23 Sep
|
client of spring hr
|
Maharashtra
23 Sep
client of spring hr
Maharashtra
We are Hiring for a Leading Manufacturing Company.Job role:- Enterprise Cyber Security ArchitectExperience:- 15+yearsLocation:- Mumbai (WFO)Qualification:- Bachelor’s/Master’s in Cybersecurity, IT, or related fieldCertifications:- CISSP/CISA preferred, with additional certifications such as CEH or OSCP as an advantage.Key ResponsibilitiesSecurity Architecture & Strategy
- Define and maintain enterprise security architecture aligned with business and riskobjectives.
- Develop security roadmaps across cloud, on-prem, and OT environments.
- Establish architecture standards, frameworks, and reusable security patterns.
- Define baseline controls for OS, networks, IAM, encryption, data protection etc.Architecture Assurance & Risk Management
- Conduct architecture reviews, threat modeling, and risk assessments.
- Validate security posture across infrastructure, applications, and network controls.
- Ensure secure design in projects, DevOps pipelines, and cloud deployments.
- Drive compliance with internal policies and regulatory/security standards.AI Security & AI Infrastructure (Added)
- Understanding of AI/ML security risks, including model poisoning, adversarial attacks, dataleakage, and model integrity risks.
- Experience securing AI/ML pipelines, including data ingestion, model training, validation,and deployment.
- Familiarity with AI governance, responsible AI practices, and regulatory considerations.
- Knowledge of securing AI infrastructure, including GPU-based workloads, MLOpsplatforms, APIs, and model access controls.
- Ability to integrate AI security within broader enterprise security architecture and Zero Trustframeworks.Governance & Stakeholder Management
- Participate in governance forums (CAB, architecture boards, technology councils).
- Collaborate with CISO, IT, DevOps, Risk, Audit, and Business teams.
- Support vendor risk assessments and review third-party security controls.
- Act as a key liaison across enterprise architecture, security operations, and engineering.Security Engineering & Enablement
- Guide implementation of security technologies (EDR, SIEM, WAF, IAM, NAC, DLP).
- Ensure secure adoption of Zero Trust, cloud security, and modern architectures.
- Define secure coding practices and support DevSecOps adoption.
- Stay updated on emerging threats, tools, and best practices.Key Outcomes / Deliverables
- Enterprise security architecture framework and roadmap.
- Improved security posture and reduced risk exposure.
- Secure onboarding of applications, infrastructure, and cloud services.
- Strengthened compliance and audit readiness.Required Experience & Expertise:
- Proven ability in security strategy development, roadmap planning, stakeholder engagement,and executive communication, along with strong financial acumen (TCO, ROI, vendorevaluation) and project/program management skills.
- Deep knowledge of enterprise security technologies (Firewalls, IPS, WAF, SIEM, EDR, DLP,NAC), cloud and Zero Trust architectures (Azure/AWS, Zscaler), IAM (AD, LDAP, AzureAD, ITDR), threat modeling, and vulnerability management.
- Robust understanding of IT infrastructure (networks, OS, databases, virtualization,containers) and exposure to OT/IoT security solutions (e.G. Claroty, Nozomi, SCADAFence).
📌 Enterprise Cyber Security Architect (Maharashtra)
🏢 client of spring hr
📍 Maharashtra