Assoc. Dir. DDIT ISC SecOps VulnSvcs

3 weeks ago


Hyderabad, Telangana, India myGwork Full time

This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary The role is part of DDIT ISC Security Operations in Vulnerability Services team. The person will focus on reducing risk exposure from security vulnerabilities with major focus on high risk, theme based and 0-day vulnerabilities emergency response and remediation. Flexibility with work schedule is critical. Analyze ongoing security vulnerabilities risk posture, perform technical vulnerability/mitigations tests, collaborate with finding owners/support teams for managing resolutions, act as SME to assess discovered vulnerabilities and provide pragmatic solutions and flexibly support emergency vulnerability remediations. Collaboration with cross functional teams for threat intel, incident response, security architecture, remediation and security operations are key. -Oversees security operations service line, technology governance and external/internal interfaces in accordance with service operations and management processes. About the Role Act as a Technical Security SME and point of contact for responding to ongoing high-risk vulnerability exposure Continuously monitor and prioritize security vulnerabilities, missing controls, mitigations and defenses through risk analysis to understand potential impact and translate vulnerability severity as security risk. Identify problem areas, root causes and solution to prevent/reduce vulnerabilities. Support vulnerability assessments and penetration testing of infrastructure, applications, and services where needed to verify false positives or remediations. Ensure that vulnerability remediation plans are delivered to the agreed SLA, engage application managers and asset owners to carry out corrective actions. Identify potential improvement areas for vulnerability response and shared learned lessons with teams and stakeholders. Take accountability to ensure adherence with Security and Compliance policies and procedures. Stay up to date with the latest security threats and vulnerabilities, proactively recommending mitigation strategies. Develop and maintain documentation of related process and best practices. Implement security policies, procedures, and standards to ensure the confidentiality, integrity, and availability of cloud resources from technical vulnerabilities. Provide security awareness and training to teams on security practices and vulnerability related processes. Be flexible with work schedules (including support outside standard business days/hours) to coordinate emergency response for high-risk vulnerability remediation with relevant stakeholders. Drive identification of root causes and prevention of recurrences. Collaborate with various stakeholders from security operations, architecture, cyber, SOC, and application teams to achieve technical risk reduction goals. Defines remediation activities for security assessment gaps as they pertain to IT Security Management Key performance indicators: Stable, compliant, secure, and cost-effective operations measured by Availability, Performance, Capacity, Security Metrics -Responsiveness and Recovery Speed of critical incidents/issues in business -Learning Agility, ability to evaluate and launch new services and capabilities -Productivity gains and defect reduction through continuous improvement -Automation led Security Operations Services -Integration of Applications and Infrastructure into Centralized Security Platforms Flexibility to support vulnerability response remediation with sense of urgency. Technical expertise proven in identifying, reviewing, and improving vulnerabilities. Ensure Application/project satisfied with the risk, security, and remediation advisory. Reducing the number of vulnerabilities by adapting remediation wherever possible Cross skill collaboration and feedback from the various stake holders Minimum Requirements: Work Experience: 8+ years of overall working experience in information security preferably in Application Security and Vulnerability management domain. At least 3+ years in handling security vulnerability response and remediation or SOC, coordinating with relevant stakeholders, and implementing corrective/preventive actions. Experience performing passive discovery and active testing of network or application vulnerabilities for validating external threat landscape to Novartis assets. Risk. Accountability. Strong cross functional leadership. Relationship Management. Strategy Development. Operations Management and Execution. Collaborating across boundaries. Project Management. Interactions with senior management. People Leadership. Vulnerability management, response and technical assessments Threat research and correlation with vulnerabilities Skills: Strong security knowledge top security vulnerabilities, threat correlation, host/NW controls, mitigations, leading vulnerability scoring standards, such as CVSS, and ability to translate vulnerability severity as security risk. Understanding of relevant industry technology environments and their in-depth information including operating system, protocols, services, applications, configurations, and firmware to review and consult on vulnerabilities. Experience with security vulnerability detection tools for network, applications, web services, databases, containers, code security, cloud services, NW devices, etc. Hands-on experience monitoring threat intel for high-risk vulnerabilities, finding ownerships, handling shadow IT asset scenarios, sensitizing teams for security remediation, performing tests for technical vulnerability confirmation, etc. Knowledge of security patching, technical debt, SW patching, and relevant domains. Escalation. Information Security Audit. Information Security Risk Management. Quality Management. Root Cause Analysis (Rca). Sec Ops (Security Operations). Vendor Management. Persuasive communication skills Languages : English. Why Novartis? Our purpose is to reimagine medicine to improve and extend people's lives and our vision is to become the most valued and trusted medicines company in the world. How can we achieve this? With our people. It is our associates that drive us each day to reach our ambitions. Be a part of this mission and join us Learn more here: https://www.novartis.com/about/strategy/people-and-culture You'll receive: You can find everything you need to know about our benefits and rewards in the Novartis Life Handbook. https://www.novartis.com/careers/benefits-rewards Commitment to Diversity and Inclusion: Novartis is committed to building an outstanding, inclusive work environment and diverse teams' representative of the patients and communities we serve. Join our Novartis Network: If this role is not suitable to your experience or career goals but you wish to stay connected to hear more about Novartis and our career opportunities, join the Novartis Network here: https://talentnetwork.novartis.com/network Why Novartis: Helping people with disease and their families takes more than innovative science. It takes a community of smart, passionate people like you. Collaborating, supporting and inspiring each other. Combining to achieve breakthroughs that change patients' lives. Ready to create a brighter future together? https://www.novartis.com/about/strategy/people-and-culture Join our Novartis Network: Not the right Novartis role for you? Sign up to our talent community to stay connected and learn about suitable career opportunities as soon as they come up: https://talentnetwork.novartis.com/network Benefits and Rewards: Read our handbook to learn about all the ways we'll help you thrive personally and professionally: https://www.novartis.com/careers/benefits-rewards #LI-DNI



  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary The role is part of Security Operations in Vulnerability Services team. The person will focus on reducing risk exposure from security vulnerabilities with major focus...


  • Hyderabad, Telangana, India Sandoz Full time

    Job DescriptionRole: Assoc. Dir. DDIT Dev. GCO Tech. Design (Technical Business Analyst)Senior Expert for delivering projects and/or running operations in the specific business sub-function.Collaborate with Business Stakeholders and DDIT Strategic Business Partners for analyzing demand, proposing/assessing solutions and executing projectsLead the operations...


  • Hyderabad, Telangana, India Sandoz Full time

    Lead Technical Business Analyst RoleWe are seeking a highly skilled and experienced Assoc. Dir. DDIT Dev. GCO Tech. Design to lead our technical business analysis function in Hyderabad.The successful candidate will have a strong background in technical business analysis and leadership, with experience in driving innovation and managing complex projects.Key...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary Role Purpose: • Senior Expert for delivering projects and/or running operations in the specific business sub-function. • Collaborate with Business Stakeholders...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary -Focused management of security operations and or technology governance and external/internal interfaces in accordance with service operations and management...


  • Hyderabad, Telangana, India Novartis Full time

    Summary -Expert and Responsibility for a Solution Design and Architecture of Technology Assets Products orb Platform Architecture and Governance of Technology PlatformsJob Title - Assoc Dir DDIT APD ERP PlatformTechLocation - HyderabadActively contribute to professional and reliable technology delivery for business systems platforms and processes for...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary -Focused management of security operations and or technology...


  • Hyderabad, Telangana, India Novartis India Full time

    Job DescriptionSummary- Focused management of security operations and or technology governance and external/internal interfaces in accordance with service operations and management processes.About The RoleJob Title - Sr. Spec. DDIT ISC SecOps IAMLocation - Hyderabad- Improves the operational stability, deployment and lifecycle of the solutions falling under...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary -Expert and Responsibility for:a) Solution Design and Architecture of Technology Assets / Products orb) Platform Architecture and Governance of Technology Platforms...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary -Expert and Responsibility for:a) Solution Design and...


  • Hyderabad, Telangana, India Sandoz Full time

    Job DescriptionRole- Assoc. Dir. DDIT US&I Solution Delivery Analytical ProductsThe ideal candidate will align innovation efforts with business and IT strategies, focusing on compliance and value creation. Responsibilities include overseeing end-to-end delivery of analytics services, managing resource planning, and fostering continuous improvement within the...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary Responsible for designing and developing a cutting-edge AI and Generative AI infrastructure on AWS platform, tailored for pharmaceutical business use-cases. The...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary Responsible for designing and developing a cutting-edge AI and...


  • Hyderabad, Telangana, India Novartis Full time

    Summary -Supports the implementation of the information security governance and strategy per the information management framework through business partneringJob title - Sr Spec DDIT ISC IESLocation - HyderabadExecutes risk and compliance processes and oversight operational tasks and or business partnering with sub-functions Effective management of...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary -Focused management of security operations and or technology governance and external/internal interfaces in accordance with service operations and management...


  • Hyderabad, Telangana, India Novartis India Full time

    Job DescriptionSummary- Focused management of security operations and or technology governance and external/internal interfaces in accordance with service operations and management processes.About The RoleSnr. Spec. DDIT ISC CyberTools (Automation) (376203BR)Our Information Security & Compliance (ISC) group are looking for a Senior Specialist - Cyber Tools...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary • Hold overall responsibility for the development and delivery of the Architecture and Integration scope for one or more Business and Technology domains within...


  • Hyderabad, Telangana, India Novartis India Full time

    Job DescriptionSummary- Hold overall responsibility for the development and delivery of the Architecture and Integration scope for one or more Business and Technology domains within Development, while closely collaborating with the Enterprise Architecture team.- Drive and define technology standards in close collaboration with the Enterprise Architecture and...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary • Hold overall responsibility for the development and delivery...


  • Hyderabad, Telangana, India myGwork Full time

    This job is with Novartis, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Summary -Supports the implementation of the information security, governance and strategy per the information management framework through business partnering. About the Role...