Title: Architect
Area(s) of responsibility
Cyber Security Architect (6A)
Bangalore / Hyderabad
Roles & Responsibilities
- Design and implement enterprise security architecture and standards across IT and OT environments.
- Lead architecture reviews and threat modeling for new and existing systems, applications, and cloud workloads.
- Collaborate with IT, cloud, and DevOps teams to embed security into design and operations.
- Own the design, implementation, and governance of BeyondTrust Privileged Access Management (PAM).
- Define access policies, session monitoring, and just-in-time (JIT) access controls for privileged users.
- Implement and monitor Microsoft Defender for Cloud to secure Azure workloads.
- Integrate Azure security alerts with SIEM/SOC for advanced threat detection and response.
- Lead enterprise-wide vulnerability management program using tools such as Tenable, Qualys, or Defender.
- Collaborate with IT Ops to ensure timely remediation of identified vulnerabilities and EOL/EOS systems.
- Supervise SOC teams, driving incident detection, response, and root cause analysis.
- Define escalation paths, SLA metrics, and ensure 24/7 operational readiness of the SOC.
- Maintain and enhance cyber risk management framework aligned with ISO 27001, NIST CSF, or similar standards.
- Coordinate SOX, GDPR, and industry-specific compliance requirements across business units.
- Define and manage the third-party risk assessment lifecycle: onboarding, due diligence, and continuous monitoring.
- Review supplier security controls and support contract/SLA negotiations with security requirements.
- Architect and deploy OT security solutions such as Dragos, Claroty, or Nozomi.
- Bridge IT-OT security controls and ensure network segmentation, asset visibility, and threat detection.
- Lead secure SDLC practices including code reviews, SAST/DAST integration, and threat modeling.
- Implement application whitelisting, endpoint protection, and EDR policies for critical systems.
- Implement Data Security solutions like MS Purview
Required Skills & Qualifications:
- Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.
- 12–16 years of total experience in cybersecurity, with 5+ years in a security architecture or leadership role.
- Expertise in BeyondTrust, Azure Defender, Tenable/Qualys, MS Sentinel, and EDR tools.
- Experience managing SOC teams and security incident response.
- Strong understanding of OT security protocols and industrial control systems.
- Familiarity with TPRM platforms and compliance frameworks (ISO 27001, NIST, SOX).
- Certifications such as CISSP, SABSA, TOGAF, CISM, Azure Security Engineer, GIAC, or SANS preferred.
Soft Skills:
- Strong stakeholder engagement and communication skills.
- Ability to lead cross-functional teams and influence without direct authority.
- Analytical mindset and problem-solving abilities in high-pressure environments.