- LocationIndia,
-
IndustryBanking
Program Manager/Head Delivery- Info-Security
The Program Manager must be able to translate the IT-risk aspects of the business into technical control requirements and specifications.
The individual would serve as the process owner of all assurance activities related to the availability, integrity and confidentiality of customer, business partner, employee and business information in compliance with the organization's information security policies. The individual will play a central role in in VAPT programs, Application Security Vulnerability Mitigation and drive the closure of reported vulnerabilities.
Work with executive management to determine acceptable levels of risk for the organization. The individual must be highly knowledgeable about the business environment and ensure that information systems are maintained in a fully functional, secure mode.
Technical Responsibilities
Ensuring contemporary technology and security in the client ecosystem including network and application security, infrastructure hardening, security baselines, web server, and database security.
Work with the internal and external stakeholders from vulnerability identification stage through fix implementation in production environment to ensure the security posture of the customer is maintained as per the defined standards.
Responsibilities
- Closely work with Information Security Group while publishing new true positive & valid vulnerabilities.
- Identifying false positive vulnerabilities
- Validate and test effectiveness of compensating controls and implement as applicable Providing relevant information for Internal & external Audits.
- Involvement in the solutioning activities
- Providing Application Vulnerability Remediation, Data Security solutions, Implementing cyber security solutions
Assess and mitigate vulnerabilities of security architectures, designs, and solution elements in Web-based systems, Database security and Distributed systems.
- Perform Due Care - Periodic reporting of Vulnerability Assessment and Application Security Assessment status to all Sr. Management & Stakeholders.
- Participate in ongoing IT Security measurements and reporting for senior management review.
- Assist in coordinating contingency plan tests on a regular basis.
- Perform Due Diligence
- Implement Risk Management concepts like Identifying threats and vulnerabilities, Risk assessment/analysis, Countermeasure selection, Control assessment, Monitoring.
- Determine and ensure implementation of data security controls for data at rest and data in transit
Program management
Communicate successfully with partners and drive accountability across teams to ensure program objectives are met
Should have an agile approach with capability to handle multiple projects simultaneously Gather and examine customer and internal security team needs and opportunities for new information security programs, products and projects
Drive organizational needs cross-functionally including tracking and reporting of progress and metrics
- Responsible for complete overview and driving security initiatives across services. This includes the tracking, monitoring and influencing priority of significant security objectives, goals and plans from all security sub-departments.
Education
BE/BTech IT with CISA/CISSP certification mandatory - from recognised institutes
Experience
15-20 years
