Job description Skills : Excellent communication both verbal and written with ability to present complex or highly technical issues in simple and easy to understand manner. Proven experience in engaging, influencing and managing stakeholders across organizational boundaries. Should be a team player with proven leadership qualities. Intellectual curiosity. Critical thinking and problem-solving abilities. The ability to be pragmatic while balancing the needs of the organization against security. Strong project management, organizational, and presentation skills. Commitment and strong work ethics. Responsibilities : Provide leadership, direction and guidance in assessing and evaluating information security standards and appropriate policies. Establish long term security and compliance goals, security strategy, metrics and reporting mechanism. Work in close coordination with the Company to ensure smooth operation of the information and cyber security management systems. Collaborate with Company for carrying out VAPT, SSDLC and Risk assessments. Work directly with Company on Infrastructure security and Application security. Develop a Risk Management Strategy that identifies and classifies risks, defines appropriate tolerances, prioritizes mitigation activities, and measures risk levels using the CMMI Cyber Maturity / NIST CSF Framework Oversee highest-risk initiatives and serve as a point of escalation for remediation/mitigation efforts. Develop a security compliance strategy and approach and ensure compliance with MRC, SOC2, ISO27001, CCPA, GDPR, local privacy laws, contractual requirements, and globally recognized standards and guidelines. Identify regulatory, legislative, and industry-specific compliance requirements and define controls that can be used to meet those requirements. Assist in developing SOC vision, align to business, & build a roadmap to achieve it. Build Threat Hunting, Deception technology capabilities Senior Leadership engagement and involvement in Company's Security Operations i.e. Incident Management, Threat Intelligence and Advisory Management Keep abreast of security incidents and act as primary control point during significant information security incidents Leading, influencing and motivating the cyber security team to achieve superior performance, while providing timely and candid feedback on the team. Articulating, communicating and convincing stake holders with new measures and innovative ideas for improving the information and cyber security arrangements and cyber resilience. Partner with stakeholders to raise awareness on risk management concerns. Ensure that there is a sustainable and continuous effort for fostering cyber security culture across the organization. Executing special transformational cyber security projects as per the requirement of stakeholders. Direct and manage innovative change and continuous improvement across a complex portfolio of responsibilities. Certifications : Active Multiple Certifications is highly desired CISSP, CISM, CISA, CRISC PMP, ISO27001 Industry standard frameworks (ITIL/ISO/NIST/PCI-DSS) Experience : 22 to 25 years Job Type: Full-time Pay: ₹7,500,000.00 - ₹8,500,000.00 per year Schedule:
Day shift
Application Question(s):
How many years of experience do you have in cyber security?