Senior Information Security Technical Program Manager: Technical Security Audit and Risk Management

6 months ago


Bengaluru, India Unity Full time

Role Description

The opportunity

Unity understands the significance of a solid Security Program. The Security Program is key to maintaining customer confidence in our products and is the pathway to a well-tuned, functional Information Security Management System, Compliance and Program. This will be a chance to work on real security problems in a fast-paced high growth business. The person in this role will be at the helm of critical security risk and compliance projects with major impact across the company. You will help Unity to obtain and maintain applicable security certifications. You will have input into the overall security strategy to guide our security policy and architecture in addition to driving security awareness and compliance across the business units.

What you'll be doing

Driving Technical audits and implementation of audit and control framework to monitor production environments for potential system integrity, cyber-risk exposure and control weaknesses Perform security gap analysis and help define specific/technical remediation measures. End-to-end project and program management : Manage audit and/or remediation projects. Produce high-quality deliverables, project material and audit documentation that are suitable for engineering teams, external stakeholders and auditors. Guide and work with engineering and DevOps as they execute on risk remediation and novel solutions Work day-to-day with technical Security engineers and collaborate with them for driving project progress and resolving blockers Be responsible for reporting on these projects to senior leadership. Effectively communicate not only with peers, engineers , devops, business development stakeholders, but also with VP and execs. Operate and lead initiatives within a distributed team and collaborate with colleagues both local and remote, cross functionally and within your department. Stay updated on the latest industry trends and technologies to keep our services cutting-edge.

What we're looking for

Experience driving compliance or audit engagements (eg SOX or SOC 2 or PCI or ISO 27001). Experience conducting risk assessment on products and applications (in-house and/or third-party) to inculcate better security using NIST or Similar compliance frameworks.. Experience working on cloud service providers such as AWS/GCP/AZURE, and knowledge of cloud services and infrastructure Experience in Vulnerability management ( Qualys/ORCA etc), Security Operations ( Logging and monitoring, SIEM and SOAR tools ) and Infrastructure Security. Familiarty with SAST/ DAST tools Exposure to distributed systems development and/or an understanding of container and orchestration technologies such as Docker, Kubernetes or Nomad. Strong understanding of software development best practices and design patterns, a security and quality first mentality and approach (Secure Software development Lifecycle SSDLC) Experience with one or more of the following: threat modeling, security reviews, vulnerability management, penetration testing, secure software development Excellent project management skills and communication and collaboration abilities, adept at working with teams across various disciplines. Experience with process mapping (preferably on MS Visio / Lucidchart or equivalent). Excellent skills with excel and powerpoint. Excellent communication skills and experience collaborating with cross functional teams, driving for alignment on key decisions, effective communication with project participants and leadership

You might also have

Professional certifications in security, privacy risk management, and audit areas are a plus, such as PMP, CISA, CISM, CISSP, or CIPT. Experience with Unity, Unreal, or other game engines Experience working within an Agile environment (SCRUM/Kanban/XP) and leading work within teams

Additional information

Relocation support is not available for this position. International relocation support is not available for this position. Work visa/immigration sponsorship is not available for this position.

  • Bengaluru, Karnataka, India Take-Two Interactive Software Full time

    About the RoleWe are seeking an experienced Senior Information Security Risk Management Specialist to join our team in Bangalore, India. As a key member of our Information Security team, you will play a critical role in ensuring the security and integrity of our information assets.Key ResponsibilitiesMaintain supervision over operational tasks and provide...


  • Bengaluru, Karnataka, India Unity Full time

    About the RoleWe are seeking an experienced Information Security Technical Program Manager to join our team at Unity. In this role, you will be responsible for leading critical security risk and compliance projects with major impact across the company.


  • Bengaluru, Karnataka, India Take-Two Interactive Software Full time

    About the PositionWe are seeking an experienced Information Security Risk Management Director to lead our team in Bangalore, India. As a key member of our Information Security department, you will be responsible for supervising and managing risk analysts to identify, assess, manage, and mitigate internal and external information security risks.Job...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About Wells Fargo IndiaWells Fargo India is a global talent hub, enabling business lines and staff functions across Technology, Operations, Risk, Audit, Process Excellence, Automation, and Product, Analytics, and Modeling. We operate in Hyderabad, Bengaluru, and Chennai locations.Department OverviewWells Fargo views Information Security as an enabler of...


  • Bengaluru, Karnataka, India Take-Two Interactive Software Full time

    About the PositionJob Title: Team Lead for Cybersecurity and RiskWho We Are:At Take-Two Interactive Software, we are a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. For over 25 years, our development teams have created some of the most critically acclaimed and commercially successful entertainment...


  • Bengaluru, India Infosys Full time

    ISG is a large Security group focused on internal Security of Infosys and in turn providing the required assurance to Clients on meeting their Security demands as per contractual agreements. The team is dispersed across locations and is divided into 3 Groups consisting of 10 Functions. The CISO heads ISG and the 3 Group Heads report to him, wherein the...


  • Bengaluru, Karnataka, India Anthology Inc Full time

    Unlock the Future of Education and TechnologyAnthology Inc is a leader in education and technology solutions, empowering students to reach their full potential. We are seeking a highly skilled Senior Information Security Risk Specialist to join our team.About the Role:We are looking for a detail-oriented professional with experience in information security...


  • Bengaluru, India Take-Two Interactive Software Full time

    About the Position Job Title:  Information Security Risk Analyst Who We Are: Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. For more than 25 years, our development teams have created some of the most critically acclaimed and commercially...


  • Bengaluru, Karnataka, India Whatfix Full time

    We are seeking a highly skilled Senior Information Security Compliance Lead to join our team at Whatfix.The estimated salary for this role is $120,000 - $180,000 per year, depending on location and experience.Job Description:As a Senior Information Security Compliance Lead, you will be responsible for managing all compliance related activities within the...


  • Bengaluru, Karnataka, India FIS Full time

    Job DescriptionAt FIS, we are seeking a skilled Information Security Specialist to join our team. This individual will be responsible for ensuring the safety of information systems assets and protecting systems from intentional or inadvertent access or destruction. The ideal candidate will have a strong background in information systems security, with...


  • Bengaluru, Karnataka, India Unisys Full time

    **What success looks like in this role**: Responsible for the development, adoption, compliance, and governance of the security strategy, roadmap, and policies that are aligned to the organization’s overall security objectives within a Business Unit (BU). The BISO is a senior leader who is the single point of contact for information security related...


  • Bengaluru, India MNR Solutions Full time

    We are looking for a skilled Information Security Risk and Compliance professional to join our team in Bangalore or Chennai. The ideal candidate will have a strong background in information security, risk management, and compliance frameworks. This role will focus on identifying, assessing, and mitigating security risks while ensuring adherence to regulatory...


  • Bengaluru, Karnataka, India IntraEdge Full time

    At IntraEdge, we are seeking a seasoned API Security Technical Project Manager to lead our enterprise-wide API security initiatives. This is a critical role that requires strong technical expertise and leadership skills.About the RoleThe Senior API Security Engineer serves as a subject matter expert in API security, responsible for managing, monitoring, and...


  • Bengaluru, India RSA Security Full time

    RSA - Application Security Engineer (Location: Hybrid/ Remote India) RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced...


  • Bengaluru, Karnataka, India HeadPro Consulting LLP Full time

    As a Senior Staff Information Security Specialist at HeadPro Consulting LLP, you will be responsible for assisting in the execution of the Information Security Program, Data Governance practices, and Privacy assurance. This role requires analyzing the risk of existing networks and system architectures against correlating policies and risks, and providing...


  • Bengaluru, Karnataka, India Head pro Full time

    Job Summary :Head pro is seeking a skilled Senior Staff Information Security Engineer to join our team. As a key member of our Information Security team, you will be responsible for executing the Information Security Program, Data Governance practices, and Privacy assurance. This role requires a strong understanding of security concepts, technical controls,...


  • Bengaluru, India Unisys Full time

    What success looks like in this role: Responsible for the development, adoption, compliance, and governance of the security strategy, roadmap, and policies that are aligned to the organization’s overall security objectives within Corporate IT (CIT). The BISO is a senior leader who is the single point of contact for information security related...


  • Bengaluru, Karnataka, India IT Service Company Full time

    Job Summary">At our IT Service Company, we are seeking a highly skilled Senior Information Security Risk Consultant to join our team in Bangalore. This role offers a competitive salary of ₹1,200,000 per annum, reflecting the company's commitment to attracting top talent in the field.">About the Role">We are looking for an experienced professional with a...


  • Bengaluru, India Justdial Full time

    Job Description :Key Responsibilities :Regulatory Compliance :- Understand and apply regulations, guidelines, and industry best practices to manage risk and ensure compliance.- Develop, maintain, and audit security documentation, including policies, standards, and procedures.- Guarantee compliance with standards such as NIST 800-53, NIST 800-171, ISO 27001,...


  • Bengaluru, India Consilio LLC Full time

    Overview The candidate is expected to work in the identity and access management vertical within information security and support internal and external audits The candidate is expected to understand and be able to analyze applications, user lists, permission models, and appropriateness of access in support of identity and access management tasks The...