Cyber Security SME

Apply
Apply

Share

successfully icon

Successfully

The vacancy has been successfully added to favorites

location icon

Bengaluru, India

specialization icon

Other Consulting

lob icon

BCM Industry

date icon

15/04/2026

Req. VR-122313

Apply
Project description

We are seeking a Cyber Security SME to lead the design, implementation, and governance of security controls across the bank's technology landscape. The role will ensure robust protection of platforms, networks, cloud environments, client data, and critical banking infrastructure while maintaining compliance with global regulatory requirements.

Responsibilities
bullet icon

Security Strategy & Architecture

bullet icon

Define and implement enterprise-wide cyber security strategy aligned to the bank's business and technology landscape

bullet icon

Design and govern secure architectures across:

bullet icon

Network infrastructure (on-prem and hybrid connectivity)

bullet icon

Cloud platforms (Azure, AWS, GCP)

bullet icon

Identity and access management ecosystems

bullet icon

Core banking, trading, and payment systems

bullet icon

Embed security-by-design and zero trust principles across all layers

bullet icon

Core Security Domains Ownership

bullet icon

Lead and provide SME oversight across key cyber domains:

bullet icon

Network Security (firewalls, IDS/IPS, segmentation, secure connectivity, DDoS protection)

bullet icon

Cloud Security (secure configuration, CSPM, workload protection, cloud-native controls)

bullet icon

Identity & Access Management (IAM/PAM) (RBAC, MFA, privileged access, identity governance)

bullet icon

Endpoint & Infrastructure Security (EDR/XDR, device hardening, patching)

bullet icon

Application Security (secure SDLC, DevSecOps, API security, code scanning)

bullet icon

Data Security (encryption, tokenisation, DLP, data classification)

bullet icon

Threat & Risk Management

bullet icon

Lead threat modelling and risk assessments across critical banking systems and infrastructure

bullet icon

Define mitigation strategies aligned to frameworks (NIST, ISO 27001, CIS)

bullet icon

Oversee vulnerability management, penetration testing, and security assurance activities

bullet icon

Security Operations & Incident Response

bullet icon

Provide oversight on SOC, SIEM, SOAR, and threat detection capabilities

bullet icon

Enhance monitoring through AI-driven anomaly detection and behavioural analytics

bullet icon

Define and lead incident response strategies for cyber events (ransomware, breaches, insider threats, DDoS)

bullet icon

Regulatory & Compliance

bullet icon

Ensure compliance with relevant regulations and standards:

bullet icon

DORA (Digital Operational Resilience Act)

bullet icon

PRA / FCA cyber resilience requirements

bullet icon

GDPR and data protection regulations

bullet icon

SWIFT Customer Security Programme (CSP)

bullet icon

Support audits, regulatory reviews, and cyber resilience testing

bullet icon

Third-Party & Supply Chain Security

bullet icon

Assess and manage cyber risk across vendors, fintech partners, and infrastructure providers

bullet icon

Define third-party security standards, onboarding controls, and continuous monitoring

bullet icon

Stakeholder Management & Advisory

bullet icon

Act as trusted advisor to CIO, CISO, Risk, and business stakeholders

bullet icon

Translate technical cyber risks into business and operational impact

bullet icon

Support RFPs, client engagements, and strategic cyber transformation initiatives

Skills

Must have

bullet icon

Work Experience:

bullet icon

Essential:

bullet icon

At least 5 years of relevant experience in cyber security within banking / financial services

bullet icon

Proven expertise across network, cloud, IAM, application, and data security domains

bullet icon

Hands-on knowledge of security frameworks (NIST, ISO 27001, CIS Controls)

bullet icon

Technical Capabilities

bullet icon

Network Security: Firewalls (e.g., Palo Alto, Fortinet), IDS/IPS, VPNs, segmentation

bullet icon

Cloud Security: Azure/AWS/GCP security services, CSPM, IAM integration, container security

bullet icon

IAM/PAM: Okta, Azure AD, CyberArk, SailPoint or similar

bullet icon

Security Operations: SIEM (Splunk, Sentinel), SOAR, threat intelligence platforms

bullet icon

Endpoint Security: EDR/XDR solutions (e.g., CrowdStrike, Defender)

bullet icon

DevSecOps: CI/CD security integration, SAST/DAST tools

bullet icon

Data Protection: Encryption standards, key management, DLP

bullet icon

Regulatory Knowledge

bullet icon

Strong understanding of cyber resilience expectations within banking

bullet icon

Experience supporting audits, regulatory submissions, and control frameworks

bullet icon

Soft Skills

bullet icon

Strong stakeholder engagement and executive communication skills

bullet icon

Ability to operate at both strategic (CISO-level) and hands-on technical levels

bullet icon

Experience working across global, distributed teams

Nice to have

bullet icon

Certifications: CISSP, CISM, CISA, CCSP, Azure/AWS Security certifications

bullet icon

Experience with Zero Trust Architecture and cloud transformation programmes

bullet icon

Exposure to AI-driven cyber security and automation

Other
seniority icon

Languages

English: C1 Advanced

seniority icon

Seniority

Senior

Bengaluru, India

Req. VR-122313

Other Consulting

BCM Industry

15/04/2026

Req. VR-122313

Apply for Cyber Security SME in Bengaluru

*Indicates a required field

Under the terms of your specific consent or to perform our obligations under a contract with you, as applicable, we, Luxoft Holding Inc. will manually and electronically process your personal data, specifically your first name, last name, phone number, e-mail address and other data you provide us through this form.


Within this context, we process personal data only for the specific purpose(s) indicated in the individual consent language or other notices provided below.


We will – insofar as reasonably necessary for the purpose you have agreed to and within the scope of applicable laws – transfer your personal data to other entities within the Luxoft Group and to the group of third party recipients listed in our Privacy Notice. Such Recipients can be located outside the European Union (EU) and/or the European Economic Area (EEA) (“Third Countries”). The Third Countries concerned, e.g. the USA, may not have the level of data protection that you enjoy e.g. under the GDPR. This can result in disadvantages such as an impeded enforcement of data subjects’ rights, a lack of control over further processing and access by state authorities. You may only have limited legal remedies against this. Insofar our transfer of your personal data to recipients in Third Countries is not covered by an adequacy decision of the EU Commission, we achieve an adequate level of data protection as further detailed out in our Privacy Notice.


With your consent, we personalise marketing communications to you by way of carrying out marketing research analysis, analysing the surfing-behaviour of our website visitors and to adjust it to their detected tendencies, as well as to plan more efficient future marketing activities. This personalised marketing does not include any automated decision-making activities.


Further information on how we process personal data in general is available in our Privacy Notice. You may withdraw any given consent at any time. The withdrawal of your consent(s) will not affect the lawfulness of processing before its withdrawal. For any request in this context, please e-mail us at: DPO@luxoft.com.


Before uploading CV or any other information to this website, to learn more about your obligations and restrictions arising from the use of this website, please read our Terms of Use.