Home
Jobs

1642 Nist Jobs - Page 28

Filter Interviews
Min: 0 years
Max: 25 years
Min: ₹0
Max: ₹10000000
Setup a job Alert
Filter
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

3.0 - 7.0 years

6 - 8 Lacs

Hyderābād

On-site

GlassDoor logo

At DuPont, our purpose is to empower the world with essential innovations to thrive. We work on things that matter. Whether it’s providing clean water to more than a billion people on the planet, producing materials that are essential in everyday technology devices from smartphones to electric vehicles, or protecting workers around the world. Discover the many reasons the world’s most talented people are choosing to work at DuPont. Why Join Us | DuPont Careers Job Title: Security Engineer – Microsoft 365 & Azure Location: Hyderabad, India Reports To: Director of Cybersecurity, Qnity Electronics Segment Position Summary We are seeking a skilled and motivated Security Engineer with deep expertise in Microsoft 365 and Azure security technologies to join our cybersecurity engineering team. This role will focus on the implementation, configuration, and continuous improvement of Microsoft Purview, Defender (365, for Cloud, and Cloud Apps), and Sentinel to safeguard our enterprise collaboration and cloud environments. As part of the Qnity Electronics business unit, you will ensure that security controls applied across the Microsoft cloud estate are technically sound, operationally efficient, and compliant with regulatory and industry standards applicable to a public manufacturing company serving the electronics end market. Key Responsibilities Engineer, configure, and manage Microsoft Purview Information Protection and Data Loss Prevention (DLP) controls for structured and unstructured data across M365 workloads. Deploy and optimize Microsoft Defender for Endpoint, Office 365, Identity, Cloud Apps, and Cloud to ensure threat protection coverage across users, devices, SaaS, and cloud workloads. Design, implement, and maintain Microsoft Sentinel analytics, incident correlation, and response automation for proactive threat detection and response. Apply security controls in accordance with internal policy and external standards (e.g., SOX, NIST 800-53, ISO 27001), ensuring traceability and evidence for audit readiness. Collaborate with infrastructure, compliance, and IT operations teams to enforce secure baselines for Microsoft 365, Azure subscriptions, and hybrid identities (Entra ID). Conduct control gap assessments, assist with remediation efforts, and manage engineering backlog in support of security governance and compliance efforts. Contribute to incident investigations and root cause analysis involving cloud-based services, maintaining logs and telemetry in line with forensic and audit requirements. Support continuous hardening of collaboration tools such as Teams, SharePoint Online, and Exchange Online while enabling business productivity. Required Qualifications 3–7 years of experience in cybersecurity engineering, with specific focus on Microsoft technologies. Strong proficiency with Microsoft Defender suite, Purview, Sentinel, and Azure native security tooling. Demonstrated ability to apply enterprise security controls to cloud platforms with compliance mapping to NIST, SOX, or similar frameworks. Familiarity with Entra ID (Azure AD), Conditional Access, RBAC, and Zero Trust architectures. Experience in a public company or regulated manufacturing environment is strongly preferred. Scripting or automation skills (PowerShell, KQL, ARM/Bicep, or Terraform a plus). Excellent documentation practices and ability to maintain technical records for audit traceability. Preferred Qualifications Microsoft Certified: Cybersecurity Architect Expert or Security Operations Analyst Associate Experience in securing collaboration and manufacturing IT environments with mixed IT/OT boundaries Prior experience supporting security engineering within a divested or restructuring business unit is a plus Join our Talent Community to stay connected with us! On May 22, 2024, we announced a plan to separate our Electronics and Water businesses in a tax-free manner to its shareholders. On January 15, 2025, we announced that we are targeting November 1, 2025, for the completion of the intended separation of the Electronics business (the “Intended Electronics Separation”)*. We also announced that we would retain the Water business. We are committed to ensuring a smooth and successful separation process for the Future Electronics business. We look forward to welcoming new talent interested in contributing to the continued success and growth of our evolving organization. (1)The separation transactions are subject to satisfaction of customary conditions, including final approval by DuPont's Board of Directors, receipt of tax opinion from counsel, the filing and effectiveness of Form 10 registration statements with the U.S. Securities and Exchange Commission, applicable regulatory approvals, and satisfactory completion of financing. For further discussion of risks, uncertainties and assumptions that could impact the achievement, expected timing and intended benefits of the separation transactions, see DuPont’s announcement . DuPont is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability or any other protected class. If you need a reasonable accommodation to search or apply for a position, please visit our Accessibility Page for Contact Information. DuPont offers a comprehensive pay and benefits package. To learn more visit the Compensation and Benefits page.

Posted 1 week ago

Apply

0 years

6 - 9 Lacs

Hyderābād

Remote

GlassDoor logo

Hyderabad, India Chennai, India Job ID: R-1076713 Apply prior to the end date: June 21st, 2025 When you join Verizon You want more out of a career. A place to share your ideas freely — even if they’re daring or different. Where the true you can learn, grow, and thrive. At Verizon, we power and empower how people live, work and play by connecting them to what brings them joy. We do what we love — driving innovation, creativity, and impact in the world. Our V Team is a community of people who anticipate, lead, and believe that listening is where learning begins. In crisis and in celebration, we come together — lifting our communities and building trust in how we show up, everywhere & always. Want in? Join the #VTeamLife. What you’ll be doing... The Threat Management Center (TMC) serves as the initial point of defense for Verizon's networks and information systems, safeguarding them against internal misconduct and cyber-attacks. The TMC Advanced Cyber Defense (TMC-ACD) team is tasked with responding to, investigating, hunting and managing all incidents. Collectively, the teams strive to protect Verizon's employees, customers, brand reputation, and revenue streams through proactive identification, response, and mitigation of potential threats that could adversely affect Verizon or its business partners. What we’re looking for... Verizon is looking for an innovative and motivated professional who will be responsible for safeguarding the Verizon enterprise. This individual will work on identified threats and will neutralize them through proactive hunting and detection, incident response and mitigation strategies, and ensure continuous operation of Verizon’s on-prem and cloud environments. The Digital Forensics & Incident Response role is an opportunity to work in a fast paced collaborative environment defending Verizon from current and future cyber threats. This position plays a critical role in Verizon’s enterprise computing defense. Executing the Incident Response Lifecycle to drive threat remediation and identify strategic countermeasures improving future defenses. Operating as a trusted advisor on threat analysis during incidents for incident management teams and other stakeholders by following cybersecurity response methodologies such as the NIST CyberSecurity Framework. Serving as a primary point of contact during assigned on-call shifts, responding promptly to incidents, escalations, and critical alerts to minimize downtime and mitigate risks to the enterprise. Deploying security tools and leveraging logs and endpoint forensic analysis in order to complete a detailed and accurate assessment of security alerts and threats affecting the Verizon enterprise and cloud infrastructure. Assisting with the development of security controls for multiple platforms via automated capabilities by using advanced analysis and forensic techniques. Driving identification, analysis, and remediation activities to ensure compliance with relevant regulatory requirements, industry standards, and best practices related to security and data privacy. Providing assistance and analytical evaluations for high-priority and significant security incidents, including composing extensive and comprehensive analysis summaries and facilitating incident-related discussions. Identifying gaps in detections and collaborating with teams across Cyber Security to mitigate threats and improve the overall security posture. Recommending ways to mature and advance the preventive and defensive capabilities of the TMC. This includes leveraging data and knowledge to clearly communicate the use case for alert creation. Collaborating with cross-functional teams to respond, identify, and analyze the root cause of a cybersecurity incident. Conducting risk assessments, in-depth analysis, and forensic investigations to determine the root cause and impact of incidents. Enhancing, and/or implementing DFIR playbooks to ensure cohesive response repeatability. Assisting with producing operational read-outs and case reviews for peers and leadership that accurately capture the effectiveness of the DFIR organization. Continuously honing to build and maintain knowledge, skills, and abilities needed to maintain proficiency in producing thorough and accurate digital forensic analysis. Enhancing techniques, workflows and processes of security controls, compliance assessments, and DFIR procedures to drive the TMC operational and strategic growth (continuous improvement). Where you'll be working In this hybrid role, you'll have a defined work location that includes work from home and assigned office days set by your manager. You’ll need to have: Bachelor's degree or four or more years of work experience. Four or more years of relevant experience required, demonstrated through work experience and/or military experience. Experience working in Digital Forensic, Incident Response, and/or a Security Operations Center (SOC) environment(s). Even better if you have one or more of the following: Awareness of cyber based adversarial frameworks including MITRE ATT&CK and Lockheed Martin’s Cyber Kill Chain. Proficient knowledge of the cyber threat landscape including types of adversaries, campaigns, and the motivations that drive them. Experience working with analysis techniques, identifying indicators of compromise, threat hunting, and identification of intrusions and potential incidents. Programming and Scripting Experience to enhance automations, ad-hoc forensic analysis and speed-up response times. Previous experience with log aggregation platforms such as Splunk, Elastic, Snowflake, LogRhythm, etc. Proficient in understanding Operating Systems and their architectures: Windows, Unix/Linux, and MacOS Operating Systems Demonstrates leadership and mentoring skills to help advance the overall capabilities of the TMC organization. Ability to work in a highly collaborative environment needing strong communication, presentation, and leadership-like skills Exhibits initiative, follow-up and follow through with commitments Certifications like: Network+, Security+, CISSP, EnCE, CFCE, C|EH, C|HFI, GCFA, GCFE, GCIH and/or cloud-specific security certifications (e.g. AWS Certified Security - Specialty, Microsoft Certified: Azure Security Engineer Associate, Google Cloud Certified Professional Cloud Security Engineer) If Verizon and this role sound like a fit for you, we encourage you to apply even if you don’t meet every “even better” qualification listed above. #CISO Where you’ll be working In this hybrid role, you'll have a defined work location that includes work from home and assigned office days set by your manager. Scheduled Weekly Hours 40 Equal Employment Opportunity Verizon is an equal opportunity employer. We evaluate qualified applicants without regard to race, gender, disability or any other legally protected characteristics. Apply Now Save Saved Open sharing options Share Related Jobs Analyst IV-Threat Intel Save Hyderabad, India, +1 other location Technology Analyst IV-Threat Intel Save Hyderabad, India, +1 other location Technology Digital Forensics and Incident Response Analyst Save Temple Terrace, Florida, +3 other locations Technology Shaping the future. Connect with the best and brightest to help innovate and operate some of the world’s largest platforms and networks.

Posted 1 week ago

Apply

0 years

0 Lacs

India

On-site

GlassDoor logo

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Cyber Risk and Compliance Consultant - Senior The opportunity This is a role where no two days are the same – so you’ll find yourself taking on plenty of new responsibilities as you go. You’ll work alongside clients and colleagues, balancing your time between developing security strategies, designing security and privacy controls, advising client stakeholders, facilitating workshops and supporting business development. Your key responsibilities As a Cyber GRC Professional in our Cyber Security practice, you will be occupied in the following domains: a) Strategy, b) Risk, c) Compliance. As part of our team strategy you will be expected to take on responsibility and initiative early, providing you with real experience working with a wide range of major clients in EY. You will be taking responsibility for the quality of your work, while continually developing your personal and professional skills through formal training, hands-on experience and coaching. Skills and attributes for success To qualify for the role, you must have: Degree, or equivalent, in Information Security, Cyber Security, Information Technology, Informatics, or other similar and technical areas Evidence of self-motivation to continuously develop in the areas of cybersecurity Good organizational and time management skills with the ability to prioritize and complete multiple complex projects under tight deadlines Ability to translate security issues into business risks Excellent interpersonal skills and ability to work effectively within a team at all hierarchical levels Willingness to research client inquiries and emerging issues, including regulations, industry practices, and new technologies Experience, knowledge and strong interest in information and cyber security domains are essential for this role Experience on Cyber Governance, Risk & Compliance (GRC), Cyber risk assessments & management methodologies Experience on assessing, designing and implementing security strategies, governance frameworks over processes and controls, allowing organisations to optimally manage cyber security Experience on design and implementation of security policies, procedures, standards and controls in line with regulation and/or current standards, such as ISO27001, NIST, SANS etc. Experience in data classification exercises and controls / mechanisms enforcement Working knowledge of control frameworks such as ISO 27001/27002, COBIT, NIST, ITIL, etc. Ability to conduct Security regulatory and compliance assessment independently Hands on with assessment report preparation and presenting to senior technical and business stakeholders Hand on knowledge of excel, PowerPoint and word Articulative and confident in presentation to senior stakeholders Ability to lead workstreams or dedicated portions of projects Cyber maturity assessments, recommendations, roadmap and strategy creation knowledge of use of and risks related to modern and emerging technologies Cybersecurity audit Ability to plan and deliver cyber security training and awareness Ideally, you’ll also have: Security-related qualifications / certifications such as CISSP, SSCP, CISM, ISO27001 lead implementer or auditor, CompTIA Security+, are desirable Experience in Third Party Risk Management (TPRM) and / or vendor risk assessment engagements Experience in design and implementation of Information Security Management Systems (i.e. security policies, procedures and guidelines) according to leading International Standards Security-related vendor / technology certifications are desirable EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.

Posted 1 week ago

Apply

0 years

3 - 6 Lacs

Cochin

On-site

GlassDoor logo

Job Summary Key Responsibilities, Deliverables / Outcomes Privacy Program Delivery & Management Lead delivery of end-to-end privacy consulting engagements by managing the team (gap assessments, impact assessments, data mapping, RoPA creation, DPIAs, privacy strategy, audits). Interpret, implement, and align customer policies and controls with applicable regulations such as GDPR, UAE PDPL, KSA PDPL, India DPDP. Translate regulatory requirements into actionable and auditable privacy controls. Track, report, and manage project scope, timelines, quality, and outcomes across multiple customer projects. Serve as the primary privacy advisor and point of contact for client stakeholders (CISOs, DPOs, Legal). Conduct senior-level presentations, workshops, and steering committee meetings. Drive customer satisfaction and retention by proactively identifying privacy risks and recommending strategic solutions. Stay abreast of evolving data protection laws, privacy technologies, and regulator interpretations across regions. Guide privacy impact assessments for IT, Cloud, HR, CRM, and third-party vendors. Provide expertise on implementing technical and organizational controls for personal data. Mentor and guide junior consultants and privacy analysts. Contribute to internal privacy delivery frameworks, tools, accelerators, and knowledge repositories. . Key Skills 1. Deep knowledge of UAE PDPL, KSA PDPL, DPDP Act (India), GDPR, ISO 27701 and other frameworks 2. Strong understanding of cross-border data transfers, data lifecycle management, and privacy risk frameworks. 3. Experience in leading privacy projects across BFSI, Healthcare, Retail, or Government sectors. 4. Excellent client communication, stakeholder management, and delivery leadership. Key Competencies 1. Certifications: CIPP/E, CIPM, CIPT, ISO 27701 Lead Implementer/Auditor. 2. Familiarity with privacy automation tools (e.g., OneTrust, BigID, TrustArc). 3. Knowledge of cyber regulations (NIST, ISO 27001, PCI DSS, HIPAA) and their intersection with privacy.

Posted 1 week ago

Apply

0 years

0 - 0 Lacs

Thiruvananthapuram

On-site

GlassDoor logo

We are a leading Training Institute committed to building a skilled digital workforce. We are currently looking for a Cyber Security Trainer who can educate and empower learners with real-world cyber defense techniques and strategies. Key Responsibilities: Deliver interactive training sessions on Cyber Security Fundamentals, Ethical Hacking, Network Security, Threat Detection , and Penetration Testing . Cover tools and platforms like Kali Linux, Wireshark, Metasploit, Nmap , etc. Create and maintain training content, hands-on labs, case studies, and assessments. Guide students on industry best practices, compliance standards (ISO, NIST), and incident response. Stay updated with the latest security threats, tools, and technologies. Requirements: Strong hands-on experience in cyber security, ethical hacking, or IT security roles. Proficiency in security tools, Linux OS, and networking concepts. Prior experience in training/mentoring preferred. Excellent communication and teaching skills. Ability to deliver both beginner and advanced-level training. Preferred Qualifications: Certifications like CEH, CompTIA Security+, CISSP, OSCP are a plus. Experience in cloud security, DevSecOps, or security audits. Familiarity with cyber law and regulatory frameworks (GDPR, HIPAA, etc.). Job Types: Full-time, Permanent Pay: ₹10,228.99 - ₹32,802.78 per month Schedule: Day shift Ability to commute/relocate: Thiruvananthapuram, Kerala: Reliably commute or planning to relocate before starting work (Preferred) Work Location: In person

Posted 1 week ago

Apply

15.0 years

0 Lacs

Gurgaon

On-site

GlassDoor logo

Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Security Operation Automation Good to have skills : NA Minimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary: As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Your typical day will involve collaborating with various teams to assess security needs, documenting the implementation of cloud security controls, and transitioning to cloud security-managed operations. You will engage in discussions to refine security strategies and ensure compliance with industry standards, all while adapting to the evolving landscape of cloud technologies and security threats. Roles & Responsibilities: - Expected to be an SME. - Collaborate and manage the team to perform. - Responsible for team decisions. - Engage with multiple teams and contribute on key decisions. - Provide solutions to problems for their immediate team and across multiple teams. - Develop and maintain comprehensive documentation of security architecture and frameworks. - Conduct regular assessments and audits to ensure compliance with security policies and standards. Professional & Technical Skills: - Must To Have Skills: Proficiency in Security Operation Automation. - Strong understanding of cloud security principles and best practices. - Experience with security incident response and management. - Familiarity with security compliance frameworks such as ISO 27001, NIST, or CIS. - Knowledge of automation tools and scripting languages to enhance security operations. Additional Information: - The candidate should have minimum 5 years of experience in Security Operation Automation. - This position is based at our Gurugram office. - A 15 years full time education is required. 15 years full time education

Posted 1 week ago

Apply

6.0 years

2 - 3 Lacs

Gurgaon

On-site

GlassDoor logo

Client Audit lead Gurgaon, India; Hyderabad, India Sales 309385 Job Description About The Role: Grade Level (for internal use): 10 The Team: The Customer Experience, a new shared capability within Market Intelligence, partners closely with the Sales organization to deliver a differentiated customer experience. This group enables our sales team and businesses by overseeing customer success, sales operations, and implementation of commercial technology. This includes Salesforce, alignment to targets in strategic growth areas, and empowers accelerated growth and delivery by putting the customer at the core of everything we do – driving a full customer experience that differentiates us from our competitors. The Proposal & Customer Assessment Team is part of the broader commercial solutions. An enabling function to assist with due diligence questionnaires, risk assessments, audits, and other customer inquiries. Our goal is to enable new revenue generation via RFX & deliver superior customer satisfaction by providing high-quality proposals & relevant information during pre/post-sales. We serve a vast array of clients across geographies and are committed to the client-first mindset. Responsibilities and Impact: This position within the Proposal & Assessment Team is integral to supporting Market Intelligence commercial teams in responding to the growing volume of client audits and inquiries. The person will collaborate closely with product, risk, compliance, legal, and functional teams, to ensure client requirements are met effectively. Responding/Managing client audits and risk assessments from end to end, maintaining awareness of internal controls and audit trends to uphold the efficacy of the audit process. Serving as the primary point of contact for our top customers, assisting them in meeting their vendor management requirements. Cultivating partnerships and closely collaborating with corporate and divisional groups to seek information and influence approaches and outcomes. Developing familiarity with Market Intelligence's audit processes and the company's cyber security policies, standards, processes, and controls. Tracking assessment and audit outcomes, management responses to address findings, and follow-up activities, and producing reports for executives and management. Undertaking additional tasks and responsibilities as directed by the team manager, while continuously enhancing the overall process to align with evolving industry standards. What We’re Looking For: Bachelor's degree in a related field, or equivalent professional experience in Third-Party Risk Management (TPRM), Audit, and Risk. 6-7+ years of relevant experience in conducting audits or responding to audits, within a SaaS-related business environment. Demonstrated understanding of client-initiated audits and organizational controls. Familiarity with CISA, ISO Standards, NIST, and SOC standards. Proven track record of building strong relationships resulting in successful outcomes. Ability to collaborate effectively with a global team spanning multiple time zones. Competencies : Exceptional communication and interpersonal skills, adept at engaging and influencing stakeholders across all levels. Demonstrated flexibility and negotiation prowess to achieve optimal outcomes. Proficient in efficiently managing multiple concurrent projects, with a keen ability to adapt as priorities evolve. Exhibits creativity and perseverance in devising solutions. Possesses strong analytical and problem-solving capabilities, proficient in assessing complex information and formulating actionable strategies. Fosters robust working relationships with internal colleagues, facilitating collaboration and synergy within teams. About S&P Global Market Intelligence At S&P Global Market Intelligence, a division of S&P Global we understand the importance of accurate, deep and insightful information. Our team of experts delivers unrivaled insights and leading data and technology solutions, partnering with customers to expand their perspective, operate with confidence, and make decisions with conviction. For more information, visit www.spglobal.com/marketintelligence. What’s In It For You? Our Purpose: Progress is not a self-starter. It requires a catalyst to be set in motion. Information, imagination, people, technology–the right combination can unlock possibility and change the world. Our world is in transition and getting more complex by the day. We push past expected observations and seek out new levels of understanding so that we can help companies, governments and individuals make an impact on tomorrow. At S&P Global we transform data into Essential Intelligence®, pinpointing risks and opening possibilities. We Accelerate Progress. Our People: We're more than 35,000 strong worldwide—so we're able to understand nuances while having a broad perspective. Our team is driven by curiosity and a shared belief that Essential Intelligence can help build a more prosperous future for us all. From finding new ways to measure sustainability to analyzing energy transition across the supply chain to building workflow solutions that make it easy to tap into insight and apply it. We are changing the way people see things and empowering them to make an impact on the world we live in. We’re committed to a more equitable future and to helping our customers find new, sustainable ways of doing business. We’re constantly seeking new solutions that have progress in mind. Join us and help create the critical insights that truly make a difference. Our Values: Integrity, Discovery, Partnership At S&P Global, we focus on Powering Global Markets. Throughout our history, the world's leading organizations have relied on us for the Essential Intelligence they need to make confident decisions about the road ahead. We start with a foundation of integrity in all we do, bring a spirit of discovery to our work, and collaborate in close partnership with each other and our customers to achieve shared goals. Benefits: We take care of you, so you can take care of business. We care about our people. That’s why we provide everything you—and your career—need to thrive at S&P Global. Our benefits include: Health & Wellness: Health care coverage designed for the mind and body. Flexible Downtime: Generous time off helps keep you energized for your time on. Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills. Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs. Family Friendly Perks: It’s not just about you. S&P Global has perks for your partners and little ones, too, with some best-in class benefits for families. Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference. For more information on benefits by country visit: https://spgbenefits.com/benefit-summaries Global Hiring and Opportunity at S&P Global: At S&P Global, we are committed to fostering a connected and engaged workplace where all individuals have access to opportunities based on their skills, experience, and contributions. Our hiring practices emphasize fairness, transparency, and merit, ensuring that we attract and retain top talent. By valuing different perspectives and promoting a culture of respect and collaboration, we drive innovation and power global markets. - Equal Opportunity Employer S&P Global is an equal opportunity employer and all qualified candidates will receive consideration for employment without regard to race/ethnicity, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, marital status, military veteran status, unemployment status, or any other status protected by law. Only electronic job submissions will be considered for employment. If you need an accommodation during the application process due to a disability, please send an email to: EEO.Compliance@spglobal.com and your request will be forwarded to the appropriate person. US Candidates Only: The EEO is the Law Poster http://www.dol.gov/ofccp/regs/compliance/posters/pdf/eeopost.pdf describes discrimination protections under federal law. Pay Transparency Nondiscrimination Provision - https://www.dol.gov/sites/dolgov/files/ofccp/pdf/pay-transp_%20English_formattedESQA508c.pdf - 20 - Professional (EEO-2 Job Categories-United States of America), SLSGRP202.1 - Middle Professional Tier I (EEO Job Group) Job ID: 309385 Posted On: 2025-05-30 Location: Gurgaon, Haryana, India

Posted 1 week ago

Apply

5.0 years

0 Lacs

Delhi, India

On-site

Linkedin logo

Rockwell Automation is a global technology leader focused on helping the world’s manufacturers be more productive, sustainable, and agile. With more than 28,000 employees who make the world better every day, we know we have something special. Behind our customers - amazing companies that help feed the world, provide life-saving medicine on a global scale, and focus on clean water and green mobility - our people are energized problem solvers that take pride in how the work we do changes the world for the better. We welcome all makers, forward thinkers, and problem solvers who are looking for a place to do their best work. And if that’s you we would love to have you join us! Job Description Job Summary: As an OT Cybersecurity Consultant, you will assess, designing, and implementing cybersecurity solutions tailored to industrial environments. You will work with clients to identify vulnerabilities, align security strategies with industry frameworks, and ensure compliance with regulatory requirements. Additionally, you will help develop go-to-market strategies and cybersecurity service offerings to align with client needs. You will also play a key role as a technical product consultant, becoming a trusted expert and primary point of contact for customers regarding our cybersecurity solutions. Responsibilities will include conducting product demonstrations, proof-of-concept (POC) engagements, and virtual proof-of-value (vPOV) initiatives. Your ability to translate technical capabilities into business value will be essential in driving adoption and customer success. Additionally, you will become an expert in Verve Industrial's cybersecurity software platform, leveraging its capabilities to help clients identify and mitigate risks. This will involve integrating Verve Industrial's solutions into client environments, configuring security tools, and providing hands-on training. You will work with product development teams to provide customer feedback and ensure continuous improvement of the software. You will report to the Global Manager. Your Responsibilities Provide advisory services to clients on OT cybersecurity strategies, risk management, and regulatory compliance. Help clients assess, develop and improve their OT cybersecurity programme using your domain expertise, assessments, existing policies, standards and procedures, industry standards and frameworks, plus your Rockwell peers and industry SMEs. Analyse and apply OT cybersecurity frameworks (e.g., NIST CSF, IEC 62443, NERC CIP, MITRE ATT&CK for ICS) to assess security posture and recommend mitigation strategies. Evaluate risks to critical infrastructure and industrial systems, recommending security controls. Help design and implement security policies, standards, and procedures to meet compliance requirements. Develop and deliver client-focused reports, roadmaps, and presentations to executive stakeholders. Help develop cybersecurity solutions and consulting methodologies that align with market trends. Conduct product demonstrations, proof-of-concept (POC) engagements, and virtual proof-of-value (vPOV) initiatives to drive customer engagement and adoption. Be as a subject matter expert on Verve Industrial's cybersecurity software platform, supporting clients in deployment, configuration, and optimization. Collaborate with Verve Industrial's product and engineering teams to provide feedback for software enhancements and feature improvements. Serve as a trusted advisor, bridging technical and business considerations to deliver impactful security solutions. The Essentials - You Will Have Bachelor's Degree in Cybersecurity, Computer Science, Engineering, or a related field. The Preferred - You Might Also Have 5+ years of experience in OT cybersecurity, industrial security, or critical infrastructure protection. Hands-on experience with OT security frameworks such as NIST CSF, IEC 62443, or NERC CIP. Familiarity with risk assessments, compliance audits, security control evaluation, and GRC practices in industrial environments. Experience developing security policies, procedures, and incident response plans tailored for OT environments. Strong understanding of threat intelligence and adversary tactics related to ICS and OT. Experience with security technologies such as firewalls, intrusion detection systems (IDS), endpoint protection, and network segmentation for OT networks. Experience conducting product demonstrations, proof-of-concepts, or proof-of-value engagements to showcase cybersecurity solutions. Hands-on experience with Verve Industrial's software platform, including deployment, configuration, and integration. Previous consulting experience or a background working in industrial sectors such as manufacturing, energy, or critical infrastructure. Ability to explain complex cybersecurity concepts to both technical and non-technical audiences. Certifications such as IEC 62443, GICSP, CISSP, CISM, or equivalent . Experience gathering requirements and translating them to the technical team. What We Offer Our benefits package includes … Comprehensive mindfulness programmes with a premium membership to Calm. Volunteer Paid Time off available after 6 months of employment for eligible employees. Company volunteer and donation matching programme – Your volunteer hours or personal cash donations to an eligible charity can be matched with a charitable donation. Employee Assistance Program. Personalised wellbeing programmes through our OnTrack programme. On-demand digital course library for professional development. and other local benefits! At Rockwell Automation we are dedicated to building a diverse, inclusive and authentic workplace, so if you're excited about this role but your experience doesn't align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right person for this or other roles. Rockwell Automation’s hybrid policy aligns that employees are expected to work at a Rockwell location at least Mondays, Tuesdays, and Thursdays unless they have a business obligation out of the office. Show more Show less

Posted 1 week ago

Apply

3.0 years

0 Lacs

New Delhi, Delhi, India

Remote

Linkedin logo

Advanced Technical Responsibilities · Design and maintain robust network architecture involving routers, switches, firewalls, wireless access points, and load balancers. · Configure and optimize enterprise networks using routing protocols (OSPF, BGP, EIGRP) and Layer 2/3 switching technologies . · Implement and support VPNs , MPLS, SD-WAN, and other secure remote access solutions. · Ensure redundancy and fault tolerance through HSRP, VRRP, and link aggregation techniques . · Perform deep packet analysis and traffic engineering to optimize network performance. Network Security & Compliance · Develop and enforce network security policies using firewalls, ACLs, NAC, VLAN segmentation, and secure routing practices. · Administer and monitor IDS/IPS , secure remote access systems, and zero-trust network architectures. Lead or support audits and maintain compliance with standards like ISO 27001, NIST, SOC 2, or HIPAA . Cloud & Hybrid Networking · Minimum 3 years of experience working with cloud networking in AWS, Azure, or GCP . · Design secure and scalable cloud-native network environments , including VPCs, subnets, virtual routers, and load balancers. · Manage hybrid connectivity between on-prem and cloud networks via VPNs, Direct Connect, or ExpressRoute. Monitoring, Documentation & Optimization · Implement and manage tools for network monitoring and alerts (e.g., SolarWinds, PRTG, Wireshark, Nagios). · Track network metrics and trends to anticipate scaling needs and optimize performance. · Maintain detailed network topology diagrams, asset inventories, and change documentation . Experience & Role Overview · Minimum 8 years of hands-on experience in designing, implementing, and managing complex enterprise network infrastructures. · Proven expertise in managing multi-site LAN/WAN environments , data center networking, and hybrid cloud connectivity. · Strong track record of leading network upgrade projects, migrations, and incident resolution in high-availability environments. · Certificate: CCNA, CEH, CCISP, CCNE, CCNP. Show more Show less

Posted 1 week ago

Apply

2.0 - 5.0 years

4 - 9 Lacs

Bengaluru

On-site

GlassDoor logo

About Us At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the World’s Most Innovative Companies by Fast Company. We realize people do not fit into neat boxes. We are looking for curious and empathetic individuals who are committed to developing themselves and learning new skills, and we are ready to help you do that. We cannot complete our mission without building a diverse and inclusive team. We hire the best people based on an evaluation of their potential and support them throughout their time at Cloudflare. Come join us! Available Locations: Bengaluru About The Role We are looking to hire a Security Risk Management Specialist on our Governance, Risk, and Compliance team. This role will be responsible for identifying and managing security risk across Cloudflare’s production environment and critical business functions. At Cloudflare, risk management lays the foundation for protecting Cloudflare and our customers. The Risk team identifies risk throughout the company and prioritizes mitigation efforts to drive Security team roadmaps. We do not believe in tick-box security, so for us risk management is a pathway to doing things right. This is an opportunity to join a rapidly scaling and world class security organization within a billion dollar business. We guarantee that you won’t get bored! What you'll do Support the governance process for the security risk register. This includes: Reviewing, triaging, and rating new risks and policy exceptions Keeping the risk register and dependencies up to date (e.g. Control Framework) Working with risk owners to document risk treatment plans Reviewing evidence submitted by the business to mitigate or close risks Re-reviewing accepted risks and exceptions periodically Drafting status updates and updating risk metrics for leadership Maintaining process documentation and risk register tooling Some travel may be required to engage teammates and stakeholders in San Francisco, Austin, London, Lisbon, or other global Cloudflare locations. Examples of desirable skills, knowledge and experience. Experience typically gained in 2-5 years working in Security Governance, Risk, and Compliance Experience conducting risk and controls assessments Experience managing risk findings and recommending mitigating controls Experience drafting risk reports and reporting program metrics to management Solid understanding of security control frameworks such as SOC 2, ISO 27001, PCI DSS, and NIST SP 800-53 Understanding of risk rating methodologies such as NIST SP 800-30 and ISO 31000 Understanding of on-prem & cloud architectures and security controls Experience with data analytics and dashboarding tools such as Tableau, Looker Studio or Power BI is a plus Strong analytical and interpersonal skills Self-starter with the ability to work independently with a sense of curiosity What Makes Cloudflare Special? We’re not just a highly ambitious, large-scale technology company. We’re a highly ambitious, large-scale technology company with a soul. Fundamental to our mission to help build a better Internet is protecting the free and open Internet. Project Galileo : Since 2014, we've equipped more than 2,400 journalism and civil society organizations in 111 countries with powerful tools to defend themselves against attacks that would otherwise censor their work, technology already used by Cloudflare’s enterprise customers-at no cost. Athenian Project : In 2017, we created the Athenian Project to ensure that state and local governments have the highest level of protection and reliability for free, so that their constituents have access to election information and voter registration. Since the project, we've provided services to more than 425 local government election websites in 33 states. 1.1.1.1 : We released 1.1.1.1 to help fix the foundation of the Internet by building a faster, more secure and privacy-centric public DNS resolver. This is available publicly for everyone to use - it is the first consumer-focused service Cloudflare has ever released. Here’s the deal - we don’t store client IP addresses never, ever. We will continue to abide by our privacy commitment and ensure that no user data is sold to advertisers or used to target consumers. Sound like something you’d like to be a part of? We’d love to hear from you! This position may require access to information protected under U.S. export control laws, including the U.S. Export Administration Regulations. Please note that any offer of employment may be conditioned on your authorization to receive software or technology controlled under these U.S. export laws without sponsorship for an export license. Cloudflare is proud to be an equal opportunity employer. We are committed to providing equal employment opportunity for all people and place great value in both diversity and inclusiveness. All qualified applicants will be considered for employment without regard to their, or any other person's, perceived or actual race, color, religion, sex, gender, gender identity, gender expression, sexual orientation, national origin, ancestry, citizenship, age, physical or mental disability, medical condition, family care status, or any other basis protected by law. We are an AA/Veterans/Disabled Employer. Cloudflare provides reasonable accommodations to qualified individuals with disabilities. Please tell us if you require a reasonable accommodation to apply for a job. Examples of reasonable accommodations include, but are not limited to, changing the application process, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment. If you require a reasonable accommodation to apply for a job, please contact us via e-mail at hr@cloudflare.com or via mail at 101 Townsend St. San Francisco, CA 94107.

Posted 1 week ago

Apply

0 years

5 - 8 Lacs

Chennai

Remote

GlassDoor logo

When you join Verizon You want more out of a career. A place to share your ideas freely — even if they’re daring or different. Where the true you can learn, grow, and thrive. At Verizon, we power and empower how people live, work and play by connecting them to what brings them joy. We do what we love — driving innovation, creativity, and impact in the world. Our V Team is a community of people who anticipate, lead, and believe that listening is where learning begins. In crisis and in celebration, we come together — lifting our communities and building trust in how we show up, everywhere & always. Want in? Join the #VTeamLife. What you’ll be doing... We are seeking a detail-oriented and forward thinking AI Risk Analyst to support the identification, evaluation and effective treatment of cyber risks associated with Verizon’s use of AI. This role will help ensure secure AI adoption through the creation and implementation of transparent risk management strategies for AI systems. This involves aligning policies, controls, and standards with industry frameworks like NIST RMF to ensure the secure and compliant development and operation of AI solutions throughout their lifecycle. The ideal candidate is an experienced risk assessor with a proven track record spanning across information technology and third-party risk management. This will include translating complex technical risks into clear, concise language for diverse audiences, including non-technical stakeholders and executives. This team will have a critical role in pulling all AI related risks into a central repository, developing a standardized risk assessment methodology that continues to evolve based on AI/ML threat intelligence, industry trends, and stakeholder feedback as well as driving appropriate risk mitigation. The selected individual should have a passion for AI and emerging technology, combined with strong technical and interpersonal skills. They will handle high-profile matters and need to work under pressure with minimal supervision. Roles and Responsibilities: Ensuring AI-centric risk management processes and outcomes are established through policies and controls based on organizational priorities and tolerance. Documenting processes for information/technology risk assessments and thresholds to warrant a more in-depth review. Performing regular reviews of AI applications for compliance and alignment, documenting outcomes and sharing insights with stakeholders. Working with the team to define a standardized approach to rating and communicating risks related to Verizon’s use of AI. Guiding the review and prioritization of AI projects in alignment with organizational risk priorities. Ensuring identified “gaps” are understood and handed off to the appropriate operational teams to be driven through mitigation. Ensuring timely and well orchestrated Verizon Cyber Security (VCS) engagement in Verizon’s secure AI efforts. Serving as a trusted advisor to the business and technology stakeholders across the enterprise to partner on AI security concerns. Where you'll be working In this hybrid role, you'll have a defined work location that includes work from home and assigned office days set by your manager. What we’re looking for... You'll need to have: Bachelors degree and four or more years of work experience Four or more years of experience in cybersecurity, with significant focus on GRC Strong technical knowledge of AI / ML technologies. Experience performing comprehensive risk assessments. Experience with security policy creation. Experience working on third party risk assessments. Demonstrated knowledge of AI related risks and mitigation strategies in particular for Generative AI solutions. Comprehensive understanding of cyber based frameworks including NIST AI Risk Management Framework, MITRE ATLAS, and OWASP Top 10 LLM. Knowledge of large enterprise environments, cloud infrastructure and services, network protocols, network devices, multiple operating systems (Windows, macOS, Linux, etc.), and secure architectures. Strong analytical and critical thinking skills, excellent written and oral communication skills, and presentation skills. Highly collaborative with ability to articulate ideas and influence peers and senior leaders. Experience working on cross-functional teams including engineering, products teams, legal and security. If Verizon and this role sound like a fit for you, we encourage you to apply even if you don’t meet every “even better” qualification listed above. #CISO Where you’ll be working In this hybrid role, you'll have a defined work location that includes work from home and assigned office days set by your manager. Scheduled Weekly Hours 40 Equal Employment Opportunity Verizon is an equal opportunity employer. We evaluate qualified applicants without regard to race, gender, disability or any other legally protected characteristics.

Posted 1 week ago

Apply

0.0 - 1.0 years

3 - 8 Lacs

Chennai

On-site

GlassDoor logo

Job Description Summary We are looking for a smart, security-minded, enthusiastic and friendly cyber security advisor who can work collaboratively with development teams to complete design and SDLC work for Products and Systems. Product Cyber-security Specialist is responsible for the analysis of controllers, systems for cyber security requirements. Conduct tests to verify Cyber security levels and recommend mitigation plans for products, systems during product development stages. As a member of a global and matrixed team, she/he will also be responsible for guiding secure design, testing of different products, control systems. Job Description Essential Responsibilities Involve in reviews, suggest changes, conduct tests to ensure systems, controllers to meet Cyber security requirements. Facilitate decisions and bring teams together to design and document software architecture, modularity, and future- proofing. Support/Involve development of proofs-of-concept to prove out strategy and manage development and product risks. Support production of technical documentation for software architecture, design, verification plans. Engage with development teams and ensure all software developed is compliant to Cyber-security requirements. Collaborate with a team of controls and system engineers developing operational technology software for various subsystems. The position requires an understanding of OT System, cloud application architecture and conversant with all Cyber security requirements. This role requires strong cooperation with system and subsystem teams necessary for command and control of the systems involved. Work with multiple teams in different location to identify vulnerability, suggest remediation to the software to meet customer requirements. Contribute to multi-generation product and tool planning. Qualifications/Requirements Bachelor in computer science/Cyber Security or relevant engineering or equivalent knowledge / experience with 0-1 Years of Experience. Good understanding in Cyber security for Controller, Systems in OT Space. Familiar with penetration testing for Controllers, Systems, Web software’s, CAPEC, Ethical hacking. Good Knowledge/worked on Cyber security tools and solutions like Wireshark, NESSUS, Burp Suite, Nmap, Nozomi, Claroty, Splunk, Acronis, Ivanti, etc. Knowledge in different phases of Software Development Life cycle (SDLC) including Design, Implementation and Testing. Knowledge on web technologies like JavaScript, jQuery, AJAX, JSON, AngularJS, Angular 6, NodeJs, Spring, Hibernate, Spring boot, MVC, RESTful Web Services, Flux, SOAP will be an added advantage. Knowledge on database RDBMS, MySQL NoSQL databases will be an added advantage. Software component: MS Visual Studio, MS Office, MS Visio, SVN, GitHub Linux and Windows OS Familiar with ISA 624443, NIST 800 standards will be an added advantage. Familiar on active directory, certificate management and hardening w.r.t CIS benchmarks for critical assets like switches, windows-based workstation and controllers. Familiar with threat modelling and risk assessment for OT products Additional Information Relocation Assistance Provided: Yes

Posted 1 week ago

Apply

5.0 - 7.0 years

6 - 8 Lacs

Noida

On-site

GlassDoor logo

Senior Analyst IT Risk Senior Analyst - IT Risk You will be part of the Global Asset Management Technology Risk team that oversees control operation across the Asset Management technology team. The role will require subject matter expert in technology controls to engage with technology, compliance, and audit partners to implement and maintain an integrated operating model that effectively drives technology performance while meeting stakeholder needs. Key responsibilities: Partnering with technology, business, compliance, and audit partners to operationalize technology risk framework. Lead and participate in IT focused audits demonstrating a solid working understanding of IT Controls Assurance process end-to-end. Acting as a liaison between audit owners and technology teams to facilitate ongoing audits including SOX, SOC2, and ISAE. Producing reporting packs for all levels of management to increase awareness of the status of core workstreams. Developing training and awareness materials to facilitate the inclusion of risk principles across the technology organization. Reviewing the setup of complex systems and technology governance frameworks in line with industry leading practices (e.g. ITIL, COBIT, NIST, ISO, etc.) Contribute by providing insights and recommendations to further improve overall technology risk management. Be responsible for the successful end-to-end delivery of multiple engagements including supporting team members. Develop strong relationships with stakeholders and potentially identify new risks and suggesting mitigating controls. Required qualifications: Bachelor’s or master’s degree preferably in computer science/ engineering. Minimum 5 to 7 years of experience in IT, project management/ service delivery, IT risk management or consulting. Expertise in ITGC, SOC, SOx, 3rd party risk management, project management. Excellent communication and writing skills. Good people, analytical and reporting skills with positive and problem-solving mindset. Ability to work autonomously with a focus on getting things done. CISA certification preferred. Other professional certifications such as CISM, COBIT, ISO27001 are a plus. Knowledge and experience of emerging technology, FinTech, Cloud Services and Cybersecurity will be preferred. About Our Company Ameriprise India LLP has been providing client based financial solutions to help clients plan and achieve their financial objectives for 130 years. We are a U.S. based financial planning company headquartered in Minneapolis with a global presence. The firm’s focus areas include Asset Management and Advice, Retirement Planning and Insurance Protection. Be part of an inclusive, collaborative culture that rewards you for your contributions and work with other talented individuals who share your passion for doing great work. You’ll also have plenty of opportunities to make your mark at the office and a difference in your community. So if you're talented, driven and want to work for a strong ethical company that cares, take the next step and create a career at Ameriprise India LLP. Ameriprise India LLP is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, genetic information, age, sexual orientation, gender identity, disability, veteran status, marital status, family status or any other basis prohibited by law. About Our Company Ameriprise India LLP has been providing client based financial solutions to help clients plan and achieve their financial objectives for 125 years. We are a U.S. based financial planning company headquartered in Minneapolis with a global presence. The firm’s focus areas include Asset Management and Advice, Retirement Planning and Insurance Protection. Be part of an inclusive, collaborative culture that rewards you for your contributions and work with other talented individuals who share your passion for doing great work. You’ll also have plenty of opportunities to make your mark at the office and a difference in your community. So if you're talented, driven and want to work for a strong ethical company that cares, take the next step and create a career at Ameriprise India LLP. Ameriprise India LLP is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, genetic information, age, sexual orientation, gender identity, disability, veteran status, marital status, family status or any other basis prohibited by law. Full-Time/Part-Time Full time Timings (2:00p-10:30p) India Business Unit AWMPO AWMP&S President's Office Job Family Group Technology

Posted 1 week ago

Apply

5.0 years

5 - 9 Lacs

Noida

On-site

GlassDoor logo

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. JD 2 – Risk Consulting - Protect Tech – Senior (ITGC) Key responsibilities Your key responsibilities will include: Consistently deliver quality client services. Drive high-quality work products within expected timeframes and on budget. Monitor progress manage risk and ensure key stakeholders are kept informed about progress and expected outcomes. Foster relationships with client personnel to analyse, evaluate, and enhance information systems to develop and improve security at procedural and technology levels. Use knowledge of the current IT environment and industry trends to identify engagement and client service issues and communicate this information to the engagement team and client management through written correspondence and verbal presentations. Stay abreast of current business and industry trends relevant to the client's business. Demonstrate deep technical capabilities and professional knowledge. Demonstrate ability to quickly assimilate to new knowledge. Skills and attributes for success You will leverage your proven track record of IT Audit experience and strong personal skills, to effectively deliver quality results in the assessment, design, and support implementation of controls, security and IT risk solutions. To qualify for the role, you must have Chartered accountant (CA) or Master’s degree in management, Information Systems/ Technology, Computer Science, Business Analytics, Cybersecurity, or a related discipline Passion for technology and an ardent desire to work in risk management. Minimum 5 years of a “Big 4” or professional firm or professional industry experience in risks & controls, with more than 5 years of experience in IT Risk Management, IT Regulatory Compliance, IT Audit and IT Transformation Risk areas such as: Identification of strategic, IT & business risks and Identify control gaps, weaknesses and areas of improvements. Design of IT Risk Controls frameworks and RACMs Design and Implementation of IT general controls, IT application controls, Business Process controls, etc. Conducting IT internal control reviews, and review of SOC1 or SOC2 reports IT Risk and Controls assessment with exposure of any of the technologies such as SAP, Oracle, Workday, MS Dynamics or emerging technologies such as Cloud, RPA, AI/ML Knowledge of IT risk, information security or cyber security frameworks such as COSO, COBIT, ISO, NIST etc. Understanding of IT regulatory compliances such as IT SOX, GDPR, ISO, PCI DSS etc. Strong exposure working in client facing roles, collaborate with cross functional teams including internal audits, IT security and business stakeholders to assess control effectiveness and facilitate remediation activities. Excellent communication, documentation and report writing skills. Good to have relevant industry certifications such as CISA, CISM, CISSP, CRISC, CCSK, ISO 27001, and others (as relevant) EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.

Posted 1 week ago

Apply

10.0 - 15.0 years

0 Lacs

Noida

On-site

GlassDoor logo

At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology. Job Description Position: IT- Staff Software Security Engineer Grade: IT4 Location: Noida/Hyderabad Job Description: Role: Cadence’s Information Security team is seeking a Sr. Software Security Engineer. This role will focus on Cloud and on-premise Software Security controls including WAF and CDN tools. This is a Security Development Operations role that will ensure security tool integration at the source code repo (Perforce, Github etc.), build environment, and artifactory level. As a member of the Information Security team, this role will develop and support the secure software develop life cycle, including DAST, SAST, SCA, penetration testing, and attack surface management. This role reports to Group Director and will interface directly with development teams. Of course, there is broad exposure to other aspects of information security related tasks such as incident response, vulnerability management, and deployment of security solutions. The successful candidate for this position is a highly motivated individual with a strong Application Development and Configuration Management/DevOps background with hands-on experience in building software security within CI/CD. Required Skills & Qualification Hands-on experience in securing corporate environment. Hands-on experience in security frameworks (NIST, ISO 27001, CIS) and experience with risk management and compliance Hands-on experience securing Windows (Workstations and Servers), Linux (Workstations and Servers), and Mac Hands-on experience conducting risk management by identifying gaps and providing strategies for mitigation. Hands-on experience documenting vulnerability assessment results in a clear and actionable format. Expertise in network security, firewalls, IDS/IPS, and security monitoring tools such as SIEM Proficiency with cloud security technologies (AWS, Azure, GCP) and securing cloud-based infrastructure. Experience with incident response, forensics, and managing security incidents from detection to resolution. Determines security violations and inefficiencies. Knowledge of mergers and acquisitions Experience: Should have relevant experience of at least 10-15 years. Qualification: Engineering (Computers, Electronics, IT) or equivalent We’re doing work that matters. Help us solve what others can’t.

Posted 1 week ago

Apply

5.0 years

0 Lacs

Pune, Maharashtra, India

Remote

Linkedin logo

About Madison Logic: Our team is reshaping B2B marketing and having fun in the process! When joining Madison Logic, you are committing to giving 100% and always striving for more. As a truly global company, we take pride in a diverse culture free from gender, racial, and other forms of bias. Our Vision: We empower B2B organizations globally to convert their best accounts faster Our Values: URGENCY Lead with Action. Prioritize Follow-up. ACCOUNTABILITY Don't Point Fingers. Take Responsibility. INNOVATION Think Big. Innovate. RESPECT Respect Customers. Respect Each Other. INTEGRITY Act Ethically. Lead by Example. At ML you will work with & learn from an incredible group of people who care about your success as much as they care about their own. Our team is at the heart of what we do and our success starts with you! About the Role: The Compliance Manager will support our information security and compliance programs. This role maintains, monitors, and improves our SOC 2 controls, helping drive security and privacy initiatives, and supports audits and customer compliance inquiries. The ideal candidate has hands-on experience in compliance frameworks, strong organizational skills, and a collaborative mindset to work cross-functionally with IT, Legal, and Sales teams. This is an Individual Contributor (non-management) position. Responsibilities: Coordinate and maintain activities to support SOC 2 compliance across the organization Manage day-to-day compliance operations, including monitoring control effectiveness, collecting evidence, and documenting processes Support responses to customer security questionnaires and due diligence requests Assist with internal audits and external assessments related to SOC 2 and related frameworks (e.g., GDPR, CCPA) Track and help remediate compliance and security risks Collaborate with Sales and Legal to review security-related contract terms and data processing agreements Assist in vendor risk assessments and third-party security reviews Maintain internal documentation for security practices, policies, and compliance initiatives Contribute to security awareness efforts and training initiatives across the organization Basic Qualifications: On-site working at the ML physical office, 5-days per week is required through the end of probation (6 months), transitioning to 2-day WFH post-probation. B.S. Degree in Computer Science or Computer Information Systems desired 5+ years of experience with the implementation and support of an IT Security program Prior experience developing IT Security and Data Governance policies 5+ years auditing experience in any of the following certification standards: GDPR / CCPA, SOC 2, ISO 27001, PCI, COBIT, NIST, CIS, HIPPA. Working knowledge of penetration testing tools, AWS network security and IAM, perimeter security, application firewalls, single sign-on, active directory policy, SIEM, anti-malware, VPN, email security, key management, incident management, risk assessment, log management, change management, backup, and disaster recovery, highly available and distributed infrastructures Working knowledge of data subject privacy rights, PII data handling, data protection and cookie laws, data transmission and encryption requirements, data access controls, data retention and destruction, vendor assessment questionnaires, data privacy impact assessments, data breach, and other cyber incident response Other Characteristics: Strong analytical skills Excellent organizational and time management skills, possessing the ability to prioritize work under pressure of time constraints Superior written and verbal communication skills Excellent presentation skills with prior experience presenting to executives to achieve buy-in Highly productive and resourceful with a “Can do” attitude Strong technical skills Team members are encouraged to work collaboratively with an emphasis on results, not on hierarchy or titles Expected Compensation: (Dependent upon Experience) Fixed CTC: 17 LPA - 20 LPA Work Environment: We offer a mix of in-office and hybrid working. Hybrid remote work arrangements are not available for all positions. Please refer to the job posting detail to determine what in-office requirements apply. Where applicable , hybrid WFH days work must be conducted from your home office located in a jurisdiction in which Madison Logic has the legal right to operate. WFH requires availability and responsiveness on a full-time basis from a distraction free environment with access to high-speed internet. Please inquire for more details. Pay Transparency/Equity: We are committed to paying our team equitably for their work, commensurate with their individual skills and experience . Salary Range and additional compensation, including discretionary bonuses and incentive pay, are determined by a rigorous review process taking into account the experience, education, certifications and skills required for the specific role, equity with similarly situated team members, as well as employer-verified region-specific market data provided by an independent 3rd party partner. We will provide more information about our perks & benefits upon request. Our Commitment to Diversity & Inclusion: Madison Logic is proud to be an equal opportunity employer. We are committed to equal employment opportunity regardless of sex, race, color, religion, national origin, sexual orientation, age, marital status, disability, gender identity or Veteran status. Privacy Disclosure: All of the information collected in this form and/or by your application by submission of your online profile is necessary and relevant to the performance of the job applied for. We will process the information provided by you in this form, your CV (including physical and online resume profiles), by the referees you have noted, and by the educational institutions with whom we may undertake to verify your qualifications with, in accordance with our privacy policy and for recruitment purposes only. For more information on how we process the information you have provided including relevant lawful bases (where relevant) please see our privacy policy which is available on our website ( https://www.madisonlogic.com/privacy/ ). Show more Show less

Posted 1 week ago

Apply

10.0 - 12.0 years

0 Lacs

Mumbai, Maharashtra, India

Remote

Linkedin logo

Hi, We are having an opening for Senior Manager-Network Architect at our Mumbai location Job Summary : We are looking for a dynamic and forward-thinking Senior Network Architect to lead the strategy, design, and implementation of our enterprise-wide IT and OT network infrastructure. This role requires a perfect blend of technical expertise, leadership, and project delivery skills , with a focus on cloud connectivity, network security, segmentation, and emerging technologies (SD-WAN, 5G/6G). You will be responsible for designing scalable, secure, and high-performance network architectures that support business growth, compliance, and digital transformation. This role demands a strategic thinker with a deep understanding of networking technologies, protocols, and best practices to support our organization's evolving needs. Areas Of Responsibility : Architecture, Design & Delivery Lead the end-to-end design of enterprise network architecture , including cloud, data centre, campus, OT, encompassing LAN, WAN, WLAN, SD-WAN, and cloud networking that aligns with business objective Develop High-Level Design (HLD) and Low-Level Design (LLD) documents along with Bill of Materials (BOM) and Bill of Quantities (BOQ) . Evaluate and integrate emerging technologies to enhance network performance and security. Design and implement macro and micro segmentation , next-generation firewall architectures, and secure SD-WAN topologies. Architect cloud networking and security solutions (AWS, Azure, GCP) using Transit Gateway, VPC peering, Azure Firewall, etc. Project & Program Management Lead the technical delivery of complex networking projects including cloud integration, OT segmentation, secure remote access, and SD-WAN rollouts. Own project lifecycle from requirement gathering and solutioning to handover and documentation. Define capacity planning models to forecast bandwidth, throughput, and resource utilization. Oversee the deployment of network solutions, ensuring minimal disruption to business operations. Ensure compliance with industry standards and organizational policies during implementation Technology Evaluation, POCs, RFPs & RFIs Evaluate and recommend new technologies, platforms, and OEMs through competitive assessments, RFI/RFP , and Proof of Concept (POC) . Drive strategic network transformation initiatives by selecting the most appropriate solutions based on TCO, scalability, and regulatory needs . Design and enforce network security protocols to protect organizational data and resources. Ensure compliance with relevant regulations and standards (e.g., ISO 27001, NIST). Leadership & Vendor Management Lead and mentor a cross-functional team of engineers, architects, and project managers. Manage technical engagements with vendors and partners ensuring alignment with architecture standards and service levels. Collaborate with cybersecurity, infrastructure, operations, and compliance teams to maintain enterprise governance. Manage and monitor vendor driven agreed SLAs based parameter set Security, Cloud & OT Integration Architect secure IT and OT connectivity using Zero Trust models , EDR/XDR , NAC , and network segmentation . Design and enforce network security protocols to protect organizational data and resources. Design resilient OT networks that meet ISA/IEC 62443 , NIST , and GxP compliance standards. Collaborate with the security team to address vulnerabilities and implement mitigation strategies. Stakeholder Communication & Presentation Present technical solutions, risks, roadmaps, and architecture proposals to leadership, including CIO, CISO, and steering committees. Translate business goals into network design and infrastructure strategy. Maintain detailed documentation of network configurations, processes, and procedures Provide training and mentorship to junior network staff and other stakeholders. Educational Qualification: Bachelor's/Masters in Computer Science, Engineering, or IT Specific Certification : CCNP/CCIE, PCNSE, AWS/Azure Network Specialty, CISSP, TOGAF, PMP/ITIL v4 Experience : 10-12 years experience Skill (Functional & Behavioural): Networking: BGP, OSPF, VXLAN, SD-WAN, MPLS, 5G/6G, WAN Optimization Cloud Networking: AWS Transit Gateway, Azure VNet, ExpressRoute, Direct Connect, NSG/UDR Security: NGFWs (Palo Alto, Fortinet, Cisco), ZTNA, CASB, Zscaler/Netskope, EDR/XDR (CrowdStrike, Defender), NAC Segmentation: Micro and macro segmentation, VRFs, SGTs, VLANs OT Networking: Industrial firewalling, SCADA/PLC segregation, ICS/OT security policies Show more Show less

Posted 1 week ago

Apply

3.0 years

18 Lacs

India

On-site

GlassDoor logo

Job Summary: We are seeking a highly experienced “Senior VAPT & Penetration Testing Specialist” to lead and ensure the quality and effectiveness of our vulnerability assessment and penetration testing operations. This role involves findings, validating findings, reviewing technical reports, ensuring compliance with standards (OWASP, PTES, NIST, etc.), and improving methodologies and tools. Key Responsibilities: Conduct in-depth vulnerability assessments and penetration tests on web, mobile, network, API, and cloud infrastructure using manual and automation. Utilize industry-standard tools like SQLMap, Burp Suite, Nessus, Nmap, and custom scripts for advanced exploitation techniques. Simulate various cyber-attacks including DDoS, Brute Force, XSS, SQL Injection, DNS attacks, and Social Engineering to identify system vulnerabilities. Perform peer reviews of technical deliverables and verify accuracy of findings and recommendations. Ensure that all assessments are aligned with industry standards such as OWASP, PTES, MITRE ATT&CK, and NIST. Act as a technical lead and mentor for junior VAPT team and QA team members. Identify gaps in the current testing methodologies and implement process improvements. Prepare detailed documentation and the VA report and ensure clear, actionable, and risk-rated reporting. Collaborate with clients and internal teams to understand scope and provide post-assessment clarifications. Present the client meeting for the future VAPT assignments. Stay updated with emerging threats, tools, techniques, and frameworks. Required Skills & Qualifications: Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field. 3 to 5 years of hands-on experience in VAPT and penetration testing. In-depth knowledge of web, network, mobile, cloud, and API security. Strong understanding of secure coding practices and vulnerability management. Expertise in tools like Burp Suite, Nmap, Nessus, Metasploit, Qualys, Kali Linux, Wireshark, etc. Familiarity with SIEM, IDS/IPS, EDR tools is a plus. Excellent report writing and documentation skills. Strong communication and overseas client-interaction skills. Preferred Certifications: OSCP (Offensive Security Certified Professional) – Highly preferred CEH (Certified Ethical Hacker) CREST / GPEN / GWAPT / CISSP – Optional but desirable ISO 27001 Lead Auditor or Lead Implementer – Added advantage Job Type: Full-time Pay: Up to ₹1,800,000.00 per year Schedule: Monday to Friday UK shift Work Location: In person Speak with the employer +91 9429521724

Posted 1 week ago

Apply

8.0 years

0 Lacs

Trivandrum, Kerala, India

On-site

Linkedin logo

Role Description We are seeking a Senior SecDevOps Analyst to lead the integration of security into our DevOps practices and infrastructure. This role is suited for an experienced security professional who can navigate complex, hybrid environments and proactively secure large-scale, customer-facing platforms. You will be instrumental in designing secure systems, embedding security into CI/CD pipelines, and supporting risk and compliance initiatives while collaborating closely with DevOps, product, and IT teams. Key Responsibilities Security Architecture & Engineering Design and implement secure infrastructure solutions across cloud and on-premise environments. Define, enforce, and promote security standards for Infrastructure as Code (IaC), containers, and microservices. Collaborate with architects and engineering teams to ensure secure application design and deployment. DevSecOps Enablement Integrate security tools (SAST, DAST, SCA) into CI/CD pipelines. Automate security scanning and compliance checks using tools such as Snyk, Checkov, or Prisma Cloud. Drive adoption of DevSecOps practices through training, documentation, and hands-on guidance. Cloud & Container Security Secure cloud-native environments (AWS, Azure, GCP) focusing on identity, access, and data protection. Implement and monitor security for Kubernetes clusters, Docker containers, and serverless applications. Monitoring, Detection & Response Develop and maintain security monitoring and incident response procedures. Collaborate with SOC and IT teams to investigate, remediate, and document security incidents. Conduct root cause analysis and post-incident reviews to enhance system resilience. Compliance & Governance Support regulatory compliance (PCI-DSS, GDPR, ISO 27001) and internal audit initiatives. Maintain up-to-date documentation for security controls, risk assessments, and policies. Participate in vendor risk assessments and third-party security evaluations. Collaboration & Leadership Act as a security advisor to DevOps, product, and infrastructure teams. Mentor junior analysts and promote security best practices. Stay informed on evolving threats, technologies, and security frameworks. Required Qualifications 8+ years of experience in security engineering, DevOps, or SecDevOps. In-depth knowledge of cloud security (AWS preferred), system hardening, and network security. Hands-on experience with Python, Bash, PowerShell for scripting and automation. Proficient in CI/CD tools (GitHub Actions, GitLab CI, Jenkins) and IaC platforms (Terraform, CloudFormation). Strong expertise in container security (Docker, Kubernetes) and orchestration tools. Familiarity with enterprise security tools (SIEM, EDR, vulnerability management). Sound knowledge of frameworks like NIST, CIS, ISO 27001, and compliance standards (PCI-DSS, GDPR). Preferred Qualifications Industry-recognized certifications (e.g., CISSP, CKS, AWS Security Specialty, OSCP). Experience in large-scale retail or e-commerce environments. Understanding of secure payment systems, fraud prevention, and data privacy. Familiarity with Zero Trust Architecture and identity-centric security models. Skills Information Security,Security Monitoring,Infrastructure Security Show more Show less

Posted 1 week ago

Apply

12.0 - 15.0 years

0 Lacs

Kanayannur, Kerala, India

On-site

Linkedin logo

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Technology Consulting – Cyber Senior Manager - Cyber Security- OT Security Specialist General Information Business Area: Tech Consulting – Cyber Security Core skills : Lead OT Security Specialist Contract Type : Full-Time – Permanent As part of our Cyber Technology Consulting team, you will handle leading and managing OT securityengagements for clients across MENA region. You’ll work with high-profile organizations in energy, utilities, manufacturing, and other industrial sectors to assess, strengthen, and transform their OT security postures. This role offers the opportunity to collaborate across service lines and bring end-to-end cyber resilience to our clients’ industrial environments. The opportunity We’re looking for a Senior manager with hands-on expertise and experience in driving OT security engagements to join our EY GDS Cyber Technology Consulting team. This is a fantastic opportunity to be part of a leading firm, with a minimum of experience of 12-15 years. Your Key Responsibilities Lead and deliver OT security assessments, including risk assessments, architecture reviews, and maturity evaluations across SCADA, DCS, PLC, and ICS environments. Conduct OT/ICS-specific vulnerability assessments and support red/blue/purple team simulations in industrial networks. Develop customized OT cybersecurity roadmaps aligned with international standards (e.g., IEC 62443, NIST 800-82, NCA CCC, etc.). Interface with client stakeholders from operational, engineering, and executive teams to deliver technical findings and strategic recommendations. Support the development of OT security programs, policies, network segmentation strategies, and incident response playbooks tailored for industrial operations. Manage multiple concurrent engagements while ensuring quality delivery, client satisfaction, and timely completion. Collaborate with internal teams from advisory, IT cyber, and risk consulting for integrated service delivery. Develop detailed reports, articulate technical findings, and deliver actionable recommendations to both technical teams and executive stakeholders. Manage multiple engagements, ensuring timely delivery, quality assurance, and adherence to industry best practices. Stay updated with emerging cyber threats, vulnerabilities, and offensive security techniques, and incorporate these insights into client engagements Mentor and coach junior team members, fostering their technical and professional development. Help develop/respond to go to market, RFP/RFI responses Practice building Skills And Attributes For Success Strong technical understanding of OT/ICS systems and cybersecurity challenges unique to industrial environments. Experience working with OT network protocols (Modbus, DNP3, OPC-UA, etc.) and devices (PLCs, RTUs, HMIs). Familiarity with industrial threat intelligence, attack vectors, and real-world OT incident case studies. Excellent communication and stakeholder management skills, especially in cross-functional industrial settings. Proven ability to interpret complex findings and translate them into actionable insights for both technical and non-technical audiences. Collaborating with other members of the engagement team to plan the engagement and develop work program timelines, risk assessments and other documents/templates. Ability to interpret complex technical results and present insights to business stakeholders. Strong analytical, problem-solving, and critical-thinking skills. Excellent communication and collaboration skills Deep technical understanding of offensive security methodologies, including network penetration testing, web application testing, and adversary simulation. Strong knowledge of OT security frameworks (e.g., IEC 62443). To qualify for the role, you must have A bachelor's or master’s degree in information technology, cyber security etc. Excellent communication skills with a consulting mindset Skills across OT cybersecurity, ICS/SCADA security, or related areas. 6-7 years of experience in technical OT security assessments Excellent communication skills with a consulting mindset. Ability to travel to the MENA region Ideally, you’ll also have Industry-recognized certifications (e.g., IEC 62443, NIST 800-82, NCA OTCC, SANS ICS). Experience in OT security engagements Certifications such as GICSP, ISA/IEC 62443, GRID, or equivalent. Experience supporting or responding to OT cyber incidents or implementing cybersecurity controls in industrial networks. EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less

Posted 1 week ago

Apply

12.0 - 15.0 years

0 Lacs

Trivandrum, Kerala, India

On-site

Linkedin logo

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Technology Consulting – Cyber Senior Manager - Cyber Security- OT Security Specialist General Information Business Area: Tech Consulting – Cyber Security Core skills : Lead OT Security Specialist Contract Type : Full-Time – Permanent As part of our Cyber Technology Consulting team, you will handle leading and managing OT securityengagements for clients across MENA region. You’ll work with high-profile organizations in energy, utilities, manufacturing, and other industrial sectors to assess, strengthen, and transform their OT security postures. This role offers the opportunity to collaborate across service lines and bring end-to-end cyber resilience to our clients’ industrial environments. The opportunity We’re looking for a Senior manager with hands-on expertise and experience in driving OT security engagements to join our EY GDS Cyber Technology Consulting team. This is a fantastic opportunity to be part of a leading firm, with a minimum of experience of 12-15 years. Your Key Responsibilities Lead and deliver OT security assessments, including risk assessments, architecture reviews, and maturity evaluations across SCADA, DCS, PLC, and ICS environments. Conduct OT/ICS-specific vulnerability assessments and support red/blue/purple team simulations in industrial networks. Develop customized OT cybersecurity roadmaps aligned with international standards (e.g., IEC 62443, NIST 800-82, NCA CCC, etc.). Interface with client stakeholders from operational, engineering, and executive teams to deliver technical findings and strategic recommendations. Support the development of OT security programs, policies, network segmentation strategies, and incident response playbooks tailored for industrial operations. Manage multiple concurrent engagements while ensuring quality delivery, client satisfaction, and timely completion. Collaborate with internal teams from advisory, IT cyber, and risk consulting for integrated service delivery. Develop detailed reports, articulate technical findings, and deliver actionable recommendations to both technical teams and executive stakeholders. Manage multiple engagements, ensuring timely delivery, quality assurance, and adherence to industry best practices. Stay updated with emerging cyber threats, vulnerabilities, and offensive security techniques, and incorporate these insights into client engagements Mentor and coach junior team members, fostering their technical and professional development. Help develop/respond to go to market, RFP/RFI responses Practice building Skills And Attributes For Success Strong technical understanding of OT/ICS systems and cybersecurity challenges unique to industrial environments. Experience working with OT network protocols (Modbus, DNP3, OPC-UA, etc.) and devices (PLCs, RTUs, HMIs). Familiarity with industrial threat intelligence, attack vectors, and real-world OT incident case studies. Excellent communication and stakeholder management skills, especially in cross-functional industrial settings. Proven ability to interpret complex findings and translate them into actionable insights for both technical and non-technical audiences. Collaborating with other members of the engagement team to plan the engagement and develop work program timelines, risk assessments and other documents/templates. Ability to interpret complex technical results and present insights to business stakeholders. Strong analytical, problem-solving, and critical-thinking skills. Excellent communication and collaboration skills Deep technical understanding of offensive security methodologies, including network penetration testing, web application testing, and adversary simulation. Strong knowledge of OT security frameworks (e.g., IEC 62443). To qualify for the role, you must have A bachelor's or master’s degree in information technology, cyber security etc. Excellent communication skills with a consulting mindset Skills across OT cybersecurity, ICS/SCADA security, or related areas. 6-7 years of experience in technical OT security assessments Excellent communication skills with a consulting mindset. Ability to travel to the MENA region Ideally, you’ll also have Industry-recognized certifications (e.g., IEC 62443, NIST 800-82, NCA OTCC, SANS ICS). Experience in OT security engagements Certifications such as GICSP, ISA/IEC 62443, GRID, or equivalent. Experience supporting or responding to OT cyber incidents or implementing cybersecurity controls in industrial networks. EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less

Posted 1 week ago

Apply

8.0 - 12.0 years

0 Lacs

Mumbai, Maharashtra, India

On-site

Linkedin logo

Hi, We are having an opening for License Compliance & GRC Manager a our Mumbai location. Job Summary : We are seeking a dynamic and detail-oriented Manager HAM, SAM, Licensing Compliance, and GRC to lead the governance of IT assets and licensing compliance while also managing governance, risk, and compliance (GRC) functions. This strategic role will oversee hardware and software asset management (HAM/SAM), ensure compliance with licensing agreements, and implement IT GRC frameworks in line with organizational policies and global standards. The ideal candidate should have a strong understanding of IT asset lifecycle management, licensing models, audit processes, and regulatory compliance, along with proven experience in risk management, policy enforcement, and IT governance. Areas Of Responsibility : 1. Hardware & Software Asset Management (HAM/SAM): Manage the full lifecycle of IT assets (procurement to retirement). Maintain accurate inventories for hardware and software using ITAM tools. Define and enforce asset tracking standards and policies. Optimize asset usage and reduce costs through efficient deployment and redeployment strategies. 2. Licensing Compliance: Ensure adherence to software licensing agreements and regulatory requirements. Conduct regular audits and true-ups for major software vendors (Microsoft, Adobe, Oracle, etc.). Track software usage and entitlements to prevent overuse or underutilization. Work with procurement, legal, and vendor management for contract reviews and renewals. 3. Governance & Reporting: Generate regular reports and dashboards on asset utilization, compliance status, and cost optimization. Establish KPIs and SLAs for IT asset management and ensure alignment with global governance standards. Collaborate with procurement, finance, security, and infrastructure teams for process integration. 4. Team & Vendor Management: Lead a team of analysts/coordinators for asset and compliance operations. Liaise with software/hardware vendors and external auditors as required. Drive training and awareness on asset handling and compliance best practices. Educational Qualification : Bachelors degree in Information Technology, Computer Science, or a related discipline. Specific Certification : ITIL v4 Foundation Certified Software Asset Manager (CSAM) Microsoft Licensing Specialist Certification Skills : Strong analytical and audit skills Excellent communication and stakeholder management Policy writing and enforcement Risk identification and mitigation Attention to detail with process-driven mindset Experience : 8-12 years of experience in IT asset management, software compliance, and IT GRC. Strong understanding of global compliance frameworks (ISO 27001, NIST, SOC 2, GDPR, etc.). Expertise in tools such as ManageEngine, Flexera, Lansweeper, or SCCM. Demonstrated experience in licensing audits and compliance management. Show more Show less

Posted 1 week ago

Apply

12.0 years

0 Lacs

Mumbai, Maharashtra, India

On-site

Linkedin logo

Work Experience Job Overview: We are looking for an experienced Network Solution Architect to lead the design, implementation, and optimization of network infrastructure for a domestic bank’s technology team. This role requires expertise in secure, scalable, and high-performance network solutions that support banking operations, digital banking services, and regulatory compliance. Key Responsibilities Network Architecture & Design: Develop and implement end-to-end network solutions for core banking, data centers, branches, and cloud environments. Security & Compliance: Ensure adherence to RBI guidelines, cybersecurity frameworks, and financial sector regulations. Cloud & Hybrid Networking: Architect hybrid cloud connectivity (AWS, Azure, GCP) with secure and resilient network designs. Branch & ATM Connectivity: Design and optimize SD-WAN, MPLS, VPNs, and other networking solutions for secure and efficient branch and ATM operations. Network Automation & Optimization: Implement automation for network configuration, monitoring, and troubleshooting using tools like Ansible, Terraform, and Python. Zero Trust & Micro-Segmentation: Define and enforce Zero Trust security models, micro-segmentation policies (Illumio, NSX, Cisco ACI), and firewall rules. Disaster Recovery & High Availability: Develop and maintain network redundancy, failover strategies, and disaster recovery plans. Stakeholder Collaboration: Work closely with cybersecurity, cloud, IT infrastructure, and application teams to align networking solutions with business goals. Required Skills & Experience 12+ years of experience in network architecture, security, and solutions design. Expertise in routing & switching (BGP, OSPF, MPLS, VXLAN, STP, etc.). Strong hands-on experience with firewalls (Palo Alto, Fortinet, Cisco ASA), WAFs, IDS/IPS, and DDoS mitigation. Proficiency in SD-WAN, SDN, cloud networking (AWS, Azure, GCP), and VPN solutions. Experience with Zero Trust frameworks and micro-segmentation strategies, netskope Knowledge of network automation tools (Ansible, Terraform, Python). Understanding of financial sector security frameworks (ISO 27001, NIST, RBI cybersecurity guidelines, PCI-DSS). Experience designing high-availability and disaster recovery solutions. Preferred Certifications CCIE/CCNP/CCNA (Cisco) CISSP (Certified Information Systems Security Professional) AWS/Azure/GCP Networking Certifications Palo Alto/Fortinet/Cisco Security Certifications Show more Show less

Posted 1 week ago

Apply

0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Position Overview Job Title: Information Security Officer (ISO) Corporate Title: Associate Location: Pune, India Role Description DWS Group operates in a business environment with an almost complete dependence on information, which is processed and transmitted by information systems and interconnected computer networks and stored physically and electronically. Information security risk and threat landscape are dynamic and requirements for security are constantly growing. It is essential for DWS that confidentiality, integrity (authenticity) and availability of information are protected, and risk is managed according to DWS’ Risk Appetite and in accordance with legal and regulatory requirements. The role of the DWS Information Security Officer (ISO) is aligned to the DWS COO divisional unit and will report into the Divisional Information Security Officer (D-ISO). DWS ISO assumes ownership for the assigned IT Assets from an information security (IS) perspective. What We’ll Offer You As part of our flexible scheme, here are just some of the benefits that you’ll enjoy, Best in class leave policy. Gender neutral parental leaves 100% reimbursement under childcare assistance benefit (gender neutral) Sponsorship for Industry relevant certifications and education Employee Assistance Program for you and your family members Comprehensive Hospitalization Insurance for you and your dependents Accident and Term life Insurance Complementary Health screening for 35 yrs. and above Your Key Responsibilities To assume ownership and responsibility for assigned IT assets, in line with the Group Information Security management processes and the DWS ISMS To execute IS Risk assessments and compliance evaluations for assigned IT assets To assign accurate information classification to assigned IT assets based on confidentiality of Information To maintain the Information Security related documentation of assigned IT assets in the Group’s asset inventory To establish a good working relationship with Business Application Owners (BAO) and other Subject Matter Experts (SME) of the divisions and functions of the assigned assets and develop profound knowledge of the supported processes and data To support key role holders such as ITAOs and TISOs to develop a secure environment by evaluating the Information Security requirements as early as possible in the system development life cycle to select the applicable Information Security Controls for implementation To give guidance to ITAOs and TISOs on the implementation of compensating Controls in case of deviations from the applicable Information Security Controls To execute and document periodical recertification of user access rights in their area of responsibility in compliance with the Group’s identity and access processes To support implementation of Segregation of Duty (SoD) rules for the assigned IT assets To contribute to the Information Security incident management process in the case of a security breach To deliver all items requested during regulatory and internal Information Security related audits To remain fully trained and skilled by completing the required Information Security trainings provided by CSO or as requested by the Divisional CISO or the Divisional ISO. Essential Your skills and experience Candidate should have proven experience of working in Information Security and/ or Information Technology, ideally in a regulated financial institute Strong communication (written and verbal) skills with the ability to effectively communicate with different stakeholders within IT and business functions with excellent command of the English language. Knowledge on Information Security Controls, Data Protection Policy, Information classification principles and segregation of duties requirements within a financial organization Positive attitude and a team player Proactive and ability to work independently in a global team Open to learn, adapt and work with new technologies Outstanding problem solving, analytical and project management skills Proficiency with Microsoft Office programs Fluent English and communication skills Education / Certification Degree-level IT and/or information security qualification, or equivalent experience in Information Security and IT Security General understanding of current security industry standards, best practices, and/or frameworks i.e.: NIST, ENISA, ISO27001, OWASP How We’ll Support You Training and development to help you excel in your career. Coaching and support from experts in your team. A culture of continuous learning to aid progression. A range of flexible benefits that you can tailor to suit your needs. About Us And Our Teams Please visit our company website for further information: https://www.db.com/company/company.htm We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively. Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group. We welcome applications from all people and promote a positive, fair and inclusive work environment. Show more Show less

Posted 1 week ago

Apply

4.0 years

0 Lacs

Ahmedabad, Gujarat, India

On-site

Linkedin logo

Line of Service Advisory Industry/Sector Not Applicable Specialism Risk Management Level Manager Job Description & Summary A career within Cybersecurity and Privacy services, will provide you with the opportunity to help our clients implement an effective cybersecurity programme that protects against threats, propels transformation, and drives growth. As companies pivot toward a digital business model, exponentially more data is generated and shared among organisations, partners and customers. We play an integral role in helping our clients ensure they are protected by developing transformation strategies focused on security, efficiently integrate and manage new or existing technology systems to deliver continuous operational improvements and increase their cybersecurity investment, and detect, respond, and remediate threats. Why PWC At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us. At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. " Job Description & Summary: About the Role We are seeking a highly motivated and experienced IT & OT Security manager to join our dynamic security team. You will play a pivotal role in protecting our organization’s IT and OT systems from cyber threats by developing, implementing, and maintaining a comprehensive security program. This role requires a unique blend of IT security knowledge and understanding of OT specific security principles. Responsibilities Design, implement, and manage a holistic IT/OT security program that addresses vulnerabilities and risks across both IT and OT environments. Conduct regular security assessments and penetration testing to identify and remediate vulnerabilities in IT systems (networks, applications, servers) and OT systems (industrial control systems, SCADA). Design and implement a secure IT/OT architecture, including network segmentation, firewalls, access controls, and specific OT security measures. Design secure system architectures for critical infrastructure, implementing network segmentation, access controls, and intrusion detection systems. Their expertise ensures reliable operations in OT/ICS environments. Develop, enforce, and maintain security policies, procedures, and best practices for both IT and OT domains. Oversee incident response activities for both IT and OT, including detection, containment, eradication, and recovery, ensuring business continuity and minimal disruption. Stay up-to-date on the latest IT and OT security threats and trends to maintain a proactive security posture. Deliver security awareness training programs to educate IT and OT personnel on best practices and potential threats specific to their domains. Design and specification of OT architecture and systems from an OT/cyber security perspective. (SCADA/Automation network design and configuration) Acting as the lead/project manager on multidiscipline projects along with the project team in close collaboration with clients. Manage and maintain IT and OT security tools and technologies, ensuring optimal performance and effectiveness. Collaborate effectively with IT and OT teams to integrate security considerations seamlessly into operational procedures. Report on the organization’s overall security posture and key security metrics to senior management. Mandatory Skill Sets OT Security Preferred Skills Sets Experience in relevant industries (e.g., manufacturing, utilities, energy) a strong plus. Certifications in IT security (e.g., CISSP, CISA, CISM, OSCP) and OT security (e.g., IEC 62443 Cybersecurity or GICSP, GSEC, SSCP) highly desirable. (one in IT & one in OT is must) Working knowledge of IT and OT architectures and protocols. Experience in incident response and disaster recovery planning for both IT and OT environments. Understanding/experience on Advance Metering Infrastructure is a plus Education Qualifications Bachelor’s degree in Cybersecurity, Information Technology, Engineering, or a related field (Master’s degree a plus). Minimum 4 years of experience in IT security with a strong understanding of OT security principles. Proven track record of developing and implementing successful IT/OT security programs. In-depth knowledge of IT security best practices, standards, and frameworks (e.g., NIST Cybersecurity Framework) and familiarity with OT security frameworks (e.g., ISA/IEC 62443). Experience in conducting security assessments and penetration testing methodologies for both IT and OT systems. Excellent communication, collaboration, and interpersonal skills. Ability to thrive in a fast-paced environment, manage multiple priorities, and work independently while also leading and motivating a team. Strong analytical and problem-solving skills. Year Of Experience Required 4 Location Bangalore Education (if blank, degree and/or field of study not specified) Degrees/Field of Study required: Bachelor of Engineering Degrees/Field Of Study Preferred: Certifications (if blank, certifications not specified) Required Skills Operational Technology (OT) Security Optional Skills Accepting Feedback, Accepting Feedback, Active Listening, Analytical Thinking, Azure Data Factory, Coaching and Feedback, Communication, Creativity, Cybersecurity, Cybersecurity Governance, Data Architecture, Data Archiving, Data Flow Mapping, Data Privacy Act, Embracing Change, Emotional Regulation, Empathy, Enterprise Content Management, Incident Response Plan, Inclusion, Information Rights Management (IRM), Information Security, Information Security Governance, Information Security Management System (ISMS), Intellectual Curiosity {+ 16 more} Desired Languages (If blank, desired languages not specified) Travel Requirements Not Specified Available for Work Visa Sponsorship? No Government Clearance Required? No Job Posting End Date Show more Show less

Posted 1 week ago

Apply

Exploring NIST Jobs in India

The job market for NIST (National Institute of Standards and Technology) professionals in India is rapidly growing. As more companies focus on cybersecurity and data protection, the demand for individuals skilled in NIST guidelines and frameworks is on the rise. Job seekers with expertise in NIST can find a variety of opportunities across different industries in India.

Top Hiring Locations in India

  1. Bangalore
  2. Hyderabad
  3. Mumbai
  4. Delhi
  5. Pune

These cities are known for their thriving tech industries and have a high demand for NIST professionals.

Average Salary Range

The average salary range for NIST professionals in India varies based on experience level. Entry-level positions may start around INR 4-6 lakhs per year, while experienced professionals can earn upwards of INR 15-20 lakhs per year.

Career Path

In the field of NIST, a typical career path may include roles such as NIST Analyst, NIST Consultant, and NIST Manager. As professionals gain more experience and expertise, they can progress to Senior NIST Consultant, NIST Architect, and even Chief Information Security Officer (CISO).

Related Skills

In addition to expertise in NIST, employers often look for professionals with the following related skills: - Cybersecurity - Risk management - Compliance - Information security - Security frameworks (e.g., ISO 27001)

Interview Questions

  • What is NIST and why is it important? (basic)
  • Can you explain the difference between NIST 800-53 and NIST 800-171? (medium)
  • How do you ensure compliance with NIST guidelines in a cloud environment? (advanced)
  • What are the key components of a NIST risk management framework? (medium)
  • Have you ever led a NIST compliance audit? If so, can you describe the process? (advanced)
  • How do you stay updated with the latest NIST guidelines and updates? (basic)
  • Can you give an example of a security control outlined in NIST 800-53? (medium)
  • What is the role of NIST in incident response planning? (medium)
  • How do you handle security incidents in accordance with NIST guidelines? (advanced)
  • Have you worked with NIST SP 800-171 requirements? If so, can you describe your experience? (medium)
  • How do you prioritize security controls when implementing NIST guidelines in an organization? (advanced)
  • What are the key differences between NIST and other security frameworks like ISO 27001? (medium)
  • Can you explain the concept of continuous monitoring in the context of NIST? (medium)
  • How do you ensure data integrity in accordance with NIST guidelines? (advanced)
  • Have you implemented multi-factor authentication in compliance with NIST recommendations? If so, what challenges did you face? (medium)
  • How do you handle vulnerabilities identified through NIST risk assessments? (advanced)
  • Can you describe a successful NIST implementation project you were involved in? (medium)
  • How do you communicate NIST compliance requirements to non-technical stakeholders? (medium)
  • How do you approach security awareness training in alignment with NIST guidelines? (medium)
  • What are the key considerations when developing a NIST-compliant security policy? (medium)
  • How do you assess the effectiveness of security controls based on NIST recommendations? (advanced)
  • Can you provide an example of a security incident response plan based on NIST guidelines? (medium)
  • How do you ensure data privacy in alignment with NIST standards? (medium)
  • What are the key challenges organizations face when implementing NIST guidelines? (medium)

Closing Remark

As you explore opportunities in the NIST job market in India, remember to showcase your expertise, stay updated with industry trends, and prepare thoroughly for interviews. With the right skills and preparation, you can confidently pursue a successful career in NIST in India. Best of luck!

cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies