← Browse all jobs

S

Vp - internal cyber security defence

Spot Your Leaders & Consulting · Bangalore g.p.o., India

FULL TIMEpermanent

Job Description

Job Description: Head - Internal Corporate Cyber Secuirty

Location: Bengaluru, India

Function: Cybersecurity Services, MCDC, DFIR, GRC & AI Security Platforms

Role Summary

We are seeking a senior cybersecurity leader to head internal corporate cybersecurity, including our MCDC (Managed Cyber Defense Center) operating as an internal enterprise security function. The role is responsible for protecting our people, data, infrastructure, applications, cloud, and AI ecosystem across global locations. The incumbent will lead enterprise security operations, digital forensics & incident response, GRC, security architecture, and AI governance, with accountability for risk reduction, regulatory compliance, and resilience of our organization's environment.

Key Responsibilities

1. Enterprise Cybersecurity Strategy & Governance

Define and execute the internal cybersecurity strategy and roadmap aligned to business priorities and global regulatory expectations Establish enterprise security policies, standards, and control frameworks Drive Zero Trust, secure access, cloud security, identity governance, and AI security strategies for the corporate environment Act as trusted advisor to CRO/CISO and executive leadership on cyber risk posture, investments, and exceptions

3. Digital Forensics & Incident Response

Define forensic readiness frameworks and chain-of-custody protocols aligned to legal, HR, and regulatory expectations Build and maintain incident response playbooks for ransomware, APTs, insider threats, data breaches, and cloud-native attacks Integrate endpoint, network, identity, and cloud telemetry into unified forensic workflows Drive automation of DFIR tasks using orchestration, LLMs, and agents Automated evidence collection Triage and timeline reconstruction IOC enrichment and correlation Lead major internal incident investigations, coordinating with Legal, HR, IT, Compliance, regulators, and law enforcement as needed

4. Security Architecture & Engineering

Lead design and implementation of enterprise security architecture, including: Zero Trust architecture Cloud & Saa S security (cloud posture management, workload protection, secure access Endpoint protection and detection Email and collaboration security Vulnerability and exposure management Backup, recovery, and cyber resilience Identity & Access Management (IAM, PAM) Data protection and DLP Ensure secure-by-design principles are embedded across internal IT, engineering, and delivery platforms.

5. Enterprise GRC, Risk & Compliance

Establish and govern internal cyber risk management frameworks aligned to: ISO 27001 ISO/IEC 42001 (AI Management Systems) NIST CSF / NIST AI RMF / NIST SP 800-86 (Forensics) GDPR, EU AI Act, India DPDP Act PCI DSS, SOC 2

6. AI Governance & Secure AI Adoption

Lead secure adoption of enterprise AI platforms and generative AI tools across the organization. Define controls for: Data protection (no training on enterprise data, DLP, audit logs) Access governance and license provisioning Contractual safeguards and exemption tracking Embed ISO/IEC 42001 AI governance principles into the internal AI lifecycle.

7. Cyber Insurance, Audit & Regulatory Interface

Own internal cyber insurance readiness and control validation. Interfacewith: External auditors Regulators Internal audit & compliance Coordinate with Finance (cyber insurance), Legal (contracts), HR (insider risk), and IT (operations) for cross-functional risk management.

8. Network Security & Advanced Threat

Defense Drive deep technical capabilities for: Network detection & response Packet inspection and protocol analysis Network forensics and traffic monitoring Strengthen perimeter, internal segmentation, and east-west traffic visibility.

10. Program Governance & Multi-Vendor

Assurance Lead complex, multi-vendor security programs under stringent timelines and regulatory expectations Drive: Requirements decomposition Interface control V& V strategy Multi-vendor / third-party risk management

11. Team Build-out & Leadership

Build, lead, and scale a global, multi-disciplinary internal cybersecurity team across: MCDC / SOC operations DFIR and threat hunting Security engineering & architecture GRC, compliance & AI governance Establish a high-performance, risk-aware culture with continuous capability building (certifications, red/blue/purple teaming, SOC & forensic automation).

Required

Experience20+ years of leadership across enterprise cybersecurity operations, risk & compliance, AI-powered security platforms, digital forensics, and critical-infrastructure protection. Proven experience in building and leading internal Global SOC / Cyber Defense Center capabilities — operating model, tooling, team, and processes. Strong background in GRC & control assurance. Demonstrated experience in AI-first security platforms and AI governance (ISO 42001, AI RMF). Hands-on background in network security, traffic monitoring, and network forensics. Experience with risk data aggregation and executive reporting infrastructure at large enterprise scale. Exposure to safety-critical, regulated environments (defense, aerospace, BFSI) with multi-vendor program governance.

Preferred Education & Credentials

M. Tech in Computer Science/ AI or equivalent Professional development in: Product Ownership ISO 27001 — Information Security Management ISO 42001 — AI Management Systems

Details

CompanySpot Your Leaders & Consulting
LocationBangalore g.p.o., India
TypeFULL TIME
Nichetech
Experiencepermanent

Similar Jobs

E

Practice Director - Presales (Engineering Services- 5-9 years)

Everest Group

R

Senior Product Designer

Razorpay

e

VP/AVP - Project Management (Railways - Signal & Telecommunication)

e2E Rail

A

Business unit head – operations

Awign

S

Audit manager - construction

SENTIENT - An Ascend Company