378,420open jobs
9,884companies
48,748added this week
Browse all
Location
In office
Seniority
Architect · 15+ years exp
Overview
Company
Impact
Profile match
Zensar Technologies provides digital engineering and information technology services. Its practices cover experience design, cloud, data and application modernisation. The company serves banking, manufacturing, retail and healthcare clients.

Job Description

Position Title: Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

Location

Hybrid (Remote with Scheduled Onsite Visits to Nchanga)

Reporting To

Service Delivery Director

Job Purpose

The Virtual Chief Information Security Officer (vCISO) will provide strategic leadership and governance for Cybersecurity and Operational Technology (OT) security program. The role is responsible for establishing and executing the cybersecurity strategy, developing governance frameworks, managing cyber risk, ensuring regulatory and audit compliance, overseeing security policies and controls, driving security awareness, coordinating incident response activities, and providing executive-level reporting to management and Board stakeholders.

The vCISO will act as trusted cybersecurity advisor, ensuring that IT and OT environments remain secure, resilient, compliant, and aligned with business objectives. The role will be particularly focused on securing mining operations, industrial control systems, SCADA environments, critical infrastructure, and enterprise technology platforms.

Key Responsibilities

Security Strategy & Leadership

  • Develop and maintain Cybersecurity and OT Security Strategy.
  • Define short-term, medium-term, and long-term security roadmaps.
  • Align cybersecurity initiatives with business objectives and operational risks.
  • Advise executive leadership on security priorities, investments, and emerging threats.
  • Establish cybersecurity governance structures and steering committees.

OT Security Governance

  • Develop security controls and governance frameworks for Operational Technology (OT) environments.
  • Assess and improve security posture across mining operations, industrial networks, SCADA systems, and production environments.
  • Define network segmentation and security architecture standards between IT and OT environments.
  • Oversee OT cybersecurity risk management and mitigation programs.
  • Recommend security controls for critical industrial infrastructure.

Cyber Risk Management

  • Establish enterprise cybersecurity risk management frameworks.
  • Conduct cyber risk assessments and maturity assessments.
  • Maintain Cyber Risk Registers and remediation roadmaps.
  • Identify vulnerabilities, threats, and potential business impacts.
  • Present risk findings and mitigation plans to executive leadership and governance boards.

Security Governance & Compliance

  • Establish cybersecurity policies, standards, procedures, and security baselines.
  • Define governance controls for identity management, privileged access, endpoint security, network security, cloud security, and OT environments.
  • Ensure compliance with industry standards and internal security requirements.
  • Support internal audits, external audits, and regulatory assessments.
  • Drive closure of audit observations and security findings.

Security Architecture & Control Oversight

  • Review and approve security designs for infrastructure and transformation initiatives.
  • Provide governance over firewalls, VPNs, endpoint protection, identity services, network security, cloud security, and monitoring platforms.
  • Ensure security-by-design principles are adopted across projects.
  • Review security exceptions and compensating controls.
  • Advise on technology investments and cybersecurity improvements.

Incident Response & Cyber Resilience

  • Establish and maintain Cyber Incident Response and Escalation Procedures.
  • Provide executive oversight during cybersecurity incidents.
  • Coordinate investigation, containment, recovery, and post-incident reviews.
  • Ensure lessons learned and corrective actions are implemented.
  • Develop cybersecurity resilience, business continuity, and disaster recovery governance programs.

Security Awareness & Culture

  • Develop and lead enterprise-wide cybersecurity awareness programs.
  • Conduct executive security awareness sessions and phishing simulations.
  • Promote cybersecurity best practices across business and operational teams.
  • Develop security communications, advisories, and awareness campaigns.
  • Improve overall security maturity and culture.

Executive & Board Reporting

  • Prepare cybersecurity dashboards and executive reports.
  • Present cybersecurity risks, compliance status, incidents, and strategic initiatives to management and board members.
  • Define and report cybersecurity KPIs, KRIs, and maturity metrics.
  • Provide recommendations on risk acceptance, mitigation priorities, and investment planning.
  • Facilitate periodic Cybersecurity Governance Review meetings.

Third-Party & Vendor Security Governance

  • Assess third-party cybersecurity risks.
  • Review vendor security controls and compliance requirements.
  • Participate in contract reviews from a security perspective.
  • Ensure suppliers and service providers comply with security expectations.
  • Monitor remediation of third-party security risks.

Required Skills & Experience

Core Cybersecurity Competencies

  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development

Technical Knowledge

  • Industrial Control Systems (ICS)
  • SCADA Security
  • Network Security
  • Identity & Access Management (IAM)
  • Privileged Access Management (PAM)
  • Endpoint Security
  • Cloud Security (M365, Azure, AWS)
  • Vulnerability Management
  • Security Operations & SIEM
  • Data Protection & Information Security

Experience

  • 15+ years of IT and Cybersecurity experience.
  • 8+ years in Cybersecurity Leadership, Governance, or CISO-level functions.
  • Demonstrated experience securing OT, SCADA, Industrial, Mining, Utilities, Manufacturing, or Critical Infrastructure environments.
  • Experience leading audit readiness, risk management, and enterprise security programs.
  • Experience presenting to Executive Leadership and Board-level stakeholders.

Educational Qualifications

  • Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field.
  • Master's Degree preferred.

Preferred Certifications

  • CISSP
  • CISM
  • CRISC
  • CGEIT
  • ISO 27001 Lead Implementer / Lead Auditor
  • IEC 62443 (Industrial Cybersecurity)
  • CCSP or equivalent cloud security certification

Job Description

Position Title: Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

Location

Hybrid (Remote with Scheduled Onsite Visits to Nchanga)

Reporting To

Service Delivery Director

Job Purpose

The Virtual Chief Information Security Officer (vCISO) will provide strategic leadership and governance for Cybersecurity and Operational Technology (OT) security program. The role is responsible for establishing and executing the cybersecurity strategy, developing governance frameworks, managing cyber risk, ensuring regulatory and audit compliance, overseeing security policies and controls, driving security awareness, coordinating incident response activities, and providing executive-level reporting to management and Board stakeholders.

The vCISO will act as trusted cybersecurity advisor, ensuring that IT and OT environments remain secure, resilient, compliant, and aligned with business objectives. The role will be particularly focused on securing mining operations, industrial control systems, SCADA environments, critical infrastructure, and enterprise technology platforms.

Key Responsibilities

Security Strategy & Leadership

  • Develop and maintain Cybersecurity and OT Security Strategy.
  • Define short-term, medium-term, and long-term security roadmaps.
  • Align cybersecurity initiatives with business objectives and operational risks.
  • Advise executive leadership on security priorities, investments, and emerging threats.
  • Establish cybersecurity governance structures and steering committees.

OT Security Governance

  • Develop security controls and governance frameworks for Operational Technology (OT) environments.
  • Assess and improve security posture across mining operations, industrial networks, SCADA systems, and production environments.
  • Define network segmentation and security architecture standards between IT and OT environments.
  • Oversee OT cybersecurity risk management and mitigation programs.
  • Recommend security controls for critical industrial infrastructure.

Cyber Risk Management

  • Establish enterprise cybersecurity risk management frameworks.
  • Conduct cyber risk assessments and maturity assessments.
  • Maintain Cyber Risk Registers and remediation roadmaps.
  • Identify vulnerabilities, threats, and potential business impacts.
  • Present risk findings and mitigation plans to executive leadership and governance boards.

Security Governance & Compliance

  • Establish cybersecurity policies, standards, procedures, and security baselines.
  • Define governance controls for identity management, privileged access, endpoint security, network security, cloud security, and OT environments.
  • Ensure compliance with industry standards and internal security requirements.
  • Support internal audits, external audits, and regulatory assessments.
  • Drive closure of audit observations and security findings.

Security Architecture & Control Oversight

  • Review and approve security designs for infrastructure and transformation initiatives.
  • Provide governance over firewalls, VPNs, endpoint protection, identity services, network security, cloud security, and monitoring platforms.
  • Ensure security-by-design principles are adopted across projects.
  • Review security exceptions and compensating controls.
  • Advise on technology investments and cybersecurity improvements.

Incident Response & Cyber Resilience

  • Establish and maintain Cyber Incident Response and Escalation Procedures.
  • Provide executive oversight during cybersecurity incidents.
  • Coordinate investigation, containment, recovery, and post-incident reviews.
  • Ensure lessons learned and corrective actions are implemented.
  • Develop cybersecurity resilience, business continuity, and disaster recovery governance programs.

Security Awareness & Culture

  • Develop and lead enterprise-wide cybersecurity awareness programs.
  • Conduct executive security awareness sessions and phishing simulations.
  • Promote cybersecurity best practices across business and operational teams.
  • Develop security communications, advisories, and awareness campaigns.
  • Improve overall security maturity and culture.

Executive & Board Reporting

  • Prepare cybersecurity dashboards and executive reports.
  • Present cybersecurity risks, compliance status, incidents, and strategic initiatives to management and board members.
  • Define and report cybersecurity KPIs, KRIs, and maturity metrics.
  • Provide recommendations on risk acceptance, mitigation priorities, and investment planning.
  • Facilitate periodic Cybersecurity Governance Review meetings.

Third-Party & Vendor Security Governance

  • Assess third-party cybersecurity risks.
  • Review vendor security controls and compliance requirements.
  • Participate in contract reviews from a security perspective.
  • Ensure suppliers and service providers comply with security expectations.
  • Monitor remediation of third-party security risks.

Required Skills & Experience

Core Cybersecurity Competencies

  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development

Technical Knowledge

  • Industrial Control Systems (ICS)
  • SCADA Security
  • Network Security
  • Identity & Access Management (IAM)
  • Privileged Access Management (PAM)
  • Endpoint Security
  • Cloud Security (M365, Azure, AWS)
  • Vulnerability Management
  • Security Operations & SIEM
  • Data Protection & Information Security

Experience

  • 15+ years of IT and Cybersecurity experience.
  • 8+ years in Cybersecurity Leadership, Governance, or CISO-level functions.
  • Demonstrated experience securing OT, SCADA, Industrial, Mining, Utilities, Manufacturing, or Critical Infrastructure environments.
  • Experience leading audit readiness, risk management, and enterprise security programs.
  • Experience presenting to Executive Leadership and Board-level stakeholders.

Educational Qualifications

  • Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field.
  • Master's Degree preferred.

Preferred Certifications

  • CISSP
  • CISM
  • CRISC
  • CGEIT
  • ISO 27001 Lead Implementer / Lead Auditor
  • IEC 62443 (Industrial Cybersecurity)
  • CCSP or equivalent cloud security certification

Job Description

Position Title: Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

Location

Hybrid (Remote with Scheduled Onsite Visits to Nchanga)

Reporting To

Service Delivery Director

Job Purpose

The Virtual Chief Information Security Officer (vCISO) will provide strategic leadership and governance for Cybersecurity and Operational Technology (OT) security program. The role is responsible for establishing and executing the cybersecurity strategy, developing governance frameworks, managing cyber risk, ensuring regulatory and audit compliance, overseeing security policies and controls, driving security awareness, coordinating incident response activities, and providing executive-level reporting to management and Board stakeholders.

The vCISO will act as trusted cybersecurity advisor, ensuring that IT and OT environments remain secure, resilient, compliant, and aligned with business objectives. The role will be particularly focused on securing mining operations, industrial control systems, SCADA environments, critical infrastructure, and enterprise technology platforms.

Key Responsibilities

Security Strategy & Leadership

  • Develop and maintain Cybersecurity and OT Security Strategy.
  • Define short-term, medium-term, and long-term security roadmaps.
  • Align cybersecurity initiatives with business objectives and operational risks.
  • Advise executive leadership on security priorities, investments, and emerging threats.
  • Establish cybersecurity governance structures and steering committees.

OT Security Governance

  • Develop security controls and governance frameworks for Operational Technology (OT) environments.
  • Assess and improve security posture across mining operations, industrial networks, SCADA systems, and production environments.
  • Define network segmentation and security architecture standards between IT and OT environments.
  • Oversee OT cybersecurity risk management and mitigation programs.
  • Recommend security controls for critical industrial infrastructure.

Cyber Risk Management

  • Establish enterprise cybersecurity risk management frameworks.
  • Conduct cyber risk assessments and maturity assessments.
  • Maintain Cyber Risk Registers and remediation roadmaps.
  • Identify vulnerabilities, threats, and potential business impacts.
  • Present risk findings and mitigation plans to executive leadership and governance boards.

Security Governance & Compliance

  • Establish cybersecurity policies, standards, procedures, and security baselines.
  • Define governance controls for identity management, privileged access, endpoint security, network security, cloud security, and OT environments.
  • Ensure compliance with industry standards and internal security requirements.
  • Support internal audits, external audits, and regulatory assessments.
  • Drive closure of audit observations and security findings.

Security Architecture & Control Oversight

  • Review and approve security designs for infrastructure and transformation initiatives.
  • Provide governance over firewalls, VPNs, endpoint protection, identity services, network security, cloud security, and monitoring platforms.
  • Ensure security-by-design principles are adopted across projects.
  • Review security exceptions and compensating controls.
  • Advise on technology investments and cybersecurity improvements.

Incident Response & Cyber Resilience

  • Establish and maintain Cyber Incident Response and Escalation Procedures.
  • Provide executive oversight during cybersecurity incidents.
  • Coordinate investigation, containment, recovery, and post-incident reviews.
  • Ensure lessons learned and corrective actions are implemented.
  • Develop cybersecurity resilience, business continuity, and disaster recovery governance programs.

Security Awareness & Culture

  • Develop and lead enterprise-wide cybersecurity awareness programs.
  • Conduct executive security awareness sessions and phishing simulations.
  • Promote cybersecurity best practices across business and operational teams.
  • Develop security communications, advisories, and awareness campaigns.
  • Improve overall security maturity and culture.

Executive & Board Reporting

  • Prepare cybersecurity dashboards and executive reports.
  • Present cybersecurity risks, compliance status, incidents, and strategic initiatives to management and board members.
  • Define and report cybersecurity KPIs, KRIs, and maturity metrics.
  • Provide recommendations on risk acceptance, mitigation priorities, and investment planning.
  • Facilitate periodic Cybersecurity Governance Review meetings.

Third-Party & Vendor Security Governance

  • Assess third-party cybersecurity risks.
  • Review vendor security controls and compliance requirements.
  • Participate in contract reviews from a security perspective.
  • Ensure suppliers and service providers comply with security expectations.
  • Monitor remediation of third-party security risks.

Required Skills & Experience

Core Cybersecurity Competencies

  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development

Technical Knowledge

  • Industrial Control Systems (ICS)
  • SCADA Security
  • Network Security
  • Identity & Access Management (IAM)
  • Privileged Access Management (PAM)
  • Endpoint Security
  • Cloud Security (M365, Azure, AWS)
  • Vulnerability Management
  • Security Operations & SIEM
  • Data Protection & Information Security

Experience

  • 15+ years of IT and Cybersecurity experience.
  • 8+ years in Cybersecurity Leadership, Governance, or CISO-level functions.
  • Demonstrated experience securing OT, SCADA, Industrial, Mining, Utilities, Manufacturing, or Critical Infrastructure environments.
  • Experience leading audit readiness, risk management, and enterprise security programs.
  • Experience presenting to Executive Leadership and Board-level stakeholders.

Educational Qualifications

  • Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field.
  • Master's Degree preferred.

Preferred Certifications

  • CISSP
  • CISM
  • CRISC
  • CGEIT
  • ISO 27001 Lead Implementer / Lead Auditor
  • IEC 62443 (Industrial Cybersecurity)
  • CCSP or equivalent cloud security certification
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
378,420 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$121k – $224k per year (Estimated) • Equity • Remote • Full-Time • 5+ years exp • Bachelor's Degree • United States
AI/ML
AI Agents
DevOps
AWS
Azure
Incident Management
SLI/SLO/SLA
Management
Google Workspace
ServiceNow
Marketing
Salesforce
Zendesk
Apply
$28k – $96k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Barcelona
JavaScript
PHP
Python
Databases
MariaDB
DevOps
Amazon EC2
Amazon S3
AWS
CI/CD
GitHub
IAM
Apply
$31k – $77k per year (Estimated) • In office • Full-Time • 6+ years exp • Bachelor's Degree • Bengaluru
Go
Python
Rust
SQL
Python
FastAPI
Databases
Chroma
Qdrant
AI/ML
AI Agents
DVC
Fine-tuning
Hugging Face
Knowledge Distillation
LangChain
LLM
MLFlow
NumPy
Pandas
Prompt Engineering
PyTorch
Quantization
RAG
Recommender Systems
Scikit-learn
Semantic Search
Semantic Search
Sentiment Analysis
Spark
TensorFlow
TorchServe
Transformers
vLLM
DevOps
AWS
Azure
CI/CD
CloudFormation
GCP
Git
GitHub
GitHub Actions
gRPC
Helm
Jenkins
Kubernetes
Pulumi
Service Mesh
Terraform
Analytics
A/B Testing
Apply
$191k – $255k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree • Washington • San Francisco • Chicago • Atlanta
Apex
C#
JavaScript
AI/ML
Agentforce
AI Agents
DevOps
AWS
Azure
GCP
Analytics
ETL/ELT
Marketing
Salesforce
Apply
$18k – $49k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Hyderabad
JavaScript
Node JS
Python
TypeScript
C#
C#
.NET
Databases
Chroma
ElasticSearch
FAISS
OpenSearch
Pinecone
Weaviate
AI/ML
AI Agents
Amazon SageMaker
AutoGen
AWS Bedrock
CrewAI
Embeddings
Function Calling
Human-in-the-Loop
LangChain
LangGraph
LLMOps
OpenAI
Prompt Engineering
RAG
Reranking
Semantic Kernel
Semantic Search
Semantic Search
Frontend
Angular
React.js
DevOps
AWS
Azure
CI/CD
Docker
GCP
Git
Kubernetes
Platform Engineering
Vector
Apply
GCP Data Engineer 1 day ago
$17k – $63k per year (Estimated) • In office • Pune
Databases
Apache Kafka
BigQuery
Google BigQuery
Kafka
AI/ML
dbt
DevOps
CI/CD
GCP
Terraform
Analytics
ETL/ELT
Apply
In office • 5+ years exp
TypeScript
DevOps
CI/CD
Git
Management
Jira
QA
Playwright
Postman
Apply
In office • 3+ years exp
Java
Java
Spring Boot
Spring Security
Databases
Apache Kafka
ElasticSearch
Kafka
Mobile
Dependency Injection
DevOps
CI/CD
Docker
Git
Kubernetes
Rest API
Apply
In office • 5+ years exp • Bachelor's Degree
C#
JavaScript
SQL
TypeScript
C#
ASP.NET Core
Entity Framework Core
Databases
Apache Kafka
Kafka
MS SQL
RabbitMQ
Frontend
Angular
Bootstrap
React.js
Mobile
Dependency Injection
DevOps
Azure
Azure DevOps
CI/CD
Docker
Git
GitHub
Kubernetes
Rest API
Cybersecurity
SonarQube
Apply
GCP Data Engineer 1 day ago
In office
Python
SQL
Python
pySpark
Databases
Apache Kafka
BigQuery
Google BigQuery
Kafka
MySQL
PostgreSQL
Snowflake
AI/ML
Airflow
Spark
DevOps
CI/CD
GCP
Git
GitHub
GitHub Actions
Jenkins
SLI/SLO/SLA
Terraform
Analytics
ETL/ELT
Power BI
Tableau
Apply
See all jobs
This is one of many
378,420 more open roles from verified company boards, updated every day.