Security Architecture Assurance & AI Security - AD Level (Chennai)

Security Architecture Assurance & AI Security - AD Level (Chennai)

13 Aug
|
People First Consultants
|
Chennai

13 Aug

People First Consultants

Chennai

About the role As an Associate Director – Security Architecture Assurance & AI Security Validation, you will lead Cognizant's Cybersecurity Architecture & Risk (CAR) practice within the Extended CISO Tower, collaborating with the CISO Tower owner, Enterprise Architecture, IT Security, Compliance and business stakeholders. You will own the independent validation that implemented controls meet Cognizant's security reference architecture and design requirements before solutions go into production – now extended to cover AI and Generative AI systems. You will have the autonomy to lead, innovate, and industrialize control-validation workflows while upholding our commitment to quality, Secure-by-Design and continuous learning. As a team of self-starters, you can work with impact alongside our vibrant people and culture, all while enjoying unmatched learning opportunities. In this role, you will: •Lead and mature the Security Control Evaluation function across platform, infrastructure, application and vendor implementations (both on-prem and cloud – AWS, Azure, GCP, OCI), ensuring controls meet Cognizant policies, standards, regulatory requirements and industry best practices before production. •Establish and own an AI Security Validation capability – validating controls for LLMs, Generative AI and agentic AI against model poisoning, prompt injection, data poisoning/leakage, model inversion, adversarial and deepfake attacks, aligned to NIST AI RMF, ISO/IEC 42001, OWASP Top 10 for LLMs and MITRE ATLAS. •Embed AI-TRiSM (AI Trust, Risk and Security Management) principles – model provenance, data lineage/tagging, guardrails, red-teaming and continuous monitoring – into the enterprise control-assurance lifecycle. •Define and govern key performance metrics, KRIs and SLOs, ensuring validation deliverables and remediation follow-ups are met on time and reported to leadership.



•Act as the primary liaison between Enterprise Architects, Design Review, CS and IT teams, and business stakeholders to close security control gaps and drive remediation to closure. •Provide deep subject-matter expertise in cybersecurity principles to manage risks across data use, processing, storage and transmission, including cloud security posture, network micro-segmentation and zero-trust validation. •Strengthen Identity & Access Management (IAM) control validation – privileged access, least-privilege, joiner-mover-leaver, and non-human / machine and AI-agent identities. •Incorporate Third-Party Risk Management (TPRM) control checks into vendor and SaaS/AI-vendor go-live validations, ensuring supply-chain and model-supply-chain assurance. •Build, mentor and coach a high-performing validation team, managing multiple priorities, conflict resolution and stakeholder expectations. •Stay current with emerging IT, cloud and AI/cybersecurity technologies and continuously uplift the control library and validation playbooks. •Embrace our vibrant culture by striving for excellence, focusing on meaningful outcomes, and collaborating effectively. Take ownership, build relationships, and focus on personal growth to drive business strategy and foster an inclusive culture. What you must have to be considered •15+ years of experience in information security, including 6+ years in security architecture / go-live control validation and 5+ years leading and mentoring teams. •Bachelor's degree in Computer Science, Information Technology,



Cybersecurity or a related field. •CISM (Certified Information Security Manager) – Required. •Proven, hands-on experience validating security controls for cloud (AWS, Azure, GCP, OCI) and on-prem solutions against a security reference architecture. •Demonstrated understanding of AI/ML and Generative AI security risks and control frameworks (NIST AI RMF, ISO 42001, OWASP LLM, MITRE ATLAS). •Robust grasp of IAM, TPRM, cloud security, network segmentation and zero-trust control domains. •Excellent analytical, problem-solving, project management and stakeholder-leadership skills across functional teams. •A strong sense of ownership, a desire to create meaningful outcomes, and passion for work that serves a greater good for customers, communities, or global challenges. •The embodiment of Cognizant's Values: Work as One, Dare to Innovate, Raise the Bar, Do the Right Thing, & Own It. These will help you succeed •CISSP, CISA, CCSK / CCSP – strongly preferred. •Azure AZ-500 (Required-equivalent), SC-300 / SC-100 and cloud-provider security certifications. •Emerging AI security credentials (e.g., ISACA AAISM / AAIA, AI governance certifications). •ISO/IEC 42001 (AI Management System) Lead Auditor/Implementer – a strong differentiator given this role's AI security validation scope. •Experience with security automation, control-as-code, and continuous controls monitoring (CCM). •Exposure to regulatory and framework mappings – ISO 27001, NIST CSF, SOC 2, PCI-DSS, GDPR/DPDP. Work model We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role's business requirements, this is a hybrid position requiring 2 days a week in a Cognizant office in Chennai/Bangalore/Pune, India. Regardless of your working arrangement, we are here to support a healthy work-life

📌 Security Architecture Assurance & AI Security - AD Level (Chennai)
🏢 People First Consultants
📍 Chennai

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: security architecture assurance & ai security - ad level (chennai) / chennai

Subscribe to this job alert:

Get the latest job offers by email for: security architecture assurance & ai security - ad level (chennai) / chennai