Jobs
>
Bengaluru

    Sr. Information Security Lead - Bangalore, India - Philips

    Philips
    philips background
    Full time
    Description

    Job Title

    Sr. Information Security Lead

    Job Description

    Philips is a global leader in health technology, committed to improving billions of lives worldwide and striving to make the world healthier and more sustainable through innovation. Driven by the vision of a better tomorrow.

    But it's not just what we do, it's who we are. We are 80,000, wonderfully unique individuals, with two things in common. An unwavering sense of purpose and a relentless determination to deliver on our customers' needs. It's what inspires us to create meaningful solutions – the kind that make a real difference – when it matters most.

    The world and our customers' needs are changing faster than ever before and while we are proud of what we do already, we know we can do more. That's why we need you, to help us tackle increasingly complex challenges posed by ever evolving health and well-being needs.

    In this role, you have the opportunity to

    Information Security Lead will be responsible for developing, implementing and monitoring a strategic, comprehensive IT security plan for platforms across Enterprise IT. Information Security Lead will provide the vision and leadership necessary to manage the risk to the platform assigned and will ensure business alignment, effective governance, system and infrastructure availability, integrity and confidentiality. This position reports to Head of Enterprise IT Security.

    Information Security Lead need to be strong in the below mentioned areas:

    • Threat modelling
    • Security Testing (includes Dynamic, Static Security Testing),
    • Penetration Testing
    • Application Architecture review
    • Cloud Security Architecture Review
    • Define Security Use Cases
    • Cloud Platform Security
    • API Security
    • Open AI/GenAI Security
    • Data Lake Security
    • Modern Authentication
    • SDLAN Security
    • Network Segmentation
    • MITRE Attack Framework
    • Cyber Security Framework based on Industry Standard / Best Practices
    • CIS Baseline Validation
    • Microsoft Defender Implementation and Monitoring (Malware, EDR, ATP)
    • Microsoft 365 Security
    • Designing of Conditional Access Policy

    You are responsible to:

    • Develop and maintain robust security controls to protect Philips business from security breaches/ incidents.
    • Deliver security demand from the business for security controls.
    • Gather Security Management Framework and information security architectural requirements and drive compliance of Enterprise IT systems against those requirements.
    • Manage risk profile of the IT-systems and Suppliers
    • Drive education and awareness activities across platform and Enterprise IT.
    • Evaluate new cybersecurity threats and IT trends and develops effective security controls.
    • Establish regular governance with service owners to review security controls status
    • Liaison with Philips Information Security Office in driving security Improvement Program
    • Evaluate potential security breaches, coordinates response, and recommend corrective actions.
    • Define and report on information security KPIs.
    • Organize the preparation of the security status dashboards including presentation to executive management.
    • Analyze application end to end, prepare threat modeling (STRIDE, PASTA & DREAD) based on different risk scenarios and drive to fix those risks
    • Cloud Security Management that includes Security Posture Management, Security Baseline, Code validation for Infra As a Code, Golden Image, Key Management, NACL, NSG, Native Security Dashboard Firewall Management, Docker Security, Kubernetes security
    • Prepare security use cases / functional requirements that new solutions need to meet. Validate those requirements are met when the solution is delivered.
    • Perform API Security testing that includes – API inventory, logging and monitoring, API Gateway Security, API Services Security.
    • Exposure to network security which includes network segmentation, DDoS, Network Devices Security Baselining and monitoring, firewall rules review for any deviation.
    • Application Security – integration of security tooling with CI/CD pipeline, review of security reports and follow-up to get them closed, DAST, SAST, Web Services Security, Security Focused Testing, Security Code Review etc.
    • Identify risk with authentication and authorization protocols, mitigate risks with legacy authentication, design conditional access policy
    • Management of foundational security tooling e.g. tools like Defender, EDR, Vuln Mgmt, CMDB agent.
    • Perform Defensive / Offensive assessment on IT environment/applications to simulate attacks from real threat actors.
    • Perform attack pattern analysis based on MITRE Attack framework, support solution development to address the pattern
    • Define Data Protection roadmap and work with architecture to meet the requirement. Deploy data protection tools like CASB, DLP etc.

    You are a part of

    Enterprise IT Security team working closely with Enterprise IT, IT Platform Leaders, CIO and CISO.

    To succeed in this role, you should have the following skills and experience

    Soft Skills

    • Excellent English language communication skills, both verbal and written. Cross-cultural etiquettes, customer centric and collaborative mindset.
    • Works autonomously within established procedures and practices.
    • Good command on stakeholder management, judgement, conflict resolution, risk & mitigations.
    • Provides leadership to the global team at strategic, tactical, and operational level
    • Maintains current knowledge of industry and regulatory trends and developments for the enterprise technology.
    • Specialized in a number of Security domains such as incident response, operational assessment of security posture, general security management.
    • Thorough understanding of Security Management principles, Security governance principles

    Qualification

    • Bachelor's or Master's degree in Information Technology and or commensurate experience in delivering security solutions.
    • Overall Enterprise IT Security experience of 15 years or more.
    • Security Certifications such as CISSP, CISM, CISA, CIPP etc. preferred.

    #LI

    In return, we offer you

    A warm welcome to a challenging, innovative environment with great opportunities for you to explore. Quality is right on the top of Philips leadership agenda and that means you have the unique opportunity to come in and have a recognized voice to drive and witness exciting, transformational changes. You will be empowered to drive high quality, groundbreaking innovations with a globally recognized, premium brand behind you. Next to that a rewarding career in Philips with attractive package

    Why should you join Philips?

    Working at Philips is more than a job. It's a calling to create a healthier society through meaningful work, focused on improving 2.5 billion lives a year by delivering innovative solutions across the health continuum. Our people experience a variety of unexpected moments when their lives and careers come together in meaningful ways. Learn more by watching this video.

    To find out more about what it's like working for Philips at a personal level, visit the Working at Philips page on our career website, where you can read stories from our employee blog. Once there,you can also learn about our recruitment process, or find answers to some of the frequently asked questions.



  • JOBS N TA HR Services Bengaluru, India

    Advising clients with regards to their Investment in Equity & Derivative Market, Place orders on their behalf. ...

  • CGI

    Security Tech Lead

    1 day ago


    CGI Bengaluru, India

    Job Objective & Description: Security Tech Lead – · Analyses security vulnerabilities, support hardening, able to perform malware analysis, threat hunting and security log analytics. · They also quantify the security risks · Ability to communicate and collaborate with the busin ...


  • IT Bengaluru, India

    Job description: · - Expertise in leading and managing security operations, specifically utilizing CrowdStrike technologies. · - Proficient in implementing and managing CrowdStrike Falcon platform for endpoint protection. · - In-depth knowledge of threat intelligence, incident re ...


  • SPG Consulting Solutions Pvt Bengaluru, India

    Seeking candidates with over 10 years of comprehensive Cybersecurity Experience across various domains including application security, cloud security, data security, security governance, and network security. · We are in search of an experienced Cyber Security Lead with a minimum ...

  • Zynga

    Application Security Lead

    14 minutes ago


    Zynga Bengaluru, India

    AVAILABLE POSITIONS Application Security Lead · Careers Category: Engineering · Careers location: Bengaluru, India · Connected Worker Type: Connected · R_ · Position Overview: · Partnering with the Cybersecurity leadership, this role is responsible for engaging across Game St ...


  • Philips Bangalore, India Full time

    Job Title · Information Security LeadJob Description · Philips is a global leader in health technology, committed to improving billions of lives worldwide and striving to make the world healthier and more sustainable through innovation. Driven by the vision of a better tomorrow. ...

  • Kyndryl

    Cyber Security Lead

    1 week ago


    Kyndryl Bangalore, India Paid Work

    Who We Are · At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inc ...


  • EdgeVerve Bengaluru, India

    Edgeverve is a subsidiary of Infosys Ltd, specializing in Products. You will get an opportunity to work with a motivated team of individuals that cater to critical areas of security like product security, Cloud security, Mobile security and Enterprise security. You will be overse ...


  • Societe Generale Global Solution Centre Bengaluru, India

    Responsibilities · 1. Perform manual penetration testing and vulnerability assessment for internal, external perimeter, web applications, IT infrastructure, end-points, cloud etc. · 2. Hands on experience in testing diverse infra components including various enterprise platforms ...


  • OnGrid Bengaluru, India

    What you will do : · Develop efficient strategies to protect the system, the networking infrastructure, data, and information systems against potential threats/cyber risks · Routinely performing threat analysis, system checks, and security tests · Defining and updating informatio ...

  • Cigres Technologies Private Limited

    Data Security Lead

    4 days ago


    Cigres Technologies Private Limited Bangalore, India permanent

    Job Description : · Qualifications include : · - Experience with data security and access rights management including IAM (identify access management) is a must · - Experience working with other business / functions and Schneider Digital · - Analytical thinking, able to communica ...


  • Capgemini Bengaluru, India Permanent

    Job Description · Strong Problem-Solving Skills · Strong C++ programing Skills · Working Experience on QNX/Linux · Working Experience on SOCs based platform. · Basic knowledge and understanding of encryption/decryption algorithms. · Primary Skills · Solid understanding of basic ...


  • Tech Mahindra Bengaluru, India

    Position: - Delivery Lead · Grade- 16-20yrs of experience · Location-Bangalore/ Pune/ Hyd/ Noida/ Mumbai · Objective · Drive Security Delivery, Customer Satisfaction, Growth and Revenue Assurance · Design and delivery aspects of technology risk and cyber security · Provides super ...


  • Groww Bengaluru, India

    About Groww · We are a passionate group of people focused on making financial services accessible to every Indian through a multi-product platform. Each day, we help millions of customers take charge of their financial journey. Customer obsession is in our DNA. Every product, eve ...


  • CAVITAK Bengaluru, India

    Hello, · Greetings from CAVITAK · Cavitak is a Value Added Technology Distribution Company. Our Head Office is situated in Ahmedabad, Gujarat and our valuable team is present across India. Our work is divided into various verticals, among which distribution is our major vertical. ...


  • CAVITAK Bengaluru, India

    Hello, · Greetings from CAVITAK · Cavitak is a Value Added Technology Distribution Company. Our Head Office is situated in Ahmedabad, Gujarat and our valuable team is present across India. Our work is divided into various verticals, among which distribution is our major vertical. ...


  • Careerfit Bengaluru, India

    Responsibilities : · - Lead and manage a team of SOC analysts, providing direction, mentorship, and technical guidance to effectively: · - Detect and investigate security incidents · - Respond to security incidents with efficient mitigation strategies · - Develop and implement ro ...


  • Outworx Solutions Pvt. Ltd. Bengaluru, India

    Skill-Elastic SIEM profile. · The location is Bangalore. · - Investigate incidents and lead response efforts as applicable · - Maintain engineering and security documentation · - Fully optimize the SIEM system capabilities the audit and logging features of the event log sources ...


  • Control Risks Bengaluru, India Contract

    Control Risks is currently looking to hire a Security Lead to support a global banking client and assume responsibility for the physical security of the client's offices and other commercial premises in Bangalore and across other locations in India. · Leads and mentors a team of ...


  • Innova ESI Bangalore, India permanent

    Role Description: · This is a full-time onsite role for a Lead Azure DevOps Security located in Bengaluru. As a Lead Azure DevOps Security, you will be responsible for day-to-day tasks such as software development, test automation, integration, continuous integration, and infrast ...