
Security Incident Management Lead
1 week ago
Assistant Vice President - Security Incident Management Lead
About Us
SBI Card is a leading pure-play credit card issuer in India, offering a wide range of credit cards to cater to diverse customer needs. We are constantly innovating to meet the evolving financial needs of our customers, empowering them with digital currency for seamless payment experience and indulge in rewarding benefits. At SBI Card, the motto 'Make Life Simple' inspires every initiative, ensuring that customer convenience is at the forefront of all that we do. We are committed to building an environment where people can thrive and create a better future for everyone.
SBI Card is proud to be an equal opportunity & inclusive employer and welcome employees without any discrimination on the grounds of race, colour, gender, religion, creed, disability, sexual orientation, gender identity, marital status, caste etc. SBI Card is committed to fostering an inclusive and diverse workplace where all employees are treated equally with dignity and respect which makes it a promising place to work.
Join us to shape the future of digital payment in India and unlock your full potential.
What's in it for YOU
- SBI Card truly lives by the work-life balance philosophy. We offer a robust wellness and wellbeing program to support mental and physical health of our employees
- Admirable work deserves to be rewarded. We have a well curated bouquet of rewards and recognition program for the employees
- Dynamic, Inclusive and Diverse team culture
- Gender Neutral Policy
- Inclusive Health Benefits for all - Medical Insurance, Personal Accidental, Group Term Life Insurance and Annual Health Checkup, Dental and OPD benefits
- Commitment to the overall development of an employee through comprehensive learning & development framework
Role Purpose
Responsible for developing and running end-to-end program for managing the security incident life-cycle of all kind of Information Security Incidents including Information Governance & Security , getting routine investigation, forensics & eDiscovery etc. done in association of in-house team and service partners.
Role Accountability
- Oversee the monitoring, identification and resolution of security incidents to detect threats through analysis, investigations and prioritization of incidents based on risk exposure
- Develop and manage Incident Management program including monitoring, review, triage, assessing impact, diagnostic and data collection, troubleshooting and remediation, interacting with requestors etc.
- Develop and maintain an incident response management program that includes incident detection, analysis, containment, eradication, recovery and chain of evidence/ forensic artifacts required for additional investigations
- Lead the implementation and sustenance of security incident response plan and associated playbooks for all security related incidents
- Oversee SBIC incident response tools and processes, covering proactive planning and prevention, as well as reactive detection and remediation
- Manage Information Security Incidents including assessment, quantification, investigation and mitigation including liaison with IT teams and other business function
- Record and classify received Incidents and undertake an immediate effort in order to restore a service/reach resolution stage as quickly as possible
- Report incidents to the regulator (RBI) as per the mandate
- Develop and manage metrics and reporting on the effectiveness of the security incident response program which includes reports to leadership
- Identify trends in security incident response and regulatory requirements for the necessary changes in the program
- Work with multiple internal and external stakeholders to drive triage, analysis, containment, and eradication of the incidents and provide leadership in high risk incidents
- Participate in various internal and external audits in context of security incident response program
- Drive continuous improvements in people, process, and technology as it relates to the efficiency and effectiveness of the security incident response program
- Define Policy and process for Security Incident Management including defining roles and responsibilities
- Define Cyber Crisis management plan and conduct Cyber Crisis management drills at regular intervals involving IT and business stakeholders
- Monitor, respond, and report compliance to SLA's and managing security incidents related to IT systems covered under security programs like SIEM, DLP, Anti-Phishing Brand and Dark-Web Monitoring.
- Assess Security Incidents and lay down strategies to reduce the likelihood of future occurrences
- Ensure process documentation and compliance adherence
Measures of Success
- Incident Management Program as per approved policy and regulatory requirements
- Timely and accurate reporting of Incidents to regulator (RBI)
- Logging, responding and closure of Incidents as per agreed SLA
- No adverse observation in Internal/external audits
- No of improvement opportunities identified in Security Incident Management processes/procedures
- Increase in maturity of Security Incident Management operating model
- Effective root cause analysis and remediation for identified security incidents
- Timely and accurate publication of MIS / Business dashboards
- Publication of Incident report as per the prescribed format within the agreed timeframe
- Process Adherence as per MOU
Technical Skills / Experience / Certifications
- In-depth knowledge of security concepts such as cyber attacks, threat vectors, best practices, risk and incident management etc.
- Information security experience, with a very strong technical background and significant security Incident response experience
- Understanding of Security Terminology i.e. Network Security, Vulnerability, Anti-Virus, Virus/Trojans/Spam/Attack Pattern
- Understanding of configuration and security controls of various information technology and security infrastructure components deployed on prem and cloud
- Experience in handling various types of incidents like phishing, denial of service, malware, and unauthorized access etc.
- Understanding of Security Information and Event Management (SIEM), Data Loss Prevention (DLP) and security incident response workflow management technologies.
- Understanding of related BFSI regulations and its relevance to security incident management
- Experience with and confidence to develop and socialize security operations playbooks across infrastructure and applications teams in IT
- Strong understanding of security incident management lifecycle including CERT/SIRT and/or MITRE attack framework
- At least one Industry-standard certifications such as CEH, CHFI, GIAC etc.
Competencies critical to the role
- Stakeholder Management
- Analytical ability
- Process Orientation
- Teamwork and Collaboration
- Problem Solving
Qualification
Bachelor degree / B.tech in Computer Science / IT or any other relevant discipline
Preferred Industry
BFSI / NBFC /E-commerce/IT & ITES / Telecom
Experience LevelSenior Level-
Incident Manager
2 weeks ago
Gurgaon, Haryana, India Incedo Inc. Full time ₹ 9,00,000 - ₹ 12,00,000 per yearKey Responsibilities:Incident Response & Coordination:Lead the response to IT service disruptions and ensure timely resolution.Coordinate with cross-functional teams to diagnose and resolve incidents.Act as the primary point of contact during major incidents.Process Management:Oversee the incident lifecycle from detection to resolution.Ensure incidents are...
-
Security Analyst/Cyber Security
3 days ago
Gurgaon, Haryana, India Amor Management Consultants Full time ₹ 1,00,000 - ₹ 3,00,000 per yearSecurity Analyst IT & OT Cyber SecurityLevel – Assistant/Deputy ManagerBudget – 15 LPA (Max 30% Hike on current ctc)Location – Gurgaon, Sec-355 Days working , 17 Saturday working in a yearJob Summary:The Security Analyst is responsible for ensuring the security and compliance of IT and OT environments. This includes managing cyber security operations,...
-
Information Security Manager
1 week ago
Gurgaon, Haryana, India glan management consultancy Full time ₹ 16,25,000 - ₹ 30,15,133 per yearCompany: Glan Management ConsultancyLocation: GurgaonExperience: 7-15 yearSalary:Employment Type:Job Description:Job Title: Manager Information Security – ITJob Purpose: Acting in a key technical management & execution capacity to provide a conduit between IT teams and key business stakeholders in your functional area of IT Security to ensure information...
-
Manager - IT Security
1 week ago
Gurgaon, Haryana, India Sterlite Power Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJOB SUMMARY The Information Security Manager is responsible for developing, implementing, and maintaining the organizations information security framework, policies, and controls. The role ensures the confidentiality, integrity, and availability of information assets across IT and OT environments, while aligning security initiatives with business objectives...
-
It Security Services Lead
4 weeks ago
Gurgaon, Haryana, India Kyndryl Full timeWho We AreAt Kyndryl we design build manage and modernize the mission-critical technology systems that the world depends on every day So why work at Kyndryl We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable inclusive world for our employees our customers and our communities The Role ...
-
Manager OT Security
2 weeks ago
Gurgaon, Haryana, India Silverse Full time ₹ 20,00,000 - ₹ 25,00,000 per yearPurpose of the role:We are seeking an experienced and results-driven OT Security Manager to lead our OT security initiatives. The ideal candidate will have a proven track record in managing and enhancing OT security programs, ensuring the resilience and integrity of our critical operational technology infrastructure. If you have a deep understanding of...
-
IT Security Lead
2 weeks ago
Gurgaon, Haryana, India orangemantra Full time ₹ 1,80,000 - ₹ 3,00,000 per yearAbout The RoleWe are hiring an experienced IT Security Lead to lead our enterprise-wide security initiatives in the Banking & Financial Services domain. You will be responsible for defining and enforcing security standards across applications, infrastructure, data, and user environments, ensuring compliance with RBI and other regulatory requirements.This is...
-
IT Security Lead
2 weeks ago
Gurgaon, Haryana, India Orange Mantra Full time ₹ 15,00,000 - ₹ 25,00,000 per yearGurgaon14 to 8 yearsFull TimeAbout the RoleWe are hiring an experienced IT Security Lead to lead our enterprise-wide security initiatives in the Banking & Financial Services domain. You will be responsible for defining and enforcing security standards across applications, infrastructure, data, and user environments, ensuring compliance with RBI and other...
-
Project Management Associate
2 weeks ago
Gurgaon, Haryana, India Mjolnir Security Full time US$ 90,000 - US$ 1,20,000 per yearProject Manager, Gurgaon India OfficeAbout Mjolnir SecurityMjolnir Security is a global cybersecurity firm specializing in Digital Forensics, Incident Response (DFIR), Security Operations (SOC), and Managed Detection & Response (MDR). With over 500 incident engagements completed, we deliver world-class services to clients across North America, Europe, and...
-
SOC Lead, Security Operations
2 days ago
Gurgaon, Haryana, India Rackspace Technology Full time ₹ 20,00,000 - ₹ 25,00,000 per yearShift Timings: 1 pm to 10 pm ISTWhat were looking forTo support our continued success and deliver a Fanatical Experience to our customers, Rackspace Cyber Defence is looking for a Security Lead for security Operations.This role is particularly well-suited to a self-starting, experienced, and motivated Security Lead, who is commercially aware,...