28 Sep
|
client of spring hr
|
Mumbai
28 Sep
client of spring hr
Mumbai
We are Hiring for a Leading Manufacturing Company. Job role:
- Enterprise Cyber Security Architect Experience:
- 15+years Location:
- Mumbai (WFO) Qualification:
- Bachelor’s/Master’s in Cybersecurity, IT, or related field Certifications:
- CISSP/CISA preferred, with additional certifications such as CEH or OSCP as an advantage.
Key Responsibilities Security Architecture & Strategy • Define and maintain enterprise security architecture aligned with business and risk objectives.
- Develop security roadmaps across cloud, on-prem, and OT environments.
- Establish architecture standards, frameworks, and reusable security patterns.
- Define baseline controls for OS, networks, IAM, encryption, data protection etc.
Architecture
Assurance & Risk Management • Conduct architecture reviews, threat modeling, and risk assessments.
- Validate security posture across infrastructure, applications, and network controls.
- Ensure secure design in projects, DevOps pipelines, and cloud deployments.
- Drive compliance with internal policies and regulatory/security standards. AI Security & AI Infrastructure (Added) • Understanding of AI/ML security risks, including model poisoning, adversarial attacks, data leakage, and model integrity risks.
- Experience securing AI/ML pipelines, including data ingestion, model training, validation, and deployment.
- Familiarity with AI governance, responsible AI practices, and regulatory considerations.
- Knowledge of securing AI infrastructure, including GPU-based workloads, MLOps platforms, APIs, and model access controls.
- Ability to integrate AI security within broader enterprise security architecture and Zero Trust frameworks.
Governance & Stakeholder Management • Participate in governance forums (CAB, architecture boards, technology councils).
- Collaborate with CISO, IT, DevOps, Risk, Audit, and Business teams.
- Support vendor risk assessments and review third-party security controls.
- Act as a key liaison across enterprise architecture, security operations, and engineering.
Security
Engineering & Enablement • Guide implementation of security technologies (EDR, SIEM, WAF, IAM, NAC, DLP).
- Ensure secure adoption of Zero Trust, cloud security, and modern architectures.
- Define secure coding practices and support DevSecOps adoption.
- Stay updated on emerging threats, tools, and best practices. Key Outcomes / Deliverables • Enterprise security architecture framework and roadmap.
- Improved security posture and reduced risk exposure.
- Secure onboarding of applications, infrastructure, and cloud services.
- Strengthened compliance and audit readiness.
Required Experience & Expertise:
- Proven ability in security strategy development, roadmap planning, stakeholder engagement, and executive communication, along with strong financial acumen (TCO, ROI, vendor evaluation) and project/program management skills.
- Deep knowledge of enterprise security technologies (Firewalls, IPS, WAF, SIEM, EDR, DLP, NAC), cloud and Zero Trust architectures (Azure/AWS, Zscaler), IAM (AD, LDAP, Azure AD, ITDR), threat modeling, and vulnerability management.
- Robust understanding of IT infrastructure (networks, OS, databases, virtualization, containers) and exposure to OT/IoT security solutions (e.g. Claroty, Nozomi, SCADAFence).
📌 Enterprise Cyber Security Architect (Mumbai)
🏢 client of spring hr
📍 Mumbai