12 Aug
|
Spot Your Leadersnsulting
|
Vasanth Nagar
12 Aug
Spot Your Leadersnsulting
Vasanth Nagar
Job Description: Head - Internal Corporate Cyber SecuirtyLocation: Bengaluru, IndiaFunction: Cybersecurity Services, MCDC, DFIR, GRC & AI Security PlatformsRole SummaryWe are seeking a senior cybersecurity leader to head internal corporate cybersecurit y, including ou r MCDC (Managed Cyber Defense Center ) operating as an internal enterprise security functio n. The role is responsible for protecting our people, data, infrastructure, applications, cloud, and AI ecosyste m across global locations. The incumbent will lead enterprise security operations, digital forensics & incident response, GRC, security architecture, and AI governanc e, with accountability for risk reduction, regulatory compliance, and resilienc e of our organization's environment .Key Responsibilities1. Enterprise Cybersecurity Strategy & GovernanceDefine and execute th e internal cybersecurity strategy and roadm ap aligned to business priorities and global regulatory expectationsEstablish enterpris e security policies, standards, and control framewor ksDriv e Zero Trust, secure access, cloud security, identity governance, and AI securi ty strategies for the corporate environmentAct a s trusted advisor to CRO/CISO and executive leadersh ip on cyber risk posture, investments, and exceptions3. Digital Forensics & Incident ResponseDefi ne forensic readiness framewo rks a nd chain-of-custody protoc ols aligned to legal, HR, and regulatory expectationsBuild and mainta in incident response playbo oks for ransomware, APTs, insider threats, data breaches, and cloud-native attacksIntegra te endpoint, network, identity, and cloud teleme try into unified forensic workflowsDri ve automation of DFIR ta sks using orchestration, LLMs, and agentsAutomated evidence collectionTriage and timeline reconstructionIOC enrichment and correlationLe ad major internal incident investigati ons, coordinating wi th Legal, HR, IT, Compliance, regulators, and law enforcem ent as needed4.
Security Architecture & EngineeringLead design and implementation of enterprise security architec ture, including:Zero Trust architectureCloud & SaaS security (cloud posture management, workload protection, secure accessEndpoint protection and detectionEmail and collaboration securityVulnerability and exposure managementBackup, recovery, and cyber resilienceIdentity & Access Management (IAM, PAM)Data protection and DLPEnsure secure-by-design principles are embedded across internal IT, engineering, and delivery platforms.5. Enterprise GRC, Risk & ComplianceEstablish and govern inte rnal cyber risk management frame works aligned to:ISO 27001ISO/IEC 42001 (AI Management Systems)NIST CSF / NIST AI RMF / NIST SP 800-86 (Forensics)GDPR, EU AI Act, India DPDP ActPCI DSS, SOC 26. AI Governance & Secure AI AdoptionLead secure adoption of enterprise AI platforms and generative AI tools across the organization.Define controls for:Data protection (no training on enterprise data, DLP, audit logs)Access governance and license provisioningContractual safeguards and exemption trackingEmbed ISO/IEC 42001 AI governance prin ciples into the internal AI lifecycle.7. Cyber Insurance, Audit & Regulatory InterfaceOwn in ternal cyber insurance re adiness and control validation.Interfacewith:External auditorsRegulatorsInternal audit & complianceCoordinat e with Finance (cyber insurance), Legal (contracts), HR (insider risk), and IT (oper ations) for cross-functional risk management.8.
Network Security & Advanced ThreatDefenseDrive deep technical capabilities for:Network detection & responsePacket inspection and protocol analysisNetwork forensics and traffic mo nitoringStrengthen perimeter, internal segmentation, and east-west traffic visibility.10. Program Governance & Multi-VendorAssur anceLead complex, multi-vendor security programs under stringent timelines and regulatory expectationsDrive:Requirements decompositionInterface controlV&V; strategyMulti-vendor / third-party risk management11. Team Build-out & LeadershipBuild, lead, an d scale a global, multi-disciplinary internal cybersec urity team across:MCDC / SOCoperationsDFIR and threat huntingSecurity engineering & architectureGRC, compliance & AI governanceEstablish a high-performance, risk-awa re culture with continuous capability building (certifications, red/blue/purple teaming, SOC & forensic automation).RequiredExperience20+ years of leadership across enterprise cybersecurity operations, risk & compliance, AI-powered security platforms, digital forensics, and critical-infrastructureprotection. Proven exp erience in building and leading internal Global SOC / Cyber Defense Center c apabilities — operating model, tooling, team, and processes.Solid bac kground in GRC & controlassurance. Demonstrated exp erience in AI-first security platforms and AI governance (ISO 42001, AI RMF).Hands-on bac kground in network security, traffic monitoring, and networ k forensics.Exper ience with risk data aggregation and executive reporting inf rastructure at large enterprise scale.E xposure to safety-critical, regulated e nvironments (defense, aerospace, BFSI) with multi-vendor program governance.Preferred Education & CredentialsM.Tech in Computer Science/ AI or equivalentProfessional development in:Product OwnershipISO 27001 — Information Security ManagementISO 42001 — AI Management Systems
📌 VP - Internal Cyber Security Defence (Vasanth Nagar)
🏢 Spot Your Leadersnsulting
📍 Vasanth Nagar