24 Sep
|
SKILLVENTORY
|
Gurugram
24 Sep
SKILLVENTORY
Gurugram
Senior Manager Cybersecurity (4–6 Years)
- BCMS &
- ISMS Implementation:
Lead the implementation, maintenance, and continuous improvement of the Business Continuity Management System (BCMS - ISO 22301) and Information Security Management System (ISMS - ISO 27001).
- Cloud &
- Application Security:
Define, implement, and govern security policies and controls across cloud environments (AWS, Azure, GCP); perform security reviews of products, applications, and technology implementations.
- VAPT &
- Threat Modeling:
Oversee end-to-end Vulnerability Assessment &
- Penetration Testing (VAPT) across web/mobile applications, network infrastructure, and cloud environments; perform threat modeling exercises and recommend security controls.
- Risk, Audit &
- Regulatory Compliance:
Conduct information security audits, ensure compliance with regulatory/statutory requirements (IT Act, Privacy Regulations), track security metrics/KRIs/KPIs, and drive timely closure of vulnerabilities and audit findings.
- Threat Monitoring &
- Incident Management:
Issue advisories on emerging cyber threats, monitor cyber vulnerabilities and security incidents, and oversee response, recovery, and remediation activities.
- Policy Governance &
- Security Awareness:
Review and update Information Security policies, standards, procedures, and governance frameworks; drive organization-wide security awareness campaigns and phishing simulations.
- Technology Evaluation &
- Stakeholder Management:
Evaluate current technologies from a cyber risk perspective and collaborate across Technology, Business, Compliance,
and Audit teams to report cyber risks to senior leadership.
Lead – Cybersecurity (12–14 Years)
- SOC &
- Security Operations Leadership:
Oversee Security Operations Center (SOC) activities, incident monitoring, response, recovery, and remediation while prioritizing technical controls and firewalls over general GRC.
- Technical Security Solutions &
- Firewalls:
Evaluate, implement, and manage advanced security solutions, enterprise firewalls, technical controls, and emerging technologies (including AI-driven cyber security tools).
- ISMS Establishment &
- Audit Management:
Establish and manage an organization-wide Information Security Management System (ISMS) aligned to ISO 27001, conduct security audits, and drive closure of all audit findings.
- Enterprise Risk Assessment &
- Regulatory Compliance:
Assess, monitor, and report information security risks to key stakeholders, ensuring full compliance with applicable legal, regulatory, and information security standards.
- Policy Strengthening &
- Technical Reviews:
Review and strengthen enterprise information security policies, standards, and guidelines; conduct technical security reviews of all new product and technology implementations.
- Threat Intelligence &
- Incident Governance:
Issue timely advisories on emerging cyber threats and vulnerabilities while governing end-to-end cyber security incident response and mitigation.
- Security Awareness &
- Metrics Tracking:
Drive security awareness initiatives across employees and third parties, track security metrics, KRIs, and KPIs, and provide regular updates to executive leadership.
📌 Cyber Security Manager (Gurugram)
🏢 SKILLVENTORY
📍 Gurugram