Hi Candidates
Greetings of the day
We are hiring for,
National Manager-IT
From 11 to 18 year(s) of experience
Position is focused on understanding the security challenges in the current and future state of business operations, and to prepare the organization with the right strategy ,intelligence , skills, resources, relationships and capabilities against growing cyber security risks
Handling all technical hands on and managerial aspects of security domains including infrastructure security, cloud security, application security, network security, end point security, threat intelligence, , security operations center , governance , risk and compliance.
Define, implement and manage a comprehensive IT security program that supports corporate business objectives, ensures adherence to regulatory requirements and continually focuses on improving our security posture
Collaborate with global, cross functional teams and senior business leaders to provide the corporate vision and define the Information Security strategy; effectively balance the business needs of our internal stakeholders and customers in addition to focusing on adherence to regulatory and compliance needs
Use a risk-based approach to provide leadership, direction and prioritization in assessing and evaluating information security risks across the organization with a high level of integrity and discretion, positioning the identified risks with executives and ensuring the execution of the agreed upon mitigation/remediation steps
Socialize the resulting strategy to create alignment and support for these goals and initiatives, communicating regularly to ensure that leadership at all levels is informed about efforts and trends impacting the overall effectiveness of the information security programs; determine key performance criteria and metrics
Identify and advocate for investments to achieve the security strategy by aggressively managing capital and operating budgets and providing thorough ROI analyses to recommended new IT spend, as appropriate
Assume responsibility for the ongoing development and implementation of the information security project portfolio, incident response and security policy frameworks, security compliance activities, threat and vulnerability management, as well as administration of the Milestone information security training and awareness program, providing specialized triaging in areas of high sensitivity
Define, drive and manage the corporate information security technology architecture spanning security solutions across the enterprise, continually keeping abreast of new solutions and positioning them within the enterprise
Define security requirements to allow for corporate and external service compliance to industry standards including
(CCISO or CISA +CEH or CISM or CISSP or CISA + OSCP or GSLC)
* CISA alone cannot be accepted for this position
Experience
7 to 8 years of work experience (Mandatory 5 years immediate previous experience in dedicated Information Security Leadership/ Management Profile. I)
Mandatory experience in managing cloud security program (Should have expertise in any of the major three CSPs AWS, Azure or GCP)
Mandatory experience in managing Security Operations Centre and should be expert in incident management
Technically proficient in Data Leakage Prevention tools and strategy, EDR Technologies
Should be proficient in Application security concepts, Web Application Firewall and capable to provide counter measures to application development team.
Should be proficient in Linux administration concepts, knowledge of databases and capable to provide counter measures to infrastructure team.
Certified Information Systems Security Professional (CISSP) and/or Certified Information Security Manager (CISM) or Certified Information Systems Auditor (CISA) desired
Must have experience on implementation or management of cyber security frameworks in BFSI sector (India) (ex: RBI, SEBI, NHB etc)
Seasoned information security expert with a solid external reputation who has built/led a broad security organization, set strategic direction at the executive level, engaged with senior leaders, influenced/gained consensus on key initiatives, and has a record of measurable results
Technically conversant and able to be hands on with a demonstrated track record of success in an organization of similar size and scale who influenced growth, strategic direction and change
Experience implementing risk management programs that can effectively identify, prioritize and manage security related risks for the business
Experience implementing information security management frameworks (e.g. ISO/IEC 27001, ISO/IEC 27017/27018, CIS, etc)
Demonstrated experience with developing and implementing an information security awareness and training program
Demonstrated success working with internal audit, external auditors, outside consultants, and legal affairs in a lead capacity
Demonstrated experience with large-scale projects and transformational initiatives
Regards,
Hr Team
