Senior Cybersecurity - Policy Exception Management

8 - 13 years

25 - 30 Lacs

Posted:1 hour ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

About the Job:

The CSO (Chief Security Office) Policy Compliance Management (PCM) team is responsible for managing the submission of Exception Requests and assessing their associated cybersecurity risks. This team oversees the exception requests submission process to ensure that non-compliance with AT&T Security Policy and Standards is appropriately documented and reviewed in addition to assisting with Business Unit s documentation of the risk, including its assessment and mitigation and coordinates the approval of the risk response strategy by both the Chief Security Office (CSO) and the Business Unit. Key responsibilities of the role include:

  • Prepare, review, and validate exception requests to cybersecurity policies, ensuring complete and accurate information is submitted.
  • Maintain comprehensive and accurate records of all policy exceptions, justifications, risk assessments, approvals, and mitigation actions.
  • Facilitate the exception management workflow, ensuring alignment with established governance, risk thresholds, and escalation procedures for high-risk exceptions.
  • Continuously monitor active exceptions for compliance with mitigation measures and ensure timely follow-up and closure.
  • Support the exception extension requests as appropriate.
  • Generate regular reports and dashboards on exception status, risk exposure, and mitigation progress for cybersecurity leadership and audit purposes.
  • Identify trends and recurring exception types, providing feedback to cybersecurity policy owners to inform policy updates and strengthen controls.
  • Provide documentation and evidence for internal and external audits related to cybersecurity policy exceptions.
  • Support awareness initiatives and training on the cybersecurity policy exception process and the importance of policy adherence.

Relevant Experience: 8 years

Location: Hyderabad / Bengaluru

Required skills:

  • 8 years of minimum experience in cybersecurity policy exception management process.
  • Experience using ServiceNow for policy exceptions is a must.
  • Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001, CIS Controls).
  • Excellent project management, documentation, organizational, and communication skills
  • Ability to manage multiple priorities and interact with technical and non-technical stakeholders.

Desirable skills:

  • Prior experience with Telecom sector.
  • (Preferred) CISSP, CISM, CRISC, CISA, or similar cybersecurity/risk management certifications.

Additional information (if any): Need to be flexible to provide coverage in US morning hours.

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You