About Cognizant Corporate
Cognizant Corporate is a global community united by a shared purpose: to make a meaningful impact. We are committed to excellence and driven by outcomes that matter. Collaboration is at the heart of how we work, and our forward-thinking mindset fuels continuous learning, innovation, and growth.
At Cognizant, careers transcend titles. We empower our people to think strategically, inspire others, and lead with purpose – always guided by our core values. Join us in shaping the future of business.
About the role
As an Associate Director – Security Architecture Assurance & AI Security Validation, you will lead Cognizant's Cybersecurity Architecture & Risk (CAR) practice within the Extended CISO Tower, collaborating with the CISO Tower owner, Enterprise Architecture, IT Security, Compliance and business stakeholders. You will own the independent validation that implemented controls meet Cognizant's security reference architecture and design requirements before solutions go into production – now extended to cover AI and Generative AI systems. You will have the autonomy to lead, innovate, and industrialize control-validation workflows while upholding our commitment to quality, Secure-by-Design and continuous learning. As a team of self-starters, you can work with impact alongside our vibrant people and culture, all while enjoying unmatched learning opportunities.
In this role, you will:
• Lead and mature the Security Control Evaluation function across platform, infrastructure, application and vendor implementations (both on-prem and cloud – AWS, Azure, GCP, OCI), ensuring controls meet Cognizant policies, standards, regulatory requirements and industry best practices before production.
• Establish and own an AI Security Validation capability – validating controls for LLMs, Generative AI and agentic AI against model poisoning, prompt injection, data poisoning/leakage, model inversion, adversarial and deepfake attacks, aligned to NIST AI RMF, ISO/IEC 42001, OWASP Top 10 for LLMs and MITRE ATLAS.
• Embed AI-TRiSM (AI Trust, Risk and Security Management) principles – model provenance, data lineage/tagging, guardrails, red-teaming and continuous monitoring – into the enterprise control-assurance lifecycle.
• Define and govern key performance metrics, KRIs and SLOs, ensuring validation deliverables and remediation follow-ups are met on time and reported to leadership.
• Act as the primary liaison between Enterprise Architects, Design Review, CS and IT teams, and business stakeholders to close security control gaps and drive remediation to closure.
• Provide deep subject-matter expertise in cybersecurity principles to manage risks across data use, processing, storage and transmission, including cloud security posture, network micro-segmentation and zero-trust validation.
• Strengthen Identity & Access Management (IAM) control validation – privileged access, least-privilege, joiner-mover-leaver, and non-human / machine and AI-agent identities.
• Incorporate Third-Party Risk Management (TPRM) control checks into vendor and SaaS/AI-vendor go-live validations, ensuring supply-chain and model-supply-chain assurance.
• Build, mentor and coach a high-performing validation team, managing multiple priorities, conflict resolution and stakeholder expectations.
• Stay current with emerging IT, cloud and AI/cybersecurity technologies and continuously uplift the control library and validation playbooks.
• Embrace our vibrant culture by striving for excellence, focusing on meaningful outcomes, and collaborating effectively. Take ownership, build relationships, and focus on personal growth to drive business strategy and foster an inclusive culture.
What you must have to be considered
• 15+ years of experience in information security, including 6+ years in security architecture / go-live control validation and 5+ years leading and mentoring teams.
• Bachelor's degree in Computer Science, Information Technology, Cybersecurity or a related field.
• CISM (Certified Information Security Manager) – Required.
• Proven, hands-on experience validating security controls for cloud (AWS, Azure, GCP, OCI) and on-prem solutions against a security reference architecture.
• Demonstrated understanding of AI/ML and Generative AI security risks and control frameworks (NIST AI RMF, ISO 42001, OWASP LLM, MITRE ATLAS).
• Strong grasp of IAM, TPRM, cloud security, network segmentation and zero-trust control domains.
• Excellent analytical, problem-solving, project management and stakeholder-leadership skills across functional teams.
• A strong sense of ownership, a desire to create meaningful outcomes, and passion for work that serves a greater good for customers, communities, or global challenges.
• The embodiment of Cognizant's Values: Work as One, Dare to Innovate, Raise the Bar, Do the Right Thing, & Own It.
These will help you succeed
• CISSP, CISA, CCSK / CCSP – strongly preferred.
• Azure AZ-500 (Required-equivalent), SC-300 / SC-100 and cloud-provider security certifications.
• Emerging AI security credentials (e.g., ISACA AAISM / AAIA, AI governance certifications).
• ISO/IEC 42001 (AI Management System) Lead Auditor/Implementer – a strong differentiator given this role's AI security validation scope.
• Experience with security automation, control-as-code, and continuous controls monitoring (CCM).
• Exposure to regulatory and framework mappings – ISO 27001, NIST CSF, SOC 2, PCI-DSS, GDPR/DPDP.
Work model
We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role's business requirements, this is a hybrid position requiring 2 days a week in a Cognizant office in Chennai/Bangalore/Pune, India. Regardless of your working arrangement, we are here to support a healthy work-life balance though our various wellbeing programs.
The working arrangements for this role are accurate as of the date of posting. This may change based on business and client requirements. Rest assured; we will always be clear about role expectations.
We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
About Cognizant:
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value by building full-stack AI solutions for our clients. Our deep industry, process and engineering expertise enables us to build an organization’s unique context into technology systems that amplify human potential, drive tangible outcomes and keep global enterprises ahead in a fast-changing world. See how at cognizant.ai or @cognizant.
Additional employment information
Compensation information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Cognizant is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.











