Cyber Security SME

Luxoft

Pune District

On-site

INR 4,500,000 - 7,000,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Luxoft is seeking a Cyber Security SME to lead design, implementation, and governance of security controls across a bank’s technology landscape. The role covers network, cloud, IAM, application, and data security with emphasis on regulatory alignment.

Responsibilities include threat modelling, risk assessments, vulnerability management, and incident response oversight across on-prem and cloud platforms. Strong collaboration with CIO/CISO and global teams is essential.

Qualifications

  • 5+ years in cyber security within banking/financial services.
  • Hands-on with network, cloud, IAM, application, and data security.
  • Knowledge of security frameworks (NIST, ISO 27001, CIS Controls).

Responsibilities

  • Design and govern enterprise-wide cyber security strategy and secure architectures.
  • Lead threat modelling and risk assessments for critical banking systems.
  • Oversee vulnerability management, penetration testing, and assurance activities.
  • Oversee SOC, SIEM, SOAR, and threat detection capabilities; define incident response strategies.
  • Ensure regulatory compliance with DORA, PRA/FCA cyber resilience, GDPR, CSP.
  • Engage stakeholders and support RFPs and cyber transformation initiatives.

Skills

Cyber security
Network security
Cloud security
IAM/PAM
Application security
Data security
Threat modelling
Regulatory compliance
Security operations
Incident response
DevSecOps
Vulnerability management

Tools

Palo Alto
Fortinet
Azure
AWS
GCP
Okta
CyberArk
SailPoint
Splunk
Sentinel
CrowdStrike
Defender
SAST/DAST tools

Job description

Project description

We are seeking a Cyber Security SME to lead the design, implementation, and governance of security controls across the bank's technology landscape. The role will ensure robust protection of platforms, networks, cloud environments, client data, and critical banking infrastructure while maintaining compliance with global regulatory requirements.

Responsibilities
  • 1. Security Strategy & ArchitectureDefine and implement enterprise-wide cyber security strategy aligned to the bank's business and technology landscapeDesign and govern secure architectures across:Network infrastructure (on-prem and hybrid connectivity)Cloud platforms (Azure, AWS, GCP)Identity and access management ecosystemsCore banking, trading, and payment systemsEmbed security-by-design and zero trust principles across all layers2. Core Security Domains OwnershipLead and provide SME oversight across key cyber domains:Network Security (firewalls, IDS/IPS, segmentation, secure connectivity, DDoS protection)Cloud Security (secure configuration, CSPM, workload protection, cloud-native controls)Identity & Access Management (IAM/PAM) (RBAC, MFA, privileged access, identity governance)Endpoint & Infrastructure Security (EDR/XDR, device hardening, patching)Application Security (secure SDLC, DevSecOps, API security, code scanning)Data Security (encryption, tokenisation, DLP, data classification)3. Threat & Risk ManagementLead threat modelling and risk assessments across critical banking systems and infrastructureDefine mitigation strategies aligned to frameworks (NIST, ISO 27001, CIS)Oversee vulnerability management, penetration testing, and security assurance activities4. Security Operations & Incident ResponseProvide oversight on SOC, SIEM, SOAR, and threat detection capabilitiesEnhance monitoring through AI-driven anomaly detection and behavioural analyticsDefine and lead incident response strategies for cyber events (ransomware, breaches, insider threats, DDoS)5. Regulatory & ComplianceEnsure compliance with relevant regulations and standards:DORA (Digital Operational Resilience Act)PRA / FCA cyber resilience requirementsGDPR and data protection regulationsSWIFT Customer Security Programme (CSP)Support audits, regulatory reviews, and cyber resilience testing6. Third-Party & Supply Chain SecurityAssess and manage cyber risk across vendors, fintech partners, and infrastructure providersDefine third-party security standards, onboarding controls, and continuous monitoring7. Stakeholder Management & AdvisoryAct as trusted advisor to CIO, CISO, Risk, and business stakeholdersTranslate technical cyber risks into business and operational impactSupport RFPs, client engagements, and strategic cyber transformation initiatives

SKILLS
Must have
  • Work Experience:Essential:
  • At least 5 years of relevant experience in cyber security within banking / financial servicesProven expertise across network, cloud, IAM, application, and data security domainsHands-on knowledge of security frameworks (NIST, ISO 27001, CIS Controls)Technical CapabilitiesNetwork Security: Firewalls (e.g., Palo Alto, Fortinet), IDS/IPS, VPNs, segmentationCloud Security: Azure/AWS/GCP security services, CSPM, IAM integration, container securityIAM/PAM: Okta, Azure AD, CyberArk, SailPoint or similarSecurity Operations: SIEM (Splunk, Sentinel), SOAR, threat intelligence platformsEndpoint Security: EDR/XDR solutions (e.g., CrowdStrike, Defender)DevSecOps: CI/CD security integration, SAST/DAST toolsData Protection: Encryption standards, key management, DLPRegulatory KnowledgeStrong understanding of cyber resilience expectations within bankingExperience supporting audits, regulatory submissions, and control frameworksSoft SkillsStrong stakeholder engagement and executive communication skillsAbility to operate at both strategic (CISO-level) and hands-on technical levelsExperience working across global, distributed teams

Nice to have

Certifications: CISSP, CISM, CISA, CCSP, Azure/AWS Security certificationsExperience with Zero Trust Architecture and cloud transformation programmesExposure to AI-driven cyber security and automation

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security SME
Cyber Security SME

Luxoft • Bengaluru

On-site
INR 3,800,000 - 6,800,000
Cybersecurity SME
Cybersecurity SME

Recruise • Hyderabad

On-site
INR 3,500,000 - 5,500,000
Cybersecurity Lead
Cybersecurity Lead

Epergne Solutions • Chennai District

On-site
INR 1,500,000 - 2,500,000
Cyber Security SME
Cyber Security SME

Sutherland Global • Pune District

Hybrid
INR 1,800,000 - 3,000,000
Cybersecurity Subject Matter Expert (SME)
Cybersecurity Subject Matter Expert (SME)

Sunovaa Tech • Pune District

On-site
INR 2,400,000 - 4,200,000
Senior Cyber Security Specialist
Senior Cyber Security Specialist

Magnet HR Consulting Services • Bengaluru

On-site
INR 3,500,000 - 6,000,000
Information Technology Security Manager
Information Technology Security Manager

Advantmed India LLP • Pune District

Hybrid
INR 2,000,000 - 4,000,000
Cloud & Data Security SME
Cloud & Data Security SME

TOCUMULUS • Arishinakunte

On-site
INR 3,000,000 - 5,500,000
Certificate sponsorship
Senior Cybersecurity Architect
Senior Cybersecurity Architect

GAVS Technologies • Chennai District

On-site
INR 2,000,000 - 3,000,000
Security Engineering Lead
Security Engineering Lead

IDFC FIRST Bank • Navi Mumbai

Hybrid
INR 3,500,000 - 6,000,000