Cyber Security Manager

2 days ago


Kanpur, India R1 RCM Full time

R1 is a leading provider of technology-driven solutions that help hospitals and health systems to manage their financial systems and improve patients’ experience. We are the one company that combines the deep expertise of a global workforce of revenue cycle professionals with the industry's most advanced technology platform, encompassing sophisticated analytics, Al, intelligent automation and workflow orchestration. R1 is a place where we think boldly to create opportunities for everyone to innovate and grow. A place where we partner with purpose through transparency and inclusion. We are a global community of engineers, front-line associates, healthcare operators, and RCM experts that work together to go beyond for all those we serve. Because we know that all this adds up to something more, a place where we're all together betterR1 India is proud to be recognized amongst Top 25 Best Companies to Work For 2024, by the Great Place to Work Institute. This is our second consecutive recognition on this prestigious Best Workplaces list, building on the Top 50 recognition we achieved in 2023. Our focus on employee wellbeing and inclusion and diversity is demonstrated through prestigious recognitions with R1 India being ranked amongst Best in Healthcare, Top 100 Best Companies for Women by Avtar & Seramount, and amongst Top 10 Best Workplaces in Health & Wellness. We are committed to transform the healthcare industry with our innovative revenue cycle management services. Our goal is to ‘make healthcare work better for all’ by enabling efficiency for healthcare systems, hospitals, and physician practices. With over 30,000 employees globally, we are about 16,000+ strong in India with presence in Delhi NCR, Hyderabad, Bangalore, and Chennai. Our inclusive culture ensures that every employee feels valued, respected, and appreciated with a robust set of employee benefits and engagement activities.Position: Sr. Manager – Cybersecurity (Third-Party Cyber Risk Management) Location: Noida Shift Timing:2 PM to 11 PMPosition Summary: - We are seeking an experiencedSr. Manager – Third party Cyber Risk Managementto lead our Third-party Cybersecurity risk and governance efforts for India/Philippines market of R1 RCM. TheSenior Manager – Third-Party Cyber Risk Managementis responsible for leading and executing the organization’s cybersecurity oversight of vendors, suppliers, partners, and other external entities. This role ensures that all third-party relationships align with enterprise security policies, regulatory obligations, and risk tolerance levels. The individual will own thethird-party risk management (TPRM) lifecycle— from onboarding and due diligence to continuous monitoring and remediation — and will serve as the subject matter expert on vendor security governance.Key Duties & ResponsibilitiesProgram Leadership & Governance Design, implement, and mature the Third-Party Cyber Risk Management Program aligned with frameworks such as NIST CSF, ISO 27001, HIPAA, CIS Controls, and SOC2. Develop and maintain policies, standards, and procedures governing vendor security due diligence, onboarding, monitoring, and offboarding. Establish and iterate security exhibit for contracts, enforce compliance and iterate wherever needed. Lead governance committees or working groups to discuss vendor risk posture, key issues, and remediation progress with business, procurement, and legal teams. Define and track Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs) for vendor risk and present them to leadership and risk committees.Vendor Risk Assessment & Due Diligence Oversee end-to-end third-party risk assessments including questionnaires, evidence review, and validation of security controls. Evaluate vendors against recognized security frameworks (e.g., SOC 2, ISO 27001, PCI DSS, NIST CSF, HIPAA/HITRUST). Manage inherent and residual risk scoring models to prioritize vendors based on business impact and data sensitivity . Perform or oversee onsite or virtual vendor audits for high-risk vendors and ensure timely closure of identified gaps. Work closely with Procurement and Legal to integrate cybersecurity clauses and right-to-audit provisions in vendor contracts.Continuous monitoring and remediation: Implement and managecontinuous monitoring tools and processes(e.g., SecurityScorecard, Recorded Future) to detect vendor security posture changes. Ensure thatremediation plansare documented, tracked, and closed within defined SLAs. Coordinateperiodic reassessmentsof critical and high-risk vendors to verify ongoing compliance. Manage escalation processes fornon-compliant or high-risk vendors , including executive reporting and remediation oversight. Perform internal audits against client security requirements to proactively prepare and improve organizational security postureCollaboration and stakeholder management Partner withBusiness Units, Procurement, Legal, Privacy, and IT Securityteams to ensure security risk is addressed in all third-party engagements. Collaborate withLegal, Complianceto support external audits and regulatory reviews involving third-party risk. Providesubject matter expertiseduring M&A due diligence, supplier transitions, or strategic partnerships. Delivertraining and awarenessto business and procurement teams on vendor security best practices.Reporting and metrics Maintain avendor risk registerand ensure accurate documentation of risk decisions, exceptions, and compensating controls. Prepareexecutive dashboardsand periodic reports summarizing vendor risk trends, findings, and remediation status. Supportboard-level reportingon supply chain and vendor cyber risks.Experience, Skills & Knowledge :- 7-10 years of total experience in information security, risk, or compliance roles. At least5+ years of direct experience in third-party or vendor cyber risk management. Strong understanding ofsupply chain security, cloud vendor assessments, data privacy, and regulatory compliance(HIPAA, PCI DSS, GDPR, etc.). Experience usingGRC and vendor risk management platforms(e.g., Archer, Auditboard, or similar). Proven track record ofleading remediation governanceandcross-functional collaborationacross business, IT, and legal teamsProven experience managing third-party cybersecurity risk and audit programs at scale. Excellent communication skills, with ability to interface with clients, vendors, operational, legal, and IT leadership.Key Competencies: - Certified Information Security Manager (CISM) Certified Information Systems Auditor (CISA) Certified in Risk and Information Systems Control (CRISC) HITRUST CCSFP or ISO 27001 Lead Implementer



  • Kanpur, India Microminder Cyber Security Full time

    Role OverviewWe are looking for a Network Security Engineer with experience in deploying and managing open-source network security platforms. The role involves setting up visibility sensors, handling network traffic capture, and building log pipelines that integrate into SIEM environments. The ideal candidate has worked with packet capture tools, IDS/IPS,...


  • Kanpur, India Thinkcloudly Full time

    Company Description Thinkcloudly is a global IT learning platform dedicated to helping individuals become IT professionals. We offer targeted courses designed to develop employment skills, ensuring our students are well-prepared for the industry. Our mission is to provide high-quality training and interview preparation to those looking to engage with and...

  • C3i Hub

    1 day ago


    Kanpur, India C3iHub Full time

    are looking for a skilled and proactive ISMS Auditor to join our team, responsible for conducting audits and assessments of our & our clients Information Security Management System (ISMS).The ideal candidate will possess a solid understanding of ISMS frameworks and standards, such as ISO 27001 NIST, and IEC 62443, and demonstrate expertise in evaluating...


  • Kanpur, India CyberFort DigiSec Solution Private Ltd Full time

    Company Description Cyber Fort Digi Sec Solution Private Ltd is led by experienced and qualified Information Security Management professionals with over two decades of industry expertise. These professionals have held senior strategist roles in multinational corporations, government entities, Big 4 consulting firms, and the banking industry. The company...


  • Kanpur, India Jubilant Pharmova Limited Full time

    JOB DESCRIPTION1, PURPOSE OF THE JOB: The purpose of the Head of Information Security role is to safeguard Jubilant Bhartia Group’s digital assets, operations, and reputation by establishing and leading a comprehensive cybersecurity strategy. The role ensures that information security is embedded into business processes, technology adoption, and regulatory...


  • Kanpur, Uttar Pradesh, India NTT DATA North America Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Req ID:337539NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Security Analysis Advisor to join our team in Nodia, Uttar Pradesh (IN-UP), India (IN).Role OverviewThe Cloud Security...


  • Kanpur, Uttar Pradesh, India Genesis Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    DescriptionBe part of the solution at Technip Energies and embark on a one-of-a-kind journey. You will be helping to develop cutting-edge solutions to solve real-world energy problems.We are currently seeking an Information Security Compliance Specialist, to join our Cybersecurity team based in Noida.About us:Technip Energies is a global technology and...

  • Cyber Security

    1 week ago


    Kanpur, India Sanganan IT Solutions Pvt Ltd. Full time

    Job Title:Team Lead - Security Operations Center (SoC) Location : Noida/Singapore OfficeWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME Short notice period or immediate joiners are preferred.Job Overview: As the SOC Team Lead, you will oversee the daily operations and strategic direction of a multi-tiered Security...


  • Kanpur, Uttar Pradesh, India C3iHub, IIT Kanpur Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    DescriptionWe are seeking an experienced and knowledgeable Cybersecurity Instructor to join our team. The successful candidate will be responsible for developing, coordinating, and delivering comprehensive training programs on cybersecurity topics to various audiences, including IT professionals, employees, and clients. The trainer will also stay updated...


  • Kanpur, India EC-Council Full time

    Job Title – Business Operations Manager Onsite working: NoidaEC-Council is the world’s largest cyber security technical certification body. We operate in 145 countries globally and we are the owner and developer of various world-famous cyber security programs. We are proud to have trained and certified over 400,000 information security professionals...