Job summary
CISO for AI Products and Platforms
SD - based out of India
Mandate - Own the end-to-end security posture for our AI products and engineering platforms define and enforce the security architecture controls and compliance (including HIPAA / HITRUST) lead threat modeling and vulnerability management for AI and agentic workloads and embed security-by-design across the platform estate.
Responsibilities
- Design and evolve enterprise security architectures that integrate vulnerability management SIEM cloud security and infrastructure security to protect critical business services and customer data in a hybrid work environment.
- Develop detailed reference architectures and security patterns that guide product and platform teams in building secure applications and services aligned to organizational policies and regulatory expectations.
- Coordinate with vulnerability management teams to define scanning standards remediation workflows and measurable service level objectives that consistently reduce exposure windows across complex technology stacks.
- Optimize SIEM use cases by defining log onboarding standards correlation strategies and alert tuning guidelines that increase true positive detections while reducing analyst fatigue.
- Define cloud security guardrails including identity controls network segmentation and data protection practices that enable safe adoption of public and private cloud platforms at enterprise scale.
- Establish infrastructure security baselines for servers endpoints networks and middleware components that standardize hardening practices and simplify ongoing compliance monitoring.
- Drive integration of vulnerability and SIEM intelligence into incident handling procedures so that threats are prioritized contained and resolved with minimal impact on business operations.
- Collaborate with product owners and engineering teams to embed security by design during planning backlog refinement and solution review activities for new and existing initiatives.
- Create information security awareness strategies that combine targeted campaigns role specific content and behavioral metrics to foster a security conscious culture across all levels of the organization.
- Produce architecture decision records diagrams and risk assessments that clearly explain design choices tradeoffs and mitigations to technical and non technical stakeholders.
- Mentor security engineers and architects by reviewing designs sharing best practices and encouraging experimentation with modern security tools that improve effectiveness and efficiency.
- Review third party solutions and integrations to evaluate security posture data handling practices and alignment with enterprise security architecture before adoption.
- Monitor industry trends threat intelligence and emerging standards to propose incremental architecture improvements that keep the organization resilient against evolving attacks.
Qualifications
- possess extensive hands on experience delivering enterprise scale security architectures that combine vulnerability management SIEM platforms cloud security controls and infrastructure protection.
- demonstrate strong practical knowledge of vulnerability assessment tools remediation planning risk based prioritization techniques and communication of findings to technical and business partners.
- apply deep understanding of SIEM technologies log management practices correlation rule design and incident triage workflows gained through many years of operational collaboration.
- show proven expertise in cloud security concepts such as zero trust principles identity and access governance encryption strategies and secure deployment patterns for modern platforms.
- exhibit advanced skills in infrastructure security including network segmentation endpoint protection configuration management and baseline hardening for diverse environments.
- display experience in designing and delivering information security awareness programs that use engaging content measurable learning outcomes and continuous reinforcement.
- bring familiarity with common security frameworks risk management methods and audit expectations that support consistent governance and reporting.
- communicate clearly with engineering teams security operations and business stakeholders to align architecture decisions with strategic goals and practical constraints.
- utilize strong analytical and problem solving abilities developed over extensive professional experience to translate complex security requirements into actionable designs.
Certifications Required
Preferred certifications include CISSP CCSP or equivalent cloud and infrastructure security credentials relevant to enterprise security architecture.
Over Cognizant
Cognizant (NASDAQ: CTSH) is een bouwer van AI-oplossingen en een leverancier van technologiediensten. Wij slaan de brug tussen AI-investeringen en ondernemingswaarde door het bouwen van full-stack AI-oplossingen voor onze klanten. Onze diepgaande kennis van sectoren, processen en engineering stelt ons in staat om de unieke context van een organisatie te verankeren in technologische systemen. Deze systemen versterken het menselijk potentieel, realiseren tastbare resultaten en geven wereldwijde ondernemingen een voorsprong in een snel veranderende wereld. Ontdek hoe op cognizant.ai of @cognizant.
Aanvullende arbeidsinformatie
De informatie over de beloning is correct op de datum van deze vacature. Cognizant behoudt zich het recht voor om deze informatie op elk moment te wijzigen, met inachtneming van de toepasselijke wetgeving.
Van sollicitanten kan worden verwacht dat zij gesprekken bijwonen, persoonlijk of via een videogesprek. Daarnaast kan van kandidaten worden gevraagd om tijdens elk gesprek een geldig, door de overheid uitgegeven identiteitsbewijs (zoals een identiteitskaart of paspoort) te tonen.
Cognizant is een werkgever die gelijke kansen biedt. Je sollicitatie en kandidatuur worden niet beoordeeld op basis van ras, huidskleur, geslacht, religie, levensovertuiging, seksuele geaardheid, genderidentiteit, nationale afkomst, handicap, genetische informatie, zwangerschap, veteranenstatus of enige andere eigenschap die wordt beschermd door federale, regionale of lokale wetgeving.







