About Our Client
The company is a large organisation operating in the manufacturing/industrial sector. It is known for leveraging advanced technology to drive innovation and maintain its position as a leader in the industry.
Job Description
- Develop a multi‑year information security roadmap aligned with digitalization, automation, and industry initiatives.
- Drive a zero‑trust, threat‑centric security architecture across IT, OT, cloud, and remote operations.
- Embed security‑by‑design across engineering, operations, and enterprise manufacturing OT & industrial cybersecurity.
- Secure complex operational technology (OT) environments, including PLCs, SCADA, DCS, MES, and legacy industrial control systems.
- Lead baseline hardening, network segmentation, and continuous monitoring across plants and factories.
- Build incident playbooks for ICs/OT cyber events to minimize downtime and ensure cyber defense, threat intelligence & incident response.
- Oversee advanced threat detection, SOC operations, vulnerability programs, and adversary simulation.
- Build rapid‑response capability for ransomware, insider threats, supply‑chain compromise, and OT disruptions.
- Partner with India CERTs, law enforcement, and industry bodies for intelligence governance, risk & compliance.
- Ensure adherence to Indian and global standards such as CERT‑In directives, ISO 27001/2, NIST CSF, IEC 62443, GDPR‑equivalent frameworks, and customer audit requirements.
- Lead enterprise‑wide risk governance, cybersecurity maturity assessments, and board‑level reporting.
- Strengthen data privacy programs and ensure compliance across multi‑site operations.
The Successful Applicant
- 15+ years of progressive experience in cybersecurity with at least 5 years in a senior leadership role.
- Deep expertise in both IT & OT security within complex manufacturing, energy, industrial, automotive, or similar environments.
- Strong knowledge of ICs/OT security frameworks, network architectures, ransomware defense and enterprise risk management.
- Experience managing large‑scale cybersecurity programs across distributed plant networks and high‑availability environments.
- Global certifications such as CISSP, CISM, CISA, CCISO, GICSP, or IEC 62443 (preferred but not required).
- Ability to collaborate with CXOs, influence board decisions, and lead multidisciplinary teams.
CISO Chief Information Security Officer • Addlestone, Weybridge