30 Sep
|
SKILLVENTORY
|
Gurugram
30 Sep
SKILLVENTORY
Gurugram
Senior Manager Cybersecurity (4–6 Years)
- BCMS & ISMS Implementation: Lead the implementation, maintenance, and continuous improvement of the Business Continuity Management System (BCMS - ISO 22301) and Information Security Management System (ISMS - ISO 27001).
- Cloud & Application Security: Define, implement, and govern security policies and controls across cloud environments (AWS, Azure, GCP); perform security reviews of products, applications, and technology implementations.
- VAPT & Threat Modeling: Oversee end-to-end Vulnerability Assessment & Penetration Testing (VAPT) across web/mobile applications, network infrastructure, and cloud environments; perform threat modeling exercises and recommend security controls.
- Risk, Audit & Regulatory Compliance: Conduct information security audits, ensure compliance with regulatory/statutory requirements (IT Act, Privacy Regulations), track security metrics/KRIs/KPIs, and drive timely closure of vulnerabilities and audit findings.
- Threat Monitoring & Incident Management: Issue advisories on emerging cyber threats, monitor cyber vulnerabilities and security incidents, and oversee response, recovery, and remediation activities.
- Policy Governance & Security Awareness: Review and update Information Security policies, standards, procedures, and governance frameworks; drive organization-wide security awareness campaigns and phishing simulations.
- Technology Evaluation & Stakeholder Management: Evaluate new technologies from a cyber risk perspective and collaborate across Technology, Business, Compliance,
and Audit teams to report cyber risks to senior leadership.
Lead – Cybersecurity (12–14 Years)
- SOC & Security Operations Leadership: Oversee Security Operations Center (SOC) activities, incident monitoring, response, recovery, and remediation while prioritizing technical controls and firewalls over general GRC.
- Technical Security Solutions & Firewalls: Evaluate, implement, and manage advanced security solutions, enterprise firewalls, technical controls, and emerging technologies (including AI-driven cyber security tools).
- ISMS Establishment & Audit Management: Establish and manage an organization-wide Information Security Management System (ISMS) aligned to ISO 27001, conduct security audits, and drive closure of all audit findings.
- Enterprise Risk Assessment & Regulatory Compliance: Assess, monitor, and report information security risks to key stakeholders, ensuring full compliance with applicable legal, regulatory, and information security standards.
- Policy Strengthening & Technical Reviews: Review and strengthen enterprise information security policies, standards, and guidelines; conduct technical security reviews of all recent product and technology implementations.
- Threat Intelligence & Incident Governance: Issue timely advisories on emerging cyber threats and vulnerabilities while governing end-to-end cyber security incident response and mitigation.
- Security Awareness & Metrics Tracking: Drive security awareness initiatives across employees and third parties, track security metrics, KRIs, and KPIs, and provide regular updates to executive leadership.
📌 Cyber Security Manager (Gurugram)
🏢 SKILLVENTORY
📍 Gurugram