
Godrej Infotech
2 weeks ago
Job Title : IT Security Lead.
Location : Mumbai.
Job Description :
The ideal candidate will ensure the information assets and technologies are adequately protected through proactive risk management, incident response, and continuous improvement of security controls.
This role will play role as Subject Matter Expert (SME) and must suggest CISO on cyber security risks, required controls etc. Proactively.
Key Responsibility Areas (KRAs) :
- Implement the cybersecurity roadmap and strategic initiatives defined by the CISO.
- Advise CISO on Cyber security risks and remedial measures.
- Drive Cyber security initiatives proactively.
- Lead and manage cross-functional security teams.
- Collaborate with stakeholders and partners and identify Cyber risks.
- Take actions to address cyber risks.
- Maintain and execute incident response plans, lead coordination during security incidents.
- Experience in GRC, managing vulnerability management processes etc.
- Good understanding of Network security, Threat management, application security, Cloud
security etc.
- Evaluate and recommend security technologies and ensure seamless integration across IT
infrastructure.
- Provide regular updates to the CISO and ensure effective communication with stakeholders.
Skills :
- Strong security mindset.
- Questions status quo and navigates through roadblocks.- Security project management and planning.
- Defining problems, collecting and analysing data, establishing facts and drawing valid
conclusions.
- Using judgment and ingenuity in maintaining objectives and technical standards.
Requisite Qualifications :
Essential :
- Bachelors degree in computer science, Information Technology, Cybersecurity, or a relatedfield.
- Industry-recognized security certifications such as CISA, CISSP, CISM, ISO 27001 : 2013/2022,
ISO 22301, CGIET, CCSP etc. (at least two) is highly desirable.
- Experience of leading Cyber security team (Min 4-5 Years).
- Excellent interpersonal skills, comfortable working at all levels within an organisation and in a
wide variety of situations.
- Broad level of knowledge of security and risk issues and techniques across platforms.
- Excellent knowledge of methodologies, processes and tools associated with supporting this function effectively.
Knowledge :
- Information security management, governance, and compliance principles, practices laws, rules and regulations.
- Well versed with well-known security frameworks such as ISO 27001 : 2002 / NIST CSF / MITRE etc.
- Information technology systems and processes, network infrastructure, data architecture, data processes, and protocols.
- Cyber security, cloud security, zero trust frameworks, architecture, design, operations, controls, technology, solutions, etc.
- Good understanding of the basic security technologies such as DLP, EDR, CASB, PIM/PAM, Firewall, Cloud Security, WAF, etc.
- Information systems auditing, monitoring, controlling, and assessment process.
- Fair understanding of Incident response management.
- Fair understanding of Risk management methodology.
Requisite Work Experience :
Essential :
- Minimum 10-12 years of experience in IT Security, with at least 3-4 years in a team lead role.- Proven experience in managing large-scale security operations and teams.
Preferred :
- Experience in manufacturing industries will be an added advantage.