Upload Button Icon Add office photos
Engaged Employer

i

This company page is being actively managed by BB Works Team. If you also belong to the team, you can get access from here

BB Works Verified Tick

Compare button icon Compare button icon Compare
filter salaries All Filters

7 BB Works Jobs

Assistant Vice President - Information & Cyber Security (12-16 yrs)

12-16 years

Assistant Vice President - Information & Cyber Security (12-16 yrs)

BB Works

posted 1d ago

Job Description

AVP Information & IT Security shall be senior level executive who shall be entrusted to drive the overall agenda of the Information & Cyber Security of the Company in accordance with the established policies and procedures & implement the information security program through various initiatives by working closely with various stakeholder including external entities such as vendors / third parties and provide periodic updates to the Information Security Committee / senior management. This position shall also be a key contributor to the BCP and Crisis management program of the company. This position shall report to VP IT Infrastructure & Security

Cyber & Information Security Program Leadership:

a) Creates and maintains Cyber Security policies, procedure, and control standards.

b) Produces high quality communication, presenting complex technical matters clearly and concisely with audiences ranging from peers to Sr. Management

c) Maintains current knowledge with respect to technologies and products both in house and in the market.

d) Recommends effective changes to enhance defense and response procedures

e) Drives team to evaluate, tests, and selects security tools and products.

f) Align closely with the business objectives and strategy of the company.

g) Provide advice and support to management and information users in the implementation of Information and Cyber Security Policy.

h) Manage Company-wide information security governance processes, convene the Information Security Committee meetings and lead the Information Security liaisons in the establishment of an information security program and project priorities

Align closely with IT and other functional teams to:

a. Monitor implementation of information security projects / tools / technologies of next generation such as SOC , identity & access management (Email security, Network access, Privilege access, identity access, single sign-on, MFA, MDM) & Data protection (e.g., cryptography, cloud security etc.)

b. Resolve & manage security issues that require an in-depth understanding of the IT environment.

j) Oversee the selection testing, deployment, and maintenance of cyber security initiatives, hardware and software products as well as outsourced arrangements.

k) Leads Security Operations to meet organization Cyber Security objectives & goals

l) Communicate & work closely with IT Team, where operational security issues are identified

m) Ability to anticipate and respond to changing priorities, and operate effectively in a dynamic demand- based environment, requiring extreme flexibility and responsiveness

n) Partners with SOC and Incident Response teams in the event of a security incident to ensure timely mitigation and remediation efforts are completed

Policy, Compliance and Audit:

a) Responsible for all compliance and audits whether regulatory, internal, or external from IT side, be a representative, at regulator and industry forums.

b) Provide leadership, direction, and guidance in assessing and evaluating information security risks and monitor compliance with security standards and appropriate policies.

c) Oversight on compliance with the changing laws and applicable regulations such as PCI, IRDAI, and Cert-FIN.

AVP Information & IT Security shall be senior level executive who shall be entrusted to drive the overall agenda of the Information & Cyber Security of the Company in accordance with the established policies and procedures & implement the information security program through various initiatives by working closely with various stakeholder including external entities such as vendors / third parties and provide periodic updates to the Information Security Committee / senior management. This position shall also be a key contributor to the BCP and Crisis management program of the company. This position shall report to VP IT Infrastructure & Security

d) Lead the development and implementation of effective and reasonable policies and practices to secure protected and sensitive data and ensure information security and compliance with relevant legislation and legal interpretation.

e) Coordinate with Internal / external auditors, and outside consultants as appropriate on required security assessments and audits.

Stakeholder Management & Communication:

a) Ability to communicate technical ideas and strategies effectively to non-technical audiences, including executive leadership, via multiple mediums (e.g., written communications, verbal communications, presentations, etc.).

b) Cybersecurity Technology Trends - Demonstrates a strong understanding of emerging trends in the Cybersecurity technology landscape, including new technologies, processes, and ways of working. Able to determine the impact of technological advancement on the company's systems, applications, infrastructure, and practices.

c) Vendor / Contract Management - Ability to build effective relationships with third party providers, suppliers, and partners

Risk Management and Incident Response:

a) Perform information security risk assessments with respect to Company's functional security domains as well as 3rd party vendor environments on an ongoing basis and report any significant risks to the ISC / senior management.

b) Building Information & Cyber Security Risk metrics / dashboards & reports for parameters across various domains.

c) Manage the Information and Cyber Security policy & standards of the Organization, incorporate feedback on the implications of the policy from the senior management and other business units.

d) Control & facilitate the identification, response, investigation, remediation and reporting of information security incidents

e) Managing the advance threat protection & strengthen the cyber incidents response framework & capabilities

f) Develop, implement, and administer technical security standards, as well as a suite of security services and tools to address and mitigate security risk.

g) Examine impacts of new technologies on the organization's overall information security.

BCP and Cyber Crisis Management:

a) Contribute and enhance the BCP program of the company

b) Ensure Business and IT Resilience goals are met through planning, development and timely review & testing of BCP and DR plans covering people, site, technology and vendor outage scenarios along with business and IT teams

c) Ensure high availability, architectural resilience & recoverability requirements are met for applications and IT Infrastructure as per agreed RTO /RPO driven from BIA

d) Conduct annual BCP Risk Assessment against technology, environmental and geo-political risks and advice senior management on BCP strategies to cover short to long outage scenarios for site/city /country

e) Maintain and test the cyber crisis management plan to respond to cyber crisis, including threat intelligence services, detection, containment, response, recovery, forensic investigation root cause analysis.

f) Conduct periodic scenario-based simulation /tabletop crisis drills to evaluate and validate adequacy of Incident Management and recovery runbooks/playbooks for multiple Cyber Risk events and emerging threats. Present the findings to Senior Management and follow-up on remediation /corrective actions

g) DR /BCP KPIs and Compliance Dashboards & Reports via self-service

Outreach, Education and Training:

a) Promote user awareness initiatives within the organization develop and maintain IS policy, standards, procedures, and guidelines to support the organizations' information security program.

b) Transform the information security program into specific actions which shall include awareness, security infrastructure, security incident response and risk management.

c) Create education and awareness programs and advise business units at all levels on security issues, best practices.

d) Drive proactive Risk Culture through training programs and awareness mailers


Functional Areas: Other

Read full job description

Prepare for Assistant Vice President roles with real interview advice

What people at BB Works are saying

What BB Works employees are saying about work life

based on 17 employees
73%
94%
86%
100%
Flexible timing
Alternate Saturday off
No travel
Day Shift
View more insights

BB Works Benefits

Submitted by Company
Work From Home
Cafeteria
Submitted by Employees
Work From Home
Soft Skill Training
Job Training
Team Outings
Free Transport
Child care +6 more
View more benefits

Compare BB Works with

HBL Global

3.9
Compare

Shine

2.8
Compare

HirePro Consulting

3.8
Compare

Axis Risk Consulting Services

3.4
Compare

IT-SCIENT

2.7
Compare

Pratyin Infotech Consulting

4.3
Compare

Saminfratech

4.3
Compare

CRUD Operations Private Limited

4.8
Compare

REALCODERZ

3.3
Compare

Mspring InfoTech

4.3
Compare

Coditro

4.5
Compare

JOVEO

3.2
Compare

Technotrust Solutions

4.4
Compare

Techgene Solutions

4.2
Compare

Africare Global Business Ventures (India) Private Limited

4.0
Compare

Guru Network

4.5
Compare

Sri Sattva Group

4.5
Compare

JOBIZO

3.5
Compare

Credlawn India

4.4
Compare

Cheric Information Network Technologies

4.2
Compare

Similar Jobs for you

Assistant Vice President Information Security at GM Infotech

10-16 Yrs

₹ 60-65 LPA

Assistant Vice President at BOB Financial Solutions Ltd

10-16 Yrs

₹ 20-40 LPA

Assistant Vice President Information Security at GM INFOTECH

10-16 Yrs

₹ 61-65 LPA

Security at TD Newton

12-15 Yrs

₹ 20-40 LPA

Vice President at Maven

8-19 Yrs

₹ 20-46 LPA

Security at QualityKiosk Technologies

12-22 Yrs

₹ 25-45 LPA

Vice President at Edge in Asia Recruitment Private Limited

12-16 Yrs

₹ 70-70 LPA

Security at CareerNet Technologies Pvt. Ltd.

10-18 Yrs

₹ 60-75 LPA

Technology Auditor at See And Recruit (India) Pvt. Ltd.

8-15 Yrs

₹ 34-45 LPA

Senior Audit Lead at Steps

10-18 Yrs

₹ 50-60 LPA

BB Works Noida Office Location

View all
Noida, Uttar Pradesh Office
Headquarter
Office On, C-116, 1st Floor, near SBI, C Block, Sector 2 Noida, Uttar Pradesh
201301
write
Share an Interview