Assistant Vice President -Information Security Architect(Application)

9 - 14 years

30 - 35 Lacs

Posted:1 week ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

What s in it for YOU
  1. SBI Card truly lives by the work-life balance philosophy. We offer a robust wellness and wellbeing program to support mental and physical health of our employees
  2. Admirable work deserves to be rewarded. We have a well curated bouquet of rewards and recognition program for the employees
  3. Dynamic, Inclusive and Diverse team culture
  4. Gender Neutral Policy
  5. Inclusive Health Benefits for all - Medical Insurance, Personal Accidental, Group Term Life Insurance and Annual Health Checkup, Dental and OPD benefits
  6. Commitment to the overall development of an employee through comprehensive learning & development framework
Role Purpose
Threat & Vulnerability Management is one of high concern areas in order to prevent SBIC from any potential threat actor. This role is responsible for managing & maturing overall Application Security lifecycle starting from requirements gathering to decommissioning phase. This includes assuring compliance to RBIs requirement on Digital Application with activities such as Threat Modeling, Secure Application Architecture and Run-time security controls. This role also leverage expert knowledge of todays ever-changing cybersecurity and risk landscape to influence IT landscape across SBIC Card environment.
Role Accountability
Functional Areas:
  1. Provide technical expertise for information security policies and standards for Application Development throughout SDLC
  2. Maintaining current knowledge and understanding of the threat landscape and emerging security threats and vulnerabilities to build adequate solution
  3. Help SBIC IT Team build agile application development platforms rooted on flexible container-based platforms and aligned to agile development and CI/CD best practices
  4. Provide expertise in security tools for vulnerability assessment, penetration testing & application security
  5. Define security runtime products and development tooling migration strategy and guidelines for digital applications
  6. Ensures (web) applications, APIs, and cloud services are planned, designed, developed, implemented and monitored in accordance with security policies and to meet compliance requirements
  7. Perform regular status reviews with IT asset owners & senior leadership to ensure compliance with InfoSec policies and RBIs requirement on Digital Applications
  8. Participate in and support application security reviews and threat modeling, support security testing team for code review and dynamic testing.
  9. Industry analysis for latest security systems, standards, authentication protocols, security framework to guide development team to implement for new projects
  10. Facilitate and support the preparation of security releases.
  11. Support and consult with product and development teams in the area of application security.
  12. Assist in development of automated security testing to validate that secure coding best practices are being used.
  13. Manage & Mature Application Security Standard, Framework and related process
New Technology & Risks
  1. Evaluates and recommends tools and solutions that provide protection to SBIC application landscape
  2. Maintain contact with vendors regarding security system updates and technical support of security products
  3. Performs cost-benefit and risk analysis
  4. Analyzes business impact and exposure, based on emerging security threats, vulnerabilities and risks
Vendor Management
  1. Maintain relationship with managed security services vendor leadership to ensure effective implementation and operation of security programs, ongoing support and deployment of competent resources
  2. Oversee the development, implementation and maintenance of vendor standard operating procedures/ run book in line with SBI Card policies & standards
  3. Provide technical & program management expertise and oversight over vendor teams
Stakeholder Management
This role requires strong skills to discuss technical & non-technical aspect with articulation of Risk to demonstrate requirement and drive mitigation of Vulnerability
  1. Internal Stakeholders: Information technology function including its vendor, Senior leaders like CISO & , DPO and other Business/functional leaders
  2. External Stakeholders: Vendor Team
Measures of Success
  1. Successful implementation/ adoption of any new solution, technology or framework as per regulatory and SBIC policy
  2. Successful delivery of security projects specifications within time and budget
  3. Secure delivery of workload protection and applications (enterprise, web and mobile app) hosted on-premise or on Cloud
  4. Reduction in attack surface and threat exposure for SBI Card IT platforms
  5. Consistently enhance the security posture to reduce overall risk to SBI Card
  6. No major observation in internal/external audit on security design for applications
Technical Skills / Experience / Certifications
  1. Deep knowledge and understanding of enterprise IT Systems, infrastructure, and security technologies.
  2. Knowledge of Information Security Standards like ISO 27001, PCI-DSS, NIST CSF, CSA framework etc.
  3. Working knowledge of common and industry standard cloud-native/cloud-friendly authentication mechanisms (OAuth, OpenID, etc.).
  4. Experience with deployment orchestration, automation, and security configuration management (Jenkins, Puppet, Chef, etc.) preferred.
  5. Experience architecting solutions within Amazon Web Services (AWS), Azure, Google Cloud Platform (GCP), VMware NSX, Oracle etc.
  6. Experience with assessment, development, implementation, optimization, and documentation of a comprehensive and broad set of security technologies and processes such as secure software development, Application Security, data protection, cryptography, key management, identity and access management (IAM), network security) within SaaS, IaaS, PaaS, and other cloud environments.
  7. Excellent interpersonal and communication skills required to partner with other leaders across IT & business functions.
  8. Experience working with cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies.
  9. Experience with enterprise applications (architecture, development, support, and troubleshooting).
  10. Experience performing threat modeling and design reviews to assess security implications and requirements for introduction of new technologies.
  11. Experience representing technical viewpoints to diverse audiences and in making timely and prudent technical risk decisions.
  12. Working knowledge of compliance frameworks and security management standards (e.g., ISO 27001, NIST CSF, CIS etc.)
  13. Experience with enterprise architecture and working as part of a cross-functional team to implement solutions.
Competencies critical to the role
  1. Demonstrate skills to achieve stated objectives.
  2. Demonstrate communication skills to address different audiences.
  3. Demonstrate self-starter with ability to gain required knowledge in dynamic environments and remain up to date on cutting-edge technologies.
  4. Demonstrate teamwork & collaboration.
  5. Demonstrate analytical, troubleshooting, and problem-solving skills.
Qualification
Bachelor s Degree in a related area such as Computer Science or Information Technology or B. Tech
Preferred Industry
BFSI / NBFC /E-commerce/IT & ITES / Telecom

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
SBI Card logo
SBI Card

Financial Services

New Delhi

RecommendedJobs for You