Cyber Security SME

Luxoft

Bengaluru

On-site

INR 3,800,000 - 6,800,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Luxoft in Bengaluru is seeking a Cyber Security SME to lead design, implementation and governance of security controls across the bank's technology landscape. The role ensures robust protection of platforms, networks, cloud environments, client data, and critical banking infrastructure while maintaining regulatory compliance.

The position covers security strategy, architecture, threat and risk management, security operations, and regulatory compliance with audits and third-party risk governance.

Qualifications

  • 5+ years in cyber security within banking/financial services.
  • Expertise across network, cloud, IAM, application, and data security domains.
  • Hands-on knowledge of security frameworks (NIST, ISO 27001, CIS).
  • Experience with security tools and platforms in large scale environments.

Responsibilities

  • Define and govern enterprise cyber security strategy and secure architectures across on-prem and cloud.
  • Lead security domains: network, cloud, IAM, endpoint, application, data security.
  • Oversee threat modelling, risk assessments, vulnerability management, and security testing.
  • Oversee SOC, SIEM, SOAR, and incident response strategies.
  • Ensure regulatory compliance with DORA, PRA/FCA, GDPR, and CSP standards.
  • Engage stakeholders and support audits, RFPs, and cyber transformation initiatives.

Skills

5+ years cyber security
Banking experience
Network security
Cloud security
IAM
Application security
Data security
Threat modelling
Vulnerability management
SIEM/SOAR
Regulatory knowledge
Stakeholder communication

Tools

Palo Alto
Fortinet
IDS/IPS
VPNs
Splunk
Sentinel
SAST/DAST tools

Job description

Project description

We are seeking a Cyber Security SME to lead the design, implementation, and governance of security controls across the bank's technology landscape. The role will ensure robust protection of platforms, networks, cloud environments, client data, and critical banking infrastructure while maintaining compliance with global regulatory requirements.

Responsibilities
  • 1. Security Strategy & ArchitectureDefine and implement enterprise-wide cyber security strategy aligned to the bank's business and technology landscapeDesign and govern secure architectures across:Network infrastructure (on-prem and hybrid connectivity)Cloud platforms (Azure, AWS, GCP)Identity and access management ecosystemsCore banking, trading, and payment systemsEmbed security-by-design and zero trust principles across all layers2. Core Security Domains OwnershipLead and provide SME oversight across key cyber domains:Network Security (firewalls, IDS/IPS, segmentation, secure connectivity, DDoS protection)Cloud Security (secure configuration, CSPM, workload protection, cloud-native controls)Identity & Access Management (IAM/PAM) (RBAC, MFA, privileged access, identity governance)Endpoint & Infrastructure Security (EDR/XDR, device hardening, patching)Application Security (secure SDLC, DevSecOps, API security, code scanning)Data Security (encryption, tokenisation, DLP, data classification)3. Threat & Risk ManagementLead threat modelling and risk assessments across critical banking systems and infrastructureDefine mitigation strategies aligned to frameworks (NIST, ISO 27001, CIS)Oversee vulnerability management, penetration testing, and security assurance activities4. Security Operations & Incident ResponseProvide oversight on SOC, SIEM, SOAR, and threat detection capabilitiesEnhance monitoring through AI-driven anomaly detection and behavioural analyticsDefine and lead incident response strategies for cyber events (ransomware, breaches, insider threats, DDoS)5. Regulatory & ComplianceEnsure compliance with relevant regulations and standards:DORA (Digital Operational Resilience Act)PRA / FCA cyber resilience requirementsGDPR and data protection regulationsSWIFT Customer Security Programme (CSP)Support audits, regulatory reviews, and cyber resilience testing6. Third-Party & Supply Chain SecurityAssess and manage cyber risk across vendors, fintech partners, and infrastructure providersDefine third-party security standards, onboarding controls, and continuous monitoring7. Stakeholder Management & AdvisoryAct as trusted advisor to CIO, CISO, Risk, and business stakeholdersTranslate technical cyber risks into business and operational impactSupport RFPs, client engagements, and strategic cyber transformation initiatives

SKILLS
Must have
  • Work Experience:Essential:
  • At least 5 years of relevant experience in cyber security within banking / financial servicesProven expertise across network, cloud, IAM, application, and data security domainsHands-on knowledge of security frameworks (NIST, ISO 27001, CIS Controls)Technical CapabilitiesNetwork Security: Firewalls (e.g., Palo Alto, Fortinet), IDS/IPS, VPNs, segmentationCloud Security: Azure/AWS/GCP security services, CSPM, IAM integration, container securityIAM/PAM: Okta, Azure AD, CyberArk, SailPoint or similarSecurity Operations: SIEM (Splunk, Sentinel), SOAR, threat intelligence platformsEndpoint Security: EDR/XDR solutions (e.g., CrowdStrike, Defender)DevSecOps: CI/CD security integration, SAST/DAST toolsData Protection: Encryption standards, key management, DLPRegulatory KnowledgeStrong understanding of cyber resilience expectations within bankingExperience supporting audits, regulatory submissions, and control frameworksSoft SkillsStrong stakeholder engagement and executive communication skillsAbility to operate at both strategic (CISO-level) and hands-on technical levelsExperience working across global, distributed teams

Nice to have

Certifications: CISSP, CISM, CISA, CCSP, Azure/AWS Security certificationsExperience with Zero Trust Architecture and cloud transformation programmesExposure to AI-driven cyber security and automation

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security SME
Cyber Security SME

Luxoft • Pune District

On-site
INR 4,500,000 - 7,000,000
Cybersecurity SME
Cybersecurity SME

Recruise • Hyderabad

On-site
INR 3,500,000 - 5,500,000
Cybersecurity Lead
Cybersecurity Lead

Epergne Solutions • Chennai District

On-site
INR 1,500,000 - 2,500,000
Cyber Security SME
Cyber Security SME

Sutherland Global • Pune District

Hybrid
INR 1,800,000 - 3,000,000
Senior Cyber Security Specialist
Senior Cyber Security Specialist

Magnet HR Consulting Services • Bengaluru

On-site
INR 3,500,000 - 6,000,000
Information Technology Security Manager
Information Technology Security Manager

Advantmed India LLP • Pune District

Hybrid
INR 2,000,000 - 4,000,000
Cybersecurity Subject Matter Expert (SME)
Cybersecurity Subject Matter Expert (SME)

Sunovaa Tech • Pune District

On-site
INR 2,400,000 - 4,200,000
Security Engineering Lead
Security Engineering Lead

IDFC FIRST Bank • Navi Mumbai

Hybrid
INR 3,500,000 - 6,000,000
Cloud & Data Security SME
Cloud & Data Security SME

TOCUMULUS • Arishinakunte

On-site
INR 3,000,000 - 5,500,000
Certificate sponsorship
Senior Cybersecurity Architect
Senior Cybersecurity Architect

GAVS Technologies • Chennai District

On-site
INR 2,000,000 - 3,000,000