Job Title:
Specialist - Risk & Control Assurance
Location:
Noida
Experience:
8–12 years in Technology Risk and Compliance Cyber Security
(AI Knowledge Mandatory)
Department:
Global Technology
Reports To:
Sr. Principal Architect / Sr. AVP – Technology
Key Responsibilities
-
Proven working experience in
IT Security, Cyber Risk, or Compliance
roles within enterprise environments.
-
Strong hands-on expertise with Security Solutions like
CNAPP, SIEM, EDR/XDR, Identity Governance Platforms, IAM for AI Agents,
Air-Gapped Resiliency Platforms
etc.
-
Ability to manage and respond to
cyber security incidents
aligned to defined Response, Containment, and Remediation SLAs.
-
Capability to
proactively identify threats
, emerging attack patterns, and security gaps using threat intelligence
and analytics.
-
Working knowledge of
network security architecture
including Firewalls, Routers, Switches, VPN/ZTNA, and segmentation
controls.
-
Understanding of
multi-cloud infra along with application security (including AI / Gen AI
based Apps)
, including secure configuration baselines and hardening procedures.
-
Conduct vulnerability gap assessments, risk scoring, and provide
patching and remediation recommendations
aligned to business risk.
-
Strong knowledge of latest updates and trends in
CIS Benchmarks, NIST, and industry hardening standards
(like NIST PQC)
-
Understanding of
Cloud Security
principles across IaaS, PaaS, SaaS, and modern containerized workloads.
-
Experience in front-ending Internal and External Audits and certifications
like PCI-DSS, SOC2, HIPAA.
-
Always updated on latest Threats, News and new or upcoming frameworks like
various Data Privacy for multiple Geos etc.
AI, Responsible AI & Secure AI Requirements
-
Basic understanding of
AI/GenAI security risks
including prompt injection, model poisoning, data leakage, and misuse
scenarios.
-
Awareness of
Responsible AI principles
such as fairness, explainability, privacy, transparency, and ethical AI
usage in enterprise environments.
-
Ability to support
Secure AI lifecycle practices
including secure model deployment, data governance, access control, and
monitoring of AI services.
-
Familiarity with
AI risk frameworks
(e.g., NIST AI RMF, ISO AI governance concepts, or enterprise AI security
guidelines).
-
Exposure to
AI-enabled security analytics
or automation (AI-driven threat detection, vulnerability prioritization,
or security copilots) is preferred.
-
Understanding of how AI integrates with
Zero Trust, Identity Security, and Data Protection
strategies.
Additional Requirements
-
Coordinate effectively with internal stakeholders, engineering teams, and
vendors to implement
secure-by-design
and
AI-secure
practices.
-
Working knowledge of security standards such as
PCI-DSS, ISO 27001, NIST CSF
, and emerging AI governance expectations.
-
Strong analytical capability to transform security telemetry into
risk insights, dashboards, and executive reporting
.
-
Experience building
data-driven dashboards
highlighting vulnerability posture, AI risk exposure, compliance metrics,
and remediation progress.
-
Ability to leverage automation or AI-assisted tools for
reporting, prioritization, and operational efficiency
.