Information Security Lead

2 months ago


Chennai, India Philips Full time
Job TitleInformation Security Lead

Job Description

You are responsible to:
⢠Information Security Strategy:
o Develop and execute a comprehensive operation technology and supply chain information
security strategy aligned with industry best practices.
o Evaluate, recommend, and implement security measures to protect systems, networks, and data
throughout the Integrated Supply Chain (ISC).
⢠Risk Management:
o Identify and assess potential security risks in Operation Technology (OT) and Integrated Supply
Chain (ISC).
o Collaborate with cross-functional teams to develop and implement risk mitigation strategies.
⢠Security Architecture:
o Design, implement, and maintain a robust security architecture for Operation Technology (OT)
and Integrated Supply Chain (ISC).
o Ensure compliance with relevant regulations and standards, such as HIPAA, FDA etc., and other
regulatory security requirements.
⢠Incident Response:
o Develop and maintain incident response plans for Operation Technology (OT) and Integrated
Supply Chain (ISC).
o Lead investigations into security incidents, analyze root causes and implement corrective actions.
⢠Supplier Management:
o Collaborate with suppliers and third-party partners to ensure the security of external systems
and services in the supply chain.
o Conduct regular security assessments of vendors to ensure compliance with information security
standards.
⢠Training and Awareness:
o Develop and deliver training programs to educate employees and stakeholders on Operation
Technology (OT) and Integrated Supply Chain (ISC) information security best practices.
Foster a culture of security awareness and compliance throughout the organization.
⢠Develop and implement comprehensive OT security strategies that align with industry best practices and regulatory requirements.
⢠Build IT/OT SOC, execute OT incident response
⢠Identify OT vulnerabilities and perform remediation without causing system unavailability.
⢠Deploy Firewalls to segment OT systems from other standard IT environments.
⢠Define Security Policy Framework customized for Supply Chain Technologies
⢠Identify appropriate tools/solutions in the areas of inventory collection, vulnerability management,
antivirus, endpoint detection and response
⢠Develop and maintain robust ISC security controls to protect Philips business from security breaches/
incidents.
⢠Hands-on experience in designing and deploying multiple OT IDS solutions
⢠Experience with handling well-known OT technologies - Nozomi Guardian, Armis, Claroty and Microsoft
Defender for IoT (CyberX)
⢠Experience in conducting risk assessments, and maturity assessment for OT systems and products to
identify and prioritize security threats and weaknesses
⢠Evaluate new cybersecurity threats and IT trends and develop effective security controls.
⢠Establish regular governance with service owners to review security control status
⢠Liaison with Philips Information Security Office in driving the security Improvement Program
⢠Define and report on information security KPIs.
⢠Analyze application end to end, prepare threat modelling (STRIDE, PASTA & DREAD) based on different
risk scenarios and drive to fix those risks
⢠Prepare security use cases / functional requirements that new solutions need to meet. Validate those
requirements are met when the solution is delivered
⢠Perform Defensive / Offensive assessment on IT environment/applications to simulate attacks from real
threat actors.
⢠Perform attack pattern analysis based on MITRE Attack framework, support solution development to address the pattern


You are a part of
Enterprise IT ISC Security team working closely with supply chain business leaders, and business contacts at
manufacturing sites and warehouse/distribution centers.


To succeed in this role, you should have


⢠Excellent English language communication skills, both verbal and written. Cross-cultural etiquette,
customer-centric and collaborative mindset.
⢠Works autonomously within established procedures and practices.
⢠Good command of stakeholder management, judgement, conflict resolution, risk & mitigations.
⢠Provides leadership to the global team at strategic, tactical, and operational levels
⢠Maintains current knowledge of industry and regulatory trends and developments for enterprise
technology.
⢠Specialized in multiple Security domains such as incident response, operational assessment of security
posture, and general security management.
⢠Thorough understanding of Security Management principles, Security governance principles
⢠Good knowledge of MITRE Framework, IEC 62443/NIST 800:23/
Qualification
⢠Bachelorâs or Masterâs degree in Information Technology and or commensurate experience in delivering
security solutions.
⢠Overall Enterprise IT Security experience of 10 yrs or more.
⢠Security Certifications such as CISSP, CISM, CISA, CIPP etc. preferred.

About Philips
Weâre a health technology company. We built our entire company around the belief that every human matters, and we won't stop until everybody everywhere has access to the quality healthcare that we all deserve. Do the work of your life to help the lives of others.
⢠Learn more about our business.
⢠Discover our rich and exciting history.
⢠Learn more about our purpose.

If youâre interested in this role and have many, but not all, of the experiences needed, we encourage you to apply. You may still be the right candidate for this or other opportunities at Philips. Learn more about our commitment to diversity and inclusion here.



  • Chennai, India Philips Full time

    JOB DESCRIPTION Job Title Information Security Lead Job Description You are responsible to: • Information Security Strategy : o Develop and execute a comprehensive operation technology and supply chain information security strategy aligned with industry best practices. o Evaluate, recommend, and implement security measures to protect systems,...

  • Information Security

    2 weeks ago


    Chennai, India Philips Full time

    JOB DESCRIPTION Job Title Information Security - Lead Job Description Philips is a global leader in health technology, committed to improving billions of lives worldwide and striving to make the world healthier and more sustainable through innovation. Driven by the vision of a better tomorrow. But it’s not just what we do, it’s who we are....


  • Chennai, Tamil Nadu, India Philips Full time

    Job TitleInformation Security LeadJob DescriptionYou are responsible to:• Information Security Strategy:o Develop and execute a comprehensive operation technology and supply chain informationsecurity strategy aligned with industry best practices.o Evaluate, recommend, and implement security measures to protect systems, networks, and datathroughout the...


  • Chennai, India FXCM Full time

    Job Details The Head of Governance, Risk & Compliance (GRC) will be responsible for developing, implementing, and managing the governance, risk management, and compliance strategies for the Information Security organization. Primary responsibilities (not limited to) Develop and maintain the organization’s security governance framework, including...


  • Chennai, India Pxier.com Full time

    **Acts as ISO to assist defense of Cyber Security Risk Management**: To be responsible for maintaining and improving Information Security risk management framework in terms of risk management framework. To be responsible for manage and mitigate risks related to cyber security, data, information, privacy, outsourcing, and information technology...


  • Chennai, India HEPL Full time

    We are Hiring for our client.Position - Manager - Information SecurityExperience - 8+ YearsSecure Your Future with Us! - Seeking an experienced Manager - Information Security with 8+ years in the field, CISSP certified, and AWS security expertise. Join our team and lead our mission to fortify our IT defenses!Roles & Responsibility : - Minimum 5 years'...


  • Chennai, India Celestica Full time

    Req ID: Remote Position: Hybrid Region: Asia  Country: India  State/Province: Chennai  City: Guindy, Chennai  Summary Information Security - OT Security applies the understanding of a broad range of technologies and solutions to support strategic business needs and engages with customers at all levels of the organization to successfully realize...


  • Chennai, India Flintex Consulting Pte Ltd Full time

    Job DescriptionJob Description: Information Security Manager  Job Summary & Core Requirements• Minimum 5 years' experience in IT Governance and Cyber Security as HOD (mandatory)• Vendor industry experience (mandatory)• Hands on and ability to implement security technical solutions (mandatory)• Manage communication with MAS auditor, incident...


  • Chennai, India Flintex Consulting Pte Ltd Full time

    Job Description: Information Security Manager  Job Summary & Core Requirements• Minimum 5 years' experience in IT Governance and Cyber Security as HOD (mandatory)• Vendor industry experience (mandatory)• Hands on and ability to implement security technical solutions (mandatory)• Manage communication with MAS auditor, incident reporting,...


  • Chennai, India Flintex Consulting Pte Ltd Full time

    JobDescription:InformationSecurity ManagerJobSummary & CoreRequirementsMinimum 5 years experience in IT Governance and Cyber Security asHOD(mandatory)Vendor industry experience(mandatory)Hands on and ability to implement security technical solutions(mandatory)Manage communication with MAS auditor incident reportingengagementLeading tasks and multiple teams...


  • Chennai, India ACL Digital Full time

    Location :Chennai / Bangalore (Work from Office)Experience :3 - 6 yrsLooking for : Immediate Joiners or Serving notice period or Max 30 days notice period.Job Description:The Information Security Analyst must have hands-on experience implementing ISO 27001 framework and other security standards like NIST to ensure effective IT controls. Responsibilities...


  • Chennai, India ACL Digital Full time

    Location : Chennai / Bangalore (Work from Office) Experience : 3 - 6 yrs Looking for : Immediate Joiners or Serving notice period or Max 30 days notice period. Job Description: The Information Security Analyst must have hands-on experience implementing ISO 27001 framework and other security standards like NIST to ensure effective IT controls....


  • Chennai, India ACL Digital Full time

    Location : Chennai / Bangalore (Work from Office)Experience : 3 - 6 yrsLooking for : Immediate Joiners or Serving notice period or Max 30 days notice period.Job Description:The Information Security Analyst must have hands-on experience implementing ISO 27001 framework and other security standards like NIST to ensure effective IT controls. Responsibilities...


  • Chennai, India ACL Digital Full time

    Location : Chennai / Bangalore (Work from Office)Experience : 3 - 6 yrsLooking for : Immediate Joiners or Serving notice period or Max 30 days notice period.Job Description:The Information Security Analyst must have hands-on experience implementing ISO 27001 framework and other security standards like NIST to ensure effective IT controls. Responsibilities...

  • Information Security

    3 weeks ago


    Chennai, India Novac Technology Solutions Full time

    Novac Technology Solutions Private Limitedis a digital transformation and cloud solutions company with strong technology and domain expertise in Financial Services, Insurance Services, Retail Solutions and Digital Learning.Experience:9 - 15 yearsLocation:ChennaiRoles and Responsibilities:Devise and Enhance the IT Security Policies and Controls.Involving,...


  • Chennai, India FXCM Full time

    Job Details We are seeking a highly skilled Information Security Engineer to join our team. This role is critical in designing, building, and implementing systems and tools to protect our company's electronic information and devices against cyber threats. The ideal candidate will have expertise in developing and maintaining infrastructure that supports...

  • Information Security

    3 weeks ago


    Chennai, India Novac Technology Solutions Full time

    Novac Technology Solutions Private Limited is a digital transformation and cloud solutions company with strong technology and domain expertise in Financial Services, Insurance Services, Retail Solutions and Digital Learning. Experience: 9 - 15 yearsLocation: ChennaiRoles and Responsibilities:Devise and Enhance the IT Security Policies and Controls.Involving,...

  • Information Security

    3 weeks ago


    Chennai, India Novac Technology Solutions Full time

    Novac Technology Solutions Private Limited is a digital transformation and cloud solutions company with strong technology and domain expertise in Financial Services, Insurance Services, Retail Solutions and Digital Learning. Experience: 9 - 15 yearsLocation: ChennaiRoles and Responsibilities:Devise and Enhance the IT Security Policies and Controls.Involving,...

  • Information Security

    3 weeks ago


    Chennai, India Novac Technology Solutions Full time

    Novac Technology Solutions Private Limited is a digital transformation and cloud solutions company with strong technology and domain expertise in Financial Services, Insurance Services, Retail Solutions and Digital Learning. Experience: 9 - 15 years Location: Chennai Roles and Responsibilities: Devise and Enhance the IT Security Policies and Controls....


  • Chennai, India Ramco Systems Full time

    Skill Sets Required: Proven experience of 12- 18 years in cybersecurity. Strong knowledge of cybersecurity strategies, policies, and procedures. Expertise in conducting security and risk assessments. Proficient in designing and implementing robust security architectures. Demonstrated leadership in incident response and resolution. In-depth...