10 Aug
|
Cigres Technologies
|
Bengaluru
10 Aug
Cigres Technologies
Bengaluru
Required Skills
- Cyber Risk Management
- Security Governance
- Cyber Incident Management
- Vulnerability Management
- Penetration Testing
- IAM
- Third-Party Risk Management
- Stakeholder Management
Nice to Have
- Security Architecture Review
- SIEM / Security Tools
Designation | Digital Risk Lead (DRL) Qualification | BE, B Tech, MCA, Graduate Experience (in years) | 6 | We are looking for a Digital Risk Lead (DRL) to support enterprise security and risk management activities across digital platforms, applications, integrations, and third-party services. The role requires hands-on experience in risk assessments, security governance, connector onboarding reviews, vulnerability management, cyber incident management, and stakeholder coordination with internal security teams and external vendors. The ideal candidate will work closely with Security, Engineering, Product, Architecture, Vendor, and Compliance teams to ensure cyber risks are identified, assessed, mitigated, and monitored effectively.
Risk Assessment &
- Security Governance Conduct security and risk assessments for new application, connector, and integration onboardings. Evaluate potential cyber, operational, and compliance risks associated with current technologies and services. Review and track security controls to ensure adherence to enterprise security standards. Maintain risk registers and drive remediation plans through closure. Connector &
- Integration Security Review security architecture and controls for newly onboarded connectors and third-party integrations. Identify security gaps and work with development and vendor teams to implement mitigation strategies. Monitor security posture and investigate connector-related security incidents and breaches. Ensure secure implementation of authentication, authorization, encryption, and data protection controls.
Cyber Incident Management
Participate in cyber incident investigations and response activities. Perform root cause analysis (RCA) for security incidents and recommend corrective actions.
Track remediation activities and coordinate with stakeholders to ensure timely closure. Support post-incident reviews and lessons-learned exercises.
Vulnerability Management
Work closely with Vulnerability Management teams to review, prioritize, and remediate identified vulnerabilities. Track vulnerability closure metrics and provide regular status reporting. Ensure vulnerabilities are addressed within agreed timelines and security policies.
Security
Testing &
- Vendor Management Coordinate and support penetration testing activities with external security vendors. Review penetration test reports and ensure findings are remediated appropriately. Collaborate with third-party vendors to validate implementation of required security controls. Participate in security reviews and audits involving external partners.
Crown
Jewel &
- Critical Asset Protection Manage and monitor security controls defined for Crown Jewel applications and critical business assets. Work closely with global security teams to ensure compliance with enterprise security requirements. Support security reviews, risk assessments, and governance activities for high-value assets. Compliance &
- Security Reviews Support internal and external audits. Participate in periodic security control reviews and compliance assessments. Ensure adherence to organizational security policies, standards, and regulatory requirements.
Skill Set
Required | 4–6 years of experience in Cyber Security, Digital Risk, Information Security, or Technology Risk Management. Strong understanding of security controls, risk assessment methodologies, and governance processes.
Experience with cyber incident investigation and Root Cause Analysis (RCA).
Experience supporting Vulnerability Management and remediation programs. Hands-on experience coordinating Penetration Testing and security assessments. Understanding of Identity &
- Access Management (IAM), authentication, authorization, and data protection principles.
Experience working with third-party vendors and external security partners. Strong stakeholder management and communication skills.
📌 Digital Risk Lead (DRL) - S P (Bengaluru)
🏢 Cigres Technologies
📍 Bengaluru