Cyber Security Manager
3 weeks ago
R1 is a leading provider of technology-driven solutions that help hospitals and health systems to manage their financial systems and improve patients’ experience. We are the one company that combines the deep expertise of a global workforce of revenue cycle professionals with the industry's most advanced technology platform, encompassing sophisticated analytics, Al, intelligent automation and workflow orchestration. R1 is a place where we think boldly to create opportunities for everyone to innovate and grow. A place where we partner with purpose through transparency and inclusion. We are a global community of engineers, front-line associates, healthcare operators, and RCM experts that work together to go beyond for all those we serve. Because we know that all this adds up to something more, a place where we're all together betterR1 India is proud to be recognized amongst Top 25 Best Companies to Work For 2024, by the Great Place to Work Institute. This is our second consecutive recognition on this prestigious Best Workplaces list, building on the Top 50 recognition we achieved in 2023. Our focus on employee wellbeing and inclusion and diversity is demonstrated through prestigious recognitions with R1 India being ranked amongst Best in Healthcare, Top 100 Best Companies for Women by Avtar & Seramount, and amongst Top 10 Best Workplaces in Health & Wellness. We are committed to transform the healthcare industry with our innovative revenue cycle management services. Our goal is to ‘make healthcare work better for all’ by enabling efficiency for healthcare systems, hospitals, and physician practices. With over 30,000 employees globally, we are about 16,000+ strong in India with presence in Delhi NCR, Hyderabad, Bangalore, and Chennai. Our inclusive culture ensures that every employee feels valued, respected, and appreciated with a robust set of employee benefits and engagement activities.Position: Sr. Manager – Cybersecurity (Third-Party Cyber Risk Management) Location: Noida Shift Timing:2 PM to 11 PMPosition Summary: - We are seeking an experiencedSr. Manager – Third party Cyber Risk Managementto lead our Third-party Cybersecurity risk and governance efforts for India/Philippines market of R1 RCM. TheSenior Manager – Third-Party Cyber Risk Managementis responsible for leading and executing the organization’s cybersecurity oversight of vendors, suppliers, partners, and other external entities. This role ensures that all third-party relationships align with enterprise security policies, regulatory obligations, and risk tolerance levels. The individual will own thethird-party risk management (TPRM) lifecycle— from onboarding and due diligence to continuous monitoring and remediation — and will serve as the subject matter expert on vendor security governance.Key Duties & ResponsibilitiesProgram Leadership & Governance Design, implement, and mature the Third-Party Cyber Risk Management Program aligned with frameworks such as NIST CSF, ISO 27001, HIPAA, CIS Controls, and SOC2. Develop and maintain policies, standards, and procedures governing vendor security due diligence, onboarding, monitoring, and offboarding. Establish and iterate security exhibit for contracts, enforce compliance and iterate wherever needed. Lead governance committees or working groups to discuss vendor risk posture, key issues, and remediation progress with business, procurement, and legal teams. Define and track Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs) for vendor risk and present them to leadership and risk committees.Vendor Risk Assessment & Due Diligence Oversee end-to-end third-party risk assessments including questionnaires, evidence review, and validation of security controls. Evaluate vendors against recognized security frameworks (e.g., SOC 2, ISO 27001, PCI DSS, NIST CSF, HIPAA/HITRUST). Manage inherent and residual risk scoring models to prioritize vendors based on business impact and data sensitivity . Perform or oversee onsite or virtual vendor audits for high-risk vendors and ensure timely closure of identified gaps. Work closely with Procurement and Legal to integrate cybersecurity clauses and right-to-audit provisions in vendor contracts.Continuous monitoring and remediation: Implement and managecontinuous monitoring tools and processes(e.g., SecurityScorecard, Recorded Future) to detect vendor security posture changes. Ensure thatremediation plansare documented, tracked, and closed within defined SLAs. Coordinateperiodic reassessmentsof critical and high-risk vendors to verify ongoing compliance. Manage escalation processes fornon-compliant or high-risk vendors , including executive reporting and remediation oversight. Perform internal audits against client security requirements to proactively prepare and improve organizational security postureCollaboration and stakeholder management Partner withBusiness Units, Procurement, Legal, Privacy, and IT Securityteams to ensure security risk is addressed in all third-party engagements. Collaborate withLegal, Complianceto support external audits and regulatory reviews involving third-party risk. Providesubject matter expertiseduring M&A due diligence, supplier transitions, or strategic partnerships. Delivertraining and awarenessto business and procurement teams on vendor security best practices.Reporting and metrics Maintain avendor risk registerand ensure accurate documentation of risk decisions, exceptions, and compensating controls. Prepareexecutive dashboardsand periodic reports summarizing vendor risk trends, findings, and remediation status. Supportboard-level reportingon supply chain and vendor cyber risks.Experience, Skills & Knowledge :- 7-10 years of total experience in information security, risk, or compliance roles. At least5+ years of direct experience in third-party or vendor cyber risk management. Strong understanding ofsupply chain security, cloud vendor assessments, data privacy, and regulatory compliance(HIPAA, PCI DSS, GDPR, etc.). Experience usingGRC and vendor risk management platforms(e.g., Archer, Auditboard, or similar). Proven track record ofleading remediation governanceandcross-functional collaborationacross business, IT, and legal teamsProven experience managing third-party cybersecurity risk and audit programs at scale. Excellent communication skills, with ability to interface with clients, vendors, operational, legal, and IT leadership.Key Competencies: - Certified Information Security Manager (CISM) Certified Information Systems Auditor (CISA) Certified in Risk and Information Systems Control (CRISC) HITRUST CCSFP or ISO 27001 Lead Implementer
-
Kanpur, India TECEZE Full timeBusiness Development Manager – Cyber Security ServicesCompany: TecezeFunction: Sales / New Business AcquisitionRole Type: Individual Contributor (Hunter Role)Location: OnsiteTravel: Up to 50% (domestic and/or international)Role SummaryTeceze is looking for a high-performing Business Development Manager (BDM) – Cyber Security Services to drive new revenue...
-
Cyber Security Solution Architect
3 days ago
Kanpur, India Infosec Career LLP Full timeResponsibilities - Provide critical guidance and be accountable for projects within the Cyber Security team as well as our technical stakeholders. - Research, develop, continuously improve and implement security policies, procedures, standards and processes based on compliance requirements and industry best practices. - Determine technology and process...
-
Cyber Security Engineer
3 days ago
Kanpur, India HCLTech Full timeAbout the RoleThe candidate ensures that the risk to the organization’s information posed by a variety of cyber threats is minimized. Candidate in this role will function as subject matter expertise within the discipline of continuous red teaming. Knowledge of Cybersecurity framework, IT security tools, concept and architecture with added responsibility...
-
Security Analyst
1 week ago
Kanpur, India Shiv Nadar School Full timePosition Type: Full TimeJob Type: Experienced (2-4 years)Location: Noida, Core OfficeJob Title: Cyber Security AnalystTHE POSITION :A Cybersecurity Analyst is responsible for identifying, analyzing, and mitigating security threats to an organization's computer systems, networks, and data. They work to ensure the confidentiality, integrity, and availability...
-
Security Auditor
17 hours ago
Kanpur, Uttar Pradesh, India C3iHub, IIT Kanpur Full time ₹ 64,00,000 - ₹ 1,28,00,000 per yearCompany DescriptionC3iHub, established in 2020 under the National Mission on Interdisciplinary Cyber-Physical Systems (NM-ICPS) with funding from the Department of Science and Technology, is a pioneering initiative focused on cybersecurity advancements. The organization works toward analyzing security vulnerabilities, developing tools to address them, and...
-
Security compliance officer
2 days ago
Kanpur, India SQ1 Security Full timeJob Overview: SQ1 Security is seeking an experienced Cybersecurity and Compliance Expert to lead and drive our initiatives toward achieving SOC 2, ISO 27001, GDPR, and HITRUST certifications. Key Responsibilities: • Develop and Maintain Security Frameworks: Design, implement, and maintain information security policies, procedures, and controls aligned with...
-
Cyber Security Engineer
3 weeks ago
Kanpur, India Dautom Full timeJob DescriptionSecurity Monitoring and Incident Response Monitor networks and systems for potential security breaches. Investigate and respond to security incidents and anomalies. Conduct forensic analysis to determine the root cause of breaches. System and Network Security Implement and manage firewalls, intrusion detection/prevention systems, and antivirus...
-
C3i Hub
3 weeks ago
Kanpur, India C3iHub Full timeare looking for a skilled and proactive ISMS Auditor to join our team, responsible for conducting audits and assessments of our & our clients Information Security Management System (ISMS).The ideal candidate will possess a solid understanding of ISMS frameworks and standards, such as ISO 27001 NIST, and IEC 62443, and demonstrate expertise in evaluating...
-
Application security
3 weeks ago
Kanpur, India CyberFort DigiSec Solution Private Ltd Full timeCompany Description Cyber Fort Digi Sec Solution Private Ltd is led by experienced and qualified Information Security Management professionals with over two decades of industry expertise. These professionals have held senior strategist roles in multinational corporations, government entities, Big 4 consulting firms, and the banking industry. The company...
-
Chief Information Security Officer
3 weeks ago
Kanpur, India Jubilant Pharmova Limited Full timeJOB DESCRIPTION1, PURPOSE OF THE JOB: The purpose of the Head of Information Security role is to safeguard Jubilant Bhartia Group’s digital assets, operations, and reputation by establishing and leading a comprehensive cybersecurity strategy. The role ensures that information security is embedded into business processes, technology adoption, and regulatory...