Enterprise Cyber Security Architect
Client of Spring HR · Mumbai, India
FULL TIME
Job Description
We are Hiring for a Leading Manufacturing Company.
Job role:-
Enterprise Cyber Security Architect
Experience:-
15+years
Location:-
Mumbai (WFO)
Qualification:-
Bachelor’s/Master’s in Cybersecurity, IT, or related field
Certifications:-
CISSP/CISA preferred, with additional certifications such as CEH or OSCP as an advantage.
Key Responsibilities Security Architecture & Strategy • Define and maintain enterprise security architecture aligned with business and risk objectives. • Develop security roadmaps across cloud, on-prem, and OT environments. • Establish architecture standards, frameworks, and reusable security patterns. • Define baseline controls for OS, networks, IAM, encryption, data protection etc.
Architecture Assurance & Risk Management • Conduct architecture reviews, threat modeling, and risk assessments. • Validate security posture across infrastructure, applications, and network controls. • Ensure secure design in projects, DevOps pipelines, and cloud deployments. • Drive compliance with internal policies and regulatory/security standards.
AI Security & AI Infrastructure (Added) • Understanding of AI/ML security risks, including model poisoning, adversarial attacks, data leakage, and model integrity risks. • Experience securing AI/ML pipelines, including data ingestion, model training, validation, and deployment. • Familiarity with AI governance, responsible AI practices, and regulatory considerations. • Knowledge of securing AI infrastructure, including GPU-based workloads, MLOps platforms, APIs, and model access controls. • Ability to integrate AI security within broader enterprise security architecture and Zero Trust frameworks.
Governance & Stakeholder Management • Participate in governance forums (CAB, architecture boards, technology councils). • Collaborate with CISO, IT, DevOps, Risk, Audit, and Business teams. • Support vendor risk assessments and review third-party security controls. • Act as a key liaison across enterprise architecture, security operations, and engineering.
Security Engineering & Enablement • Guide implementation of security technologies (EDR, SIEM, WAF, IAM, NAC, DLP). • Ensure secure adoption of Zero Trust, cloud security, and modern architectures. • Define secure coding practices and support DevSecOps adoption. • Stay updated on emerging threats, tools, and best practices.
Key Outcomes / Deliverables • Enterprise security architecture framework and roadmap. • Improved security posture and reduced risk exposure. • Secure onboarding of applications, infrastructure, and cloud services. • Strengthened compliance and audit readiness.
Required Experience & Expertise: • Proven ability in security strategy development, roadmap planning, stakeholder engagement, and executive communication, along with strong financial acumen (TCO, ROI, vendor evaluation) and project/program management skills. • Deep knowledge of enterprise security technologies (Firewalls, IPS, WAF, SIEM, EDR, DLP, NAC), cloud and Zero Trust architectures (Azure/AWS, Zscaler), IAM (AD, LDAP, Azure AD, ITDR), threat modeling, and vulnerability management. • Strong understanding of IT infrastructure (networks, OS, databases, virtualization, containers) and exposure to OT/IoT security solutions (e.g. Claroty, Nozomi, SCADAFence).
Job role:-
Enterprise Cyber Security Architect
Experience:-
15+years
Location:-
Mumbai (WFO)
Qualification:-
Bachelor’s/Master’s in Cybersecurity, IT, or related field
Certifications:-
CISSP/CISA preferred, with additional certifications such as CEH or OSCP as an advantage.
Key Responsibilities Security Architecture & Strategy • Define and maintain enterprise security architecture aligned with business and risk objectives. • Develop security roadmaps across cloud, on-prem, and OT environments. • Establish architecture standards, frameworks, and reusable security patterns. • Define baseline controls for OS, networks, IAM, encryption, data protection etc.
Architecture Assurance & Risk Management • Conduct architecture reviews, threat modeling, and risk assessments. • Validate security posture across infrastructure, applications, and network controls. • Ensure secure design in projects, DevOps pipelines, and cloud deployments. • Drive compliance with internal policies and regulatory/security standards.
AI Security & AI Infrastructure (Added) • Understanding of AI/ML security risks, including model poisoning, adversarial attacks, data leakage, and model integrity risks. • Experience securing AI/ML pipelines, including data ingestion, model training, validation, and deployment. • Familiarity with AI governance, responsible AI practices, and regulatory considerations. • Knowledge of securing AI infrastructure, including GPU-based workloads, MLOps platforms, APIs, and model access controls. • Ability to integrate AI security within broader enterprise security architecture and Zero Trust frameworks.
Governance & Stakeholder Management • Participate in governance forums (CAB, architecture boards, technology councils). • Collaborate with CISO, IT, DevOps, Risk, Audit, and Business teams. • Support vendor risk assessments and review third-party security controls. • Act as a key liaison across enterprise architecture, security operations, and engineering.
Security Engineering & Enablement • Guide implementation of security technologies (EDR, SIEM, WAF, IAM, NAC, DLP). • Ensure secure adoption of Zero Trust, cloud security, and modern architectures. • Define secure coding practices and support DevSecOps adoption. • Stay updated on emerging threats, tools, and best practices.
Key Outcomes / Deliverables • Enterprise security architecture framework and roadmap. • Improved security posture and reduced risk exposure. • Secure onboarding of applications, infrastructure, and cloud services. • Strengthened compliance and audit readiness.
Required Experience & Expertise: • Proven ability in security strategy development, roadmap planning, stakeholder engagement, and executive communication, along with strong financial acumen (TCO, ROI, vendor evaluation) and project/program management skills. • Deep knowledge of enterprise security technologies (Firewalls, IPS, WAF, SIEM, EDR, DLP, NAC), cloud and Zero Trust architectures (Azure/AWS, Zscaler), IAM (AD, LDAP, Azure AD, ITDR), threat modeling, and vulnerability management. • Strong understanding of IT infrastructure (networks, OS, databases, virtualization, containers) and exposure to OT/IoT security solutions (e.g. Claroty, Nozomi, SCADAFence).
Details
| Company | Client of Spring HR |
| Location | Mumbai, India |
| Type | FULL TIME |
| Niche | general |
