Job Title:
L3 – Email Security Lead (Mimecast)
Company: ITC Infotech
Location: Mumbai, Maharashtra
Created: 2025-09-03
Job Type: Full Time
Job Description:
Hi, We have 4 open positions for the below role in Mumbai, Secondary location is Pune. Interested candidates can email their updated profiles to alongwith the following details: Current CTC, Expected CTC, Notice period, Preferred location: Mumbai / Pune L3 – Email Security Lead (Mimecast) Job Summary: ITC Infotech Cyber Security team is looking for responsible for architecting and managing the secure email ecosystem, protecting against phishing, spoofing, and malicious payloads. The position demands expert-level command over advanced email security controls such as sandboxing, DMARC, threat intelligence integration, and user awareness. The individual is expected to drive continuous improvements, incident response handling, and regulatory email security hygiene. Key Responsibilities: Manage and continuously improve Mimecast Email Security implementation to prevent phishing, spoofing, and malware threats targeting users. Establish advanced filtering, impersonation protection, and attachment sandboxing policies per risk-based user segmentation. Ensure email routing, journaling, and DKIM/DMARC/SPF configurations are aligned with compliance and audit requirements. Monitor and resolve advanced email threats, perform RCA on false negatives/positives, and lead remediation for targeted phishing attacks. Integrate email security events into SIEM for correlation with identity and endpoint telemetry for improved incident detection. Develop reporting templates for weekly threat trends and support governance teams with compliance submissions. Provide guidance on BEC protection, email content control, and mailbox behavior analytics. Lead simulation testing, phishing campaign exercises, and user awareness metrics for ongoing posture improvements. Collaborate with IT and IR teams to drive end-to-end containment and recovery of email-borne incidents. Define operational baselines, tune policies, and manage escalations from SOC analysts and internal stakeholders. Key Skills & Certifications: 8+ years in email and perimeter security; 4+ years leading Mimecast security operations. Advanced knowledge of MIME filtering, encryption, DKIM/DMARC/SPF, sandboxing, and impersonation protection. Mimecast Certified Specialist or equivalent certifications preferred. Exposure to ISO 27001, RBI/SEBI compliance reporting. Strong understanding of mail routing, M365, Exchange Online integration.