Opening with a leading Financial company for their office in Mumbai
Role: Security Architecture Governance Lead
Experience: 8-10 Years
Preferred Certifications: CISSP /CISM/ CRISC/ CEH / CCSP or relevant cloud/security certifications
Role & responsibilities :
1. Security Remediation Governance & Closure
- Maintain and govern the central tracker for security vulnerabilities, audit observations, compliance gaps, security
findings, and other remediation actions.
- Track remediation progress against agreed timelines, owners, priorities, risk ratings, and dependencies.
- Coordinate with Application, IT, Infrastructure, and Information Security teams to drive timely remediation and closure.
- Follow up on overdue and high-risk remediation items and escalate delays, dependencies, and risks through the
appropriate governance forums.
- Review closure evidence and ensure remediation actions are formally closed only when adequate evidence is
available.
- Provide periodic dashboards covering open risks, ageing, overdue actions, closure trends, and key dependencies.
2. Cross-Functional Security Coordination
- Act as a coordination point between Information Security and technology/business teams for security remediation and
control-related activities.
- Engage with application, infrastructure, network, endpoint, cloud, IAM, SOC, and other technology teams to facilitate
resolution of security issues.
- Guide stakeholders on expected security requirements and practical closure approaches based on approved policies,
standards, and controls.
- Identify operational, technical, or resource dependencies affecting remediation and facilitate resolution with relevant
stakeholders.
Required Experience & Competencies:
- 812 years of experience in Information Security, Cyber Security, Security Governance, Security Assurance, Technology Risk, or a related domain.
- Strong experience in security governance, remediation tracking, compliance monitoring, control assurance, and stakeholder management.
- Good understanding of enterprise security controls across network/infrastructure, application, IAM, cloud, endpoint, email, proxy, data security, and security operations.
- Experience managing remediation programs involving multiple technology and business stakeholders.
- Solid understanding of risk-based remediation and security control effectiveness.
- Ability to understand technical security issues and translate them into actionable remediation requirements.
- Strong communication, coordination, follow-up, escalation, documentation, and stakeholder-management skills.
- Ability to manage multiple parallel initiatives independently and provide clear management-level reporting.
Interested candidates share resume at
[email protected]
📌 Security Architecture Governance Lead (Mumbai)
🏢 TopGear Consultants
📍 Mumbai