perform preventive maintenance, health checks, platform upgrades, patching, and configuration reviews to ensure optimal performance and security.
- Monitor platform health, security events, logs, alerts, and operational status to identify and resolve issues proactively.
- Coordinate with vendors and internal teams for troubleshooting, platform support, escalations, and technical enhancements.
Firewall & Network Security Management
- Administer enterprise firewall environments, including:
- Security policy management
- Access control reviews
- Firewall rule optimization
- Configuration backup and recovery
- Firmware and software patching
- Conduct periodic reviews of firewall configurations and access controls to maintain compliance with security policies.
- Support security assessments, audits, and infrastructure security reviews.
- Assist in change implementation, network troubleshooting, and incident investigation activities.
Endpoint Security Administration
- Administer and maintain Endpoint Detection & Response (EDR) platforms.
- Monitor endpoint security health, sensor coverage, platform performance, and log collection.
- Troubleshoot endpoint-related security issues and support onboarding of new assets.
- Coordinate with vendors for platform upgrades, advanced troubleshooting, and system enhancements.
DDoS Protection & Web Security
- Support enterprise DDoS protection and web application security platforms.
- Manage onboarding and offboarding of internet-facing applications and websites.
- Review access controls, platform reports, security alerts, and administrative activities.
- Support:
- IP whitelisting and blacklisting
- SSL certificate management
- WAF policy administration
- Security configuration reviews
- Work with security and operations teams to continuously improve platform effectiveness against evolving threats.
Privileged Access Management (PAM)
- Administer privileged access management solutions and privileged accounts.
- Manage privileged account onboarding, offboarding, password management, and access reviews.
- Support privileged session monitoring, audit reviews, and access governance activities.
- Ensure privileged access processes comply with organizational security standards and controls.
Security Compliance & Governance
- Ensure cybersecurity platforms comply with internal security policies, regulatory requirements, and industry best practices.
- Participate in audits, security assessments, and compliance reviews.
- Support change management processes, including:
- Change reviews
- Risk assessments
- Implementation planning
- Operational readiness validation
- Maintain security documentation, SOPs, architecture diagrams, asset inventories, and operational procedures.
Incident Response & Security Operations
- Support cybersecurity incident investigation and response activities.
- Perform log analysis and forensic data collection for security investigations.
- Assist in identifying root causes, implementing remedial actions, and preventing recurrence of incidents.
- Prepare incident reports and support post-incident reviews.
Backup, Recovery & Operational Resilience
- Maintain platform backup and recovery procedures.
- Verify backup integrity and support periodic restoration testing.
- Ensure backup and recovery practices align with operational and security requirements.
- Support business continuity and disaster recovery readiness activities.
Mandatory Requirements
- Minimum 5 years of experience in Cybersecurity Engineering, Security Operations, Infrastructure Security, or Cyber Platform Administration.
- Minimum 2 years of experience supporting Singapore Government, Statutory Boards, Public Sector agencies, or highly regulated environments.
- Experience managing enterprise security platforms in production environments.
- Strong understanding of:
- Cybersecurity operations
- Security monitoring
- Security governance
- Platform lifecycle management
- Change management processes
- Experience working with vendors, support providers, and internal stakeholders.
- Strong analytical, troubleshooting, and incident management capabilities.
- Excellent communication and stakeholder management skills.
Technical Requirements
Required Skills
- Enterprise Networking:
- TCP/IP
- VLANs
- Routing
- NAT
- DNS
- Network Segmentation
- Traffic Flow Analysis
- Firewall Administration:
- Palo Alto Networks or equivalent Next-Generation Firewall solutions
- Endpoint Security:
- Carbon Black, CrowdStrike, Microsoft Defender, SentinelOne, or equivalent EDR platforms
- Privileged Access Management:
- CyberArk or equivalent PAM solutions
- DDoS Protection and WAF Platforms:
- Cloudflare, Akamai, F5, Imperva, or similar technologies
- Security Operations:
- Log analysis
- Security monitoring
- Incident response
- Vulnerability management
- Security hardening
- Operating Systems:
- Linux (Red Hat preferred)
- Windows Server
Preferred Skills
- Experience supporting Critical Information Infrastructure (CII) or highly secure environments.
- Knowledge of:
- Air-gapped environments
- Secure file transfer processes
- Network isolation controls
- PKI and certificate lifecycle management
- Familiarity with:
- Cybersecurity audits
- Security compliance frameworks
- Patch management processes
- Change management methodologies
Additional employment information
Compensation information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Cognizant is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.
Applicants for US based positions must be currently authorized to work for any employer in the United States. The company is unable to provide employment-based immigration sponsorship for US based positions.
If you have a disability that requires reasonable accommodation to search for a job opening or submit an application, please email [email protected] for roles based in the Americas or [email protected] for roles based in India.
About Cognizant:
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value by building full-stack AI solutions for our clients. Our deep industry, process and engineering expertise enables us to build an organization’s unique context into technology systems that amplify human potential, drive tangible outcomes and keep global enterprises ahead in a fast-changing world. See how at cognizant.ai or @cognizant.











