Home
Jobs

543 Cism Jobs - Page 7

Filter
Filter Interviews
Min: 0 years
Max: 25 years
Min: ₹0
Max: ₹10000000
Setup a job Alert
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

3.0 - 8.0 years

13 - 17 Lacs

Hyderabad

Work from Office

Naukri logo

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : SailPoint IdentityNow Good to have skills : NAMinimum 3 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. You will also document the implementation of the cloud security controls and transition to cloud security-managed operations. Roles & Responsibilities:- Expected to perform independently and become an SME.- Required active participation/contribution in team discussions.- Contribute in providing solutions to work related problems.- Develop and implement security architecture solutions.- Conduct security assessments and define security requirements.- Collaborate with cross-functional teams to ensure security measures are integrated.- Stay updated on the latest security trends and technologies.- Provide guidance and mentorship to junior security professionals. Professional & Technical Skills: - Must To Have Skills: Proficiency in SailPoint IdentityNow.- Strong understanding of cloud security principles.- Experience with security architecture design and implementation.- Knowledge of security compliance standards and regulations.- Hands-on experience with security tools and technologies. Additional Information:- The candidate should have a minimum of 3 years of experience in SailPoint IdentityNow.- This position is based at our Hyderabad office.- A 15 years full time education is required. Qualification 15 years full time education

Posted 2 weeks ago

Apply

8.0 - 13.0 years

13 - 17 Lacs

Hyderabad

Work from Office

Naukri logo

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : CyberArk Privileged Access Management Good to have skills : NAMinimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Your typical day will involve collaborating with various teams to document the implementation of cloud security controls and facilitating the transition to cloud security-managed operations, ensuring that all security measures align with organizational objectives and compliance standards. You will engage in discussions to refine security strategies and provide guidance on best practices, contributing to a secure and efficient cloud environment. Roles & Responsibilities:- Expected to be an SME.- Collaborate and manage the team to perform.- Responsible for team decisions.- Engage with multiple teams and contribute on key decisions.- Provide solutions to problems for their immediate team and across multiple teams.- Develop and maintain comprehensive documentation of security architecture and frameworks.- Conduct regular assessments of security controls and recommend improvements. Professional & Technical Skills: - Must To Have Skills: Proficiency in Implementing CyberArk Privileged Access Cloud - Strong understanding of cloud security principles and best practices.- Experience with identity and access management solutions.- Familiarity with compliance frameworks such as ISO 27001, NIST, or GDPR.- Ability to analyze security incidents and implement corrective actions. Additional Information:- The candidate should have minimum 5 years of experience in CyberArk Privileged Access Management.- This position is based at our Hyderabad office.- A 15 years full time education is required. Qualification 15 years full time education

Posted 2 weeks ago

Apply

5.0 - 10.0 years

13 - 17 Lacs

Pune

Work from Office

Naukri logo

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : ServiceNow Governance, Risk, and Compliance (GRC) Good to have skills : Security Architecture DesignMinimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. You will also document the implementation of the cloud security controls and transition to cloud security-managed operations. Roles & Responsibilities:- Expected to perform independently and become an SME.- Required active participation/contribution in team discussions.- Contribute in providing solutions to work related problems.- Develop and implement security architecture solutions.- Conduct risk assessments and provide recommendations for security enhancements.- Collaborate with cross-functional teams to ensure security best practices are implemented.- Stay updated on the latest security trends and technologies.- Provide guidance and mentorship to junior security professionals. Professional & Technical Skills: - Must To Have Skills: Proficiency in ServiceNow Governance, Risk, and Compliance (GRC).- Strong understanding of cloud security principles.- Experience in implementing security controls in cloud environments.- Knowledge of industry standards and regulations related to cloud security.- Hands-on experience with security tools and technologies. Additional Information:- The candidate should have a minimum of 5 years of experience in ServiceNow Governance, Risk, and Compliance (GRC).- This position is based at Pune office.- A BTECH degree is required. Qualification 15 years full time education

Posted 2 weeks ago

Apply

4.0 - 9.0 years

13 - 17 Lacs

Gurugram

Work from Office

Naukri logo

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Saviynt Identity Platform Good to have skills : NAMinimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Lead, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. You will also document the implementation of the cloud security controls and transition to cloud security-managed operations. Roles & Responsibilities:- The candidate will be responsible for implementation of Saviynt IGA architecture- The role also involves troubleshooting and resolving issues within the team and collaborating with Saviynt support to ensure seamless operations and system efficiency. Ensuring quality and efficiency throughout the project lifecycle is key.- Engage with multiple teams and contribute on key decisions.- Provide solutions to problems for their immediate team and across multiple teams. Professional & Technical Skills: - Must Have Skills: Proficiency in Saviynt IGA.- Strong knowledge of Saviynt IGA architecture, with hands-on experience in application onboarding, connector configurations, and workflow implementation. Solid experience in design discussions, creating design documents, and performing unit testing- Ability to troubleshoot and resolve technical issues within the team and in collaboration with Saviynt support.- Proficiency in Segregation of Duties (SOD), certifications, and custom JARs. Familiarity with identity governance processes, role management, and security protocols is essential. Experience in troubleshooting and optimizing complex systems is a must.- Detail-oriented, strong problem-solving abilities, excellent collaboration and communication skills, proactive, and able to work effectively in team-oriented environments. Focused on delivering projects on time and to specification. Additional Information:- The candidate should have a minimum of 4 years of experience in Saviynt IGA.- A 15 years full time education is required & Bachelors degree in Computer Science.- This position is based at our Gurugram office. Qualification 15 years full time education

Posted 2 weeks ago

Apply

3.0 - 8.0 years

13 - 17 Lacs

Gurugram

Work from Office

Naukri logo

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : ServiceNow Governance, Risk, and Compliance (GRC) Good to have skills : Security Architecture DesignMinimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. You will also document the implementation of the cloud security controls and transition to cloud security-managed operations. Roles & Responsibilities:- Expected to perform independently and become an SME.- Required active participation/contribution in team discussions.- Contribute in providing solutions to work related problems.- Develop and implement security architecture solutions.- Conduct risk assessments and provide recommendations for security enhancements.- Collaborate with cross-functional teams to ensure security best practices are implemented.- Stay updated on the latest security trends and technologies.- Provide guidance and mentorship to junior security professionals. Professional & Technical Skills: - Must To Have Skills: Proficiency in ServiceNow Governance, Risk, and Compliance (GRC).- Strong understanding of cloud security principles.- Experience in implementing security controls in cloud environments.- Knowledge of industry standards and regulations related to cloud security.- Hands-on experience with security tools and technologies. Additional Information:- The candidate should have a minimum of 3 years of experience in ServiceNow Governance, Risk, and Compliance (GRC).- This position is based at our Gurugram office.- A BTECH degree is required. Qualification 15 years full time education

Posted 2 weeks ago

Apply

4.0 - 8.0 years

9 - 14 Lacs

Hyderabad

Work from Office

Naukri logo

Cyber Security Senior Advisor (A) - HIH - Evernorth About Evernorth:Evernorth Health Services, a division of The Cigna Group (NYSECI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people.Cyber Security Senior advisorJob Objective:The Information Protection Senior Advisor is responsible for conducting research, conceptualizing, designing, developing, and testing secure technology systems, including on perimeter and cloud-based networks to support to Cignas Information Protection Middle East and Africa (MEA) team. This role directly supports the MEA Portfolio covering 34x operational entities across 22x countries ensuring that security requirements are adequately addressed safeguarding the protection of sensitive policyholder data, claims information, and financial transactions.Reporting to the Head of Cyber Security Middle East & Africa, you will develop and enforce security strategies that mitigate cyber threats, protect against fraud, and ensure business continuity in a highly regulated health insurance environment. You will be required to design, implement, and oversee the security infrastructure for our business platforms in accordance with Cigna Information Protection (CIP) security architecture framework.In this role, you will work closely with CIP Architecture and Engineering, Risk Management, and Compliance teams to build secure architectures that align with internal and regulatory requirements such as SAMA CSF (KSA), ADHICS (UAE), GDPR, HIPAA, and PCI DSS.:13-16 years of experience in a Cyber Security Design and Development role.Partners with the CIP MEA leadership team to develop a regional strategy and operational plan to deliver CIP shared services to the business.Perform security reviews using CIP or Industry standards (NIST, ISO etc) to identify gaps in security architecture and controls as part of a MEA cybersecurity risk management plan.Develop and Integrate cybersecurity designs for systems and networks that require processing of multiple data classification levelsDetermine if systems and architecture are consistent with CIPs Secure Baselines and Global Security Architecture Requirements.Ensure secure third-party vendor integrations (e.g., Fronting Partners, Third Party Administrators, regulatory entities, payment processors and healthcare providers).Advise on security requirements to be included in statements of work for Cigna or JV partners procuring new technology services.Determine and Document the impact of new system and interface implementations on the cybersecurity posture of Cigna or a JV partner.Partners with the business to evaluate and translate functional requirements and integrating security policies into technical solutions.Performs comprehensive technology research to evaluate potential solutions across cyberspace systems relevant for the MEA region including Joint Venture (JV) partners.Performs focused risks assessments of existing or new services and technologies, security architecture, identifies design gaps, risks, and recommends enhancements.Maintains strong working relationships with individuals and groups involved in managing security architecture engineering and technology risks across the organizationStays abreast of current and emerging security threats and designs security architectures to mitigate themSkills Needed:Ability to analyse an organisations enterprise information technology architectureAbility to apply secure network architectures and security controls into proposed solutionsAbility to identify cybersecurity or privacy issues in external or partner connectionsAbility to design systems and apply security architecture guidelines across On-Premises and Hybrid Cloud environmentsAbility to partner with Infrastructure, Cloud and Application architects to perform user needs analysis and requirements gathering for large-scale projects.Ability to develop a cyber security strategy and input into detail-oriented operational planning including capability development (People, Processes, Technology, Data).Ability to perform Controls Assurance / Attestation and deliver comprehensive risk treatment plans.Technical depth and sound knowledge in networking, cloud, desktop, server, storage, software-defined-networking, virtualization and application domainsProven communication skills, able to write and verbally communicate complex conceptsProven collaboration skills and can adapt to changing organization changing business needs, technological advances and agile methodologySelf-starter and shows empathy towards business requirements and able to influence changes to facilitate securityHealth Insurance or Health Care Industry experience is a plusTravel required, approximately 10%Qualifications:Bachelors or Masters in Cybersecurity, Computer Science, or Information Security.Qualified candidates will typically have 13+ of professional IT experience work experience, with 8+ years of experience in a security design and development roleCISSP, CISM, CCSP, CRISC or similar certifications requiredExpertise in encryption, network security, cloud security, application security and endpoint protection.Deep knowledge of security risks, data privacy laws, and fraud prevention techniques relevant to Financial Services, FinTech and Health sectors.Experience in data security standards and best practices for Personally Identifiable Information (PII) and Personal Health Information (PHI)Experience and working knowledge of NIST, HIPPA, PCI DSS & ISO 27001 certification is a plusStrong written and spoken English skills, demonstrated ability to communicate at high levels, both verbally and in reportingStrong work ethic, high drive and ability to focus. High stamina. Shows optimism and determination when facing challengesAbility to work successfully with a minimum of supervision in a fast paced and sometimes pressured environment About Evernorth Health Services Evernorth Health Services, a division of The Cigna Group, creates pharmacy, care and benefit solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention and treatment of illness and disease more accessible to millions of people. Join us in driving growth and improving lives.

Posted 2 weeks ago

Apply

5.0 - 9.0 years

11 - 15 Lacs

Bengaluru

Work from Office

Naukri logo

Position Title: Senior. Information Security Analyst Team: Regional Security Support Crew (Information security) Reporting Location: Bangalore (B4 / B5) Job Overview: As a Regional Security Support crew, your primary role, will be to assist the Regional Information Security Officers (RISO) in implementing and maintaining cybersecurity strategies for various legal entities Globally. You will be responsible for ensuring compliance with group security policies, managing risks, and supporting the continuous improvement of the regional security posture. This role offers a unique opportunity to be part of a newly established team, providing a dynamic environment where you can help shape security processes from the ground up. Key Responsibilities: Provide direct support to the RISO in managing and implementing security plans for legal entities across the region. Assist in the creation, follow-up, and management of remediation plans for identified security risks and non-compliance issues. Conduct security risk assessments and ensure that security measures are aligned with the Groups standards and adapted to each legal entitys needs. Support the RISO in reviewing and approving changes to systems, processes, and applications prior to deployment. Perform and prioritize security audits, vulnerability scans, and reviews (including access rights, firewall rules, cloud compliance, etc.). Coordinate and support legal entities during internal and third-party security audits, ensuring compliance with all security policies. Conduct security training and awareness programs customized for regional entities, ensuring all staff are informed and compliant. Maintain accurate inventories of assets, third-party vendors, and local processes for audit and security monitoring purposes. Collaborate with regional and Group IT teams to ensure a security by design approach is applied in all regional architectures, applications, and processes. Assist in evaluating third-party vendors to ensure they meet security standards. Support the development of Disaster Recovery (DR) and Business Continuity (BC) plans. Assist the RISO with the development and implementation of policies, procedures, and guidelines that cater to local regulatory requirements and Group standards. Core Responsibilities in Incident Response and Vulnerability Management: Assist the RISO in incident response activities by investigating security breaches and incidents in collaboration with the Security Operations Center (SOC). Analyze vulnerability reports and assist in remediation efforts, ensuring timely patching and risk mitigation. Support the review and approval of firewall rules, configurations, and exceptions to maintain network security. Collaborate with the RISO in monitoring for emerging threats and recommending security improvements based on current trends. Qualifications & Skills: Strong communication and interpersonal skills, with the ability to work effectively with multiple stakeholders across various legal entities. Ability to manage multiple priorities and work under pressure in a fast-paced environment. Strong knowledge of cybersecurity concepts, including vulnerability assessments, incident management, network architecture, firewalls, and cloud security. Expertise in general IT concepts, including Active Directory, Office 365, and modern networking solutions like micro-segmentation, SASE, SD-WAN, etc. Demonstrated ability to assist in the creation and execution of security policies, procedures, and standards. Familiarity with security frameworks such as ISO 2700x, ITIL, and the EU Privacy Directives. Experience in conducting security assessments and working with audit teams during internal or external security reviews. Education & Experience: At least 3+ years of experience in cybersecurity, information security, or a related field. Certifications such as CISM, CISSP, or CEH are nice to have. Atypical profiles with experience from bug bounties, open-source projects, or bootcamps are also encouraged to apply if they can demonstrate strong skills and knowledge in the required areas. Total of 9+ years of experience Key Competencies: A quick learner who is autonomous, adaptable, and detail oriented. Ability to work in large, complex IT environments and be comfortable with ambiguity and fast-changing priorities. A passion for cybersecurity, with strong problem-solving skills and a proactive approach to risk management. Strong English language skills are required, additional language is a plus. How You Will Help: Regularly test legal entities for compliance with security policies and procedures. Assist in conducting vulnerability assessments and implementing remediation measures based on Group standards. Investigate security incidents in collaboration with the SOC and provide technical support during audits. Support the development of Security Key Performance Indicators (KPIs) to monitor and improve the regions security posture. This is an exceptional opportunity for cybersecurity professionals who thrive in dynamic environments and enjoy creating and improving security processes. If you are passionate about cybersecurity and want to play a crucial role in protecting a diverse range of legal entities across Europe, we encourage you to apply. Qualifications A bachelors degree in computer science / Equivalent Stream, Information Security, or a related field is preferred.

Posted 2 weeks ago

Apply

5.0 - 9.0 years

11 - 15 Lacs

Bengaluru

Work from Office

Naukri logo

Company Description Position Title: Senior Information Security Analyst Reporting To: Manager Team: Regional Security Support Crew (Information security) Reporting Location: Bangalore (B4 / B5) Job Overview: As a Regional Security Support crew, your primary role, will be to assist the Regional Information Security Officers (RISO) in implementing and maintaining cybersecurity strategies for various legal entities Globally. You will be responsible for ensuring compliance with group security policies, managing risks, and supporting the continuous improvement of the regional security posture. This role offers a unique opportunity to be part of a newly established team, providing a dynamic environment where you can help shape security processes from the ground up. Key Responsibilities: Provide direct support to the RISO in managing and implementing security plans for legal entities across the region. Assist in the creation, follow-up, and management of remediation plans for identified security risks and non-compliance issues. Conduct security risk assessments and ensure that security measures are aligned with the Groups standards and adapted to each legal entitys needs. Support the RISO in reviewing and approving changes to systems, processes, and applications prior to deployment. Perform and prioritize security audits, vulnerability scans, and reviews (including access rights, firewall rules, cloud compliance, etc.). Coordinate and support legal entities during internal and third-party security audits, ensuring compliance with all security policies. Conduct security training and awareness programs customized for regional entities, ensuring all staff are informed and compliant. Maintain accurate inventories of assets, third-party vendors, and local processes for audit and security monitoring purposes. Collaborate with regional and Group IT teams to ensure a security by design approach is applied in all regional architectures, applications, and processes. Assist in evaluating third-party vendors to ensure they meet security standards. Support the development of Disaster Recovery (DR) and Business Continuity (BC) plans. Assist the RISO with the development and implementation of policies, procedures, and guidelines that cater to local regulatory requirements and Group standards. Core Responsibilities in Incident Response and Vulnerability Management: Assist the RISO in incident response activities by investigating security breaches and incidents in collaboration with the Security Operations Center (SOC). Analyze vulnerability reports and assist in remediation efforts, ensuring timely patching and risk mitigation. Support the review and approval of firewall rules, configurations, and exceptions to maintain network security. Collaborate with the RISO in monitoring for emerging threats and recommending security improvements based on current trends. Qualifications & Skills: Strong communication and interpersonal skills, with the ability to work effectively with multiple stakeholders across various legal entities. Ability to manage multiple priorities and work under pressure in a fast-paced environment. Strong knowledge of cybersecurity concepts, including vulnerability assessments, incident management, network architecture, firewalls, and cloud security. Expertise in general IT concepts, including Active Directory, Office 365, and modern networking solutions like micro-segmentation, SASE, SD-WAN, etc. Demonstrated ability to assist in the creation and execution of security policies, procedures, and standards. Familiarity with security frameworks such as ISO 2700x, ITIL, and the EU Privacy Directives. Experience in conducting security assessments and working with audit teams during internal or external security reviews. Education & Experience: A bachelors degree in computer science / Equivalent Stream, Information Security, or a related field is preferred. At least 3+ years of experience in cybersecurity, information security, or a related field. Certifications such as CISM, CISSP, or CEH are nice to have. Atypical profiles with experience from bug bounties, open-source projects, or bootcamps are also encouraged to apply if they can demonstrate strong skills and knowledge in the required areas. looking 9+ yrs of overall IT Infra Experience. Key Competencies: A quick learner who is autonomous, adaptable, and detail oriented. Ability to work in large, complex IT environments and be comfortable with ambiguity and fast-changing priorities. A passion for cybersecurity, with strong problem-solving skills and a proactive approach to risk management. Strong English language skills are required, additional language is a plus. How You Will Help: Regularly test legal entities for compliance with security policies and procedures. Assist in conducting vulnerability assessments and implementing remediation measures based on Group standards. Investigate security incidents in collaboration with the SOC and provide technical support during audits. Support the development of Security Key Performance Indicators (KPIs) to monitor and improve the regions security posture. This is an exceptional opportunity for cybersecurity professionals who thrive in dynamic environments and enjoy creating and improving security processes. If you are passionate about cybersecurity and want to play a crucial role in protecting a diverse range of legal entities across Europe, we encourage you to apply.

Posted 2 weeks ago

Apply

4.0 - 8.0 years

9 - 14 Lacs

Bengaluru

Work from Office

Naukri logo

Position Title: Information Security Analyst Team: Regional Security Support Crew (Information security) Reporting Location: Bangalore (B4 / B5) Job Overview: As a Regional Security Support crew, your primary role, will be to assist the Regional Information Security Officers (RISO) in implementing and maintaining cybersecurity strategies for various legal entities Globally. You will be responsible for ensuring compliance with group security policies, managing risks, and supporting the continuous improvement of the regional security posture. This role offers a unique opportunity to be part of a newly established team, providing a dynamic environment where you can help shape security processes from the ground up. Key Responsibilities: Provide direct support to the RISO in managing and implementing security plans for legal entities across the region. Assist in the creation, follow-up, and management of remediation plans for identified security risks and non-compliance issues. Conduct security risk assessments and ensure that security measures are aligned with the Groups standards and adapted to each legal entitys needs. Support the RISO in reviewing and approving changes to systems, processes, and applications prior to deployment. Perform and prioritize security audits, vulnerability scans, and reviews (including access rights, firewall rules, cloud compliance, etc.). Coordinate and support legal entities during internal and third-party security audits, ensuring compliance with all security policies. Conduct security training and awareness programs customized for regional entities, ensuring all staff are informed and compliant. Maintain accurate inventories of assets, third-party vendors, and local processes for audit and security monitoring purposes. Collaborate with regional and Group IT teams to ensure a security by design approach is applied in all regional architectures, applications, and processes. Assist in evaluating third-party vendors to ensure they meet security standards. Support the development of Disaster Recovery (DR) and Business Continuity (BC) plans. Assist the RISO with the development and implementation of policies, procedures, and guidelines that cater to local regulatory requirements and Group standards. Core Responsibilities in Incident Response and Vulnerability Management: Assist the RISO in incident response activities by investigating security breaches and incidents in collaboration with the Security Operations Center (SOC). Analyze vulnerability reports and assist in remediation efforts, ensuring timely patching and risk mitigation. Support the review and approval of firewall rules, configurations, and exceptions to maintain network security. Collaborate with the RISO in monitoring for emerging threats and recommending security improvements based on current trends. Qualifications & Skills: Strong communication and interpersonal skills, with the ability to work effectively with multiple stakeholders across various legal entities. Ability to manage multiple priorities and work under pressure in a fast-paced environment. Strong knowledge of cybersecurity concepts, including vulnerability assessments, incident management, network architecture, firewalls, and cloud security. Expertise in general IT concepts, including Active Directory, Office 365, and modern networking solutions like micro-segmentation, SASE, SD-WAN, etc. Demonstrated ability to assist in the creation and execution of security policies, procedures, and standards. Familiarity with security frameworks such as ISO 2700x, ITIL, and the EU Privacy Directives. Experience in conducting security assessments and working with audit teams during internal or external security reviews. Education & Experience: At least 3+ years of experience in cybersecurity, information security, or a related field. Certifications such as CISM, CISSP, or CEH are nice to have. Atypical profiles with experience from bug bounties, open-source projects, or bootcamps are also encouraged to apply if they can demonstrate strong skills and knowledge in the required areas. Key Competencies: A quick learner who is autonomous, adaptable, and detail oriented. Ability to work in large, complex IT environments and be comfortable with ambiguity and fast-changing priorities. A passion for cybersecurity, with strong problem-solving skills and a proactive approach to risk management. Strong English language skills are required, additional language is a plus. How You Will Help: Regularly test legal entities for compliance with security policies and procedures. Assist in conducting vulnerability assessments and implementing remediation measures based on Group standards. Investigate security incidents in collaboration with the SOC and provide technical support during audits. Support the development of Security Key Performance Indicators (KPIs) to monitor and improve the regions security posture. This is an exceptional opportunity for cybersecurity professionals who thrive in dynamic environments and enjoy creating and improving security processes. If you are passionate about cybersecurity and want to play a crucial role in protecting a diverse range of legal entities across Europe, we encourage you to apply. Qualifications A bachelors degree in computer science / Equivalent Stream, Information Security, or a related field is preferred.

Posted 2 weeks ago

Apply

7.0 - 9.0 years

7 - 11 Lacs

Noida

Work from Office

Naukri logo

We are seeking a highly experienced and skilled Senior Cybersecurity Professional to join our team. The candidate should have a deep understanding protecting an organization's data and systems from cyber threats by identifying vulnerabilities, responding to breaches, and implementing security measures. Primary Skills Leadership and Strategy: Develop and implement comprehensive cybersecurity strategies and policies. Lead and mentor a team of cybersecurity professionals. Stay updated with the latest cybersecurity trends and technologies. Identify and prioritize critical business functions in collaboration with organizational stakeholders Risk Management: Conduct risk assessments and vulnerability analyses. Develop and implement risk mitigation plans. Ensure compliance with industry standards and regulations. Perform security reviews, identify gaps in security architecture, and develop a security risk management plan. Incident Response: Lead incident response efforts and manage security breaches. Develop and maintain incident response plans and procedures. Conduct post-incident analysis and reporting. Security Operations: Oversee the implementation and management of security tools and technologies. Coordinate with IT teams to ensure secure system configurations. Secondary Skills Bachelor's or Master's degree in Computer Science, Information Technology, or a related field. Relevant certifications such as CISSP, CISM, CEH, or equivalent. Proven experience in cybersecurity leadership roles. Strong knowledge of cybersecurity frameworks and standards (e.g., NIST, ISO 27001). Excellent problem-solving and analytical skills. Strong communication and interpersonal skills.

Posted 2 weeks ago

Apply

18.0 - 25.0 years

60 - 90 Lacs

Hyderabad, Chennai

Work from Office

Naukri logo

We are seeking an experienced IT Infrastructure Solution Architect to lead the design, implementation, and optimization of robust and scalable IT infrastructure solutions. This role demands deep expertise in server virtualization, storage technologies, cloud integration , and advanced network architectures including ACI, SDN, and SD-WAN . The ideal candidate will have a strong background in modern data center environments, hybrid cloud adoption, and secure infrastructure design to support mission-critical financial systems. Experience: Minimum post-qualification experience of 15 -20 years, in the relevant areas Educational Qualification: BE/B.Tech (CSE, ECE/IT) or M.E/M.Tech or MCA/MSc (CS) with Science background. Location: Chennai/Hyderabad Key Responsibilities: 1. Infrastructure Architecture & Design Server Virtualization & Platforms: Design server and compute solutions using VMware vSphere/ESXi/vCenter, OpenStack, OpenShift, and KVM. Architect hybrid cloud-ready platforms integrating containers, orchestration, and bare-metal servers. Storage Systems: Architect and manage storage environments including SAN, NAS, object storage, and software-defined storage. Technologies may include NetApp, EMC/PowerMax/Isilon, HPE 3PAR/Nimble, Dell PowerStore, Ceph, etc. Backup & DR Infrastructure: Implement enterprise backup, recovery, and disaster recovery (DR) solutions using tools like Commvault, Veeam, Veritas NetBackup, ensuring high availability (HA) and business continuity. Hybrid Cloud Infrastructure: Design and implement hybrid IT infrastructure that integrates on-premises systems with public clouds (AWS, Azure, GCP) including cloud VPN, Direct Connect, and ExpressRoute. 2. Network Architecture Data Center Networking: Architect and manage data center networks with Cisco ACI, Software Defined Networking (SDN), and network fabric technologies to provide secure, scalable, and automated connectivity. SD-WAN & WAN Optimization: Design and deploy SD-WAN solutions for secure, optimized branch-to-DC/cloud connectivity, using platforms like Cisco Viptela, Fortinet SD-WAN, or Silver Peak. Cloud Connectivity: Ensure secure and resilient cloud interconnectivity (e.g., VPN/IPSec, MPLS extensions, cloud load balancers) across hybrid environments. Network Security & Segmentation: Implement secure segmentation, micro-segmentation, firewalls (e.g., Palo Alto, FortiGate), and zero trust architectures within enterprise infrastructure. 3. Project Execution & Technical Leadership Lead infrastructure design and execution for data center refreshes, cloud migration, branch network upgrades, and infrastructure transformation initiatives. Provide hands-on guidance and support during critical deployments, performance tuning, failover simulations, and capacity planning. Ensure all infrastructure projects follow security and compliance guidelines, including PCI-DSS, ISO 27001, and internal IT governance. 4. Collaboration & Stakeholder Communication Collaborate with application, DevOps, cybersecurity, and compliance teams to align infrastructure to business and regulatory requirements. Convert high-level business and application requirements into scalable, robust technical infrastructure designs. Produce detailed architecture documentation, HLD/LLDs, SOPs, and knowledge transfer material. 5. Vendor & Technology Management Evaluate, select, and manage vendors for server, storage, networking, and cloud integration solutions. Engage with OEMs and partners (e.g., Cisco, Dell, NetApp, VMware, Red Hat, HPE, AWS, Microsoft) for technology roadmaps, licensing, and PoCs. Essential Skills & Technologies: Server & Virtualization: VMware vSphere/ESXi, vCenter, OpenStack, Red Hat OpenShift, KVM, Linux (RHEL/CentOS/Ubuntu), Windows Server, Bare-metal provisioning, Ansible/Automation Storage Technologies: SAN/NAS/Object Storage (e.g., NetApp, EMC, Dell PowerStore, HPE, Ceph, GlusterFS), Backup & DR: Veeam, Commvault, NetBackup, DR replication tools Network Technologies: Cisco ACI, SDN solutions (e.g., VMware NSX, OpenFlow), SD-WAN (e.g., Cisco Viptela, Fortinet, Silver Peak) Firewalls & Security: FortiGate, Palo Alto, Cisco ASA, Cloud Connectivity: Direct Connect, ExpressRoute, VPN, Load Balancers Cloud Platforms: Integration with AWS, Azure, GCP Familiarity with Terraform, CloudFormation, Infrastructure-as-Code (IaC) preferred Tools & Monitoring: Monitoring & NMS: SolarWinds, Zabbix, Nagios, PRTG, Configuration Management: Ansible, Puppet, ITSM Tools: ServiceNow, BMC Remedy Preferred Certifications: VMware Certified Professional (VCP) Red Hat Certified Specialist in OpenShift or OpenStack Cisco Certified Network Professional (CCNP) or Cisco ACI Specialist AWS/Azure Certified Solutions Architect Associate/Professional ITIL Foundation CISSP or CISM (preferred for security understanding) Key Competencies: Infrastructure Design & Execution : Proven ability to design, implement and maintain large-scale IT infrastructure. Problem-Solving & Optimization : Troubleshooting complex performance and availability issues across IT stack. Cross-Functional Collaboration : Excellent coordination across infra, dev, sec, and cloud teams. Stakeholder Communication: Clear technical communication with non-technical stakeholders. Documentation & Standards : High-quality documentation and adherence to best practices. Interested candidate can share their CV at seema.dixit@npci.org.in

Posted 2 weeks ago

Apply

8.0 - 10.0 years

8 - 18 Lacs

Bengaluru

Work from Office

Naukri logo

Tata Elxsi is a global design and technology services leader for Automotive, Media, Communications and Healthcare. The Company helps customers reimagine their products and services through design thinking and application of digital technologies such as IoT (Internet of Things), Cloud, Mobility, Virtual Reality, and Artificial Intelligence. Roles and Responsibilities: Overseeing the 24x7x365 Security Operation Centers processes, technology and people who monitor security tools, assess threats, and risks involving client infrastructure and orchestration Lead and manage the Security Operations Center (SOC) team, providing direction, guidance, and support to ensure the team's effectiveness and productivity with In-depth knowledge of security operations, incident response methodologies, and security technologies (SIEM, IDS/IPS, EDR, etc.). Responsible for ensuring that all Managed Service deliverables are produced on time and within strict SLA time frames, while maintaining an innovative growth culture within SOC team. Expected to act as the escalation point for the SOC technical team Managing priorities, providing recommendations and implementing changes to methods/processes. Handle client meetings, point of contact for client requirements, onboard new clients. Manage relationships with our customers in-house operations teams and lead operational interactions/cadence with client management. Provide direction and vision to improve SOCs effectiveness, including motivating people to perform, listening to the team, providing feedback, recognizing strengths, identifying automation opportunities, reducing alert fatigue and providing adequate challenges to staff to maintain innovative growth culture. Oversee the management of our existing Managed Security Operations managed SIEM and EDR solutions, ensuring their optimal performance and effectiveness in detecting and responding to security incidents. Collaborate with the SOC analysts and engineering team to define and implement SIEM rules, alerts, and correlation logic to improve the accuracy and efficiency of threat detection. Develop and implement SOC strategies, policies, and procedures to enhance the organization's security posture and incident response capabilities. Oversee the monitoring and analysis of security events and incidents, ensuring timely detection, investigation, and response to potential threats or vulnerabilities. Taking a proactive role in utilizing Threat Intelligence and Threat Hunting activities, ensuring the SOC is ahead of potential security threats. Establish and maintain relationships with external partners, vendors, and industry peers to stay updated on emerging threats, best practices, and industry trends. Conduct regular assessments and audits of SOC processes, systems, and controls to identify areas for improvement and ensure compliance with regulatory requirements. Develop and deliver comprehensive reports and metrics on SOC performance, including incident trends, response times, and effectiveness. Stay abreast of the evolving cybersecurity landscape, emerging threats, and industry standards, providing recommendations for proactive security measures and continuous improvement of the SOC. Proven expertise in MDR and Managed SIEM, with a strong preference for experience with Leading Market vendors. Strong networking concepts, including an in-depth understanding of TCP/IP protocols, firewall configuration, network segmentation, VPNs, etc. Strong understanding of Threat Intelligence, Threat Hunting, Vulnerability Management, and risk assessment frameworks. Knowledge and hands-on experience of implementation and management of IDS/IPS, Firewall, VPN, and other security products Experience with Opensource Security Information Event Management (SIEM) tools, creating advance co-relation rules, administration of SIEM, system hardening, and Vulnerability Assessment Strong background and expertise on various security technologies including end point security, perimeter security, Advanced threat protection, Security monitoring and security Certifications: CISSP,CISM, CEH, OSCP, or equivalent are highly desirable., ITIL or equivalent

Posted 2 weeks ago

Apply

6.0 - 9.0 years

17 - 18 Lacs

Bengaluru

Hybrid

Naukri logo

Hi all, We are hiring for the role Information Security Risk Specialist Experience: 6 -9 Years Location: Bangalore Notice Period: Immediate - 15 Days Skills: Experience: • 5+ years of experience in information security, risk management, or related domains. Skills and Competencies: • Comprehensive understanding of frameworks such as ISO 27001, NIST Cybersecurity Framework, COSO, and COBIT. • Proven analytical expertise in evaluating and prioritizing risks effectively. • Advanced proficiency in utilizing security tools for risk assessment and mitigation. • Strong preference for candidates with certifications like CISSP, CISM, CRISC, or equivalent. • Exceptional communication and presentation skills, with a proven ability to collaborate effectively across diverse teams. • Demonstrated problem-solving capabilities, including critical thinking and informed decision-making under pressure. • Skilled in leading security initiatives and managing projects across global teams. • A strategic mindset paired with keen attention to detail. • Resourceful and decisive under high-pressure situations. • An effective team player with exceptional interpersonal and collaboration skills. Qualifications: Education: • Bachelors degree in Information Security, Cyber Security, Computer Science, Information Science, or a related field. • Advanced degrees (e.g., Masters) or certifications (e.g., CISSP, CRISC, CISM, CEH) are a plus. If you are interested drop your resume at mojesh.p@acesoftlabs.com Call: 9701971793

Posted 2 weeks ago

Apply

5.0 - 10.0 years

13 - 18 Lacs

Mumbai

Work from Office

Naukri logo

Meet the Team You will be part of an outstanding technical pre-sales team in our Global Security Sales Organization (GSSO), responsible for driving the success of Ciscos Security Portfolio and focusing on protecting Customer Application Environments across on-prem and cloud platforms. Our mission is to democratize security by making it easy and effective for everyone. Your Impact As a key player in the team, you will have the opportunity to influence the security landscape by crafting tailored solutions that address specific customer needs. This role offers the excitement of working with cutting-edge technology and the fulfillment of building long-lasting relationships with customers. You will: Provide guidance and assist account teams in building solutions to address specific customer security needs. Understand business requirements and translate them into technical solutions. Create, present, and document technical solutions to customers, partners, and prospects. Lead technical consulting and upper-level management presentations. Drive major account opportunities while enabling local account teams to maintain long-term ownership. Minimum Qualifications Minimum of 5 years of technical sales or pre-sales experience with 2+ years in Security specialization (Email Security, IDS/IPS, AV, Firewall, Advanced Malware Protection). Bachelor's degree in Cybersecurity, Computer Science, or a related field. Proven track record of successful quota achievement. Strong knowledge of cybersecurity concepts, technologies, and best practices. Industry certifications such as CISSP, CISM, or CCSP are preferred.. Preferred Qualifications Excellent presentation and interpersonal skills. Commercial awareness and strong communication skills. Highly motivated self-starter who excels without day-to-day management. Experience with Cisco security technologies and programming languages such as UNIX shell, Perl, or C. Willingness to travel and work from a home office.

Posted 2 weeks ago

Apply

7.0 - 12.0 years

20 - 25 Lacs

Pune

Work from Office

Naukri logo

Pune Qualifications Bachelor s degree in computer science, Information Security, or a related field. Advanced degrees or relevant certifications (e.g., CISSP, CISM, CEH) are preferred. Minimum of 7-12 years of experience in cybersecurity, with at least 3 years in a managerial role within an MSSP or similar environment. Deep knowledge of cybersecurity principles, threat detection, vulnerability management, and incident response. Familiarity with security technologies (e.g., SIEM, SOAR IDS/IPS, firewalls) is essential. At least one offensive security certification such as OSCP, OSCE, GPEN, or equivalent Microscan Communications private limited is looking for a seasoned MSSP Cybersecurity Manager to lead and manage our cybersecurity operations and services. The ideal candidate will have a strong background in cybersecurity, experience in a Managed Security Service Provider (MSSP) environment, and a proven ability to manage a team, implement security strategies, and deliver exceptional service to clients. The candidate must have very good exposure in red team auditing will act as Subject matter expert in managing VAPT and Red team / blue team services involves designing, implementing, and conducting red team operations and emulating threat actor tactics, techniques, and procedures. Identify and exploit vulnerabilities, assess security postures, and provide actionable insights to customers. Support Business teams by hand holding customers queries and providing right fit solutions. Responsibilities Oversee the design, implementation, and management of security solutions for clients. Ensure that security measures are effective and aligned with industry standards and best practices. Lead the incident response process, including detection, analysis, containment, eradication, and recovery. Ensure timely and effective resolution of security incidents. Manage, mentor, and develop a team of cybersecurity professionals. Promote a culture of continuous learning and improvement within the team. Serve as a key point of contact for client engagements related to cybersecurity services. Provide regular updates, insights, and recommendations to clients on their security posture. Develop and execute cybersecurity strategies that align with client needs and organizational goals. Evaluate and enhance existing security frameworks and processes. Ensure that cybersecurity operations comply with relevant regulations and standards. Prepare and present comprehensive security reports to clients and internal stakeholders. Stay updated on emerging threats, vulnerabilities, and cybersecurity trends. Integrate threat intelligence into security operations to strengthen defences and response strategies. Work closely with other departments, including IT, risk management, and compliance, to ensure a cohesive approach to security and risk management. Oversee the deployment and management of security tools and technologies. Assess and recommend new solutions to enhance security capabilities. Develop and execute complex attack scenarios and simulations to emulate real-world threats and test the robustness of our cybersecurity measures Collaborate with Customers Internal teams to analyse security findings, prioritize remediation efforts, and recommend effective mitigation strategies Create detailed reports outlining vulnerabilities, exploit techniques, and actionable recommendations for improving security posture Conduct threat hunting and map the attack surface Work with the business to review customer requirements and propose right solution that meets end customer s needs. Research and development of custom tools and malware payloads to support operations Provide technical expertise and guidance on offensive security techniques, tools, and procedures Participate in knowledge-sharing activities, such as training sessions and workshops, to foster continuous learning and skill development within the Security team. Requirements and Skills Experience with various SOC platforms and tools (e.g., Splunk, ArcSight, QRadar, Securonix). Familiarity with compliance frameworks such as GDPR, HIPAA, or PCI-DSS. Experience in offensive security roles, including penetration testing, red/purple teaming, and ethical hacking Strong knowledge of network, operating system, cloud, and web application security architecture Proficiency in using offensive security tools such as Metasploit, Burp Suite, Nmap, Nuclei, and Kali Linux Experience with command and control (C2) frameworks such as Cobalt Strike, Sliver, or Mythic Well-versed in at least one scripting or programming language such as Python, C++, C#, Java, Go, PowerShell Experience in creating custom tools and payloads that can evade defensive products In-depth understanding of attack vectors, exploit techniques, and vulnerability assessment methodologies, with experience in applying MITRE ATT&CK Excellent analytical skills with the ability to assess complex systems and identify security gaps Strong leadership and team management skills. Proven ability to lead and develop a high-performing team. Excellent verbal and written communication skills. Ability to articulate complex security concepts to both technical and non-technical audiences. Strong problem-solving abilities and a strategic mindset. Capable of making data-driven decisions and providing actionable insights. How to Apply ? Please read all job details clearly and apply exactly as mentioned below only if you meet eligibility criteria.

Posted 2 weeks ago

Apply

10.0 - 12.0 years

18 - 20 Lacs

Pune

Work from Office

Naukri logo

Ability to champion significant Information Security projects, ensuring alignment with industry standards and practices Train members of the Information Security Team on information security tools, technologies and concepts Lead and coordinate with third-party vendors and consultants to ensure effective implementation of security measures Proactively monitor and identify vulnerabilities within our systems, informing relevant teams to facilitate risk management and resolution efforts Participate in vulnerability scanning across the organizations network, systems, and applications, ensuring timely identification and remediation of security risks Act as the primary contact for information security initiatives and provide thought leadership across multiple disciplines, influencing best practices within the technology and security community Recognized as the go-to person for complex cybersecurity assignments, providing guidance and support to internal teams and stakeholders Qualifications: Strong understanding of cybersecurity standards, practices, and policies Hands on experience with Security Technologies such as SIEM, Secure web gateway, mail protection, endpoint protection / EDR, WAF, Identity & Threat protection, etc. Hands on experience of security tools implementation including initial setup, configuration and managing daily operations Experience with Windows, Linux, and MacOS architectures Knowledge of security best practices for on-premises virtualization (VMware) and multiple cloud platforms (e.g.: Azure, GCP, AWS) Understanding of network concepts and protocols, including monitoring logs for anomalous activity Proven experience in leading projects and managing vendor relationships Excellent communication skills, with the ability to assertively address Information Security challenges Familiarity with risk analysis and mitigation methodology, security policy and procedure development, incident response and handling, security training and awareness Hands on knowledge of incident response (investigating BEC, phishing, etc.) Hands on experience on reviewing and analyzing IIS and/or Kubernetes logs for threat investigation Technical/Domain Skills: Security related certifications (e.g., CISSP, CISM, or equivalent) Scripting and automation capabilities via tools like: Python, Bash, PowerShell, API Active engagement in Information Security communities, keeping apprised of the latest tools, technologies, and threats

Posted 2 weeks ago

Apply

4.0 - 8.0 years

6 - 10 Lacs

Bengaluru

Work from Office

Naukri logo

Required Skills Technology | Scripting and Automation | Level 2 Support Technology | Network Security Fundamentals | Level 3 Support Technology | Secured Configuration Management | Level 3 Support Technology | Incident and Breach Response | Level 2 Support Technology | Endpoint Encryption | Level 2 Support Education Qualification : Engineer - B.E / B.Tech / MCA Certification Mandatory / Desirable : Technology | Certified Endpoint Detection and Response Professional/Certified Endpoint Security Administrator/Microsoft Certified: MD-100/CompTIA CySA+/CISSP/CISM/Cisco Certified CyberOps Associate/VMware Certified Professional - Desktop and Mobility Delivery Skills required are: - Advanced Technical Proficiency: - *Mastery of endpoint security solutions such as antivirus, endpoint detection and response (EDR), endpoint protection platforms (EPP), and mobile device management (MDM) systems. *Ability to configure, manage, and troubleshoot advanced endpoint security technologies effectively. *Advanced skills in conducting vulnerability assessments, prioritizing vulnerabilities, and overseeing remediation efforts across endpoint devices. Strategic Oversight and Management: - *Strategic oversight of endpoint security operations, including policy development, deployment strategies, and performance monitoring. *Collaboration with IT teams, network security specialists, compliance officers, and senior management to integrate endpoint security initiatives with broader organizational security strategies. *Facilitation of collaborative efforts to improve endpoint security posture and incident response capabilities. Communication and Stakeholder Management: - *Clear and concise communication of complex technical concepts, security risks, and recommendations to stakeholders at all levels. *Ability to articulate endpoint security issues, incident findings, and remediation strategies effectively. *Comprehensive documentation of endpoint security incidents, investigations, and remediation activities. Continuous Improvement and Adaptability: - *Commitment to staying updated with the latest cybersecurity trends, emerging threats, and technologies through ongoing training, certifications, and industry participation. *Implementation of continuous improvement initiatives to enhance endpoint security operations and resilience against evolving threats. Leadership and Mentorship: - *Mentorship of endpoint security team members to foster their professional growth and technical expertise. *Providing guidance on career development paths and skill enhancement within the endpoint security domain.

Posted 2 weeks ago

Apply

5.0 - 10.0 years

7 - 12 Lacs

Bengaluru

Work from Office

Naukri logo

Computer Science, Cybersecurity, Information Technology, or related fields. A minimum of 5+ years of hands-on experience in conducting cyber risk assessments and related security assessments. Industry certifications such as CISSP, CCSP, CISA, CISM, CRISC, ISO/IEC:27001/22301/20000 LI/LA or equivalent are highly valued. Profound knowledge of cybersecurity frameworks, industry standards, and best practices. Proficiency in using various security assessment and techniques. Strong analytical and problem-solving skills, with the ability to think critically and strategically. Excellent communication and presentation skills, capable of effectively communicating technical concepts to both technical and non-technical audiences. Demonstrated experience in project management and handling multiple assessments simultaneously. A proactive and self-motivated approach to work, with a commitment to continuous learning and professional development. Network Security, infrastructure assessment and network architecture design review. Conceptual knowledge of OT Security/ISA 62443 standard is preferable. . Conduct thorough and detailed cyber risk assessments for our clients, analyzing their digital infrastructure, systems, and security controls. Collaborate with cross-functional teams to gather essential information and data required for comprehensive risk assessments. Evaluate and interpret assessment results to identify potential vulnerabilities and risks, and provide actionable recommendations for risk mitigation. Stay up-to-date with the latest cyber threats, attack vectors, and industry best practices to enhance the effectiveness of risk assessments. Prepare and deliver clear and concise reports summarizing the findings of risk assessments to clients and internal stakeholders. Provide expert advice and consultancy to clients, guiding them in implementing robust cybersecurity risk management strategies. Mentor and support junior team members to foster their professional growth and skills in cyber risk assessments

Posted 2 weeks ago

Apply

3.0 - 7.0 years

7 - 11 Lacs

Kochi

Work from Office

Naukri logo

Job Title Security Analyst Role and Responsibilities The security Analyst is a member of the CISO Regulatory & Compliance Team and will assist in ensuring the associated business units / accounts comply with applicable Conduent and NIS 2 security standards, regulations, and policies.The Security analyst will be professional, independent, impartial, and fair in all interactions. The security resource is accountable for procedures and processes that ensure the integrity, confidentiality, and availability of assigned Business units\u2019 information, applications, and infrastructure. Resource will perform routine risk assessments, security audits, and vulnerability scans to identify, evaluate, document, and remediate organization risk, control gaps and vulnerabilities. This position will be responsible for developing security reports, security recommendations, and security policies and procedures that are meaningful, defensible, and actionable for a variety of audiences as pertained to assigned business units. Perform log collection, correlation, reviews, archival, retention, and monitoring of automated alerts for items such as, and not limited to IPS/IDS alerts; change detection (FIM) alerts application firewall alerts; malware alerts rogue wireless network alerts security system health alerts; exploit attempt alerts Participate and be an integral component of audit, compliance, and regulatory functions, including and not limited to audits of system security to ensure compliance with Corporate security framework NIS 2, NIST 800-53, ISO 27001/2, PCI-DSS emerging country, state, and Federal privacy laws Primary POC in a vulnerability management program of the account that includes external and internal vulnerability scans of applications and systems external and internal penetration tests of applications and systems documentation and remediation of identified vulnerabilities and exploits routinely monitoring various communication avenues for security vulnerabilities and security patches taking a risk-based approach comparing those security vulnerabilities and security patches across the operating environments making recommendations to various IT teams on the mitigation process for those identified security vulnerabilities Coordinate with business units, operations, and technology teams for incident response, remediation, and improvement Acts as the initial point of contact to facilitate the handling of security audits and client requests Supports the creation of business continuity/disaster recovery plans, to include conducting disaster recovery tests, publishing test results, and making changes necessary to address deficiencies Maintain documentation that supports the annual Security compliance attestation as it is relevant to the assigned Business units Qualifications and Education Requirements CIPP, CRISC, CISA, CISSP, CISM, ISO or any security/IT audit certification is a plus. Minimum of Five (3 to 5) Years of experience in IT Security compliance, or Security Auditing is required. Knowledge and understanding of security controls across all security domains, such as access management, encryption, vulnerability management, authentication, authorization, network security, physical security, etc. Ability to identify security risks in application, system, and network architecture, data flow, and processes or procedures Ability to assess the organizational impact of identified security risks and recommend solutions or mitigating controls. Knowledge of security technologies, devices, and countermeasures, as well as the threats they are designed to counter. Experience with developing security reports, recommendations, policies, and procedures that are meaningful, defensible, and actionable for a variety of audiences. Familiarity with more than one framework (NIST 800-series, ISO 27000-series, PCI DSS and ISO, HIPAA, HITRUST, FISMA, FedRAMP other common security control frameworks). Experience in PowerPoint, Word, Excel; experience with Visio and MS Project. Communication skills (interpersonal, verbal, presentation written, email). Experience to write report segments and to participate in presentations. Familiarity with security, workflow, and collaboration tools such Nessus Tenable, Splunk, SharePoint and ServiceNow (Snow) is a plus Positive attitude, team player, self-starter; takes initiative, ability to work independently and effectively with all levels of staff and management both internally and externally Preferred Skills Creating and Maintaining NIST 800-53-rev5 based SSP and POAM Familiarity with more than one framework (NIST 800-series, ISO 27000-series, PCI DSS and ISO, HIPAA, HITRUST, FISMA, FedRAMP other common security control frameworks). Conduent is an Equal Opportunity Employer and considers applicants for all positions without regard to race, color, creed, religion, ancestry, national origin, age, gender identity, gender expression, sex/gender, marital status, sexual orientation, physical or mental disability, medical condition, use of a guide dog or service animal, military/veteran status, citizenship status, basis of genetic information, or any other group protected by law. People with disabilities who need a reasonable accommodation to apply for or compete for employment with Conduent may request such accommodation(s) by submitting their request through this form that must be downloaded:click here to access or download the form. Complete the form and then email it as an attachment toFTADAAA@conduent.com.You may alsoclick here to access Conduent's ADAAA Accommodation Policy. At Conduent we value the health and safety of our associates, their families and our community. For US applicants while we DO NOT require vaccination for most of our jobs, we DO require that you provide us with your vaccination status, where legally permissible. Providing this information is a requirement of your employment at Conduent.

Posted 2 weeks ago

Apply

3.0 - 8.0 years

13 - 17 Lacs

Bengaluru

Work from Office

Naukri logo

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Product Security Good to have skills : Google Cloud Data ServicesMinimum 7.5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :GCP Security Architect Solution Design, Compliance, and Security EngineeringWe are hiring GCP Security Architects with 7+ years of experience in designing secure GCP environments and integrating automated security across deployments. This role emphasizes applied engineering, platform security control implementation, and ensuring audit-ready, secure-by-default environments. Roles & Responsibilities:Design and implement secure, scalable GCP architectures.Configure and maintain IAM (roles, policies, IDP integrations, MFA, SSO).Establish secure configurations for VPCs, VPNs, Data Encryption (KMS), and Cloud Armor.Manage Cloud Security Command Center for visibility, governance, and incident response.Implement Cloud Operations Suite for logging, alerting, and security analytics.Conduct threat modeling, vulnerability assessments, and define remediation paths.Automate security checks and controls using Terraform, Cloud Shell, and CI/CD integrations.Collaborate with platform, DevOps, and risk teams to embed security into development lifecycles.Support audit preparation, policy compliance, and security documentation efforts.Review solution designs and assist with enforcing GCP security guardrails. Professional & Technical Skills: Analytical and detail-oriented with a strong problem-solving mindset.Strong communicator with cross-functional collaboration experience.Continuously stays updated with evolving cloud threat landscapes.Excellent communication skills, including the ability to convey complex security concepts to technical and non-technical stakeholders.Strong working knowledge of IAM, VPC SC, Cloud Armor, encryption practices, and security policy enforcement.Experience with Terraform, automated auditing, and log analysis tools.- Additional Information:Bachelors degree in engineering or computer science, Information Security, or a related field.Certifications such as Google Cloud Certified Professional Cloud Security Engineer is a must; CCSP preferred.- 7+ years in security roles, with 3+ years in hands-on GCP security delivery.- This position is based at our Bengaluru office- A 15 years full time education is required. Qualification 15 years full time education

Posted 2 weeks ago

Apply

2.0 - 7.0 years

4 - 6 Lacs

Hyderabad

Hybrid

Naukri logo

Experience: Minimum of 2-4 years of experience in third-party risk management, information security, or audit programs. Experience with Venminder and other TPRM platforms. Preferred certifications include CISSP, CRISC, CISM, CISA, CTPRP, ISO, SSAE Degree in Management, Finance, Business, Computer Science, Information Systems, or a related field. Skills: Knowledge of industry regulations and compliance standards. Ability to conduct thorough risk assessments and develop mitigation strategies. Strong attention to detail and organizational skills. Strong data entry skills. Excellent communication, customer service and interpersonal abilities. Will be interacting with many areas of the business as well as Senior stakeholders. Proficiency in TPRM Platforms, Microsoft Office Suite and/or other systems. Ability to work independently and collaboratively in a team environment. Ability to work quickly and effectively under pressure and time constraints. Strong English communication skills (written and spoken) with ability to explain issues and remedies.

Posted 2 weeks ago

Apply

6.0 - 7.0 years

5 - 10 Lacs

Pune

Work from Office

Naukri logo

Evaluates, tests, recommends, develops, coordinates, monitors, and maintains information security policies, procedures and systems, including hardware, firmware and software Ensures that IS security architecture/designs, plans, controls, processes, standards, policies and procedures are aligned with IS standards and overall IS security Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents Investigates and resolves security incidents and recommends enhancements to improve security Develops techniques and procedures for conducting IS security risk assessments and compliance audits, the evaluation and testing of hardware, firmware and software for possible impact on system security, and the investigation and resolution of security incidents, What Part Will You Play Proactively monitors complex systems and response to known and emerging threats against the Global Payments network via intrusion detection software Completes detailed, comprehensive investigation of security issues by reviewing security log data, interpreting data in support of security event management process from various data feeds and triages on a wide variety of security events, Performs incident handling process by maintaining knowledge in implementation of containment, protection and remediation activities, Keeps up-to-date knowledge of new and emerging threats that can affect the organization's information assets by analyzing of third party software/solutions, IT configuration changes (including access control requests), and network/system architecture from risk perspective Responsible for the design and configuration of security systems, including proxy, remote access, mail gateway, intrusion prevention, wireless networking, data leak prevention, security information and event management and web application firewalls, Provides input in assessing and disseminating threats related to the enterprise in regard to current vulnerability by managing and developing an emerging threat model, Assesses risks based on changes to implementation of ISO(International Organization for Standardization)/BSO(Business Services Online); enhances knowledge of PCI(Payment Card Industry)/Logical Security guidelines and models, HIPPA(health insurance portability and accountability act), PII(Personally Identifiable Information), and Card personalization, Creates cost effective solutions for system/application development regarding Information Security processes and concepts in applicable systems and software, Performs day-to-day Information Security functions pertaining to computer access control on numerous security software products and processes, Enhance understanding of business objectives and helps providing direction based on risk, Corporate Policy, and association and regulatory guidelines, Participates in developing long term strategies for conducting system penetration, vulnerability and web application testing, risk assessments, policy creation, What Are We Looking For in This Role Minimum Qualifications Bachelor's Degree Relevant Experience or Degree in: Bachelor's degree in Computer Science, Info Security, or related field Or related work experience, Typically Minimum 4 Years Relevant Exp Including network operations or engineering or system administration on Unix, Linux, MAC(Message Authentication Code), or Windows; proven experience working with security operations, intrusion detection systems, Security Incident Even Management systems, and anti-virus collection logs; including knowledge of industry standard security compliance programs (PCI, SOX, GLBA, etc ) Preferred Qualifications Professional certifications CISSP(Certified Information System Security Professional),CISM(Certified Information Security Manager) ,CISAKnowledge of industry standard security compliance programs (PCI(Payment Card Industry), SOX(Sarbanes-Oxley) , GLBA(Gramm Leach Bliley Act)) What Are Our Desired Skills and Capabilities Skills / Knowledge A seasoned, experienced professional with a full understanding of area of specialization; resolves a wide range of issues in creative ways This job is the fully qualified, career-oriented, journey-level position, Job Complexity Works on problems of diverse scope where analysis of data requires evaluation of identifiable factors Demonstrates good judgment in selecting methods and techniques for obtaining solutions Networks with senior internal and external personnel in own area of expertise, Supervision Normally receives little instruction on day-to-day work, general instructions on new assignments, Risk Assessment Ability to identify, communicate, and mitigate risk within technical solution designs Industry Knowledge Continued self-education of new and emerging threats and relevant processes, controls, or technologies to mitigate them, Incident Response Knowledge and skills to contribute to all phases of Incident Response,

Posted 2 weeks ago

Apply

5.0 - 10.0 years

25 - 30 Lacs

Gurugram

Work from Office

Naukri logo

Location(s): India City/Cities: Gurugram Travel Required: 00% - 25% Relocation Provided: No Job Posting End Date: May 29, 2025 Shift: Job Description Summary: This is not a Remote role and will require the incumbent to be based in Gurugram, India and follow a hybrid work schedule. This is an Individual Contributor role. The Principal International Auditor is responsible for assisting management in assessing the adequacy of the Company s internal control environment by performing audits and value-added services. This position will lead and participate in international audit engagements of varying size and complexity ensuring the successful completion of assigned audit activities. The Principal International Auditor will apply risk and control concepts along with an understanding of business operations to identify and communicate results to management. Candidates should demonstrate strong leadership capabilities, communication, and problem-solving skills along with the ability to contribute to a dynamic team environment while maintaining accountability for individual performance objectives and goals. What You ll Do for Us : Lead and/or participate on multiple international audit engagements and projects simultaneously ensuring each engagement is conducted in an efficient and effective manner. Obtain an understanding of business processes and leverage an understanding of risk and control concepts to develop risk assessments, audit programs and testing procedures that appropriately address identified risks and project objectives. Review audit evidence and demonstrate the ability to draw appropriate conclusions regarding the state of the client s control environment. Identify and appropriately communicate audit issues to management, offering recommended solutions that address risks and are relevant to the business. Prepare working papers that are accurate, complete and well-documented ensuring adherence to applicable Department and professional standards at all times. Perform reviews of working papers to ensure accuracy and completion and assist in clearing any review points provided by team leads and / or audit management. Provide timely updates to team leads and / or audit management on engagement progress and audit issues ensuring all deadlines are consistently achieved. Qualifications & Requirements: Bachelor s degree in accounting or finance. At least 5+ years of related work experience in an auditing capacity with a public accounting firm (BIG 4 Advisory highly desired), a well-established corporate internal audit department or other finance function within a multinational fast moving consumer goods organization. One or more relevant professional certifications (e.g. CPA, CIA, CFE, CISA, CISSP, CISM, CRISC, Chartered Accountant). Demonstrated experience leading small to medium size teams. Multi-lingual and proficiency in English, both verbally and in written form required. Ability to travel up to 100% required. Knowledge of the Company s business operations or external manufacturing experience preferable in the Consumer-Packaged Goods industry (CPG). Excellent analytical skillset and critical mindset. Demonstrated leadership potential. Strong collaboration, team player, interpersonal skills. Other Knowledge, Skills and Abilities The Corporate Audit Department is accountable for delivering the annual audit plan approved by the Audit Committee of the Board of Directors. This plan is time bound and each audit in the plan has a defined start and end period. The nature of the work is deadline driven. In addition, following are other demonstrated behaviors and abilities needed to function successfully in role. Ability to maintain objectivity and independence at all times. Ability to quickly develop an understanding of business processes, risks and controls, and apply auditing standards to assignments through practical application. Consistently demonstrate an ability to remain flexible and flourish in a fast-paced, complex environment with competing priorities and deadlines, including a willingness to adapt to new surroundings, circumstances, information, challenges and flexibility to work in an environment with shared work space both on and at off-site locations. Demonstrate an ability to quickly collaborate and work effectively with a diverse group of clients and team-members consistently delivering the highest quality communication, work product and client service. Demonstrate an ability to give and follow instructions accurately and efficiently ensuring work efforts are directed toward the desired outcome. Solid communication and listening skills and the ability to identify gaps in logic. Flexibility to work in excess of a standard 40 hours per week to complete each audit on time and deliver the annual audit plan. Act as an Ambassador of the Department and Company consistently demonstrating a positive, can-do attitude . What can help you to be successful in the role? Growth Behavior: Growth Mindset: Demonstrates Curiosity. Welcomes failure as a learning opportunity. Smart Risk: Makes bold decisions/recommendations. Externally Focused: Understands the upstream and downstream implications of his/her work. Performance Driven & Accountable: Has high performance standards. Outperforms her/his peers. Fast/Agile: Removes barriers to move faster. Experiments and adapts. Thrives under pressure and fast pace. Empowered: Brings solutions instead of problems. Challenges the status quo. Has the courage to take an unpopular stance. Leadership Behavior Act Like an Owner: Deliver results, creating value for our brands, our System, our customers and key stakeholders. Collaborate with the System, Customers and Key Stakeholders Develops Self and Others: Develop self and support others development to achieve their full potential. Drive Innovation: Generate new or unique solutions and embrace new ideas that help sustain our business. What We Can Do For You Career growth and development: Leveraging our boundaryless network, we provide access to educational platforms and provide coaching, mentoring and feedback, as a part of our Leadership & Development process. Diverse and inclusive culture: You ll be embraced for who you are and empowered to use your voice to help others find theirs. We want to make our culture inevitable. International Experience: Become part of international projects and work along multicultural teams, through our global network. Skills: Auditing, Audit Management, Business Audits, Business Processes, Business Risks, Communication, Compliance, Financial Analysis, Internal Controls, Risk Management, Sarbanes-Oxley Act (SOX) Our Purpose and Growth Culture: We are taking deliberate action to nurture an inclusive culture that is grounded in our company purpose, to refresh the world and make a difference. We act with a growth mindset, take an expansive approach to what s possible and believe in continuous learning to improve our business and ourselves. We focus on four key behaviors - curious, empowered, inclusive and agile - and value how we work as much as what we achieve. We believe that our culture is one of the reasons our company continues to thrive after 130+ years. Visit Our Purpose and Vision to learn more about these behaviors and how you can bring them to life in your next role at Coca-Cola.

Posted 3 weeks ago

Apply

5.0 - 10.0 years

25 - 30 Lacs

Gurugram

Work from Office

Naukri logo

Location(s): India City/Cities: Gurugram Travel Required: 00% - 25% Relocation Provided: No Job Posting End Date: May 29, 2025 Shift: Job Description Summary: This is not a Remote role and will require the incumbent to be based in Gurugram, India and follow a hybrid work schedule. This is an Individual Contributor role. The Principal International Auditor is responsible for assisting management in assessing the adequacy of the Company s internal control environment by performing audits and value-added services. This position will lead and participate in international audit engagements of varying size and complexity ensuring the successful completion of assigned audit activities. The Principal International Auditor will apply risk and control concepts along with an understanding of business operations to identify and communicate results to management. Candidates should demonstrate strong leadership capabilities, communication, and problem-solving skills along with the ability to contribute to a dynamic team environment while maintaining accountability for individual performance objectives and goals. What You ll Do for Us : Lead and/or participate on multiple international audit engagements and projects simultaneously ensuring each engagement is conducted in an efficient and effective manner. Obtain an understanding of business processes and leverage an understanding of risk and control concepts to develop risk assessments, audit programs and testing procedures that appropriately address identified risks and project objectives. Review audit evidence and demonstrate the ability to draw appropriate conclusions regarding the state of the client s control environment. Identify and appropriately communicate audit issues to management, offering recommended solutions that address risks and are relevant to the business. Prepare working papers that are accurate, complete and well-documented ensuring adherence to applicable Department and professional standards at all times. Perform reviews of working papers to ensure accuracy and completion and assist in clearing any review points provided by team leads and / or audit management. Provide timely updates to team leads and / or audit management on engagement progress and audit issues ensuring all deadlines are consistently achieved. Qualifications & Requirements: Bachelor s degree in accounting or finance. At least 5+ years of related work experience in an auditing capacity with a public accounting firm (BIG 4 Advisory highly desired), a well-established corporate internal audit department or other finance function within a multinational fast moving consumer goods organization. One or more relevant professional certifications (e.g. CPA, CIA, CFE, CISA, CISSP, CISM, CRISC, Chartered Accountant). Demonstrated experience leading small to medium size teams. Multi-lingual and proficiency in English, both verbally and in written form required. Ability to travel up to 100% required. Knowledge of the Company s business operations or external manufacturing experience preferable in the Consumer-Packaged Goods industry (CPG). Excellent analytical skillset and critical mindset. Demonstrated leadership potential. Strong collaboration, team player, interpersonal skills. Other Knowledge, Skills and Abilities The Corporate Audit Department is accountable for delivering the annual audit plan approved by the Audit Committee of the Board of Directors. This plan is time bound and each audit in the plan has a defined start and end period. The nature of the work is deadline driven. In addition, following are other demonstrated behaviors and abilities needed to function successfully in role. Ability to maintain objectivity and independence at all times. Ability to quickly develop an understanding of business processes, risks and controls, and apply auditing standards to assignments through practical application. Consistently demonstrate an ability to remain flexible and flourish in a fast-paced, complex environment with competing priorities and deadlines, including a willingness to adapt to new surroundings, circumstances, information, challenges and flexibility to work in an environment with shared work space both on and at off-site locations. Demonstrate an ability to quickly collaborate and work effectively with a diverse group of clients and team-members consistently delivering the highest quality communication, work product and client service. Demonstrate an ability to give and follow instructions accurately and efficiently ensuring work efforts are directed toward the desired outcome. Solid communication and listening skills and the ability to identify gaps in logic. Flexibility to work in excess of a standard 40 hours per week to complete each audit on time and deliver the annual audit plan. Act as an Ambassador of the Department and Company consistently demonstrating a positive, can-do attitude . What can help you to be successful in the role? Growth Behavior: Growth Mindset: Demonstrates Curiosity. Welcomes failure as a learning opportunity. Smart Risk: Makes bold decisions/recommendations. Externally Focused: Understands the upstream and downstream implications of his/her work. Performance Driven & Accountable: Has high performance standards. Outperforms her/his peers. Fast/Agile: Removes barriers to move faster. Experiments and adapts. Thrives under pressure and fast pace. Empowered: Brings solutions instead of problems. Challenges the status quo. Has the courage to take an unpopular stance. Leadership Behavior Act Like an Owner: Deliver results, creating value for our brands, our System, our customers and key stakeholders. Collaborate with the System, Customers and Key Stakeholders Develops Self and Others: Develop self and support others development to achieve their full potential. Drive Innovation: Generate new or unique solutions and embrace new ideas that help sustain our business. What We Can Do For You Career growth and development: Leveraging our boundaryless network, we provide access to educational platforms and provide coaching, mentoring and feedback, as a part of our Leadership & Development process. Diverse and inclusive culture: You ll be embraced for who you are and empowered to use your voice to help others find theirs. We want to make our culture inevitable. International Experience: Become part of international projects and work along multicultural teams, through our global network. Skills: Auditing, Audit Management, Business Audits, Business Processes, Business Risks, Communication, Compliance, Financial Analysis, Internal Controls, Risk Management, Sarbanes-Oxley Act (SOX) Our Purpose and Growth Culture: We are taking deliberate action to nurture an inclusive culture that is grounded in our company purpose, to refresh the world and make a difference. We act with a growth mindset, take an expansive approach to what s possible and believe in continuous learning to improve our business and ourselves. We focus on four key behaviors - curious, empowered, inclusive and agile - and value how we work as much as what we achieve. We believe that our culture is one of the reasons our company continues to thrive after 130+ years. Visit Our Purpose and Vision to learn more about these behaviors and how you can bring them to life in your next role at Coca-Cola.

Posted 3 weeks ago

Apply

13.0 - 15.0 years

20 - 25 Lacs

Mumbai

Work from Office

Naukri logo

Job Title: Principal Information Security Specialist Job Code: 10034 Country: IN City: Mumbai Skill Category: IT\Technology Description: Responsibilities: Lead operational execution of enterprise data protection tools including BigID, MIP, DLP, Thales, Truffle Hog, etc. Manage endtoend incident response workflows related to data leakage, sensitive data discovery, and misconfiguration. Ensure operational efficiency of data discovery, classification, and protection capabilities across endpoints, cloud, and onprem environments. Collaborate with engineering, compliance, legal, and business teams to define and implement data protection policies. Oversee and optimize data classification strategies (manual, suggestive, and automated). Track and report key metrics including incident trends, false positives, and SLA adherence. Drive adoption and user training programs related to data classification and labeling. Participate in and lead audits, risk assessments, and regulatory readiness reviews. Own tool lifecycle from onboarding, configuration, integration to tuning and decommissioning. Serve as escalation point for highpriority incidents, executive reporting, and stakeholder briefings. Knowledge, Skill, Experience Required: Required: 1315+ years of overall experience in Information Security. 8+ years of direct experience in data protection, DLP, or data privacy. Proven experience managing enterprisegrade tools like BigID, MIP, Symantec/Forcepoint DLP, Thales Cipher Trust, Truffle Hog, and/or others. Strong understanding of data discovery, classification, encryption, rights management, and related regulatory standards (e.g., GDPR, HIPAA, DPDP, CCPA). Solid background in cloud security controls (M365, AWS, Azure, GCP) and hybrid deployments. Expertise in SIEM and SOAR integrations, incident response, and threat modeling. Experience with scripting or automation (e.g., Python, PowerShell) a plus. Familiarity with compliance frameworks such as ISO 27001, NIST, RBI, etc. Beneficial: Symantec and Forcepoint DLP Certification Microsoft Certified: Information Protection Administrator Associate (SC400) Certifications such as CIPT, CIPP, CISSP, CISM, or equivalent preferred. Azure Security / Microsoft 365 Security certifications Personal Characteristics: Strategic thinker with handson execution capability. Excellent communication and stakeholder management skills across technical and nontechnical audiences. Strong problemsolving and analytical skills. High degree of professional integrity, ownership, and accountability. Proactive and collaborative team leader, able to operate in crossfunctional and matrixed environments. Adept at working under pressure with strong prioritization and decisionmaking skills. We are committed to providing equal opportunities throughout employment including in the recruitment, training and development of employees. We prohibit discrimination in the workplace whether on grounds of gender, marital or domestic partnership status, pregnancy, carer s responsibilities, sexual orientation, gender identity, gender expression, race, color, national or ethnic origins, religious belief, disability or age. *Applying for this role does not amount to a job offer or create an obligation on Nomura to provide a job offer. The expression "Nomura" refers to Nomura Services India Private Limited together with its affiliates.

Posted 3 weeks ago

Apply

Exploring CISM Jobs in India

The demand for Certified Information Security Manager (CISM) professionals is on the rise in India as organizations are focusing more on securing their digital assets. CISM professionals play a crucial role in designing, implementing, and managing information security programs to protect an organization's sensitive data and information systems.

Top Hiring Locations in India

  1. Bangalore
  2. Mumbai
  3. Delhi
  4. Pune
  5. Hyderabad

Average Salary Range

The average salary range for CISM professionals in India varies based on experience and location. Entry-level positions can expect a salary range of INR 6-10 lakhs per annum, while experienced professionals can earn upwards of INR 20 lakhs per annum.

Career Path

A typical career progression for CISM professionals may include roles such as Information Security Analyst, Information Security Manager, Chief Information Security Officer (CISO), and ultimately, a Senior Information Security Consultant.

Related Skills

In addition to CISM certification, employers often look for professionals with skills such as: - Cybersecurity - Network Security - Security Risk Management - IT Governance

Interview Questions

  • What is the role of CISM in an organization? (basic)
  • Can you explain the difference between CISM and CISSP certifications? (medium)
  • How do you handle a security breach in an organization? (advanced)
  • What is your experience with implementing security policies and procedures? (basic)
  • How do you stay updated with the latest cybersecurity trends and threats? (medium)
  • Can you describe a successful security project you have led in the past? (advanced)
  • What is the importance of risk management in information security? (basic)
  • How do you assess the security posture of an organization? (medium)
  • Explain the concept of defense in depth in cybersecurity. (advanced)
  • How do you ensure compliance with data protection regulations such as GDPR? (medium)
  • Describe a scenario where you had to handle a security incident in real-time. (advanced)
  • How do you prioritize security measures based on risk assessment? (medium)
  • What is the role of encryption in information security? (basic)
  • Can you explain the concept of security governance? (medium)
  • How do you communicate security risks to non-technical stakeholders? (advanced)
  • What is the importance of security awareness training for employees? (basic)
  • How do you conduct a security audit of an organization's systems? (medium)
  • Describe a time when you had to resolve a conflict between security requirements and business needs. (advanced)
  • How do you ensure the continuity of operations in the event of a security incident? (medium)
  • What is the significance of incident response planning in cybersecurity? (basic)
  • How do you handle vendor risk management in information security? (medium)
  • Can you explain the concept of threat intelligence in cybersecurity? (advanced)
  • Describe a situation where you had to make a tough security decision under pressure. (medium)
  • How do you assess the effectiveness of security controls in an organization? (advanced)

Closing Remark

As you prepare for CISM job opportunities in India, remember to showcase your expertise in information security, risk management, and governance during interviews. Stay updated with the latest trends in cybersecurity and practice answering both technical and situational questions confidently. Good luck in your job search!

cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies