Head- Cyber Security
1 Nos.
123931
Full Time
15.0 Year(s) To 20.0 Year(s)
Not Disclosed by Recruiter
IT Infrastructure & IT Security / Support
Chemicals/PetroChemical
Job Description:
Position Overview:
- This role is to lead the Cyber Security & Compliance product group. This includes the Application Security team, responsible for security assurance of applications (Design and architecture review, SAST, and DAST); Infrastructure Security team, responsible for security assurance of all Infrastructure components (such as patch and configuration compliance scanning and reporting); and Vulnerability Management, responsible for the identification, triage, scanning, and reporting against all vulnerabilities in the environment.
- The lead includes overall leadership of these Application Security, Infrastructure Security, and Vulnerability Management teams; ownership of multiple relevant security controls and all the associated assurance and compliance activities; definition, collection, and reporting of relevant data points to support this activity; maintenance and configuration of associated technology capabilities; and strategy and roadmap development for the product group
Key Responsibilities:
- Strategic Leadership
- Define and implement the organization’s cybersecurity vision, strategy, and roadmap aligned with business objectives.
- Establish governance frameworks, policies, and standards for information security.
- Risk Management
- Identify, assess, and mitigate cybersecurity risks across all business units.
- Oversee risk assessments, vulnerability management, and penetration testing programs.
- Security Architecture & Operations
- Design and maintain secure IT infrastructure, networks, and applications.
- Ensure robust incident detection, response, and recovery mechanisms.
- Lead implementation of advanced security technologies (e.g., SIEM, EDR, IAM).
- Compliance & Regulatory Adherence
- Ensure compliance with relevant laws, regulations, and industry standards (ISO 27001, NIST, GDPR, etc.).
- Manage audits and certifications related to cybersecurity.
- Incident Response & Crisis Management
- Develop and maintain incident response plans.
- Lead investigations and remediation of security breaches or cyberattacks.
- Stakeholder Engagement
- Collaborate with executive leadership, IT teams, and business units to integrate security into processes.
- Act as the primary liaison for external regulators, auditors, and cybersecurity partners.
- Team Development
- Build and lead a high-performing cybersecurity team.
- Provide training and awareness programs for employees to foster a security-first culture.
- Continuous Improvement
- Monitor emerging threats, trends, and technologies.
- Drive innovation in cybersecurity practices and tools.
Education Qualification:
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or related field.
- Master’s degree (preferred) in Cybersecurity, Information Assurance, or Business Administration (MBA with IT focus).
- CISSP – Certified Information Systems Security Professional (Preferred)
- CISM – Certified Information Security Manager (Preferred)
- CISA – Certified Information Systems Auditor
- CEH – Certified Ethical Hacker (Preferred)
- ISO 27001 Lead Implementer / Lead Auditor (Good to have)
- Cloud Security Certifications (e.g., CCSK, AWS Certified Security Specialty)
- Risk & Compliance Certifications (e.g., CRISC) (Preferred)
Experience:
- 15+ years in IT and cybersecurity roles.
- 8–10 years in leadership positions managing cybersecurity programs.
- Designing and implementing enterprise-wide security strategies.
- Managing large teams and budgets.
- Handling regulatory compliance and audits.
- Incident response and crisis management.
Technical Competencies/Skills:
- Deep knowledge of ISO 27001, NIST CSF, CIS Controls, and other security frameworks.
- Familiarity with GDPR, PCI-DSS, and regional compliance requirements.
- Expertise in firewalls, IDS/IPS, VPNs, and secure network architecture.
- Strong understanding of cloud security (AWS, Azure, GCP).
- Implementation of Single Sign-On (SSO), Multi-Factor Authentication (MFA).
- Role-based access control and privileged access management.
- Advanced skills in SIEM tools (Splunk, QRadar, etc.).
- Proficiency in threat hunting, forensics, and malware analysis.
Key Skills :
Company Profile
Multi-division and multi-product, chemical intermediate with manufacturing facilities; having product portfolio of Basic Chemicals (BC), Fine & Speciality Chemicals (FSC) & Performance Products (PP).
Apply Now
- Interested candidates are requested to apply for this job.
- Recruiters will evaluate your candidature and will get in touch with you.