Cyber Security Leadership Role

5 days ago


Hyderabad, India Evernorth Full time
About Evernorth

Evernorth Health Services, a division of The Cigna Group (NYSE: CI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people.

Job Title: Cyber Security DirectorPosition Summary:

The Cigna Information Protection, Head of Security is a key leadership business-facing position with primary focus on acting as a conduit between the Cigna Information Protection organizational goals and business line interests. As the primary delegate for the business line Chief Information Security Officer, you will oversee the development and execution of the Cyber/Information Security Strategy at a granular level.

You will be strategically responsible for delivering the last mile execution of all Cigna Information Protection global Shared Services, developing and measuring capabilities while running subsequent risk mitigation Cyber Information Security Management programs.

As the local evangelist and expert, you will focus on local stakeholder business management and also wider stakeholders such as regulators, clients, and external parties.

Key Responsibilities:
  • Manage all external local client and regulatory engagements, including fielding queries, regulatory & compliance submissions in conjunction with matrix Cigna Information Protection Shared Service Partners and governance stakeholders, legal, compliance, and data privacy.
  • Lead localized Controls Assurance activities, define and track effectively control testing and remediation risks for local business line. Coordinate Shared Service benchmarking exercises (NIST etc.) using Cigna Information Protection standards.
  • Leverage the Enterprise Risk Management framework, perform focused localized risk assessments of existing or new services and technologies in line with policies and standards, and manage the risk exceptions process. Develop residual risk registers and integrate into Shared Service Integrated Risk Management Framework.
  • Coordinate the local delivery of global Cyber & Privacy portfolio risk mitigation projects and programs into business line/region. Conversely, feed the portfolio by registering local business line residual risk outputs driving controls mitigation activity.
  • Evolve Cigna Information Protection security policies and processes, aligning to local business requirements and operate the policy exceptions management process. Coordinate security education & awareness initiatives in line with policy framework, integrate with the Shared Service overall thematic awareness program.
  • Partner with business line/ regional CIOs and technology stakeholders to educate and integrate risk management activities in first and second line of defense governance.
  • Coordinate with Shared Services to provide localized risk and vulnerability management information and reporting and embed Cyber/Information Security into business operational governance forums enabling data-driven decision making.
  • Develop organizational-wide Cyber/Information Security risk views by collaborating with internal control groups e.g. Audit, Compliance, Enterprise Risk Management, Legal, and Privacy.
  • Liaise across Legal, Privacy, and Sourcing teams to manage 3rd-party risks. Conduct 3rd-Party Assessments, including evaluations, contract reviews, and onsite visits where appropriate.
  • Embed secure development practices, working with local business and technology teams to implement enterprise tooling and processes to ensure secure code implementation. Embed risk management practices into Agile/DevSecOps pipelines to minimize production vulnerabilities.
  • Run localized Infrastructure, Application, and Cloud evaluations/assessments against agreed security patterns and pre-production scanning processes to reduce production vulnerabilities. Integrate residual risk outputs in local and Shared Services governance.
  • Champion local incident responses & handling processes, provide business context and local expertise in incident scenarios. Coordinate with Shared Service owner to manage local incident management post-mortem activities and track residual findings to resolution. Maintain and manage local regulatory incident response reporting requirements. Engage with Shared Services to carry out forensic security investigations work integrating processes with business and legal/compliance stakeholders.
  • Partner with Global Architecture Shared Services organizations to implement standard security solutions and capabilities, providing expert change solution design in local business line. Conversely, feed global Architecture roadmaps by capturing local requirements.
  • Support business line mergers, acquisitions, and divestiture activities in line with the Shared Services playbook designed to reduce change risk.
  • Lead local business Cigna Information Protection teams as well as matrix manage Shared Services peers. Ensure in-person employee engagement by motivating team, running personalized development programs, and creating an empowering culture aligned with Cigna values.
What You'll Need:Experience:
  • Minimum 18-21 years of Information Security/Cyber or related risk management experience.
Skills:
  • Implementation-level knowledge of information security standards and frameworks (e.g. ISO/IEC 27001/27002, PCI-DSS, NIST Cybersecurity Framework, etc.) and attestation reports (e.g. SOC 1/2). Awareness of Governance, Risk, and Compliance and workflow management tools, e.g. Onspring, ServiceNow VR, Brinqa, etc.
Salary Estimate:

$200,000 - $250,000 per year

About Evernorth Health Services

  • Hyderabad, Telangana, India Cyber Mind Sets Full time

    At Cyber Mind Sets, a leading cyber security training & awareness organization in Hyderabad, we are seeking a highly skilled Sales Business Development professional to join our team.As a key member of our sales team, you will be responsible for driving business growth, expanding our client base, and increasing revenue through effective lead generation,...


  • Hyderabad, Telangana, India Evernorth Health Services Full time

    About Evernorth Health ServicesEvernorth Health Services, a division of The Cigna Group, is a leading provider of pharmacy, care, and benefits solutions. Our mission is to improve health and increase vitality for millions of people through innovative solutions.Cyber Security Associate Principal Job SummaryWe are seeking an experienced Cyber Security...


  • Hyderabad, Telangana, India Cyber Intellectus Full time

    **About Cyber Intellectus**We are the architects of digital resilience, crafting bespoke cybersecurity solutions that transcend conventional cybersecurity paradigms. With over 11+ years at the forefront of cybersecurity, we empower businesses to navigate the digital landscape with confidence.Our mission is to deliver proactive, cutting-edge solutions...


  • Hyderabad, Telangana, India MaxisIT Inc. Full time

    We have an immediate opening for a highly skilled Cyber Security Expert in Hyderabad.Job Type: Full-timeEstimated Salary: $120,000 - $180,000 per annumCompany Overview:MaxisIT Inc. is a leading technology company that provides innovative solutions to businesses worldwide.Job Description:This is an exciting opportunity for a seasoned Cyber Security Expert to...

  • Cyber Investigator

    2 months ago


    Banjara Hills, Hyderabad, Telangana, India SAI SECURITY SERVICES Full time

    **Digital Forensics**: Analyze and recover data from digital devices to investigate cyber crimes. **Web and Social Media**: Monitor and analyze online activities to detect suspicious behavior and gather intelligence. **Network Intelligence**: Assess network vulnerabilities and implement security measures to protect against cyber threats. **Forensic...


  • Hyderabad, India Evernorth Full time

    Job Title:Cyber Security Senior Advisor RoleAbout Evernorth:Evernorth Health Services is a leading provider of pharmacy, care, and benefits solutions. Our mission is to improve health and increase vitality for millions of people.Job Description:We are seeking an experienced IT Information Protection Professional to join our team as a Cyber Security Senior...


  • Hyderabad, Telangana, India ENH iSecure Pvt Ltd Full time

    About UsENH iSecure Pvt Ltd is a leading provider of cyber security solutions. We are looking for a highly skilled Senior Cyber Security Consultant to join our team.Job DescriptionThe Senior Cyber Security Consultant will be responsible for leading multiple implementation teams and managing Centre of Excellence (COE) activities related to CyberArk. The role...


  • hyderabad, India Cyber Mind Sets Full time

    Job descriptionCompany Description -:Cyber Mind Sets is a leading cyber security training & awareness organization located in Hyderabad. We are the only institute in India who are providing real time training in cyber space. We are specialized in Corporate training in Information security domain including Offensive security (ethical hacking, bug bounty...


  • Kukatpalli, Hyderabad, Telangana, India KLEAP Institute of Information Security Full time

    **Position**: Cybersecurity Technical Trainer (2 Openings) **Location**: Hyderabad **Responsibilities**: - Deliver high-quality virtual and in-person technical training in Cyber Security and Ethical Hacking. - Develop and update course materials to ensure they reflect current industry practices and trends. - Retain an up-to-date knowledge of current...


  • hyderabad, India Cyber Intellectus Full time

    Company DescriptionWith a vision to create a safer digital landscape , CyberIntellectus was founded to redefine the cybersecurity strategies orchestrated to meet the nuanced challenges of modern cybersecurity landscape. We are the architects of digital resilience, crafting bespoke cybersecurity solutions that transcend conventional cybersecurity...


  • Hyderabad, India CliqHR Full time

    Job Description :We are seeking a Senior Cyber Security Consultant with extensive experience in enterprise IT security, risk management, and cloud-based security solutions. The ideal candidate will have a deep understanding of managing cyber security risks during digital transformations and will be responsible for leading hands-on engagements and delivering...


  • Hyderabad, India CliqHR Full time

    Job Description :We are seeking a Senior Cyber Security Consultant with extensive experience in enterprise IT security, risk management, and cloud-based security solutions. The ideal candidate will have a deep understanding of managing cyber security risks during digital transformations and will be responsible for leading hands-on engagements and delivering...


  • Hyderabad, Telangana, India Cloud4C Services Full time

    About Cloud4C ServicesAt Cloud4C Services, we pride ourselves on delivering cutting-edge cloud-based cybersecurity solutions and fostering a culture of innovation and excellence.About the RoleWe are seeking a highly skilled Senior Manager to lead our Cyber Defence Centre (CDC) Engineering team in Hyderabad. This role involves driving the development and...


  • Hyderabad, Telangana, India Digital Engineering Full time

    **Job Description Summary**: Lead software security architect responsible for coordinating across a portfolio of products that are deployed in Critical National Infrastructure (CNI) environments globally. Grid Software is the leading software provider for the real-time operations of national and regional electricity grids globally. In addition, the software...


  • Hyderabad, Telangana, India Wipro Limited Full time

    Hyderabad, India; Chennai, India; Pune, India - Tech Hiring - 3101751 **_Role Purpose_** - The purpose of this role is to design the organisation’s computer and network security infrastructure and protect its systems and sensitive information from cyber threats._ **_ - ** **_Do_** **_Design and develop enterprise cyber security strategy and...


  • Hyderabad, Telangana, India Wipro Limited Full time

    Hyderabad, India - Tech Hiring - 3073975 **_Role Purpose_** - The purpose of this role is to design the organisation’s computer and network security infrastructure and protect its systems and sensitive information from cyber threats._ **_ - ** **_Do_** - **_Design and develop enterprise cyber security strategy and architecture_** - _Understand security...


  • Hyderabad, Telangana, India Wipro Limited Full time

    Hyderabad, India - Tech Hiring - 3101362 **_Role Purpose_** - The purpose of this role is to design the organisation’s computer and network security infrastructure and protect its systems and sensitive information from cyber threats._ **_ - ** **_Do_** **_Design and develop enterprise cyber security strategy and architecture_** - Understand security...


  • Hyderabad, Telangana, India Cyber Mind Sets Full time

    Job OverviewWe are seeking a highly motivated and skilled Sales Business Development professional to join our team at Cyber Mind Sets in Hyderabad. As a key member of our sales team, you will be responsible for driving business growth, lead generation, and revenue expansion.


  • Hyderabad, Telangana, India Cloud4C Services Full time

    Cloud4C Services is offering a competitive salary of $120,000 - $180,000 per year for this role.About the RoleWe are seeking a skilled Cyber Security Technical Account Manager to join our team in Hyderabad. As a key member of our Cyber Security team, you will act as a trusted advisor to our clients, driving the successful deployment, integration, and...


  • Hyderabad, Telangana, India FedEx ACC Full time

    Job SummaryWe are seeking a highly skilled Cyber Security Architect Lead to join our Cybersecurity Strategy and Architecture team at FedEx ACC in India. This role will play a crucial part in defining the technical and strategic road maps for the FedEx Information Security organization.Main ResponsibilitiesDevelop high-level security design patterns and...