Technical Lead-Cybersecurity (INDIA - NOIDA- BIRLASOFT OFFICE, IN)

Birlasoft
Noida
Workplace: OnsiteFull timeFunction: CybersecuritySkills: ["Cross-functional collaboration","Risk management","Stakeholder communication","Continuous improvement"]

Lead and strengthen the organization’s third-party cybersecurity risk program. Own end-to-end third-party risk assessments for vendors, suppliers, partners, and service providers, evaluating security controls, compliance posture, and risk ratings. Monitor vendor risk posture and remediation through closure, support onboarding and periodic reviews with cross-functional stakeholders, and produce executive reporting and audit-ready risk documentation aligned to standards such as ISO 27001, NIST, SOC 2, GDPR, and PCI-DSS.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Birlasoft
Birlasoft
2 days ago

Technical Lead-Cybersecurity (INDIA - NOIDA- BIRLASOFT OFFICE, IN)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 11 hours agoStatus: Live

Job Summary

Lead and strengthen the organization’s third-party cybersecurity risk program. Own end-to-end third-party risk assessments for vendors, suppliers, partners, and service providers, evaluating security controls, compliance posture, and risk ratings. Monitor vendor risk posture and remediation through closure, support onboarding and periodic reviews with cross-functional stakeholders, and produce executive reporting and audit-ready risk documentation aligned to standards such as ISO 27001, NIST, SOC 2, GDPR, and PCI-DSS.
Location: Noida
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Perform end-to-end third-party risk assessments for vendors, suppliers, partners, and service providers.
  • •Evaluate vendor security controls, policies, procedures, certifications, and compliance posture.
  • •Assess cybersecurity risks for new and existing third-party engagements and provide risk ratings and recommendations.
  • •Monitor third-party risk posture and track remediation activities until closure, maintaining risk registers, findings, and exceptions.
  • •Prepare risk assessment reports and executive summaries for leadership, and support internal/external audits for the third-party risk program.

Key Requirements

  • •Own third-party risk management (TPRM) activities, including vendor security assessments and risk governance.
  • •Conduct security due diligence reviews using security questionnaires, SIG assessments, due diligence reports, and SOC reports.
  • •Apply risk analysis and risk rating methodologies, including inherent and residual risk assessments with actionable recommendations.
  • •Review security controls, policies, procedures, certifications, and compliance posture for standards such as ISO 27001, NIST, SOC 2, GDPR, and PCI-DSS.
  • •Track risk remediation and monitor vendor risk posture, including maintaining risk registers, findings, and exceptions.
Experience:Third-party risk managementVendor security assessmentsSecurity due diligenceCyber risk management
Skills:Cross-functional collaborationRisk managementStakeholder communicationContinuous improvement
Tech Stack:Third-Party Risk Management (TPRM)ISO 27001NISTSOC2SOC reportsSIG assessmentsGDPRPCI-DSSAttack surfaceSecurity questionnairesDashboardsCyber ratingsBreach intelligence

Company Brief

Birlasoft
Birlasoft is a global IT services and digital solutions provider delivering consulting, enterprise applications, cloud, and infrastructure services to enterprises across industries, helping accelerate digital transformation and business modernization.
Industry: Professional Services
Company Size: Enterprise (1,001+ employees)
Revenue: USD 500M to 1B
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Noida, India
WebsiteLinkedIn