24 Sep
|
client of spring hr
|
Maharashtra
24 Sep
client of spring hr
Maharashtra
We are Hiring for a Leading Manufacturing Company. Job role:- Enterprise Cyber Security Architect Experience:- 15years Location:- Mumbai (WFO) Qualification:- Bachelor’s/Master’s in Cybersecurity, IT, or related field Certifications:- CISSP/CISA preferred, with additional certifications such as CEH or OSCP as an advantage. Key Responsibilities Security Architecture & Strategy • Define and maintain enterprise security architecture aligned with business and risk objectives. • Develop security roadmaps across cloud, on-prem, and OT environments. • Establish architecture standards, frameworks, and reusable security patterns. • Define baseline controls for OS, networks, IAM, encryption, data protection etc. Architecture Assurance & Risk Management • Conduct architecture reviews, threat modeling, and risk assessments. • Validate security posture across infrastructure, applications, and network controls. • Ensure secure design in projects, DevOps pipelines, and cloud deployments. • Drive compliance with internal policies and regulatory/security standards. AI Security & AI Infrastructure (Added) • Understanding of AI/ML security risks, including model poisoning, adversarial attacks, data leakage, and model integrity risks. • Experience securing AI/ML pipelines, including data ingestion, model training, validation, and deployment. • Familiarity with AI governance, responsible AI practices, and regulatory considerations. • Knowledge of securing AI infrastructure, including GPU-based workloads, MLOps platforms, APIs, and model access controls. • Ability to integrate AI security within broader enterprise security architecture and Zero Trust frameworks.
Governance & Stakeholder Management • Participate in governance forums (CAB, architecture boards, technology councils). • Collaborate with CISO, IT, DevOps, Risk, Audit, and Business teams. • Support vendor risk assessments and review third-party security controls. • Act as a key liaison across enterprise architecture, security operations, and engineering. Security Engineering & Enablement • Guide implementation of security technologies (EDR, SIEM, WAF, IAM, NAC, DLP). • Ensure secure adoption of Zero Trust, cloud security, and contemporary architectures. • Define secure coding practices and support DevSecOps adoption. • Stay updated on emerging threats, tools, and best practices. Key Outcomes / Deliverables • Enterprise security architecture framework and roadmap. • Improved security posture and reduced risk exposure. • Secure onboarding of applications, infrastructure, and cloud services. • Strengthened compliance and audit readiness. Required Experience & Expertise: • Proven ability in security strategy development, roadmap planning, stakeholder engagement, and executive communication, along with strong financial acumen (TCO, ROI, vendor evaluation) and project/program management skills. • Deep knowledge of enterprise security technologies (Firewalls, IPS, WAF, SIEM, EDR, DLP, NAC), cloud and Zero Trust architectures (Azure/AWS, Zscaler), IAM (AD, LDAP, Azure AD, ITDR), threat modeling, and vulnerability management. • Strong understanding of IT infrastructure (networks, OS, databases, virtualization, containers) and exposure to OT/IoT security solutions (e.g. Claroty, Nozomi, SCADAFence).
📌 Enterprise Cyber Security Architect (Maharashtra)
🏢 client of spring hr
📍 Maharashtra