
Cybersecurity Architect (BISO) - Hybrid
- Hyderabad, Telangana
- Permanent
- Full-time
- Serve as a trusted security advisor with business unit leadership.
- Act as a liaison to ensure cybersecurity practices are built into business unit initiatives for the entire lifecycle.
- Act as a trusted point of contact across business units.
- Work closely with security leadership to instill cybersecurity policies and practices throughout business units to address security operations, incident response, application security and infrastructure.
- Be actively informed and engaged in security projects across the business.
- Provide disaster recovery and business continuity planning advice when working with leaders for business and cybersecurity resiliency.
- Enforce the strong security culture set forth by the CISO, ensuring uniformity across business units and employees.
- Foster strong relationships with internal business units and excel in cybersecurity communication.
- Advise business units on enterprise-wide people, process and technology security recommendations.
- Maintain up-to-date knowledge related to security threats, vulnerabilities and mitigations set forth to reduce the attack surface; circulate this knowledge through the business units.
- Ensure business projects are focused on cybersecurity from the beginning.
- Identify and document threats and vulnerabilities that may impact the business and address them regularly with business units.
- In conjunction with security and business leaders, define key performance indicators (KPIs) and metrics aligning with business initiatives and deliver them to non-technical teams in terms that are accessible and comprehensible.
- Provide motivation to business units to adopt cybersecurity controls.
- Remove complexity and obstacles that hinder efficient security controls enterprise wide.
- Build relationships with business units to deliver security-by-design controls incorporated into projects, architecture, infrastructure and applications.
- Stay abreast of new laws, regulations and standards, and assess their impact to the business.
- Verify security content training initiatives and internal/external communication are conducted regularly.
- Openly support the CISO, management team and executive leadership, even during tumultuous times.
- Perform other duties as assigned.
- 15+ years of relevant Cybersecurity experience with minimum 5 years as Cybersecurity Architect or Lead Engineer
- Bachelor’s degree in information Cybersecurity, Cybersecurity Assurance, Computer Science or related fields
- Must have fluency in English both written & verbal
- Relevant certifications preferred include CISSP, CISM, GSEC, etc.
- Experience collaborating with IT teams to implement technology solutions that enable business initiatives and reduce risk
- Knowledge of relevant enterprise architecture methodology.
- Ability to determine key security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; and identifying integration issues
- Knowledge of relevant Cloud architecture standards, methodology, and technology
- Expert knowledge of security issues, techniques and implications
- Advanced knowledge of common systems, software and web application vulnerabilities (e.g., OWASP Top 10)
- Experience performing Root Cause Analysis (RCA) for control failures and advising IT Management with risk treatment plans
- Experience mentoring Cybersecurity and IT team members
- Capable of working with diverse teams and promoting an enterprise-wide positive security mindset/culture.
- Adept at understanding business focus and processes and ability to inject cybersecurity into the business through teamwork and influence.
- Ability to translate design into bill of materials and prepare cost estimates.
- Experience with risk assessments of new product development as well as externally purchased applications and cloud services
- General understanding of project management best practices
- Ability to translate technical designs into bill of materials for procurement, collaborate with procurement team, draft Request for Quote/Purchase/Information (RFQ/RFP/RFI), and manage vendor relationships,
- Familiarity of SSDLC (Secure Software Development Life Cycle) or SDL (Secure Development Lifecycle)
- Experience assisting with third-party risk assessments and security control design validation
- Able to deliver quality results in a high-energy/high-pressure environment
- Ability to multi-task and manage demands of many projects, issues, and tasks.
- Ability to perform duties with minimal supervision
- Excellent interpersonal and teamwork skills
- Excellent communications skills, both verbal and written
- Experience performing research and communicating findings to technical and non-technical audience
- Ability to credibly speak with clients regarding requests for information, integration, risk management, and compliance
- Experience technically leading and influencing teams without depending on management authority
- The opportunity to join an S&P 500 company with over 45 years of sustainable growth powered by the entrepreneurial spirit of a start-up.
- Support for your total well-being. This includes health, life, and disability insurance, as well as retirement savings plans and a discounted employee stock purchase program, plus paid time off for holidays, family leave, and company-wide wellness days.
- Flexible work accommodations. We value work/life harmony and offer our employees a range of accommodations to help them achieve success both at work and in their personal lives.
- A global community dedicated to volunteerism and sustainability, where collaboration is always encouraged, and individuality drives solutions.
- Career progression planning with dedicated time each month for learning and development.