Talent.com
This job offer is not available in your country.
(14 / 10 / 2025) L3 – Vulnerability Management, Risk and Compliance Lead

(14 / 10 / 2025) L3 – Vulnerability Management, Risk and Compliance Lead

ITC InfotechIndia
1 day ago
Job description

Hi, We have 4 open positions for the below role in Mumbai, Secondary location is Pune. Interested candidates can email their updated profiles to manikandan.g@itcinfotech.com alongwith the following details : Current CTC, Expected CTC, Notice period, Preferred location : Mumbai / Pune

L3 – Vulnerability Management, Risk & Compliance Lead

Job Summary :

ITCI Cyber Security team is looking for the role which is accountable for leading the organization’s end-to-end vulnerability lifecycle and aligning risk and compliance efforts with regulatory mandates such as RBI Master Directions and SEBI Cybersecurity Framework. The individual will ensure timely vulnerability detection, validation, remediation governance, and risk-based prioritization. The role also anchors all compliance readiness activities across cybersecurity, translating control gaps into actionable security initiatives while coordinating with internal and external audit functions.

Key Responsibilities :

  • Lead the overall vulnerability management lifecycle across infra and application assets (VM, risk scoring, remediation tracking).
  • Own end-to-end delivery of VM scans, validation cycles, and risk-based prioritization using tools like Tenable / Nessus.
  • Map vulnerabilities to business risk and generate executive-level dashboards with risk exposure summaries.
  • Define and maintain risk treatment plans per RBI and SEBI frameworks, coordinating with infra and app teams.
  • Conduct compliance checks, technical control validations, and support readiness for RBI / SEBI / ISO audits.
  • Perform monthly risk posture reviews, threat trend reporting, and mitigation progress evaluations.
  • Oversee gap assessments against RBI Master Direction, SEBI circulars, and DPDP data security provisions.
  • Provide expertise in documenting technical controls, ISMS artifacts, and audit trails for internal and external audits.
  • Engage with stakeholders to establish security exceptions, compensating controls, and policy deviation approvals.
  • Build and maintain GRC tools and risk registers with role-based access and automated updates.

Key Skills & Certifications :

  • 10+ years in cyber risk management, vulnerability assessment, and compliance delivery.
  • Strong experience with Tenable / Nessus, Qualys, and GRC tools.
  • ISO 27001 Lead Auditor, CRISC, or CISA certified.
  • In-depth knowledge of RBI Master Direction on IT Framework, SEBI Cybersecurity Guidelines.
  • Strong skills in risk quantification, reporting, and policy enforcement.
  • Create a job alert for this search

    Risk Management • India

    Related jobs
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.ainagpur, maharashtra, in
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Safety Aggregate Reporting Manager

    Safety Aggregate Reporting Manager

    IQVIA Indianagpur, maharashtra, in
    Designation : Safety Aggregate Reporting Manager.Skill : Authoring Aggregate reports.Act as a stand-alone global functional lead at a project level applying experience, knowledge and expertise for S...Show moreLast updated: 30+ days ago
    • Promoted
    Product Security Engineer II

    Product Security Engineer II

    FICOIndia
    Join our world-class team today and fulfill your career potential! The Opportunity "As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of...Show moreLast updated: 30+ days ago
    • Promoted
    Ethical Hacker

    Ethical Hacker

    MAI LabsNagpur, IN
    We're building something audacious, something global, in next tech at.Our mission? To distribute participatory power to billions of people in the digital economy. What this actually means : We have b...Show moreLast updated: 15 days ago
    • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    sliceIndia
    About Us slice the way you bank.We’ve all felt how slow, confusing, and complicated banking can be.We’re building every product from scratch to be fast, transparent, and feel good, because we belie...Show moreLast updated: 30+ days ago
    • Promoted
    Business Continuity Manager

    Business Continuity Manager

    BDO RISE Private LimitedIndia
    BDO’s Resilience practice is growing! We’re looking for a dynamic Manager to join our Risk Resilience team and help organizations navigate today’s complex risk landscape. If you're passionate about ...Show moreLast updated: 23 days ago
    • Promoted
    Senior Security Consultant

    Senior Security Consultant

    Claranet IndiaNagpur, IN
    Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Regional Compliance Specialist

    Lead Regional Compliance Specialist

    Securitas GroupNagpur, IN
    Lead Regional Compliance Specialist - APAC.India – open to Chennai / Hyderabad / Pune.We are a dynamic, dedicated team that provides management and support for a global guarding services account that s...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Compliance Analyst

    Senior Compliance Analyst

    SignzyIndia
    Signzy is a digital trust system.We provide identification, background checks, forgery detection and contract management systems which enable contracting in a trustable, safe, legal, and convenient...Show moreLast updated: 9 days ago
    • Promoted
    JD Edwards Security Consultant

    JD Edwards Security Consultant

    IT ConsultingNagpur, IN
    JD Edwards Security Consultant.Collaborate with global business stakeholders to understand business processes and security requirements within JD Edwards. Design and document standardized user roles...Show moreLast updated: 23 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsNagpur, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 11 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcananagpur, maharashtra, in
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Security Advisor

    Security Advisor

    Verdant Groupnagpur, maharashtra, in
    Verdant Group is a group of companies operating in several states in India and head quartered in Mumbai.This is a remote role for a Security Advisor. The Security Advisor will be responsible for ana...Show moreLast updated: 20 days ago
    • Promoted
    Enterprise Risk Management Specialist

    Enterprise Risk Management Specialist

    beBeeRiskNagpur, Maharashtra, India
    Strengthening internal controls, compliance, and risk management functions is key.This role combines operational execution with strategic input to ensure visibility and control over cloud-based app...Show moreLast updated: 1 day ago
    • Promoted
    Associate Director, Safety Operations

    Associate Director, Safety Operations

    IQVIA IndiaNagpur, IN
    Associate Director, Safety Operations.Lead Safety staff responsible for Safety Operations processing in alignment with departmental and corporate standards. Contribute to Global initiatives.Work in ...Show moreLast updated: 23 days ago
    • Promoted
    Information Technology Governance Consultant

    Information Technology Governance Consultant

    INSPYR SolutionsNagpur, IN
    Job Opening : Governance, Risk & Compliance (GRC) Analyst – Level 2 / 3.Governance, Risk, and Compliance (GRC) Analyst.SaaS applications while helping define governance frameworks and risk processes.S...Show moreLast updated: 15 days ago
    • Promoted
    Security Consultant

    Security Consultant

    World Wide TechnologyNagpur, IN
    Be the primary lead in cybersecurity delivery engagements for a wide variety of clients in different industry verticals.Evaluate and recommend security strategies for networks, systems, operations,...Show moreLast updated: 11 days ago
    • Promoted
    Security Researcher

    Security Researcher

    Altered SecurityNagpur, IN
    Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information secu...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Solution Architect-Trust & Safety-PAN India

    Senior Solution Architect-Trust & Safety-PAN India

    Wipronagpur, maharashtra, in
    Senior Solution Architect-Trust & Safety Domain-Location is open.Solution Design & Architecture : .Lead the design and architecture of comprehensive Trust & Safety solutions, incorporating a range of...Show moreLast updated: 9 days ago
    • Promoted
    • New!
    Cyber Security Architect

    Cyber Security Architect

    Tata Consultancy Servicesnagpur, maharashtra, in
    In depth knowledge of IAM for AWS.Architect and automate the management of AWS Cloud IAM services.Support the Identity and Access Management team within the Technology Risk & Information Security O...Show moreLast updated: 16 hours ago