This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a Cybersecurity Risk & Compliance Specialist to join our VOIS Cybersecurity team in Pune or Bengaluru. This role is focused on conducting technical and design-level security assessments across Vodafone products and services, ensuring robust risk management and compliance. The individual will collaborate with internal teams and external vendors, document findings, and support remediation efforts. The role also includes providing architectural guidance and security consultancy to enhance the organisation’s cybersecurity posture.
Job Responsibility:
Conduct cybersecurity assessments for Vodafone products and services, identifying risks and recommending mitigation strategies
Maintain and update a Risk Register with detailed findings and remediation themes
Collaborate with business units, technology teams, and third-party vendors to ensure security standards are met
Provide expert guidance on security design and architecture across complex environments
Communicate security requirements and risks effectively to both technical and non-technical stakeholders
Drive closure of risk-related activities or facilitate risk acceptance where necessary
Contribute to process improvements and decision-making within the Cybersecurity team
Requirements:
Proven experience in information technology and cybersecurity, ideally in a similar role
Strong understanding of security frameworks and standards such as ISO27001, ISO22301, ISO31001, NIST 800-53, OWASP
Hands-on experience with cloud security (GCP, AWS), container security, and connectivity
Skilled in stakeholder management, negotiation, and influencing across various levels of the organisation
Capable of assessing and managing technology risks effectively
Holds a university degree in Information Security or equivalent
Certified in one or more of the following: CISSP, CISM, CISA, CRISC, ISO 27001 Lead Auditor, GIAC, TOGAF, SABSA
Minimum 5 years of experience in cybersecurity
Nice to have:
Familiarity with NIST SP 800-37, COBIT 5
Understanding of Data Privacy, Information Protection, and GDPR
Experience in the telecommunications industry
PMP/PRINCE2 Practitioner certification
ITIL, SCRUM, or Lean Six Sigma certification
What we offer:
Opportunity to work on live products and services with real-world impact
Exposure to cutting-edge cybersecurity practices and technologies
Collaborative work environment with cross-functional teams and global stakeholders
Career development through certifications and leadership engagement
Contribution to strategic risk reduction and compliance initiatives