Project Cybersecurity Manager
Bengaluru, KA, IN
Alstom
Leading the way to greener and smarter mobility worldwide, Alstom develops and markets integrated systems that provide the sustainable foundations for the future of transportation.Req ID:454571
We create smart innovations to meet the mobility challenges of today and tomorrow. We design and manufacture a complete range of transportation systems, from high-speed trains to electric buses and driverless trains, as well as infrastructure, signalling and digital mobility solutions. Joining us means joining a truly global community of more than 38 900 people dedicated to solving real-world mobility challenges and achieving international projects with sustainable local impact.
Purpose of the Job
Organize and manage Cybersecurity activities during Project
WHAT ARE MY RESPONSIBILITIES?
The Project Cybersecurity Manager is the point of contact of the Project for cybersecurity related subjects.
- Establish the project Cybersecurity Management Plan
- Ensure that applicable security requirements, security rules (including laws and local regulations), security guidelines, security information, etc. are distributed to project stakeholders and ensure compliance.
- Plan security activities and manage the definition of the most efficient system architecture related to cybersecurity requirements of the contract.
- Obtain agreement from internal stakeholders about targeted maximum residual risks level, cybersecurity risks to be addressed (risk management) and security measures to be implemented.
- Review of Cybersecurity Risk Analysis and Evaluation Report, evaluate project and business impacts of technical vulnerabilities identified as part of technological monitoring activities
- Review deployment documents (Design, RAM, V&V) from a cybersecurity perspective
- Define and follow-up action plans to close the cyber security issues
- Ensure Cybersecurity awareness been propagated to Alstom team and suppliers
- Organize the capture of experience feedback and the implementation of continuous improvement plans for Cybersecurity aspects
- Member of the Change Control Board (CCB), in charge of evaluating Cybersecurity related impact of Change Request (CR) and following them up to closure
- Responsible for Cost / Quality / Delay Deliverables Cybersecurity for allocated projects
- To be the technical interface with the customer for the Cybersecurity domain
WHAT DO I NEED TO QUALIFY FOR THIS JOB?
Qualification-
Mandatory:
University/ Engineer in degree level
Desirable:
Cybersecurity certification such as: GICSP, CISSP, GSEC, CISM
Skills required
- 12+ years total experience in information technology and security. Experience with direct responsibility for hands on architecture, design, development.
- Experience related to management of cybersecurity in general, deployment experience of security technologies.
- Management of Quality, cost and delivery
- Methods of Cybersecurity risk analysis
- Knowledge of some information security areas such as risk/vulnerability assessment, threats, recovery, risk & compliance reporting, identity management, intrusion detection/prevention, etc.
- Knowledge of cybersecurity standards (ISO 2700X, IEC 62443, NIST, etc.)
- Familiarity with security products and protocols.
- Knowledge of industry best practices, methodologies, tools, etc. in the field of cybersecurity
- Strong documentation (written) and presentation (verbal) skills
- Ability to collaborate across traditional engineering functions.
- Ability to communicate effectively with customers, vendors and internal stakeholders.
- Cybersecurity certifications desirable (GICSP, CISSP, GSEC, CISM)
- Dynamic, autonomous. Ability to work in a complex and cross functional environment.
Language Skills: Proficient in English language
- IT Skills: MS office tools (Word, Excel, PowerPoint)
Measurement
- No "NO GO" for Cybersecurity reasons in Gate Reviews
- Quality of Cybersecurity deliverables, in time
- Achievement of Project targeted level of Cybersecurity
- Assessment findings: Low rework due to external or internal assessments
- Vulnerability management is in place
- Respect of Cybersecurity activities QCD commitment
- Cybersecurity issues/incident resolution
An agile, inclusive and responsible culture is the foundation of our company where diverse people are offered excellent opportunities to grow, learn and advance in their careers. We are committed to encouraging our employees to reach their full potential, while valuing and respecting them as individuals.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile CISM CISSP Compliance GICSP GSEC IEC 62443 Intrusion detection Monitoring NIST Risk analysis Risk management Vulnerabilities Vulnerability management
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Officer jobs
- Open Information Security Specialist jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Manager Pentest H/F jobs
- Open Cybersecurity Analyst jobs
- Open Product Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Chief Information Security Officer jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Senior Information Security Analyst jobs
- Open Security Specialist jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cybersecurity Consultant jobs
- Open Senior Penetration Tester jobs
- Open IT Security Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open IT Security Engineer jobs
- Open Security Operations Analyst jobs
- Open Cybersecurity Specialist jobs
- Open Windows-related jobs
- Open CISM-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open ISO 27001-related jobs
- Open Application security-related jobs
- Open Agile-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open Analytics-related jobs
- Open IAM-related jobs
- Open CISA-related jobs
- Open Threat intelligence-related jobs
- Open SaaS-related jobs
- Open Security assessment-related jobs
- Open APIs-related jobs
- Open Malware-related jobs
- Open Forensics-related jobs
- Open Java-related jobs
- Open DevOps-related jobs
- Open Security Clearance-related jobs
- Open CEH-related jobs
- Open IDS-related jobs
- Open EDR-related jobs
- Open Kubernetes-related jobs