Cyber Security Associate Advisor

2 weeks ago


Hyderabad, Telangana, India Evernorth Full time

About Evernorth:

Evernorth Health Services, a division of The Cigna Group (NYSE: CI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people.

Job Objective:

The Information Protection Associate Advisor is responsible for providing general technical, operational and review support to Cigna's Information Protection (CIP) Organization.

This role will support in enforcing standard information protection controls through infrastructure, application and third-party security assessments. You will work with development teams to ensure they are using the appropriate application security tooling correctly through their SSDLC.Balance multiple project priorities appropriately. Work with the Cigna Information Protection team as required to support reviews, product implementations and security audits.

Support the Management team (Regional Information Security Officer and Senior Manager) on dashboard reporting, coordination of incident responses, risk assessments and CIP led initiatives.

Job Description:

Infrastructure / Application reviews:

  • Partners with the enterprise to implement standard security solutions and capabilities that are aligned with business, technology and threat drivers
  • Performs focused risks assessments of existing or new services and technologies, security architecture, identifies design gaps, risks, and recommends enhancements
  • Communicates risk assessment findings to information security customers, or business partners. Explore risk mitigation controls
  • Serves as an information security expert and trusted advisor to partners in IT and the business
  • Evaluate compliance of operation processes with Information Protection policies and related government regulations
  • Identifies and implements appropriate controls to effectively manage information risks as needed
  • Identifies opportunities to improve risk posture, developing solutions for remediating or mitigating risks and assessing residual risk
  • Maintains strong working relationships with individuals and groups involved in managing information risks across the organization
  • Stays abreast of current and emerging security threats and designs security architectures to mitigate them

Service Partner Security Assessment:

  • Perform general walkthrough evaluations of new applications and processes under consideration. Provide recommendation to business.
  • Meet with vendors and employees to resolve or track compliance issues.
  • Attend demonstrations of applications and prepare reports on potential for data leakage or infrastructure security issues.
  • Review any regular security reports for abnormality.
  • Work with supplier chain management on contracts to include security terms.
  • Escalation to the fellow CIP team on security issues related to service partners.
  • Provide development teams with application security vulnerability validation and remediation guidance from various application security tooling (SAST, SCA, IAC, DAST, MAST, etc)

Support the Management team(Regional Information Security Officer and Senior Manager):

  • Work with individual local security teams assigned to ensure security controls applied are compliant to CIP policies and standards
  • Work with the RISO on managing security incidents
  • Regular risk & activity reporting
  • Issue tracking with local security teams
  • Review and approval of application/infrastructure changes in terms of security
  • Coordinate CIP initiatives with other countries as required
  • Maintain strong working relationships with individuals and groups involved in managing information risks across the organization
  • Partner with the CIP and IT teams to implement standard security solutions and capabilities that are aligned with business, technology and threat drivers
  • Stay abreast of current and emerging security threats and security architectures to mitigate the threats

Skills Needed:

  • Health Insurance or Health Care Industry experience preferred
  • Ability to multitask and timely execute
  • Ability to grasp and understand complicated relationships
  • Proven Communication skills, able to write and verbally communicate effectively
  • Organizational courage to escalate and resolve risk issues
  • Flexible can adapt to changing organization changing business needs, technological advances and agile methodology
  • Demonstrates technical skills in infrastructure, application and third party security assessments.
  • Self-starter and shows empathy towards business requirements and able to influence changes to facilitate security
  • Experience with assessing and mitigating risk
  • Experience with contracting and negotiations
  • Travel required, approximately 10%

Qualifications:

  • BS degree or equivalent experience
  • CISSP, CISA, CISM, CRISC or similar certifications preferred
  • Broad high level knowledge, hands-on experience, and exposure to a wide range of IT subject areas, business, application security
  • Strong written and spoken English skills
  • Qualified candidates will typically have 8 to 11+ years of professional IT experience work experience, and 4 years in information security
  • Experience with process and change management, reporting and incident handling.
  • Demonstrated ability to communicate at high levels, both verbally and in reporting
  • Excellent problem identification, solving and critical reasoning skills.
  • Ability to work successfully with a minimum of supervision in a fast paced and sometimes pressured environment.
  • Techno Functional role Cyber security Analysts
  • SDLC must have
  • At least 1+ yrs of working experience SAST, DAST, MAST, SCA: Application Security scanning Tools must have
  • Check vulnerability assessments.
  • Help Developers to check if the integration process is aligned with the results.
  • Check if the team is using the right tools and review the results.
  • Threat Model & Programming languages is good to have not mandate.


  • Hyderabad, Telangana, India Evernorth Health Services Full time

    About Evernorth: Evernorth Health Services, a division of The Cigna Group (NYSE: CI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people. Cyber Security Lead Analyst , Incident Response ...


  • Hyderabad, Telangana, India FedEx ACC Full time

    About FedEx ACCLocated in Hyderabad, India, our technology division focuses on developing innovative solutions for customers and team members worldwide. Our goal is to enhance productivity, minimize expenses, and update our infrastructure to provide exceptional customer experiences.We are seeking a Cyber Security Advisor to join our team.


  • Hyderabad, Telangana, India Evernorth Health Services Full time

    About Evernorth:Evernorth Health Services, a division of The Cigna Group (NYSE: CI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people.Job Objective:The Information Protection Associate...


  • Hyderabad, Telangana, India Evernorth Health Services Full time

    About Evernorth: Evernorth Health Services, a division of The Cigna Group (NYSE: CI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people. Job Description Cyber Security Senior advisor Job...


  • Hyderabad, Telangana, India Garmin Technologies Full time

    Greetings from GarminWe are hiring aCyber Security Managerfor Garmin Technologies, Hyderabad, Telangana, India. Please go through the below JD.POSITION SUMMARY:Lead and direct multiple cyber security teams including people, processes and technology. Establish and execute technology strategy and vision for global Garmin cyber security programs. Work with key...


  • Hyderabad, Telangana, India Evernorth Health Services Full time

    About Evernorth:Evernorth Health Services, a division of The Cigna Group (NYSE: CI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people.Job DescriptionCyber Security Senior advisorJob...


  • Hyderabad, Telangana, India Garmin Technologies Full time

    Greetings from GarminWe are hiring a Cyber Security Manager for Garmin Technologies, Hyderabad, Telangana, India. Please go through the below JD.POSITION SUMMARY: Lead and direct multiple cyber security teams including people, processes and technology. Establish and execute technology strategy and vision for global Garmin cyber security programs. Work with...


  • Hyderabad, Telangana, India FedEx ACC Full time

    About FedExLocated in Hyderabad, India, FedEx ACC India serves as a strategic technology division for FedEx that will focus on developing innovative solutions for our customers and team members across the globe. These solutions will enhance productivity, minimize expenses, and update our technology infrastructure to continue providing the outstanding...


  • Hyderabad, Telangana, India NConsulting Full time

    Role Cyber Security Engineer with any Antivirus exp Location Gurugram Gr Noida HYD Pune BangaloreExperience 6 YearsNotice 15 DaysFTE or SubconMandatory Antivirus experience with DefenderInvestigate incidents from security perspective for any security breach and assess associated impact Ensure learnings from security incidents are tracked and...


  • Hyderabad, Telangana, India FedEx Full time

    Job OverviewAt FedEx, we are committed to delivering exceptional experiences for our customers and employees alike. As a Cyber Security Analyst II, you will play a critical role in ensuring the security of our enterprise systems and data.The Global InfoSec team is responsible for protecting the enterprise from cyber threats, securing business operations, and...


  • Hyderabad, Telangana, India FedEx ACC Full time

    About FedExLocated in Hyderabad, India, FedEx ACC India serves as a strategic technology division for FedEx that will focus on developing innovative solutions for our customers and team members across the globe. These solutions will enhance productivity, minimize expenses, and update our technology infrastructure to continue providing the outstanding...


  • Hyderabad, Telangana, India FedEx ACC Full time

    About FedExLocated in Hyderabad, India, FedEx ACC India serves as a strategic technology division for FedEx that will focus on developing innovative solutions for our customers and team members across the globe. These solutions will enhance productivity, minimize expenses, and update our technology infrastructure to continue providing the outstanding...


  • Hyderabad, Telangana, India Wipro Limited Full time

    Job DescriptionThe purpose of this role is to analyse, identify, rectify & recommend specific improvement measures that help in the security posture of the organization by protecting the sensitive information- Ensuring customer centricity by providing apt cybersecurity- Monitoring and safeguarding the log sources and security access- Planning for disaster...


  • Hyderabad, Telangana, India HighRadius Full time

    About UsHighRadius, a renowned provider of cloud-based Autonomous Software for the Office of the CFO, has transformed critical financial processes for over 1000+ leading companies worldwide.Trusted by prestigious organizations like 3M, Unilever, Anheuser-Busch InBev, Sanofi, Kellogg Company, Danone, Hershey's, and many others, HighRadius optimizes...

  • Cyber Security

    3 weeks ago


    Hyderabad, Telangana, India Carrier Full time

    About the role : Leads multiple teams headed by Cyber security managers or supervisors. Contributes to the design, development and implementation of countermeasures, system integration, and tools specific to Cyber and Information Operations. May prepare and presents technical reports and briefings. May perform documentation, vetting and weaponize of...


  • Hyderabad, Telangana, India HighRadius Full time

    About HighRadiusWe are a leading provider of cloud-based Autonomous Software for the Office of the CFO, empowering over 1000+ companies worldwide to transform their critical financial processes.Trusted by prominent organizations like 3M, Unilever, Anheuser-Busch InBev, Sanofi, Kellogg Company, Danone, Hershey's, and many others, we optimize order-to-cash,...


  • Hyderabad, Telangana, India Wipro Full time

    Overview Role PurposeThe purpose of this role is to design the organisations computer and network security infrastructure and protect its systems and sensitive information from cyber threats Do Design and develop enterprise cyber security strategy and architecture Understand security requirements by evaluating business strategies and conducting system...


  • Hyderabad, Telangana, India Wipro Full time

    Role Purpose The purpose of this role is to design the organisation's computer and network security infrastructure and protect its systems and sensitive information from cyber threats. Do Design and develop enterprise cyber security strategy and architecture Understand security requirements by evaluating business strategies and conducting system security...


  • Hyderabad, Telangana, India Cotelligent, A TechDemocracy Company Full time

    Job Title:Cyber Security ExpertCompany Overview:Cotelligent, A TechDemocracy Company, is a forward-thinking organization seeking an experienced Cyber Security Expert to manage and optimize our Cyber Ark Privileged Access Management (PAM) solutions.


  • Hyderabad, Telangana, India FedEx Full time

    Responsible for ensuring consistent enterprise security, collaborating to fortify security infrastructure, reviewing security policy changes, developing and implementing solutions to mitigate risks, leading incident response, managing technical documentation, researching security threats, and proactively monitoring security infrastructure.1. Ensure...