Job Level: Chief Manager / Associate Leadership Team
Essential Services: Role & Location Fungibility:
While the role descriptions give you an overview of the responsibilities, it is only directional and guiding in nature. At ICICI Bank, we believe in serving our customers beyond our role definition, product boundaries, and domain limitations through our philosophy of customer 360-degree. In essence, this captures our belief in serving the entire banking needs of our customers as One Bank, One Team. To achieve this, employees at ICICI Bank are expected to be role and location-fungible with the understanding that Banking is an essential service.
About the Role:
We are looking for a skilled and security-conscious professional to lead Azure cloud risk assessments across our enterprise environments. This role involves evaluating security controls, identifying vulnerabilities, and ensuring compliance with regulatory and organizational standards. The ideal candidate will have hands-on experience with Microsoft Azure and a strong understanding of cloud security frameworks and risk management practices.
Key Responsibilities:
1. Risk Identification & Evaluation
Proactively identify risks in Azure cloud environments, including misconfigurations, access control issues, and data exposure.
Evaluate the impact and likelihood of identified risks using established risk assessment methodologies.
2. Security Posture Management
Continuously monitor and assess the security posture of Azure resources using tools like Microsoft Defender for Cloud and Azure Policy.
Recommend and implement improvements to strengthen cloud security controls.
3. Compliance & Governance
Ensure Azure environments comply with internal policies and external regulations (e.g., GDPR, HIPAA, SOC 2).
Support audit readiness and provide documentation for compliance assessments.
4. Technical Expertise
Demonstrate hands-on knowledge of Azure services such as Azure AD, Key Vault, Sentinel, and RBAC.
Use scripting (PowerShell, Azure CLI) to automate risk assessments and reporting.
5. Reporting & Communication
Create clear, actionable risk assessment reports for technical and non-technical stakeholders.
Communicate findings effectively and collaborate with cross-functional teams to address risks.
6. Continuous Improvement
Stay updated on Azure platform changes, emerging threats, and best practices.
Contribute to the development of cloud security policies, standards, and procedures.
Key Qualifications & Skills:
Education Qualification: Engineering Graduate in CS, IT, EC or InfoSec, CyberSec or MCA equivalent.
Certifications: Certification(s) such as CISSP, CISM, or equivalent are preferred OR any Azure cloud certification.
Compliance: Great Awareness of cyber security trends & hacking techniques.
Communication Skills: Good oral and written communication skills. Strong organizational, teamwork, multitasking & time management skills
Synergize with the Team: Outstanding communication abilities. Ability to effectively communicate the required recommendations. Strong attention to detail with an analytical mindset & outstanding problem-solving skills
Few Success Factors:
Strategic Focus
Openness to collaborate
Vigil on norms & regulations
Orientation to understand business
Learning aptitude
About the Business Group:
The Information Security Group at ICICI Bank believes in providing services to its customers in the safest and secure manner keeping in mind that data protection for its customers is as important as providing quality banking services across the spectrum. The CIA triad of Confidentiality, Integrity, and Availability is at the heart of building a comprehensive information security framework. The Bank also lays emphasis on customer elements like protection from phishing, adaptive authentication, awareness initiatives, and provide easy to use protection and risk configuration ability in the hands of customers. The Bank also undertakes campaigns to create awareness among customers on security aspects while banking through digital channels.
Job Classification
Industry: Financial ServicesFunctional Area / Department: IT & Information SecurityRole Category: IT SecurityRole: Manager Information SecurityEmployement Type: Full time