Talent.com
Assistant Vice President - Information Security Architect (Application)

Assistant Vice President - Information Security Architect (Application)

ConfidentialGurugram, Gurgaon / Gurugram, India
10 days ago
Job description

Role Purpose

Threat & Vulnerability Management is one of high concern areas in order to prevent SBIC from any potential threat actor. This role is responsible for managing & maturing overall Application Security lifecycle starting from requirements gathering to decommissioning phase. This includes assuring compliance to RBI's requirement on Digital Application with activities such as Threat Modeling, Secure Application Architecture and Run-time security controls. This role also leverage expert knowledge of today's ever-changing cybersecurity and risk landscape to influence IT landscape across SBIC Card environment.

Role Accountability

Functional Areas :

Provide technical expertise for information security policies and standards for Application Development throughout SDLC

Maintaining current knowledge and understanding of the threat landscape and emerging security threats and vulnerabilities to build adequate solution

Help SBIC IT Team build agile application development platforms rooted on flexible container-based platforms and aligned to agile development and CI / CD best practices

Provide expertise in security tools for vulnerability assessment, penetration testing & application security

Define security runtime products and development tooling migration strategy and guidelines for digital applications

Ensures (web) applications, APIs, and cloud services are planned, designed, developed, implemented and monitored in accordance with security policies and to meet compliance requirements

Perform regular status reviews with IT asset owners & senior leadership to ensure compliance with InfoSec policies and RBI's requirement on Digital Applications

Participate in and support application security reviews and threat modeling, support security testing team for code review and dynamic testing.

Industry analysis for latest security systems, standards, authentication protocols, security framework to guide development team to implement for new projects

Facilitate and support the preparation of security releases.

Support and consult with product and development teams in the area of application security.

Assist in development of automated security testing to validate that secure coding best practices are being used.

Manage & Mature Application Security Standard, Framework and related process

New Technology & Risks

Evaluates and recommends tools and solutions that provide protection to SBIC application landscape

Maintain contact with vendors regarding security system updates and technical support of security products

Performs cost-benefit and risk analysis

Analyzes business impact and exposure, based on emerging security threats, vulnerabilities and risks

Vendor Management

Maintain relationship with managed security services vendor leadership to ensure effective implementation and operation of security programs, ongoing support and deployment of competent resources

Oversee the development, implementation and maintenance of vendor standard operating procedures / run book in line with SBI Card policies & standards

Provide technical & program management expertise and oversight over vendor teams

Stakeholder Management

This role requires strong skills to discuss technical & non-technical aspect with articulation of Risk to demonstrate requirement and drive mitigation of Vulnerability

Internal Stakeholders : Information technology function including its vendor, Senior leaders like CISO & , DPO and other Business / functional leaders

External Stakeholders : Vendor Team

Measures of Success

Successful implementation / adoption of any new solution, technology or framework as per regulatory and SBIC policy

Successful delivery of security projects specifications within time and budget

Secure delivery of workload protection and applications (enterprise, web and mobile app) hosted on-premise or on Cloud

Reduction in attack surface and threat exposure for SBI Card IT platforms

Consistently enhance the security posture to reduce overall risk to SBI Card

No major observation in internal / external audit on security design for applications

Technical Skills / Experience / Certifications

Deep knowledge and understanding of enterprise IT Systems, infrastructure, and security technologies.

Knowledge of Information Security Standards like ISO 27001, PCI-DSS, NIST CSF, CSA framework etc.

Working knowledge of common and industry standard cloud-native / cloud-friendly authentication mechanisms (OAuth, OpenID, etc.).

Experience with deployment orchestration, automation, and security configuration management (Jenkins, Puppet, Chef, etc.) preferred.

Experience architecting solutions within Amazon Web Services (AWS), Azure, Google Cloud Platform (GCP), VMware NSX, Oracle etc.

Experience with assessment, development, implementation, optimization, and documentation of a comprehensive and broad set of security technologies and processes such as secure software development, Application Security, data protection, cryptography, key management, identity and access management (IAM), network security) within SaaS, IaaS, PaaS, and other cloud environments.

Excellent interpersonal and communication skills required to partner with other leaders across IT & business functions.

Experience working with cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies.

Experience with enterprise applications (architecture, development, support, and troubleshooting).

Experience performing threat modeling and design reviews to assess security implications and requirements for introduction of new technologies.

Experience representing technical viewpoints to diverse audiences and in making timely and prudent technical risk decisions.

Working knowledge of compliance frameworks and security management standards (e.g., ISO 27001, NIST CSF, CIS etc.)

Experience with enterprise architecture and working as part of a cross-functional team to implement solutions.

Competencies critical to the role

Demonstrate skills to achieve stated objectives.

Demonstrate communication skills to address different audiences.

Demonstrate self-starter with ability to gain required knowledge in dynamic environments and remain up to date on cutting-edge technologies.

Demonstrate teamwork & collaboration.

Demonstrate analytical, troubleshooting, and problem-solving skills.

Qualification

Bachelor's Degree in a related area such as Computer Science or Information Technology or B. Tech

Preferred Industry

BFSI / NBFC / E-commerce / IT & ITES / Telecom

Skills Required

Penetration Testing, Network Security, key management, Automation, Application Security, security tools , Vmware Nsx, threat modeling , Data Protection, Oracle, Azure, Cryptography, Vulnerability Assessment

Create a job alert for this search

Information Architect • Gurugram, Gurgaon / Gurugram, India

Related jobs
  • Promoted
Chief Information Security Officer

Chief Information Security Officer

TESTQ Technologies LimitedDelhi, IN
Description : Position Summary : We are seeking a highly skilled and proactive Security CISO (Installation & Operation) to provide st...Show moreLast updated: 13 days ago
  • Promoted
Lead Security Enterprise Architect

Lead Security Enterprise Architect

ConfidentialDelhi, India
This role creates security solution architectures for systems and platforms ensuring all relevant options are explored for time, cost and compliance to the company's standards, policies and practic...Show moreLast updated: 5 days ago
  • Promoted
Security Architect

Security Architect

PwC IndiaDelhi, India, India
We're Hiring : Security Architect / Manager – OSD to CISO (FTC – 1 Year).Immediate Joiners Preferred (30 days max).Are you a seasoned cybersecurity professional with 12+ years of experience in imple...Show moreLast updated: 19 days ago
  • Promoted
Assistant Vice President, Lead Solution Architect (LSA)

Assistant Vice President, Lead Solution Architect (LSA)

ConfidentialGurugram, Gurgaon / Gurugram
Ready to shape the future of work.At Genpact, we don't just adapt to change-we drive it.AI and digital innovation are redefining industries, and we're leading the charge. Genpact's AI Gigafactory, o...Show moreLast updated: 10 days ago
  • Promoted
Application Engineer, Vice President

Application Engineer, Vice President

ConfidentialGurgaon / Gurugram, India
Are you interested in building innovative technology that crafts the financial markets Do you like working at the speed of a startup, and solving some of the world's most exciting challenges Do you...Show moreLast updated: 10 days ago
  • Promoted
Assistant Vice President - Cloud & Digital Security

Assistant Vice President - Cloud & Digital Security

TriOptusDelhi, IN
Remote
Title : AVP Cloud and Digital Security.Location : PAN India.Duration : 1 YEAR CONTRACT and REMOTE.Reports To : VP Head of Cloud and Digital Security.We are...Show moreLast updated: 30+ days ago
  • Promoted
Assistant Vice President - Vulnerability Management

Assistant Vice President - Vulnerability Management

ConfidentialGurgaon / Gurugram
Understanding of Vulnerability Management Program including assessment and remediation.Experience analyzing risk, prioritizing vulnerabilities, validating vulnerability reports, and driving remedia...Show moreLast updated: 10 days ago
  • Promoted
Assistant Vice President, Technical Solution Architect – Agentic AI

Assistant Vice President, Technical Solution Architect – Agentic AI

ConfidentialNoida
Ready to build the future with AI.At Genpact, we don't just keep up with technology-we set the pace.AI and digital innovation are redefining industries, and we're leading the charge.Genpact's AI Gi...Show moreLast updated: 3 days ago
  • Promoted
Assistant Vice President-Application Development-Applications Development Engineering

Assistant Vice President-Application Development-Applications Development Engineering

ConfidentialNoida, India
Manage scoping, solutioning, delivery, implementation and adoption of enterprise capabilities.Focus upon deepening the adoption of Advanced Digital Technologies (Cloud Dev Stack, Intelligent automa...Show moreLast updated: 10 days ago
  • Promoted
Vice President Information Technology Infrastructure

Vice President Information Technology Infrastructure

ConfidentialNoida, India
IT Security Implementation, Operations, and Governance.Evaluate the IT Infrastructure and collaborate with all Departments of the Company to do an in-depth assessment of the risks related to Data, ...Show moreLast updated: 10 days ago
  • Promoted
Assistant Vice President - Cloud Security Architect

Assistant Vice President - Cloud Security Architect

ConfidentialGurugram, Gurgaon / Gurugram, India
SBI Card is a leading pure-play credit card issuer in India, offering a wide range of credit cards to cater to diverse customer needs. We are constantly innovating to meet the evolving financial nee...Show moreLast updated: 5 days ago
  • Promoted
Chief Information Secutiy Officer / Information Security Expert

Chief Information Secutiy Officer / Information Security Expert

Alpha OrionGurgaon, India
We are seeking a highly skilled CISO / Information Security Expert with a strong technical background in security tools, threat mitigation, and cybersecurity operations. This role focuses on hands-o...Show moreLast updated: 6 days ago
  • Promoted
Assistant Vice President – Lead Architect

Assistant Vice President – Lead Architect

ConfidentialNoida
Ready to build the future with AI.At Genpact, we don't just keep up with technology-we set the pace.AI and digital innovation are redefining industries, and we're leading the charge.Genpact's AI Gi...Show moreLast updated: 3 days ago
  • Promoted
Solution Architect - Cyber Security

Solution Architect - Cyber Security

Launchers Management ServicesDelhi, IN
Description : - Contribute towards the development of overall Information security strategy and roadmap(s) - Develop solution architectur...Show moreLast updated: 1 day ago
  • Promoted
Security Architect

Security Architect

ConfidentialGurgaon / Gurugram
We are seeking a highly skilled and strategic Security Architect to join our team.This role is crucial in defining and driving our security roadmap, designing robust security solutions across on-pr...Show moreLast updated: 30+ days ago
  • Promoted
Lead Information Security Architect

Lead Information Security Architect

ConfidentialNoida, India
With 80,000 customers across 150 countries, UKG is the largest U.And we're only getting started.Ready to bring your bold ideas and collaborative mindset to an organization that still has so much mo...Show moreLast updated: 10 days ago
  • Promoted
  • New!
Sr Architect

Sr Architect

ConfidentialNoida, India
Define and own the Enterprise Security Architecture roadmap, ensuring alignment with business strategy, and regulatory requirements across IT, OT, and cloud environments. Develop and maintain a comp...Show moreLast updated: 17 hours ago
  • Promoted
Senior Manager - Information and Cyber Security

Senior Manager - Information and Cyber Security

ConfidentialNoida, India
Create, implement, and maintain an enterprise cybersecurity strategy and IT risk management program by implementing technology, policy, and process-based solutions. Implement and manage Security Ope...Show moreLast updated: 10 days ago