Job Description:
We are seeking a seasoned information security professional to take ownership
of our client engagements and ensure projects are delivered as per the defined
scope and time. The candidate will be responsible to manage and deliver
multiple engagements of PentaQube for implementing cybersecurity and
information security requirements for clients.
Key Responsibilities:
Subject Matter Knowledge
-
Detailed understanding of various standards and frameworks in information
security, cybersecurity, business continuity, privacy, regulatory compliance
requirements for various industries (such as ISO 27001, NIST Cybersecurity
Framework, ISO 22301, SEBI, RBI, IRDA,, GDPR, CCPA (Data Privacy
Regulations)
-
Should have implemented at least 4-6 cycles of end to end implementation of
standards and frameworks mentioned above.
-
Knowledge of Security Domains: Familiarity with key areas of cybersecurity,
including:
○ Network Security (Firewalls, IDS/IPS, VPNs)
○ Cloud Security (AWS, Azure, GCP security principles, container security)
○ Application Security / DevSecOps (Secure coding practices, SAST/DAST)
○ New emerging technologies landscape
○ Identity and Access Management (IAM) (Authentication, authorization,
privileged access)
○ Endpoint Security (Antivirus, EDR, mobile device management)
-
Threat Landscape Awareness: Staying current with common attack vectors
(e.g., phishing, ransomware, zero-day exploits), threat actors, and
cybersecurity trends.
-
Incident Response (IR) Lifecycle: Knowledge of the stages of incident
response (Preparation, Detection, Containment, Eradication, Recovery,
Lessons Learned) to manage projects that improve IR capabilities or even
help coordinate during a crisis.
-
Read, research, build templates and deliverables specific to customer or
general templates for the work at hand
Project Lifecycle Management & Ownership:
-
Accountable for overall project success, client relationships,
profitability, and meeting objectives.
-
Primary escalation point for key client stakeholders; building and nurturing
long-term client relationships; identifying new business opportunities.
-
Develop project plans, including weekly activity schedules/Sprint planning,
ensuring alignment with project goals and client expectations.
-
Monitors overall project timelines; milestones, tracks and ensures billing,
address resource conflicts across projects.
Communication & Stakeholder Management:
-
Serve as the primary point of contact for the client, maintaining a
professional and collaborative relationship throughout the project duration.
-
Lead periodic client and internal project calls, communicating progress,
identifying day-to-day issues, and driving resolutions.
-
Promptly identify, highlight, and escalate any project challenges,
hindrances, or potential delays in milestones to the Management and client,
proposing solutions where possible.
Team Leadership & Mentorship:
- Actively mentor and guide consultants working on the project.
-
Clearly define and align consultants on their respective tasks, setting
precise expectations for quality, timeliness, and output.
-
Regularly obtain updates from consultants, providing feedback and directing
them for task completion.
PreSales and Business Development
-
Actively participates in pre-sales, proposal development, and identifying
new business within existing accounts.
Qualifications:
-
Bachelor’s degree in IT, Computer Science, Cybersecurity, or a related
field.
- Certifications such as CISA, CISSP, CISM, CEH,etc.
- Good communication skills and a willingness to learn.
What We Look For:
- Strong written and verbal communication skills.
-
Expert-level knowledge of the Information Security industry, with a deep and
current understanding of relevant frameworks, threats, and trends.
- Ability to learn and fit into our company culture..