Cyber Security Manager
Altimetrik · Bengaluru, Karnataka, India
Free to search · AI fit score against your CV · tailor your résumé in one click
Altimetrik · Bengaluru, Karnataka, India
Role & responsibilities • Lead and manage client-initiated cybersecurity assessments, including RFP security questionnaires, due diligence reviews, and security assurance requests. • Review and provide security inputs for Master Service Agreements (MSAs), security addendums, data protection clauses, and contractual security requirements. • Partner with pre-sales, legal, delivery, infrastructure, and business teams to evaluate and respond to client security requirements. • Manage periodic client security reviews, governance meetings, and security assurance reporting. • Lead third-party risk management (TPRM) assessments, including evaluation of vendor security controls, evidence reviews, and risk assessments. • Coordinate and manage client audits, onsite and remote assessments, and security compliance reviews. • Interpret client security requirements and map them to organizational security controls and compliance frameworks. • Develop, review, and maintain security governance documentation, control narratives, policies, procedures, and evidence repositories. • Drive closure of audit observations, client action items, and security remediation initiatives. • Provide security advisory support during client onboarding, transitions, and new business opportunities. • Track security compliance metrics, assessment status, audit findings, and executive reporting. • Mentor team members and establish standardized processes for client security assessments and governance activities. Preferred candidate profile • Strong experience in cybersecurity governance, risk, and compliance (GRC). • Extensive experience in client security assessments, RFP security responses, and customer due diligence engagements. • Strong understanding of cybersecurity control frameworks, including ISO/IEC 27001, SOC 2, NIST CSF, CIS Controls, PCI DSS, HIPAA, GDPR, and DPDP. • Excellent knowledge of identity and access management, endpoint security, vulnerability management, data protection, cloud security, logging and monitoring, incident response, and third-party risk management. • Experience in managing client audits, certification audits, and regulatory assessments. • Strong understanding of contractual security obligations and security compliance requirements. • Excellent written and verbal communication skills with the ability to present security posture to clients and senior leadership. • Strong stakeholder management, negotiation, and cross-functional coordination skills. • Ability to manage multiple concurrent client assessments with strong attention to detail and timely delivery. Preferred qualifications • Bachelors degree in computer science, Information Technology, Cybersecurity, or a related field. • Professional certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Auditor/Lead Implementer, or equivalent are preferred