Assoc. Dir. Ddit Isc Secops Vulnsvcs

2 weeks ago


Hyderabad Telangana, India Novartis Full time

**Summary**:
The role is part of DDIT ISC Security Operations in Vulnerability Services team. The person will focus on reducing risk exposure from security vulnerabilities with major focus on high risk, theme based and 0-day vulnerabilities emergency response and remediation. Flexibility with work schedule is critical.
Analyze ongoing security vulnerabilities risk posture, perform technical vulnerability/mitigations tests, collaborate with finding owners/support teams for managing resolutions, act as SME to assess discovered vulnerabilities and provide pragmatic solutions and flexibly support emergency vulnerability remediations. Collaboration with cross functional teams for threat intel, incident response, security architecture, remediation and security operations are key.
- Oversees security operations service line, technology governance and external/internal interfaces in accordance with service operations and management processes.

**About the Role**:

- Act as a Technical Security SME and point of contact for responding to ongoing high-risk vulnerability exposure
- Continuously monitor and prioritize security vulnerabilities, missing controls, mitigations and defenses through risk analysis to understand potential impact and translate vulnerability severity as security risk.
- Identify problem areas, root causes and solution to prevent/reduce vulnerabilities.
- Identify potential improvement areas for vulnerability response and shared learned lessons with teams and stakeholders.
- Take accountability to ensure adherence with Security and Compliance policies and procedures.
- Stay up to date with the latest security threats and vulnerabilities, proactively recommending mitigation strategies.
- Develop and maintain documentation of related process and best practices.
- Implement security policies, procedures, and standards to ensure the confidentiality, integrity, and availability of cloud resources from technical vulnerabilities.
- Provide security awareness and training to teams on security practices and vulnerability related processes.
- Be flexible with work schedules (including support outside standard business days/hours) to coordinate emergency response for high-risk vulnerability remediation with relevant stakeholders. Drive identification of root causes and prevention of recurrences.
- Defines remediation activities for security assessment gaps as they pertain to IT Security Management

**Key performance indicators**:

- Stable, compliant, secure, and cost-effective operations measured by Availability, Performance, Capacity, Security Metrics -Responsiveness and Recovery Speed of critical incidents/issues in business -Learning Agility, ability to evaluate and launch new services and capabilities -Productivity gains and defect reduction through continuous improvement -Automation led Security Operations Services -Integration of Applications and Infrastructure into Centralized Security Platforms
- Flexibility to support vulnerability response remediation with sense of urgency.
- Technical expertise proven in identifying, reviewing, and improving vulnerabilities.
- Ensure Application/project satisfied with the risk, security, and remediation advisory.
- Reducing the number of vulnerabilities by adapting remediation wherever possible
- Cross skill collaboration and feedback from the various stake holders

**Minimum Requirements**:
**Work Experience**:

- 8+ years of overall working experience in information security preferably in Application Security and Vulnerability management domain.
- At least 3+ years in handling security vulnerability response and remediation or SOC, coordinating with relevant stakeholders, and implementing corrective/preventive actions.
- Risk.
- Accountability.
- Strong cross functional leadership.
- Relationship Management.
- Strategy Development.
- Operations Management and Execution.
- Collaborating across boundaries.
- Project Management.
- Interactions with senior management.
- People Leadership.
- Vulnerability management, response and technical assessments
- Threat research and correlation with vulnerabilities

**Skills**:

- Strong security knowledge top security vulnerabilities, threat correlation, host/NW controls, mitigations, leading vulnerability scoring standards, such as CVSS, and ability to translate vulnerability severity as security risk.
- Hands-on experience monitoring threat intel for high-risk vulnerabilities, finding ownerships, handling shadow IT asset scenarios, sensitizing teams for security remediation, performing tests for technical vulnerability confirmation, etc.
- Knowledge of security patching, technical debt, SW patching, and relevant domains.
- Escalation.
- Information Security Audit.
- Information Security Risk Management.
- Quality Management.
- Root Cause Analysis (Rca).
- Sec Ops (Security Operations).
- Vendor Management.
- Persuasive communication skills

**Languages**:

- English.

Division

Operations

Business Unit

CTS

Location

Ind



  • Hyderabad, Telangana, India Novartis Full time

    394896BR **Assoc. Dir. DDIT Dev. TD RA**: India **About the role** Role Title: Assoc. Dir. DDIT Dev. TD RA Location: Hyderabad Role Purpose: - Senior Specialist for project delivery and/or operations in the given RA Publishing - Partner with Business Stakeholders and DDIT Strategic Business Partners for demand analysis, solution proposal/evaluation and...


  • Hyderabad, Telangana, India Novartis Full time

    394205BR **Assoc. Dir. DDIT Dev. BA US&DUs**: India **About the role** Role Title: Assoc. Dir. DDIT Dev. BA (US&DUs) Location: Hyderabad Role Purpose: This role will provide the Business Analysis needed to drive technology roadmap for S&G focusing and enabling decision making in the function that directly drives success of Novartis through more effective...


  • Hyderabad, India Sandoz Full time

    Job Description Role: Assoc. Dir. DDIT Dev. GCO Tech. Design (Technical Business Analyst) Senior Expert for delivering projects and/or running operations in the specific business sub-function. Collaborate with Business Stakeholders and DDIT Strategic Business Partners for analyzing demand, proposing/assessing solutions and executing projects Lead the...


  • Hyderabad District, Telangana, India Novartis Full time

    Location : #L1 Hybrid 371713BR Our Information Security and Compliance (ISC) team provide a critical service to the Novartis Community, protecting information assets and ensuring compliance with internal and external ISC requirements. This team is looking for an “Associate Director, Country Information Security and Compliance” to join the team! Your...


  • Hyderabad, Telangana, India Novartis Full time

    395124BR **Assoc. Dir. DDIT IES Reliability Engg**: India **About the role** Location : #L1 Hybrid Your responsibilities include but not limited to: - NMMi / NOM administration and dashboard creations in production, create alerts in Splunk - Understanding of full stack monitoring and integration various data sources to create a fullview - Participate in...


  • Hyderabad, Telangana, India Novartis Full time

    389594BR **Assoc. Dir. DDIT Dev. Serv Ops TRD, RA**: India **About the role** Role Title: Assoc. Director DDIT Dev. Service Ops TRD, RA Location: Hyderabad Role Purpose: This role requires the incumbent to manage end-to-end Service Delivery & Operations for IT Applications towards Technical Research & Development (TRD) business for Global Clinical Supply...


  • Hyderabad, Telangana, India Novartis Full time

    **Summary**: Create the detailed DDIT solution/service design, based on functional specifications to meet quality and performance requirements and technical constraints. Responsible for detailed design, development, code review and delivery of Analytical and Gen AI solutions **About the Role**: **Role Title**: Assoc. Dir. DDIT DEV Data Analytics...


  • Hyderabad, Telangana, India Novartis Full time ₹ 45,00,000 - ₹ 90,00,000 per year

    Job Description SummaryAs Assoc. Dir. DDIT DEV RA TD you will create the detailed IT solution/service design, based on functional specifications to meet quality and performance requirements and technical constraints. Responsible for detailed design, development, and delivery of system solutions for Regulatory Affairs (RA). You will engage with global...


  • Hyderabad, Telangana, India Novartis Full time

    **Summary**: - Act as an advisor providing guidance to challenge and improve global business processes, products, services, and software through data analysis. -Engage with global business leaders and leverage the appropriate DDIT teams and Functions to determine requirements and deliver data driven recommendations to improve efficiency and add...


  • Hyderabad, Telangana, India Novartis Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description SummaryAs Assoc. Dir. DDIT DEV RA Sol. Del. you will create the detailed IT solution/service design, based on functional specifications to meet quality and performance requirements and technical constraints. Responsible for detailed design, development, and delivery of system solutions for Regulatory Affairs (RA). You will engage with global...