Consultant -Public Cloud Security Risk Officer - OSMPermanent contractBangalore, India

1 month ago


Bengaluru, India Société Générale Assurances Full time
Consultant -Public Cloud Security Risk Officer - OSMPermanent contract|Bangalore|RisksConsultant -Public Cloud Security Risk Officer - OSM

Bangalore, IndiaPermanent contractRisks

Responsibilities

Job Summary:We are seeking a Public Cloud Operations and Security Manager to join our team. In this role, you will be responsiblefor implementing and overseeing controls related to Public Cloud. You will ensure compliance with Group policiesand security standards, perform security assessments, contribute to security audits, and communicate effectively withvarious stakeholders. Additionally, you will play a vital role in developing and maintaining the IT skills of our employees,participating in ISS events, and actively contributing to the overall IT function and security community within ourorganization.Core Responsibilities:1. Control and report on security by design principle of applications hosted on the public cloud (Azure and AWS)2. Control and report on the Landing Zone security as described and the security controls for example NIST cloud controls3. Control and report (with the support public Cloud CSRO lead) on the security of CSP service on the Group Catalog.4. Handle security alerts (Skynet) or incident.Manage IT risk and SSI compliance:Frame and plan:· Contribute to the drafting of policies/ Group standards on the ISS in connection with its functional scope; if necessary,define and maintain local procedures / good practices to meet the specificities of his department.· Participate in the definition of the ISS strategy and roadmap for its functional scope, in collaboration with the GTS CISOand the ISS sector.· Define and validate roadmaps for the implementation of IT risk treatment plans (application of standards, implementationof controls, etc.), ensuring that funding and commitment are secured from the teams involved.· Contribute to the updating of permanent control policies (update of the library of normative controls...)Implement:· Ensure the management of security projects initiated directly by and for its department of attachment.· Support the deployment of security projects initiated by the Group and/or GTS within its functional scope and participatein the governance of these projects.· In general, as a security expert, provide an advisory role vis-à-vis the projects deployed within his department ofattachment· Evaluate and manage the treatment of IT risks in all new projects or infrastructures within its scope (integration of securityin projects, ISORP processes).· Enforce Group policies / standards and/or procedures / good security practices within its department.· Validate and monitor security exemptions (exceptions, RAF...).· Lead the resolution of security incidents and contributeto post-mortem investigations of security incidents.· Lead the remediation of critical vulnerabilities in coordination with technical teams, SOC and CERT.· Maintain the IT security risk assessment of products / services / infrastructures of its functional scope (update ASA /ARA / USF ...) and associated repositories;· Monitor and coordinate (project not led by the OSM) the treatment of security risks of products / services / infrastructuresof its functional scope.· Monitor and coordinate the timely closure of audit recommendations (internal / regulators), if necessary, intervene insupport of operational teams.Communicate:· Communicate regularly on the IT risks of its scope and on the mitigation plan undertaken.· Communicate on the status of security audits (internal audit / regulators) as well as plans for handling recommendations.· Communicate on its activities (definition of relevant KPIs / KRI) and on points of attention or security alerts.· In the event of detection of a security anomaly on its functional perimeter, exercise as soon as possible a duty of alert visà-vis the CISO GTS and his hierarchy.· Disseminate within the department of attachment all changes to the policies / Group standards or decision of the ISSsector in connection with the activities of its functional scope.

Profile required

1. Bachelor's degree in computer science, information technology, or a related field. Relevant certifications (, CISSP,CISM, CRISC) are preferred.2. Proven experience in information system security management, risk assessment, and security operations.3. Strong knowledge of security controls, regulatory requirements, and industry best practices.4. Someone who understand public cloud model, strategy and public cloud risks surface5. Familiarity with NIST standards or equivalent and PEN test tools6. Excellent communication skills, including the ability to communicate complex security concepts to both technical andnon-technical stakeholders.7. Experience in managing team of Security Analyst/Leads8. Proactive approach to identifying and mitigating security risks.9. Ability to work collaboratively in a team environment and contribute to a positive work culture.10. Strong organizational and project management skills, with the ability to prioritize and multitask effectively.11. Up-to-date knowledge of emerging security threats and trends.12. Experience in financial services or a regulated industry is a plus

Why join us

We are committed to creating a diverse environment and are proud to be an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status”.

  • Bengaluru, India Société Générale Assurances Full time

    Consultant -Public Cloud Security Risk Officer - OSM Permanent contract|Bangalore|Risks Consultant -Public Cloud Security Risk Officer - OSM Bangalore, India Permanent contract Risks Responsibilities Job Summary:  We are seeking a Public Cloud Operations and Security Manager to join our team. In this role, you will be...


  • Bengaluru, Karnataka, India PeopleLogic Business Solutions Full time

    Role/Job Description *** *** 2. Control and report on the Landing Zone security as described and the security controls for example NIST cloud controls** *** 3. Control and report (with the support public Cloud CSRO lead) on the security of CSP service on the Group Catalog.** *** 4. Handle security alerts (Skynet) or incident. *** ** Manage IT risk and SSI...


  • Bengaluru, India Société Générale Assurances Full time

    Cyber Security Senior Analyst- CSRO Permanent contract|Bangalore|IT (Information Technology) Cyber Security Senior Analyst- CSRO Bangalore, India Permanent contract IT (Information Technology) Responsibilities We are seeking a cloud security expert for Cloud Security and Risk Officer (CSRO) role who can contribute towards the...

  • Cyber Security Lead

    2 weeks ago


    Bengaluru, India Société Générale Assurances Full time

    Cyber Security Lead - CSRO Permanent contract|Bangalore|IT (Information Technology) Cyber Security Lead - CSRO Bangalore, India Permanent contract IT (Information Technology) Responsibilities We are seeking a cloud security expert for Cloud Security and Risk Officer (CSRO) role who can contribute towards the strategic direction...


  • Bengaluru, India Société Générale Assurances Full time

    Cyber Security Senior Analyst- CSROPermanent contract|Bangalore|IT (Information Technology)Cyber Security Senior Analyst- CSROBangalore, IndiaPermanent contractIT (Information Technology)ResponsibilitiesWe are seeking a cloud security expert for Cloud Security and Risk Officer (CSRO) role who can contribute towards the strategic direction of public cloud...

  • Cyber Security Lead

    1 week ago


    Bengaluru, India Société Générale Assurances Full time

    Cyber Security Lead - CSROPermanent contract|Bangalore|IT (Information Technology)Cyber Security Lead - CSROBangalore, IndiaPermanent contractIT (Information Technology)ResponsibilitiesWe are seeking a cloud security expert for Cloud Security and Risk Officer (CSRO) role who can contribute towards the strategic direction of public cloud native services usage...


  • Bengaluru, India Société Générale Assurances Full time

    Cloud Architect Permanent contract|Bangalore|IT (Information Technology) Cloud Architect Bangalore, India Permanent contract IT (Information Technology) Responsibilities Job Title: Cloud Architect Role/Job Summary: Technical/Cloud architect in charge of providing technical solutions designs in line with platform standards to...

  • Ho Cyber Security

    4 weeks ago


    Bengaluru, India Airbus Full time

    SUMMARY A vacancy for the Head of IM Cyber Security India (M/F) has arisen within Airbus in India. He/she will join the local IM management team with a strong functional attachment to the central IM Cyber Security Team in Europe - DS Department The Airbus India office is currently recruiting employees to strengthen the company cybersecurity infrastructure...


  • Bengaluru, India Société Générale Assurances Full time

    Cyber Security Consultant Permanent contract|Bangalore|Innovation / Project / Organization Cyber Security Consultant Bangalore, India Permanent contract Innovation / Project / Organization Responsibilities As a cyber security consultant, you will work in a multinational environment with other top security experts to deliver...


  • Bengaluru, Karnataka, India SAP Full time

    **We help the world run better** **What you’ll do** The SAP Government Security unit is looking for a Senior Security Officer who will manage security projects and contribute to the expansion of capabilities that address the unique requirements of security-sensitive organizations across public sector and regulated industry in India. You will build strong...


  • Bengaluru, India Société Générale Assurances Full time

    Information & Cyber Security Lead Expert Permanent contract|Bangalore|Risks Information & Cyber Security Lead Expert Bangalore, India Permanent contract Risks Responsibilities · Support Risk Management and Supervision team [RMS] in charge of assessing the risk profile and the effectiveness of the information security risk systems...

  • Public Cloud

    4 weeks ago


    Bengaluru, India Bosch Group Full time

    Company Description Robert Bosch Engineering and Business Solutions Private Limited is a 100% owned subsidiary of Robert Bosch GmbH, one of the world's leading global supplier of technology and services, offering end-to-end Engineering, IT and Business Solutions. With over 18,000 associates, it’s the largest software development centre of Bosch, outside...


  • Bengaluru, India Société Générale Assurances Full time

    Lead Software Engineer - Devops , Public Cloud (AWS/Azure) Permanent contract|Bangalore|IT (Information Technology) Lead Software Engineer - Devops , Public Cloud (AWS/Azure) Bangalore, India Permanent contract IT (Information Technology) Responsibilities * Test, build, and maintain landing zone environment in AWS based on security...


  • Bengaluru, India Global Pharma Tek Full time

    Experience: Min yrs relevant yrs experience with ExcellentSkills RequiredStrong understanding of cloud technologies and platforms: Azure or AWS or both(preferred).Understanding and hands-on experience of cloud native service such asAWS EC, S, CloudFront, VPC, Direct Connect, DynamoDB etc and for Azure VNET, Storage Accounts, Application Gateway, WebApp,...


  • Bengaluru, India Société Générale Assurances Full time

    Cyber Security ConsultantPermanent contract|Bangalore|Innovation / Project / OrganizationCyber Security ConsultantBangalore, IndiaPermanent contractInnovation / Project / OrganizationResponsibilitiesAs a cyber security consultant, you will work in a multinational environment with other top security experts to deliver advanced penetration testing projects,...


  • Bengaluru, India Global Pharma Tek Full time

    Experience: Min yrs relevant yrs experience with Excellent Skills Required Strong understanding of cloud technologies and platforms: Azure or AWS or both(preferred). Understanding and hands-on experience of cloud native service such as AWS EC, S, CloudFront, VPC, Direct Connect, DynamoDB etc and for Azure VNET, Storage Accounts, Application...


  • Bengaluru, India Tredence Inc. Full time

    About Tredence Tredence is a data science and AI engineering company focused on solving the last-mile problem in analytics. We define ‘last mile’ as the gap between insight creation and value realization. Tredence is now 2000+ employees strong with offices in Foster City, Chicago, London, Toronto, and Bangalore, Chennai, Pune, Kolkata, Gurgaon serving...


  • Bengaluru, India Tredence Inc. Full time

    About Tredence Tredence is a data science and AI engineering company focused on solving the last-mile problem in analytics. We define ‘last mile’ as the gap between insight creation and value realization. Tredence is now 2000+ employees strong with offices in Foster City, Chicago, London, Toronto, and Bangalore, Chennai, Pune, Kolkata, Gurgaon serving...

  • Security Consultant

    6 days ago


    Bengaluru, India NTT DATA Full time

    Title: Security Consultant- GRC Location: Bangalore/ Mumbai/ Delhi-NCR Preferred Job Description: Manages security consultants responsible for the customization, development and implementation of cybersecurity solutions for clients’ systems, applications and product designs. Designs and implements protocol for client installations, including security...


  • Bengaluru, India ABB Full time

    **EL Information Security - Risk and Consultancy**: **Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future. At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender, LGBTQ+, abilities, ethnicity and...