We are seeking a seasoned Cybersecurity Specialist to lead our Policy Compliance Management function based in Vadodara. In this strategic role, you will serve as the primary architect for our IT governance and security policy frameworks, ensuring that our digital infrastructure remains resilient against evolving threats while meeting stringent regulatory mandates.
You will collaborate closely with senior leadership, cross-functional IT teams, and external auditors to translate complex security requirements into actionable business controls. By driving a culture of compliance and risk awareness, you will directly influence the organization's security posture, protecting critical data assets and ensuring seamless business continuity for our global stakeholders.
Key Responsibilities :
- Design and implement comprehensive IT governance frameworks to ensure organizational alignment with international standards such as ISO 27001 and COBIT.
- Lead the end-to-end lifecycle of security policy development, ensuring that internal guidelines are robust, enforceable, and reflective of the current threat landscape.
- Manage complex IT risk assessments and security audits to identify control gaps and provide actionable remediation strategies for executive stakeholders.
- Oversee data privacy management initiatives, ensuring that all business processes comply with global data protection regulations and internal privacy standards.
- Utilize compliance analytics to track performance metrics,
providing the leadership team with data-driven insights into the effectiveness of our security controls.
- Coordinate with technical teams to streamline vulnerability management processes, ensuring that identified risks are mitigated within defined service level agreements.
- Act as the primary point of contact for external auditors and regulatory bodies, managing the evidence collection process to ensure successful certification outcomes.
Required Skillset :
- Demonstrated expertise in designing and maintaining IT controls that balance operational agility with rigorous security requirements.
- Proven ability to communicate complex technical risks to non-technical stakeholders, facilitating informed decision-making at the board level.
- Advanced proficiency in navigating regulatory landscapes, with a deep understanding of IT compliance frameworks and their practical application in large-scale environments.
- Strong analytical mindset, capable of interpreting compliance data to drive continuous improvement in security posture.
- Exceptional interpersonal skills, with the ability to influence cross-functional teams and foster a collaborative security-first culture.
- Possession of professional certifications such as CISSP or CISA is essential to validate your technical and governance expertise.
- Ability to thrive in an on-site work setting in Vadodara, maintaining high levels of engagement and collaboration with the local team.
- Candidates must possess 10 - 15 years of relevant experience in information security, IT risk management, or compliance roles.