24 Sep
|
client of spring hr
|
Mumbai
24 Sep
client of spring hr
Mumbai
We are Hiring for a Leading Manufacturing Company.
Job role:- Enterprise Cyber Security Architect
Experience:- 15+years
Location:- Mumbai (WFO)
Qualification:- Bachelor’s/Master’s in Cybersecurity, IT, or related field
Certifications:- CISSP/CISA preferred, with additional certifications such as CEH or OSCP as an advantage.
Key Responsibilities
Security Architecture & Strategy
• Define and maintain enterprise security architecture aligned with business and risk
objectives.
• Develop security roadmaps across cloud, on-prem, and OT environments.
• Establish architecture standards, frameworks, and reusable security patterns.
• Define baseline controls for OS, networks, IAM, encryption, data protection etc.
Architecture Assurance & Risk Management
• Conduct architecture reviews, threat modeling, and risk assessments.
• Validate security posture across infrastructure, applications, and network controls.
• Ensure secure design in projects, DevOps pipelines, and cloud deployments.
• Drive compliance with internal policies and regulatory/security standards.
AI Security & AI Infrastructure (Added)
• Understanding of AI/ML security risks, including model poisoning, adversarial attacks, data
leakage, and model integrity risks.
• Experience securing AI/ML pipelines, including data ingestion, model training, validation,
and deployment.
• Familiarity with AI governance, responsible AI practices, and regulatory considerations.
• Knowledge of securing AI infrastructure, including GPU-based workloads, MLOps
platforms, APIs, and model access controls.
• Ability to integrate AI security within broader enterprise security architecture and Zero Trust
frameworks.
Governance & Stakeholder Management
• Participate in governance forums (CAB, architecture boards, technology councils).
• Collaborate with CISO, IT, DevOps, Risk, Audit, and Business teams.
• Support vendor risk assessments and review third-party security controls.
• Act as a key liaison across enterprise architecture, security operations, and engineering.
Security Engineering & Enablement
• Guide implementation of security technologies (EDR, SIEM, WAF, IAM, NAC, DLP).
• Ensure secure adoption of Zero Trust, cloud security, and modern architectures.
• Define secure coding practices and support DevSecOps adoption.
• Stay updated on emerging threats, tools, and best practices.
Key Outcomes / Deliverables
• Enterprise security architecture framework and roadmap.
• Improved security posture and reduced risk exposure.
• Secure onboarding of applications, infrastructure, and cloud services.
• Strengthened compliance and audit readiness.
Required Experience & Expertise:
• Proven ability in security strategy development, roadmap planning, stakeholder engagement,
and executive communication, along with strong financial acumen (TCO, ROI, vendor
evaluation) and project/program management skills.
• Deep knowledge of enterprise security technologies (Firewalls, IPS, WAF, SIEM, EDR, DLP,
NAC), cloud and Zero Trust architectures (Azure/AWS, Zscaler), IAM (AD, LDAP, Azure
AD, ITDR), threat modeling, and vulnerability management.
• Robust understanding of IT infrastructure (networks, OS, databases, virtualization,
containers) and exposure to OT/IoT security solutions (e.g. Claroty, Nozomi, SCADAFence).
📌 Enterprise Cyber Security Architect (Mumbai)
🏢 client of spring hr
📍 Mumbai