General Manager - Global Information Security

0 years

0 Lacs

Posted:6 days ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

About The Company

Tata Communications Redefines Connectivity with Innovation and IntelligenceDriving the next level of intelligence powered by Cloud, Mobility, Internet of Things, Collaboration, Security, Media services and Network services, we at Tata Communications are envisaging a New World of CommunicationsEstablish comprehensive security and data privacy risk lifecycle mgmt. charter and adoption of security risk framework across the organisationEstablish 2nd line of defence for independent validation and assurance of organisation's security posture and risk exposureContinuous assessment of security and data privacy risks across technology environment and business processesRecommend and execute strategic risk reduction and mitigation plan in collaboration with business stakeholdersGovern security and data privacy risk posture providing assurance to maintain risk exposure under pre-defined acceptable thresholdsEstablish, drive adoption, govern adherence of security policies, maintain regulatory compliance assurance across organisation, supporting audits and industry certificationsCollaboration with business stakeholders and executive leadership on risk awareness and risk mgmt. practices and shift-left for security risk decisions

Cyber Risk Impact -

Recommend, influence and facilitate decisions that directly affect organizational cyber resilience, regulatory compliance, and business continuity which requires senior level judgment and accountability

Cross Functional Governance -

Interface with BU Heads, GMC members, Executive leadership and Risk committee on the matter of security and data privacy risk decisions and assurance

Regulatory & Strategic Complexity -

Manage cyber security risk for global jurisdictions with ability to interpret and apply regulations strategically

Agility for Business -

Operate with the lean team while maintaining execution oversight demonstrating leadership as well as execution guidance for middle management and operations teams

Accountability -

Ensure that risk accountability remains integrated into business and technology decisions, providing necessary leadership in risk governance forums

Decision Authority -

The role spans technology, operations and business functions to maintain risk posture, enforce risk acceptance/rejection and sign-off on residual risk exposure for business initiativesStrong critical and analytical thinking with quantitative cyber risk analysis and modelling capabilityKnowledge of cyber risks and business impact assessment techniques and frameworksRegulatory compliance cybersecurity controls analysis and interpretation for technology and business processesExpertise to align cyber risk decisions with business prioritiesAbility to perform with cross-functional engagement and influencing senior stakeholdersFamiliarity with AI security governance, data privacy risk mgmt., and evolving technology practicesDevelop and maintain Cyber Risk Framework integrated with ERMAlign security controls with business criticality and regulatory requirementsConduct periodic technology risk assessments for controls effectiveness across infrastructure, networks, applications, cloud, and identity across enterprise and BU productsLead threat modelling and control design reviews for new technology, AI and business initiatives, merger and technology partnershipsMaintain Cyber Risk Register with quantitative risk scores such as FAIR or CVSSEvaluate third-party and supply chain risks including SaaS, cloud and technology service partnersEstablish cyber risk appetite and key risk indicators (KRIs) linked to business tolerance levelsGovern implementation of baseline security controls (e.g. CIS, NIST, ISO) across technology environment and business processesConduct periodic control assurance reviews and validate effectiveness of compensating security and data privacy controlsManage regulatory compliance mapping – ISO 27001, SOC 2 Global Telecom and Data Privacy regulationsOversee risk-based audit readiness and support IA and regulatory auditsMaintain risk mitigation plans and ensure timely closure of non-compliance or audit gapsDevelop and maintain cyber risk dashboards and recommended risk posture improvement plans for BU, CISO, CRO, and Board committeesConduct cyber risk workshops and tabletop simulations with BU leadership for actionable risk insightsProvide executive insights on risk trends, threat landscape, and cyber resilienceLead post-incident risk assessment, lessons learned reviews and CAPAWorkflow automation for Risk tracking and issue remediation

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
Tata Communications logo
Tata Communications

Telecommunications

Chennai

RecommendedJobs for You