13 Sep
|
Senvion India
|
Alibag
13 Sep
Senvion India
Alibag
Job DescriptionKey Responsibilities
NCyber Security Operations& Governance
N
n
- Lead and manage enterprise cyber security operations across on-premises infrastructure, cloud platforms, applications, and end-user environments.
N
- Define and implement cyber security strategies, policies, standards, and operational procedures aligned with business objectives.
N
- Ensure adherence to security governance frameworks including NIST, ISO 27001, MITRE ATT&CK;®, COBIT, ITIL, and other industry best practices
N
- Drive continuous improvement initiatives to enhance organizational cyber resilience and security maturity.
N
nSecurity Incident Response
N
n
- Lead cyber security incident detection, analysis, containment, eradication, recovery, and post-incident review activities.
N
- Develop, maintain, and periodically test incident response plans, runbooks, and playbooks.
N
- Coordinate with business stakeholders, IT teams, MSSPs, and external partners during security incidents.
N
- Ensure timely reporting, escalation, and communication of security incidents according to defined escalation matrices.
N
- Conduct root cause analysis and implement preventive controls to reduce recurrence of security incidents.
N
nVulnerability Management & Security Assurance
N
n
- Own and manage enterprise vulnerability management programs across infrastructure, applications, cloud platforms, and endpoints.
N
- Conduct and oversee Vulnerability Assessment and Penetration Testing (VAPT) activities.
N
- Drive operating system,infrastructure, and application patch management programs.
N
- Prioritize remediation activities based on business impact and risk exposure.
N
- Validate security fixesand remediation effectiveness through regular assessments and reviews.
N
- Identify security weaknesses and recommend risk mitigation strategies.
N
nRisk Management, Compliance & Audits
N
n
- Conduct enterprise security risk assessments and security reviews.
N
- Ensure compliance with regulatory, legal, and internal security requirements.
N
- Support internal audits, external audits, customer audits, and certification activities for ISO 27001:2022.
N
- Establish and maintain security controls to protect organizational assets and sensitive information.
N
- Develop security metrics, dashboards, and executive-level reporting.
N
nRisk Management, Compliance & Audits
N
n
- Conduct enterprise security risk assessments and security reviews.
N
- Ensure compliance with regulatory, legal, and internal security requirements viz CERT in, CEA,PDP, ISO 27001 etc
N
- Support internal audits, external audits, customer audits, and certification activities for ISO 27001:2022.
N
- Establish and maintain security controls to protect organizational assets and sensitive information.
N
- Develop security metrics, dashboards, and executive-level reporting.
N
nVendor, Partner & Service Management
N
n
- Manage MSSPs, OEMs, consultants, and technology partners.
N
- Establish and govern security service delivery processes, SLAs, SLOs, and performance metrics.
N
- Conduct regular servicereviews and ensure contractual compliance.
N
nDrive partner accountability for security deliverables and operational effectiveness.
NCertifications preferred:
N
n
- CISSP
n
- CISM
N
nQualification
nBSC /BE with 8 +Years of experience
📌 Hiring: Information Technology Security Specialist (Alibag)
🏢 Senvion India
📍 Alibag