Senior Information Security Technical Program Manager: Technical Security Audit and Risk Management

3 weeks ago


bangalore, India Unity Full time

Role Description

The opportunity

Unity understands the significance of a solid Security Program. The Security Program is key to maintaining customer confidence in our products and is the pathway to a well-tuned, functional Information Security Management System, Compliance and Program. This will be a chance to work on real security problems in a fast-paced high growth business. The person in this role will be at the helm of critical security risk and compliance projects with major impact across the company. You will help Unity to obtain and maintain applicable security certifications. You will have input into the overall security strategy to guide our security policy and architecture in addition to driving security awareness and compliance across the business units.

What you'll be doing

Driving Technical audits and implementation of audit and control framework to monitor production environments for potential system integrity, cyber-risk exposure and control weaknesses Perform security gap analysis and help define specific/technical remediation measures. End-to-end project and program management : Manage audit and/or remediation projects. Produce high-quality deliverables, project material and audit documentation that are suitable for engineering teams, external stakeholders and auditors. Guide and work with engineering and DevOps as they execute on risk remediation and novel solutions Work day-to-day with technical Security engineers and collaborate with them for driving project progress and resolving blockers Be responsible for reporting on these projects to senior leadership. Effectively communicate not only with peers, engineers , devops, business development stakeholders, but also with VP and execs. Operate and lead initiatives within a distributed team and collaborate with colleagues both local and remote, cross functionally and within your department. Stay updated on the latest industry trends and technologies to keep our services cutting-edge.

What we're looking for

Experience driving compliance or audit engagements (eg SOX or SOC 2 or PCI or ISO 27001). Experience conducting risk assessment on products and applications (in-house and/or third-party) to inculcate better security using NIST or Similar compliance frameworks.. Experience working on cloud service providers such as AWS/GCP/AZURE, and knowledge of cloud services and infrastructure Experience in Vulnerability management ( Qualys/ORCA etc), Security Operations ( Logging and monitoring, SIEM and SOAR tools ) and Infrastructure Security. Familiarty with SAST/ DAST tools Exposure to distributed systems development and/or an understanding of container and orchestration technologies such as Docker, Kubernetes or Nomad. Strong understanding of software development best practices and design patterns, a security and quality first mentality and approach (Secure Software development Lifecycle SSDLC) Experience with one or more of the following: threat modeling, security reviews, vulnerability management, penetration testing, secure software development Excellent project management skills and communication and collaboration abilities, adept at working with teams across various disciplines. Experience with process mapping (preferably on MS Visio / Lucidchart or equivalent). Excellent skills with excel and powerpoint. Excellent communication skills and experience collaborating with cross functional teams, driving for alignment on key decisions, effective communication with project participants and leadership

You might also have

Professional certifications in security, privacy risk management, and audit areas are a plus, such as PMP, CISA, CISM, CISSP, or CIPT. Experience with Unity, Unreal, or other game engines Experience working within an Agile environment (SCRUM/Kanban/XP) and leading work within teams

Additional information

Relocation support is not available for this position. International relocation support is not available for this position. Work visa/immigration sponsorship is not available for this position.

  • bangalore, India Rubrik Full time

    Job Summary Information Security - Who We Are The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and...


  • bangalore, India Morae Full time

    POSITION OVERVIEWThis Information Security GRC Expert – Associate Manager contributes to Morae success byimplementing, and maintaining people, process and technology-oriented policies, procedures, andcontrols to ensure ongoing security and compliance of Morae’s innovative technology solutions and information assets.As a part of highly skilled...


  • bangalore, India Alliance University Full time

    Job DescriptionAs the Information Security Manager, you will be responsible for developing, implementing, and managing the organization's information security program. You will work closely with internal stakeholders to identify security risks, establish policies and procedures, and implement controls to mitigate potential threats. Additionally, you will...


  • bangalore, India Alliance University Full time

    Job DescriptionAs the Information Security Manager, you will be responsible for developing, implementing, and managing the organization's information security program. You will work closely with internal stakeholders to identify security risks, establish policies and procedures, and implement controls to mitigate potential threats. Additionally, you will...


  • Bangalore, India NetSysCon Full time

    We are looking for a Director Information Security for our client which is a VC funded Fintech PlatformJob Profile : - Ensure effective functioning of the Information Security function - managing policies & procedures, hardening of infrastructure and SDLC processes- Develop and maintain an information security strategy and roadmap aligned with organizational...


  • Bangalore, India NetSysCon Full time

    We are looking for a Director Information Security for our client which is a VC funded Fintech PlatformJob Profile : - Ensure effective functioning of the Information Security function - managing policies & procedures, hardening of infrastructure and SDLC processes- Develop and maintain an information security strategy and roadmap aligned with organizational...


  • Bangalore, Karnataka, India NetSysCon Full time

    We are looking for a Director Information Security for our client which is a VC funded Fintech PlatformJob Profile :- Ensure effective functioning of the Information Security function - managing policies & procedures, hardening of infrastructure and SDLC processes- Develop and maintain an information security strategy and roadmap aligned with organizational...


  • Bangalore, Karnataka, India NetSysCon Full time

    We are looking for a Director Information Security for our client which is a VC funded Fintech PlatformJob Profile :- Ensure effective functioning of the Information Security function - managing policies & procedures, hardening of infrastructure and SDLC processes- Develop and maintain an information security strategy and roadmap aligned with organizational...


  • Bangalore, India Yo HR Consultancy Full time

    Role : Director - Information Security Experience : 5-8 yearsLocation : BangaloreMust have : - Experience working in a fast-paced B2B startup environment with an engineering team that has seen scale.- Prior experience in running or managing a SOC- Prior experience with global compliances across US, EU and UAE- ISO 27001- PCI DSSJob Description : Skills...


  • Bangalore, India Yo HR Consultancy Full time

    Role : Director - Information Security Experience : 5-8 yearsLocation : BangaloreMust have : - Experience working in a fast-paced B2B startup environment with an engineering team that has seen scale.- Prior experience in running or managing a SOC- Prior experience with global compliances across US, EU and UAE- ISO 27001- PCI DSSJob Description : Skills...


  • Bangalore, Karnataka, India Yo HR Consultancy Full time

    Role : Director - Information SecurityExperience : 5-8 yearsLocation : BangaloreMust have : - Experience working in a fast-paced B2B startup environment with an engineering team that has seen scale.- Prior experience in running or managing a SOC- Prior experience with global compliances across US, EU and UAE- ISO 27001- PCI DSSJob Description :Skills :- A...


  • Bangalore, India Skill Connect HR Consulting Full time

    Director - Information SecurityRequired Experience : 5 - 8 YearsSalary Range : 25 LPA - 40 LPALocation : Bangalore, Karnataka, IndiaIndustries & Domains : Enterprise/ SaaSSkills & Expertise : - ISO 27001- PCI DSSPreferred Certifications :- CISSP- CCSP- CISMMust to have :- Experience working in a fast-paced B2B startup environment with an engineering team...


  • Bangalore, Karnataka, India Yo HR Consultancy Full time

    Role : Director - Information SecurityExperience : 5-8 yearsLocation : BangaloreMust have : - Experience working in a fast-paced B2B startup environment with an engineering team that has seen scale.- Prior experience in running or managing a SOC- Prior experience with global compliances across US, EU and UAE- ISO 27001- PCI DSSJob Description :Skills :- A...


  • Bangalore, Karnataka, India Skill Connect HR Consulting Full time

    Director - Information SecurityRequired Experience : 5 - 8 YearsSalary Range : 25 LPA - 40 LPALocation : Bangalore, Karnataka, IndiaIndustries & Domains : Enterprise/ SaaSSkills & Expertise : - ISO 27001- PCI DSSPreferred Certifications :- CISSP- CCSP- CISMMust to have :- Experience working in a fast-paced B2B startup environment with an engineering team...


  • Bangalore, India NetSysCon Full time

    We are looking for a Director Information Security for our client which is a VC funded Fintech PlatformJob Profile : Ensure effective functioning of the Information Security function managing policies & procedures, hardening of infrastructure and SDLC processes Develop and maintain an information security strategy and roadmap aligned with organizational...


  • bangalore, India Take-Two Interactive Software Full time

    About the Position Job Title:  Information Security Risk Analyst Who We Are: Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. For more than 25 years, our development teams have created some of the most critically acclaimed and commercially...


  • bangalore, India Take-Two Interactive Software Full time

    About the Position Job Title:  Information Security Risk Analyst Who We Are: Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. For more than 25 years, our development teams have created some of the most critically acclaimed and commercially...


  • bangalore, India Take-Two Interactive Software Full time

    About the Position Job Title:  Information Security Risk Analyst Who We Are: Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. For more than 25 years, our development teams have created some of the most critically acclaimed and commercially...


  • bangalore, India Take-Two Interactive Software Full time

    About the Position Job Title:  Information Security Risk Analyst Who We Are: Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. For more than 25 years, our development teams have created some of the most critically acclaimed and commercially...


  • bangalore, India Alliance University Full time

    Job Description As the Information Security Manager, you will be responsible for developing, implementing, and managing the organization's information security program. You will work closely with internal stakeholders to identify security risks, establish policies and procedures, and implement controls to mitigate potential threats. Additionally, you will...