411 Cybersecurity jobs in Hyderabad
CyberSecurity Analyst
Posted today
Job Viewed
Job Description
Job Title: Cybersecurity Analyst
Location: (Hyderabad)
Experience: 3–5 years
Employment Type: Full-time
Role Overview
The Cybersecurity Analyst will be responsible for protecting organizational systems from cyber threats through proactive monitoring, incident response, and implementation of security best practices. The ideal candidate will have 3–5 years of experience in security operations and threat management.
Key Responsibilities
- Monitor and analyze security events, alerts, and incidents across systems and networks
- Conduct vulnerability assessments, penetration testing, and threat hunting activities
- Configure, manage, and optimize security tools such as SIEM, IDS/IPS, firewalls, and endpoint protection solutions
- Investigate and respond to security breaches and incidents in a timely manner
- Develop and maintain cybersecurity policies, standards, and compliance requirements
- Collaborate with IT and business teams to ensure secure systems, applications, and cloud environments
Required Qualifications
- Bachelor's degree in Computer Science, Information Technology, or related field
- 3–5 years of proven experience in cybersecurity or related roles
- Hands-on experience with SIEM platforms, firewalls, endpoint security, and vulnerability management tools
- Strong knowledge of network, application, and cloud security principles
- Familiarity with compliance standards such as ISO 27001, GDPR, or NIST frameworks
- Relevant certifications preferred (CEH, CISSP, CompTIA Security+, CISM)
Key Skills
- Threat detection & incident response
- Vulnerability & risk management
- Security monitoring & log analysis
- Cloud & network security
- Strong analytical and problem-solving skills
Job Type: Full-time
Pay: From ₹350,000.00 per year
Work Location: In person
Engineer, Cybersecurity
Posted today
Job Viewed
Job Description
Job Description:
Job Purpose
The Cybersecurity Engineering Engineer is responsible for creating and maintaining the information security tooling and infrastructure for endpoints or servers on-prem, in the Cloud, or in containers. This individual works as part of a results-oriented, service-delivery team and assists other disciplines within the Information Security team. Additionally, the Cybersecurity Engineering Engineer performs root cause analysis of problems, selects, develops, and implements automation tools, and actively participates in deeply technical discourse.
Responsibilities
- Assist in the design, planning, and implementation of information security solutions
- Tune and design systems infrastructure for security and enhancements
- Automation of manual tasks using scripting and application development
- Investigate and adopt new security technologies/tools as needs arise
- Evaluate, test, and integrate new security controls, settings and security tools
- Provide technical analysis, resolve problems, and propose solutions
- Provide support to, and coordinate with, developers, operations staff, release engineers, Incident Response, GRC, Red Team, and other disciplines
- Educate and mentor team members and operations staff
- Participate in a weekly on-call rotation for after-hours support
Knowledge and Experience
- Degree in engineering discipline or equivalent experience required
- 3+ years of relevant Engineering or Information Security experience needed
- Top-tier analytics and problem solving
- Experience and familiarity with cloud and container technologies
- Ability to work in a service-oriented team environment
- Must have good organizational skills and time management skills
- Communicate effectively with both technical and business resources
Cybersecurity Engineer
Posted today
Job Viewed
Job Description
Key Responsibilities:
- Design, implement, and manage Palo Alto Networks solutions, including:
- Next-Gen Firewall (NGFW)
- EDR/XDR (Cortex XDR)
- SIEM/SOAR (Cortex XSIAM)
- Lead and support migration projects from legacy platforms (e.g., Splunk, Sentinel, QRadar) to Palo Alto Cortex XSIAM
- Work with clients to understand business requirements and deliver tailored cybersecurity solutions
- Perform threat hunting, alert tuning, policy configuration, and use case development
- Collaborate with global teams (onshore/offshore model) for delivery in sectors like Telecom, Finance, Retail, and Public Sector
- Support security assessments, integrations, and continuous improvement initiatives
Required Skills & Qualifications:
- Strong hands-on experience in Palo Alto technologies (NGFW, Cortex XDR/XSIAM)
- Proven knowledge of cybersecurity operations, SOC processes, and incident response
- Experience with SIEM migration and integrations
- Understanding of threat intelligence, detection engineering, and automation
- Good knowledge of scripting (Python, PowerShell) and log analysis
- Excellent communication and client-facing skills
Preferred Certifications:
- Palo Alto Networks Certifications, such as:
- PCNSE (Network Security Engineer)
- Cortex XDR/XSIAM certifications (if available)
- Additional certifications like CEH, CISSP, or relevant SIEM/EDR vendor certifications are a plus
Specialist Cybersecurity
Posted 1 day ago
Job Viewed
Job Description
**About the Job:**
The Cybersecurity Risk Management team is part of Chief Security Office (CSO) and responsible for managing multiple teams that facilitate external audits, internal audits, analyze policy exceptions, conduct risk assessments, and run enforceable governance across processes. They work closely with the AT&T Technology Services (ATS) teams and Technology Risk Management (TRM) teams and other CSO teams to ensure the effective and efficient GRC processes. Below are the key responsibilities of the Specialist - Audit Management (ISO 27001) position:
+ Develop and maintain audit plans to ensure all activities supporting the annual internal and external ISO 27001 audits are identified, assigned, and completed in a timely manner.
+ Ensure end to end audit process documentation and process flows of the internal and external audit processes are created, reviewed, updated, and maintained.
+ Ensure the audit scope, objectives, and deliverables are documented and managed.
+ Create and facilitate and annual internal Control Owner Assertion (COA) process making sure the COA is completed in a timely manner, at least 6 weeks before the kick-off of the internal audit cycle.
+ Ensure the audit kick-off presentations are created to include the audit timeline, communication protocols, and expectations to help facilitate successful audits.
+ Ensure the audit kick-off presentations are finalized 2 weeks before the audit kick-off meetings are scheduled to be conducted.
+ Schedule and conduct the audit kickoff meetings.
+ Prior to conducting the external audit kick-off, work with the external auditors to make sure the audit requests are clearly documented, and the audit request templates are completed prior to the audit kick-off meeting.
+ Coordinate and schedule interviews and walkthroughs between the external auditors and the internal Data and Control Owners to review processes in scope for the audit.
+ Respond to the external auditor inquiries, clarification requests, and follow-ups throughout the audit process.
+ Respond to the internal Data and Control Owners inquiries, clarification requests, and follow-ups throughout the audit process.
+ Coordinate and schedule the onsite and remote fieldwork meetings between the external auditors and internal Data Owners ensuring the external auditors have proper access and support.
+ Review preliminary audit findings and reports from the external auditors and work with the appropriate Data and Control Owners to address identified issues.
+ Ensure the confidentiality and integrity of sensitive information obtained as a result of preparing for and participating in the audits.
+ Track and manage action items resulting from internal and external audit findings, driving timely remediation and validation that all reported items have been addressed in a timely manner.
+ Help create and support an environment of continuous improvement.
+ Educate staff on audit processes, requirements, and compliance best practices.
+ Facilitate training for internal Data Owners to drive process improvements.
+ Prepare weekly and monthly status reporting providing details of outstanding audit items and overall status of each audit.
+ Schedule and conduct weekly status meetings to review the status of the audit and outstanding items and facilitate working sessions to help address open audit issues.
+ Perform research and analysis for various audit topics to gain insights and make recommendations to properly address in scope issues.
+ Create postmortem presentations identifying issues encountered during the audit that must be addressed to ensure we are compliant with all applicable requirements. Ensure the appropriate Data and Control Owners have visibility to the postmortem issues and they provide remediation plans to address all open issues.
**Experience Level:** 5+ years.
**Location:** Hyderabad / Bengaluru
**Required skills:**
+ 3 years minimum experience in conducting IT audits, Risk assessments, information security compliance, or IT security operations.
+ A minimum of 2 years' experience leading ISO 27001, SOC, or PCI audits preferred.
+ Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001, CIS Controls).
+ Excellent project management, organizational, and communication skills.
**Desirable skills:**
+ Prior experience with Telecom sector.
+ Relevant certifications such as ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CRISC, or CISA
**Additional information (if any):** Need to be flexible to provide coverage in US morning hours.
**Weekly Hours:**
40
**Time Type:**
Regular
**Location:**
IND:AP:Hyderabad / Argus Bldg 4f & 5f, Sattva, Knowledge City- Adm: Argus Building, Sattva, Knowledge City
It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
AT&T will consider for employment qualified applicants in a manner consistent with the requirements of federal, state and local laws
We expect employees to be honest, trustworthy, and operate with integrity. Discrimination and all unlawful harassment (including sexual harassment) in employment is not tolerated. We encourage success based on our individual merits and abilities without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, disability, marital status, citizenship status, military status, protected veteran status or employment status
Senior Cybersecurity
Posted today
Job Viewed
Job Description
Job Description:
Senior Cybersecurity - Delinea Active Directory Bridging
Job Summary:
We are seeking a skilled Senior Cybersecurity - Delinea Active Directory Bridging professional. The ideal candidate will be responsible for designing, implementing and maintaining the Delinea Server Suite Active Directory Bridging privileged access security platform. The ideal candidate will have deep technical expertise in identity federation, directory services, and privileged access management, with hands-on experience in Delinea's Server Suite and AD Bridging solutions. The Delinea Lead Engineer role plays an integral role in AT&T's privileged access program by reducing the overall risk to AT&T.
Key Responsibilities:
- Design and implement Delinea's Server Suite (Server PAM) AD Bridging solutions (formerly Centrify Server Suite) to integrate Unix/Linux platforms with Active Directory.
- Configure and manage access controls, authentication policies, and group policies across heterogeneous environments (Linux/Unix/Windows).
- Optimize configurations for security and performance across heterogeneous systems.
- Lead engineering efforts for onboarding new systems into the AD Bridging framework, including scripting and automation (e.g., Bash, PowerShell, Python).
- Perform health checks, troubleshooting, and performance tuning of Delinea Server Suite AD Bridging deployments.
- Provide support for AD Bridging-related incidents and service requests.
- Ensure proper Group Policy Object (GPO) enforcement and privilege escalation control.
- Enforce least privilege access principles using Delinea's PAM capabilities.
- Identify and help implement improvements to reduce operational overhead.
- Work with cross-functional teams, including product, architecture, engineering and operations teams.
- Maintain technical documentation for configurations, processes, architectural diagrams, and troubleshooting guides.
- This role requires to work from office and flexible to provide support in a 24/7 environment
- Experience working with global teams located across USA and International region
Qualifications & Experience:
- Minimum 12 years of experience working with Delinea Server Suite (Server PAM), including deployment, administration, and troubleshooting.
- Expertise in Delinea (formerly Centrify) components: Agents, Access Manager, Audit components etc.
- Strong understanding of Privileged Access Management (PAM) principles, Delinea Server Suite, and Active Directory (AD) integration.
- Strong understanding of Linux/Unix system administration.
- Scripting skills (Bash, Python) for automation and troubleshooting.
- Familiarity with information security standards (NIST, ISO, etc.) and regulatory compliance requirements (SOX, PCI, etc.).
Preferred:
- Strong experience with both Delinea Active Directory Bridging and CyberArk PAM solutions
- Familiarity with cloud IAM integrations (Microsoft Entra ID formerly Azure AD)
- Certifications such as Centrify Certified Systems Engineer (CCSE), Red Hat Certified System Administrator or Linux Foundation Certified System Administrator
Soft Skills:
- Strong problem-solving abilities and attention to detail.
- Excellent communication and documentation skills.
- Ability to work independently as well as collaborate with cross-functional teams.
- Capable of working in a high-pressure environment while handling multiple tasks.
Weekly Hours:
40
Time Type:
Regular
Location:
IND:AP:Hyderabad / Argus Bldg 4f & 5f, Sattva, Knowledge City- Adm: Argus Building, Sattva, Knowledge City
It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
Cybersecurity Engineer
Posted today
Job Viewed
Job Description
Role Objective:
The objective of this role is to enhance and safeguard the organization's security posture by leading a comprehensive Vulnerability Management program. The Senior Cybersecurity Engineer will play a critical role in identifying, assessing, prioritizing, and mitigating vulnerabilities across diverse enterprise systems. With over a decade of experience in cybersecurity, and hands-on expertise with tools like Qualys and Nessus, the individual in this role will go beyond scanning to ensure vulnerabilities are effectively addressed and closed in collaboration with cross-functional teams.
Key Responsibilities:
- Lead and manage enterprise-wide vulnerability management programs.
- Conduct regular vulnerability scans using tools such as Qualys, Nessus, and other industry-standard platforms.
- Analyze scan results, identify false positives, prioritize real threats, and communicate actionable mitigation steps.
- Collaborate with IT, DevOps, and application teams to remediate vulnerabilities effectively within defined SLAs.
- Develop and maintain metrics, dashboards, and reports to communicate risk posture to technical and non-technical stakeholders.
- Stay up to date with the latest vulnerabilities, exploits, threats, and industry best practices.
- Assist in defining and enforcing vulnerability management policies, procedures, and standards.
- Support internal and external audits and compliance activities (e.g., ISO 27001, NIST, PCI-DSS).
Required Qualifications:
- Minimum 10 years of professional experience in Cybersecurity, with a strong focus on Vulnerability Management.
- Demonstrated hands-on expertise with Qualys, Nessus, and similar vulnerability assessment tools.
- Solid understanding of network protocols, system administration (Windows, Linux), and application security.
- Proven experience with remediation and mitigation strategies, not limited to scanning and reporting.
- Strong knowledge of CVE, CVSS, and vulnerability lifecycle management.
- Familiarity with scripting or automation for scan and remediation processes (e.g., Python, PowerShell).
- Experience working in complex enterprise environments with cross-functional teams.
Preferred Qualifications:
- Relevant certifications such as CISSP, CEH, OSCP, or GIAC (GCIH, GCIA, GSEC).
- Experience integrating vulnerability data into SIEMs or ticketing systems (e.g., Splunk, ServiceNow).
- Exposure to cloud environments (AWS, Azure, GCP) and their native security tools.
- Understanding of regulatory and compliance standards (HIPAA, SOX, GDPR, etc.).
Cybersecurity Architect
Posted today
Job Viewed
Job Description
FactSet creates flexible, open data and software solutions for over 200,000 investment professionals worldwide, providing instant access to financial data and analytics that investors use to make crucial decisions.
At FactSet, our values are the foundation of everything we do. They express how we act and operate , serve as a compass in our decision-making, and play a big role in how we treat each other, our clients, and our communities. We believe that the best ideas can come from anyone, anywhere, at any time, and that curiosity is the key to anticipating our clients' needs and exceeding their expectations.
Your Team's Impact
The Business Information Security Officer (BISO) serves as a trusted security advisor to lines of business. The BISO understands security risks and technologies and is able to effectively communicate them to business units. The BISO works in tandem with the business across multiple services and platforms to address risk, while advising business leaders to ensure they are making decisions with security in mind. The BISO is an advanced role supporting the cybersecurity program. This individual provides leadership, executive support, and strategic and tactical guidance for a world-class cybersecurity program supporting enterprise security initiatives. As a business enabler, the BISO is an effective communicator with the technical aptitude to drive security fundamentals into aspects of the business.
The BISO must be capable of working closely with senior management, third parties, project managers and business subject matter experts (SMEs). Additionally, the BISO must be personable and able to translate cybersecurity issues to business leader initiatives. The BISO must have a technical background and be able to understand technologies, their purpose, and their security requirements and data protection needs, wherever they reside. BISOs should also understand threats, as well as risk mitigations and technical controls recommended by security leaders.
What You'll Do
- Serve as a trusted security advisor with business unit leadership.
- Act as a liaison to ensure cybersecurity practices are built into business unit initiatives for the entire lifecycle.
- Act as a trusted point of contact across business units.
- Work closely with security leadership to instill cybersecurity policies and practices throughout business units to address security operations, incident response, application security and infrastructure.
- Be actively informed and engaged in security projects across the business.
- Provide disaster recovery and business continuity planning advice when working with leaders for business and cybersecurity resiliency.
- Enforce the strong security culture set forth by the CISO, ensuring uniformity across business units and employees.
- Foster strong relationships with internal business units and excel in cybersecurity communication.
- Advise business units on enterprise-wide people, process and technology security recommendations.
- Maintain up-to-date knowledge related to security threats, vulnerabilities and mitigations set forth to reduce the attack surface; circulate this knowledge through the business units.
- Ensure business projects are focused on cybersecurity from the beginning.
- Identify and document threats and vulnerabilities that may impact the business and address them regularly with business units.
- In conjunction with security and business leaders, define key performance indicators (KPIs) and metrics aligning with business initiatives and deliver them to non-technical teams in terms that are accessible and comprehensible.
- Provide motivation to business units to adopt cybersecurity controls.
- Remove complexity and obstacles that hinder efficient security controls enterprise wide.
- Build relationships with business units to deliver security-by-design controls incorporated into projects, architecture, infrastructure and applications.
- Stay abreast of new laws, regulations and standards, and assess their impact to the business.
- Verify security content training initiatives and internal/external communication are conducted regularly.
- Openly support the CISO, management team and executive leadership, even during tumultuous times.
- Perform other duties as assigned.
What We're Looking For
Required Skills
- 15+ years of relevant Cybersecurity experience with minimum 5 years as Cybersecurity Architect or Lead Engineer
- Bachelor's degree in information Cybersecurity, Cybersecurity Assurance, Computer Science or related fields
- Must have fluency in English both written & verbal
- Relevant certifications preferred include CISSP, CISM, GSEC, etc.
- Experience collaborating with IT teams to implement technology solutions that enable business initiatives and reduce risk
- Knowledge of relevant enterprise architecture methodology.
- Ability to determine key security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; and identifying integration issues
- Knowledge of relevant Cloud architecture standards, methodology, and technology
- Expert knowledge of security issues, techniques and implications
- Advanced knowledge of common systems, software and web application vulnerabilities (e.g., OWASP Top 10)
- Experience performing Root Cause Analysis (RCA) for control failures and advising IT Management with risk treatment plans
- Experience mentoring Cybersecurity and IT team members
Desired Skills
- Capable of working with diverse teams and promoting an enterprise-wide positive security mindset/culture.
- Adept at understanding business focus and processes and ability to inject cybersecurity into the business through teamwork and influence.
- Ability to translate design into bill of materials and prepare cost estimates.
- Experience with risk assessments of new product development as well as externally purchased applications and cloud services
- General understanding of project management best practices
- Ability to translate technical designs into bill of materials for procurement, collaborate with procurement team, draft Request for Quote/Purchase/Information (RFQ/RFP/RFI), and manage vendor relationships,
- Familiarity of SSDLC (Secure Software Development Life Cycle) or SDL (Secure Development Lifecycle)
- Experience assisting with third-party risk assessments and security control design validation
- Able to deliver quality results in a high-energy/high-pressure environment
- Ability to multi-task and manage demands of many projects, issues, and tasks.
- Ability to perform duties with minimal supervision
- Excellent interpersonal and teamwork skills
- Excellent communications skills, both verbal and written
- Experience performing research and communicating findings to technical and non-technical audience
- Ability to credibly speak with clients regarding requests for information, integration, risk management, and compliance
- Experience technically leading and influencing teams without depending on management authority
What's In It For You
At FactSet, our people are our greatest asset, and our culture is our biggest competitive advantage. Being a FactSetter means:
The opportunity to join an S&P 500 company with over 45 years of sustainable growth powered by the entrepreneurial spirit of a start-up.
Support for your total well-being. This includes health, life, and disability insurance, as well as retirement savings plans and a discounted employee stock purchase program, plus paid time off for holidays, family leave, and company-wide wellness days.
Flexible work accommodations. We value work/life harmony and offer our employees a range of accommodations to help them achieve success both at work and in their personal lives.
A global community dedicated to volunteerism and sustainability, where collaboration is always encouraged, and individuality drives solutions.
Career progression planning with dedicated time each month for learning and development.
Business Resource Groups open to all employees that serve as a catalyst for connection, growth, and belonging.
Salary is just one component of our compensation package and is based on several factors including but not limited to education, work experience, and certifications.
Company Overview:
FactSet ( NYSE:FDS | NASDAQ:FDS ) helps the financial community to see more, think bigger, and work better. Our digital platform and enterprise solutions deliver financial data, analytics, and open technology to more than 8,200 global clients, including over 200,000 individual users. Clients across the buy-side and sell-side, as well as wealth managers, private equity firms, and corporations, achieve more every day with our comprehensive and connected content, flexible next-generation workflow solutions, and client-centric specialized support. As a member of the S&P 500, we are committed to sustainable growth and have been recognized among the Best Places to Work in 2023 by Glassdoor as a Glassdoor Employees' Choice Award winner. Learn more at and follow us on X and LinkedIn .
At FactSet, we celebrate difference of thought, experience, and perspective. Qualified applicants will be considered for employment without regard to characteristics protected by law.
Be The First To Know
About the latest Cybersecurity Jobs in Hyderabad !
Cybersecurity Engineer
Posted today
Job Viewed
Job Description
About Providence
At Providence, we are grounded in our goal to serve all as we
engineer the future of healthcare
. Providence Global Innovation Center, launched in Feb 2020, is the first development and innovation center of Providence outside the United States. Providence is a $26B non-profit organization and is one of the largest health systems in the United States. To read more,
click here
Why Us?
- Best In-class Benefits
- Inclusive Leadership
- Challenging Work
- Competitive Pay
- Employee Friendly Policies
Location:
Hyderabad
Enterprise Security and Infrastructure at Providence is responsible for appropriately protecting all information relating to its caregivers and affiliates, as well as protecting its confidential business information (including information relating to its caregivers, affiliates, and patients)
What will you be responsible for?
As a Cybersecurity Engineer, you'll support the daily operations and ongoing maintenance of core enterprise security platforms. You'll ensure systems like Firewalls, WAFs, Email Security, and EDR tools are running optimally, responding to issues, and continuously aligned with our security standards.
What would your day look like?
- Managing and resolving tickets via ServiceNow (SNOW)
- Investigating and responding to incidents, alerts, and user requests
- Performing routine platform maintenance and health checks
- Supporting sprint-based tasks and project work
- Documenting actions, SOPs, and contributing to process improvements
- Collaborating with cross-functional teams to resolve platform or integration issues
Who are we looking for?
A hands-on security operations professional with strong troubleshooting skills, attention to detail, and the ability to work in a fast-paced environment. You're comfortable owning tasks, collaborating with global teams, and supporting a variety of security platforms in an enterprise environment.
What we expect?
- 3–6 years of experience in Cybersecurity Operations or Security Platform Support
- Hands-on experience with Firewall, Web Application Firewall (WAF), Email Security, and EDR tools
- Familiarity with incident and request workflows using ticketing tools like ServiceNow
- Working knowledge of platform health checks, patching, and system maintenance
- Exposure to cloud environments (preferably Azure) is a plus
- Ability to manage time across ticket-based support and sprint work
- Strong communication skills and a collaborative mindset
- Experience working in multi-vendor environments and coordinating with vendors.
- Preferred certifications: Security+, AZ-SC-100 or similar.
Providence is proud to be an Equal Opportunity Employer. We appreciate differences related to the factors including but not limited to background, education, gender, age, generation, religious background, ability, technical skills in all our employment-related opportunities.
Health is a human right
Specialist Cybersecurity
Posted today
Job Viewed
Job Description
Job Description:
About the Job:
The Cybersecurity Risk Management team is part of Chief Security Office (CSO) and responsible for managing multiple teams that facilitate external audits, internal audits, analyze policy exceptions, conduct risk assessments, and run enforceable governance across processes. They work closely with the AT&T Technology Services (ATS) teams and Technology Risk Management (TRM) teams and other CSO teams to ensure the effective and efficient GRC processes. Below are the key responsibilities of the Specialist – Risk Management position:
- Develop and maintain a Risk Assessment schedule to ensure all activities supporting the annual Risk Assessment process are identified, assigned, and completed in a timely manner to be compliant with ISO 27001, SOC, and PCI risk requirements.
- Ensure end to end risk assessment process documentation and process flows of the Risk assessment and Risk reporting processes are created, reviewed, updated, and maintained.
- Ensure the Risk Assessment scope, objectives, and deliverables are documented and managed.
- Schedule and facilitate the annual Risk Assessment process, making sure the Risk Assessment is completed in a timely manner.
- Create and publish the monthly Risk Management report.
- Ensure the annual Risk Assessment presentation is created to include the timeline, communication protocols, and expectations to help facilitate the process.
- Ensure the kick-off presentation is finalized 2 weeks before the annual Risk Assessment kick-off meeting is scheduled to be conducted.
- Schedule and conduct the annual Risk Assessment kickoff meeting.
- Respond to the external auditor's risk related inquiries, clarification requests, and follow-ups.
- Ensure the confidentiality and integrity of sensitive information obtained as a result of facilitating the risk assessment process.
- Track and manage Risk Management related action items resulting from external audit findings, driving timely remediation and validating all reported items have been addressed in a timely manner.
- Help create and support an environment of continuous improvement.
- Educate staff on Risk Management processes, requirements, and compliance best practices.
- Facilitate training for internal Data Owners to drive process improvements.
- Create and publish monthly Vulnerability Management, ISO and SOC Audit reporting.
- Create and publish monthly ISO and SOC Audit Management reporting.
- Assist the Audit Management team with responsibilities as needed.
Experience Level: 5+ years.
Location: Hyderabad / Bengaluru
Required skills:
- 3 years minimum experience in conducting IT audits, Risk assessments, information security compliance, or IT security operations.
A minimum of 2 years' experience leading ISO 27001, SOC, or PCI audits preferred.
Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001, CIS Controls).
- Advanced risk management, project management, time management, Microsoft PowerPoint, Excel, Outlook, and Word skills.
Desirable skills:
- Prior experience with Telecom sector.
- Relevant certifications such as ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CRISC, or CISA
Additional information (if any): Need to be flexible to provide coverage in US morning
Weekly Hours:
40
Time Type:
Regular
Location:
Hyderabad, India
It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
CyberSecurity Lead
Posted today
Job Viewed
Job Description
About Qylis
Qylis is a leading provider of innovative cybersecurity solutions. We are committed to empowering organizations to safeguard their digital assets, mitigate cyber threats, and optimize their operations.
Job Description
As the Cybersecurity Department Head, you will play a pivotal role in driving the growth and success of our cybersecurity practice. You will be responsible for overseeing a wide range of services, including Security Operations Center (SOC), Managed Detection and Response (MDR), Extended Detection and Response (XDR), Vulnerability Assessment and Penetration Testing (VAPT), Digital Forensics, Pre-sales, Client Management, and Cyber Forensics.
Key Responsibilities:
• Strategic Leadership:
- Develop and execute a comprehensive cybersecurity strategy aligned with Qylis' overall business objectives.
- Identify emerging trends and technologies in cybersecurity to drive innovation and competitive advantage.
- Foster strong relationships with key stakeholders, including clients, partners, and industry experts.
- Practice Development:
- Build and scale high-performing cybersecurity teams through effective recruitment, training, and development.
- Ensure the cybersecurity team delivers high-quality services across SOC, MDR, XDR, VAPT, Cyber Forensics, and Incident Response (IR).
- Sales and Business Development:
- Lead pre-sales activities, including solution demonstrations, proposals, and RFP responses, for cybersecurity services.
- Identify and pursue new business opportunities, leveraging your deep understanding of the cybersecurity market.
- Collaborate with the sales team to drive revenue growth and achieve sales targets.
- Customer Success:
- Ensure high levels of customer satisfaction through exceptional service delivery and proactive support for cybersecurity services.
- Manage client relationships, address concerns, and identify upsell and cross-sell opportunities.
- Conduct regular business reviews with key clients to assess performance and identify areas for improvement.
- Technical Expertise:
- Possess a deep understanding of cybersecurity principles, technologies, and industry best practices.
- Stay up to date with the latest threats, vulnerabilities, and mitigation techniques in the cybersecurity domain.
- Provide technical guidance to the team and contribute to the development of innovative security solutions.
Qualifications and Experience:
• Proven track record in leading and growing successful cybersecurity practices.
• Extensive experience in SOC, MDR, XDR, VAPT, Cyber Forensics, and Incident Response (IR).
• Strong technical expertise in cybersecurity technologies and frameworks.
• Experience in managing client relationships and delivering pre-sales solutions.
• Excellent communication, presentation, and interpersonal skills.
• Strong leadership and team management skills.
• A passion for cybersecurity and a commitment to delivering exceptional results.
• Advanced certifications (e.g., CISSP, CISM, CISA) are highly valued.