ApplySarthi Match jobs to your CV

Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

fa-etvl-saasfaprod1

Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.

Skills named in this job

Read from the description itself, not inferred.

This role on the market

287 open cybersecurity roles across 63 companies are on ApplySarthi right now, most of them in Delhi NCR (7), Chennai (5), Mumbai (4).

AWS jobs · Azure jobs · IAM jobs · SIEM jobs

fa-etvl-saasfaprod1 has 277 open roles listed here.

Counted across 14 company job boards, updated as roles open and close.

Preparing for this interview

287 open cybersecurity roles are hiring right now across 63 companies, mostly in Delhi NCR — so the questions repeat. Practise them before you sit with fa-etvl-saasfaprod1.

Questions you are likely to be asked

  1. Why do you want to join fa-etvl-saasfaprod1?
  2. What is your experience with AWS? Tell me one thing you learned the hard way.
  3. How do you decide what to monitor, and what should wake someone up at night?
  4. How would you cut the cloud bill of a system without hurting it?
  5. How do you keep secrets and access safe in your infrastructure?

Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.

Practise the Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance at fa-etvl-saasfaprod1 interview free →

Job Description Position Title: Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance Location Hybrid (Remote with Scheduled Onsite Visits to Nchanga) Reporting To Service Delivery Director Job Purpose The Virtual Chief Information Security Officer (vCISO) will provide strategic leadership and governance for Cybersecurity and Operational Technology (OT) security program. The role is responsible for establishing and executing the cybersecurity strategy, developing governance frameworks, managing cyber risk, ensuring regulatory and audit compliance, overseeing security policies and controls, driving security awareness, coordinating incident response activities, and providing executive-level reporting to management and Board stakeholders. The vCISO will act as trusted cybersecurity advisor, ensuring that IT and OT environments remain secure, resilient, compliant, and aligned with business objectives. The role will be particularly focused on securing mining operations, industrial control systems, SCADA environments, critical infrastructure, and enterprise technology platforms. Key Responsibilities Security Strategy & Leadership Develop and maintain Cybersecurity and OT Security Strategy. Define short-term, medium-term, and long-term security roadmaps. Align cybersecurity initiatives with business objectives and operational risks. Advise executive leadership on security priorities, investments, and emerging threats. Establish cybersecurity governance structures and steering committees. OT Security Governance Develop security controls and governance frameworks for Operational Technology (OT) environments. Assess and improve security posture across mining operations, industrial networks, SCADA systems, and production environments. Define network segmentation and security architecture standards between IT and OT environments. Oversee OT cybersecurity risk management and mitigation programs. Recommend security controls for critical industrial infrastructure. Cyber Risk Management Establish enterprise cybersecurity risk management frameworks. Conduct cyber risk assessments and maturity assessments. Maintain Cyber Risk Registers and remediation roadmaps. Identify vulnerabilities, threats, and potential business impacts. Present risk findings and mitigation plans to executive leadership and governance boards. Security Governance & Compliance Establish cybersecurity policies, standards, procedures, and security baselines. Define governance controls for identity management, privileged access, endpoint security, network security, cloud security, and OT environments. Ensure compliance with industry standards and internal security requirements. Support internal audits, external audits, and regulatory assessments. Drive closure of audit observations and security findings. Security Architecture & Control Oversight Review and approve security designs for infrastructure and transformation initiatives. Provide governance over firewalls, VPNs, endpoint protection, identity services, network security, cloud security, and monitoring platforms. Ensure security-by-design principles are adopted across projects. Review security exceptions and compensating controls. Advise on technology investments and cybersecurity improvements. Incident Response & Cyber Resilience Establish and maintain Cyber Incident Response and Escalation Procedures. Provide executive oversight during cybersecurity incidents. Coordinate investigation, containment, recovery, and post-incident reviews. Ensure lessons learned and corrective actions are implemented. Develop cybersecurity resilience, business continuity, and disaster recovery governance programs. Security Awareness & Culture Develop and lead enterprise-wide cybersecurity awareness programs. Conduct executive security awareness sessions and phishing simulations. Promote cybersecurity best practices across business and operational teams. Develop security communications, advisories, and awareness campaigns. Improve overall security maturity and culture. Executive & Board Reporting Prepare cybersecurity dashboards and executive reports. Present cybersecurity risks, compliance status, incidents, and strategic initiatives to management and board members. Define and report cybersecurity KPIs, KRIs, and maturity metrics. Provide recommendations on risk acceptance, mitigation priorities, and investment planning. Facilitate periodic Cybersecurity Governance Review meetings. Third-Party & Vendor Security Governance Assess third-party cybersecurity risks. Review vendor security controls and compliance requirements. Participate in contract reviews from a security perspective. Ensure suppliers and service providers comply with security expectations. Monitor remediation of third-party security risks. Required Skills & Experience Core Cybersecurity Competencies Cybersecurity Governance OT/ICS/SCADA Security Enterprise Security Architecture Risk Management Security Compliance & Audits Incident Response Governance Business Continuity & Disaster Recovery Security Awareness & Training Third-Party Risk Management Security Program Development Technical Knowledge Industrial Control Systems (ICS) SCADA Security Network Security Identity & Access Management (IAM) Privileged Access Management (PAM) Endpoint Security Cloud Security (M365, Azure, AWS) Vulnerability Management Security Operations & SIEM Data Protection & Information Security Experience 15+ years of IT and Cybersecurity experience. 8+ years in Cybersecurity Leadership, Governance, or CISO-level functions. Demonstrated experience securing OT, SCADA, Industrial, Mining, Utilities, Manufacturing, or Critical Infrastructure environments. Experience leading audit readiness, risk management, and enterprise security programs. Experience presenting to Executive Leadership and Board-level stakeholders. Educational Qualifications Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field. Master's Degree preferred. Preferred Certifications CISSP CISM CRISC CGEIT ISO 27001 Lead Implementer / Lead Auditor IEC 62443 (Industrial Cybersecurity) CCSP or equivalent cloud security certification Job Description Position Title: Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance Location Hybrid (Remote with Scheduled Onsite Visits to Nchanga) Reporting To Service Delivery Director Job Purpose The Virtual Chief Information Security Officer (vCISO) will provide strategic leadership and governance for Cybersecurity and Operational Technology (OT) security program. The role is responsible for establishing and executing the cybersecurity strategy, developing governance frameworks, managing cyber risk, ensuring regulatory and audit compliance, overseeing security policies and controls, driving security awareness, coordinating incident response activities, and providing executive-level reporting to management and Board stakeholders. The vCISO will act as trusted cybersecurity advisor, ensuring that IT and OT environments remain secure, resilient, compliant, and aligned with business objectives. The role will be particularly focused on securing mining operations, industrial control systems, SCADA environments, critical infrastructure, and enterprise technology platforms. Key Responsibilities Security Strategy & Leadership Develop and maintain Cybersecurity and OT Security Strategy. Define short-term, medium-term, and long-term security roadmaps. Align cybersecurity initiatives with business objectives and operational risks. Advise executive leadership on security priorities, investments, and emerging threats. Establish cybersecurity governance structures and steering committees. OT Security Governance Develop security controls and governance frameworks for Operational Technology (OT) environments. Assess and improve security posture across mining operations, industrial networks, SCADA systems, and production environments. Define network segmentation and security architecture standards between IT and OT environments. Oversee OT cybersecurity risk management and mitigation programs. Recommend security controls for critical industrial infrastructure. Cyber Risk Management Establish enterprise cybersecurity risk management frameworks. Conduct cyber risk assessments and maturity assessments. Maintain Cyber Risk Registers and remediation roadmaps. Identify vulnerabilities, threats, and potential business impacts. Present risk findings and mitigation plans to executive leadership and governance boards. Security Governance & Compliance Establish cybersecurity policies, standards, procedures, and security baselines. Define governance controls for identity management, privileged access, endpoint security, network security, cloud security, and OT environments. Ensure compliance with industry standards and internal security requirements. Support internal audits, external audits, and regulatory assessments. Drive closure of audit observations and security findings. Security Architecture & Control Oversight Review and approve security designs for infrastructure and transformation initiatives. Provide governance over firewalls, VPNs, endpoint protection, identity services, network security, cloud security, and monitoring platforms. Ensure security-by-design principles are adopted across projects. Review security exceptions and compensating controls. Advise on technology investments and cybersecurity improvements. Incident Response & Cyber Resilience Establish and maintain Cyber Incident Response and Escalation Procedures. Provide executive oversight during cybersecurity incidents. Coordinate investigation, containment, recovery, and post-incident reviews. Ensure lessons learned and corrective actions are implemented. Develop cybersecurity resilience, business continuity, and disaster recovery governance programs. Security Awareness & Culture Develop and lead enterprise-wide cybersecurity awareness programs. Conduct executive security awareness sessions and phishing simulations. Promote cybersecurity best practices across business and operational teams. Develop security communications, advisories, and awareness campaigns. Improve overall security maturity and culture. Executive & Board Reporting Prepare cybersecurity dashboards and executive reports. Present cybersecurity risks, compliance status, incidents, and strategic initiatives to management and board members. Define and report cybersecurity KPIs, KRIs, and maturity metrics. Provide recommendations on risk acceptance, mitigation priorities, and investment planning. Facilitate periodic Cybersecurity Governance Review meetings. Third-Party & Vendor Security Governance Assess third-party cybersecurity risks. Review vendor security controls and compliance requirements. Participate in contract reviews from a security perspective. Ensure suppliers and service providers comply with security expectations. Monitor remediation of third-party security risks. Required Skills & Experience Core Cybersecurity Competencies Cybersecurity Governance OT/ICS/SCADA Security Enterprise Security Architecture Risk Management Security Compliance & Audits Incident Response Governance Business Continuity & Disaster Recovery Security Awareness & Training Third-Party Risk Management Security Program Development Technical Knowledge Industrial Control Systems (ICS) SCADA Security Network Security Identity & Access Management (IAM) Privileged Access Management (PAM) Endpoint Security Cloud Security (M365, Azure, AWS) Vulnerability Management Security Operations & SIEM Data Protection & Information Security Experience 15+ years of IT and Cybersecurity experience. 8+ years in Cybersecurity Leadership, Governance, or CISO-level functions. Demonstrated experience securing OT, SCADA, Industrial, Mining, Utilities, Manufacturing, or Critical Infrastructure environments. Experience leading audit readiness, risk management, and enterprise security programs. Experience presenting to Executive Leadership and Board-level stakeholders. Educational Qualifications Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field. Master's Degree preferred. Preferred Certifications CISSP CISM CRISC CGEIT ISO 27001 Lead Implementer / Lead Auditor IEC 62443 (Industrial Cybersecurity) CCSP or equivalent cloud security certification

Match this job to your CV

ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.

Check my match →

Similar open roles

Need answers during your interview? Try Live Sarthi.

Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.

Try Live Sarthi free →

A Windows app, from the same team as ApplySarthi.

Listed on oraclehcm · posted 2026-09-02. ApplySarthi collects openings and links to application pages; the role is advertised by fa-etvl-saasfaprod1, not by us.