Cyber Security Manager

Altimetrik

Bengaluru

Hybrid

INR 1,800,000 - 2,600,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Altimetrik in Bengaluru, India seeks an experienced security governance professional to lead client cybersecurity assessments, reviews, and third-party risk management. You will collaborate with pre-sales, legal, and delivery teams to respond to security requirements and drive remediation actions.

The role requires strong knowledge of ISO 27001, SOC 2, NIST CSF, and other frameworks, plus excellent communication for senior stakeholders. Prior audits and regulatory experience are essential.

Qualifications

  • Experience in cybersecurity governance, risk, and compliance (GRC).
  • Experience in client security assessments and RFP responses.
  • Knowledge of major control frameworks (ISO 27001, SOC 2, NIST CSF, CIS Controls, PCI DSS, HIPAA, GDPR, DPDP).
  • Strong knowledge of IAM, endpoint security, vulnerability management, data protection, cloud security, logging, incident response, and TPRM.
  • Experience managing client audits, certification audits, and regulatory assessments.
  • Understanding contractual security obligations and compliance requirements.
  • Excellent written and verbal communication; ability to present security posture to clients and leadership.
  • Strong stakeholder management and cross-functional coordination.
  • Ability to manage multiple concurrent client assessments with attention to detail.

Responsibilities

  • Lead client-initiated cybersecurity assessments, including RFP security questionnaires and due diligence reviews.
  • Review and provide security inputs for MSAs, security addenda, data protection clauses, and contractual security requirements.
  • Partner with pre-sales, legal, delivery, infrastructure, and business teams to evaluate and respond to client security requirements.
  • Manage periodic client security reviews, governance meetings, and security assurance reporting.
  • Lead third-party risk management (TPRM) assessments, including evaluation of vendor security controls and evidence reviews.
  • Coordinate and manage client audits, onsite and remote assessments, and security compliance reviews.
  • Interpret client security requirements and map them to organizational controls and frameworks.
  • Develop, review, and maintain security governance documentation, control narratives, policies, procedures, and evidence repositories.
  • Drive closure of audit observations, client action items, and security remediation initiatives.
  • Provide security advisory support during client onboarding, transitions, and new business opportunities.
  • Track security compliance metrics, assessment status, audit findings, and executive reporting.
  • Mentor team members and establish standardized processes for client security assessments and governance activities.

Skills

GRC
Client security assessments
RFP responses
Due diligence
Cloud security
IAM
Vulnerability management
Data protection
Third-party risk management
Audit management
Communication skills

Education

Bachelor's degree in CS/IT/Cybersecurity
CISM
CISSP
CRISC
ISO 27001 Lead Auditor

Job description

Role & responsibilities
  • Lead and manage client-initiated cybersecurity assessments, including RFP security questionnaires, due diligence reviews, and security assurance requests.
  • Review and provide security inputs for Master Service Agreements (MSAs), security addendums, data protection clauses, and contractual security requirements.
  • Partner with pre-sales, legal, delivery, infrastructure, and business teams to evaluate and respond to client security requirements.
  • Manage periodic client security reviews, governance meetings, and security assurance reporting.
  • Lead third-party risk management (TPRM) assessments, including evaluation of vendor security controls, evidence reviews, and risk assessments.
  • Coordinate and manage client audits, onsite and remote assessments, and security compliance reviews.
  • Interpret client security requirements and map them to organizational security controls and compliance frameworks.
  • Develop, review, and maintain security governance documentation, control narratives, policies, procedures, and evidence repositories.
  • Drive closure of audit observations, client action items, and security remediation initiatives.
  • Provide security advisory support during client onboarding, transitions, and new business opportunities.
  • Track security compliance metrics, assessment status, audit findings, and executive reporting.
  • Mentor team members and establish standardized processes for client security assessments and governance activities.
Preferred candidate profile
  • Strong experience in cybersecurity governance, risk, and compliance (GRC).
  • Extensive experience in client security assessments, RFP security responses, and customer due diligence engagements.
  • Strong understanding of cybersecurity control frameworks, including ISO/IEC 27001, SOC 2, NIST CSF, CIS Controls, PCI DSS, HIPAA, GDPR, and DPDP.
  • Excellent knowledge of identity and access management, endpoint security, vulnerability management, data protection, cloud security, logging and monitoring, incident response, and third-party risk management.
  • Experience in managing client audits, certification audits, and regulatory assessments.
  • Strong understanding of contractual security obligations and security compliance requirements.
  • Excellent written and verbal communication skills with the ability to present security posture to clients and senior leadership.
  • Strong stakeholder management, negotiation, and cross-functional coordination skills.
  • Ability to manage multiple concurrent client assessments with strong attention to detail and timely delivery.
Preferred qualifications
  • Bachelors degree in computer science, Information Technology, Cybersecurity, or a related field.
  • Professional certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Auditor/Lead Implementer, or equivalent are preferred
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Lead
Cybersecurity Lead

Epergne Solutions • Chennai District

On-site
INR 1,500,000 - 2,500,000
Manager- GRC
Manager- GRC

CyberCube Services • Gurugram District

On-site
INR 1,500,000 - 2,100,000
Cybersecurity Lead - Governance, Risk & Compliance
Cybersecurity Lead - Governance, Risk & Compliance

Scybers Inc • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Opportunities for professional development
Flexible work arrangements
Supportive team culture
Cybersecurity Lead - Governance, Risk & Compliance
Cybersecurity Lead - Governance, Risk & Compliance

Scybers • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Career Growth opportunities
Innovative Environment
Flexible work arrangements
Security Analyst - IT GRC & Audit (CSCRF)
Security Analyst - IT GRC & Audit (CSCRF)

Kotak Alternate Asset Managers Limited • Mumbai

On-site
INR 3,000,000 - 5,500,000
Cyber Security SME
Cyber Security SME

Luxoft • Pune District

On-site
INR 9,425,000 - 13,196,000
Cybersecurity professional
Cybersecurity professional

Quess • Pune District

Hybrid
INR 1,500,000 - 2,300,000
Security, Risk & Compliance Lead
Security, Risk & Compliance Lead

RedDoorz • Dadri

On-site
INR 2,400,000 - 4,800,000
Senior Security Consultant
Senior Security Consultant

Launch It Consulting • Bengaluru

Hybrid
INR 2,500,000 - 4,200,000
Cyber Security Manager
Cyber Security Manager

Antal TECH jobs • Mumbai

On-site