24 Aug
|
ALTIMETRIK
|
Bengaluru
24 Aug
ALTIMETRIK
Bengaluru
Role & responsibilities
- Lead and manage client-initiated cybersecurity assessments, including RFP security questionnaires, due diligence reviews, and security assurance requests.
- Review and provide security inputs for Master Service Agreements (MSAs), security addendums, data protection clauses, and contractual security requirements.
- Partner with pre-sales, legal, delivery, infrastructure, and business teams to evaluate and respond to client security requirements.
- Manage periodic client security reviews, governance meetings, and security assurance reporting.
- Lead third-party risk management (TPRM) assessments, including evaluation of vendor security controls, evidence reviews, and risk assessments.
- Coordinate and manage client audits, onsite and remote assessments, and security compliance reviews.
- Interpret client security requirements and map them to organizational security controls and compliance frameworks.
- Develop, review, and maintain security governance documentation, control narratives, policies, procedures, and evidence repositories.
- Drive closure of audit observations, client action items, and security remediation initiatives.
- Provide security advisory support during client onboarding, transitions, and new business opportunities.
- Track security compliance metrics, assessment status, audit findings, and executive reporting.
- Mentor team members and establish standardized processes for client security assessments and governance activities.
Preferred candidate profile
- Strong experience in cybersecurity governance, risk, and compliance (GRC).
- Extensive experience in client security assessments, RFP security responses, and customer due diligence engagements.
- Strong understanding of cybersecurity control frameworks, including ISO/IEC 27001, SOC 2, NIST CSF, CIS Controls, PCI DSS, HIPAA, GDPR, and DPDP.
- Excellent knowledge of identity and access management, endpoint security, vulnerability management, data protection, cloud security, logging and monitoring, incident response, and third-party risk management.
- Experience in managing client audits, certification audits, and regulatory assessments.
- Strong understanding of contractual security obligations and security compliance requirements.
- Excellent written and verbal communication skills with the ability to present security posture to clients and senior leadership.
- Robust stakeholder management, negotiation, and cross-functional coordination skills.
- Ability to manage multiple concurrent client assessments with strong attention to detail and timely delivery.
Preferred qualifications
- Bachelors degree in computer science, Information Technology, Cybersecurity, or a related field.
- Professional certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Auditor/Lead Implementer, or equivalent are preferred
📌 Cyber Security Manager (Bengaluru)
🏢 ALTIMETRIK
📍 Bengaluru