Company Profile:
At CGI, we’re a team of builders. We call our employees members because all who join CGI are building their own company - one that has grown to 72,000 professionals located in 40 countries. Founded in 1976, CGI is a leading IT and business process services firm committed to helping clients succeed. We have the global resources, expertise, stability and dedicated professionals needed to achieve. At CGI, we’re a team of builders. We call our employees members because all who join CGI are building their own company - one that has grown to 72,000 professionals located in 40 countries. Founded in 1976, CGI is a leading IT and business process services firm committed to helping clients succeed. We have the global resources, expertise, stability and dedicated professionals needed to achieve results for our clients - and for our members. Come grow with us. Learn more at www.cgi.com.
This is a great opportunity to join a winning team. CGI offers a competitive compensation package with opportunities for growth and professional development. Benefits for full-time, permanent members start on the first day of employment and include a paid time-off program and profit participation and stock purchase plans. We wish to thank all applicants for their interest and effort in applying for this position, however, only candidates selected for interviews will be contacted. No unsolicited agency referrals please.
Job Title: Service Delivery Manager - Cybersecurity
Category: Service Delivery Manager - Cybersecurity
Location: Bengaluru
Position ID: J0726-0915
Employment Type: Full Time
Experience Required: 8+ Years
Job Summary
We are seeking for cybersecurity Service Delivery Manager role is part of a major IT transformation, complying with standards and requirements. The role plays a key part in the Sunrise transformation: major change in the target operating model (offshore), steering with local iT in each country the transformation and then ensuring service continuity, technical consistency, support quality, and proper integration of production, security, and documentation requirements in a complex, multi entity and multi contract environment.
Key Responsibilities
1.Cybersecurity Technical Project Management of Sunrise transformation for infrastructure
- Manage during the due diligence the technical infrastructure assessment, focus on the cybersecurity perimeter: understand the exiting partners involved in the infrastructure security services.
- Collaborate with the local IT Hosting & Network teams, leadership, business entities and other stakeholders to assess key infrastructure security risks, plan controls and strategic initiatives accordingly, to help ensure organisations risk appetite is met (NIST controls & target rating)
- Follow up the knowledge transfer with the existing offshore providers to ensure cyber security is properly addressed
2. Infrastructure Cybersecurity Service Delivery for the transformed entities concerned
- Support the Cyber Security teams in the investigation, resolution and reporting of critical incidents to help ensure these are managed in a timely and effective manner to help minimize impact to the group
- Lead the management of the day to day infrastructure security processes managed by the infrastructure teams and third party providers in the areas of:
- Vulnerability management and network security (firewall management, web filtering, NAC, network intrusion detection, email security, endpoint, and server protection etc.)
- Information protection (Data Loss Prevention management and key management)
- Infrastructure Application security (pre and post development control implementation and testing
- Contribute to Root Cause Analyses (RCA), post mortems, and action plans
3. Delivery quality with external partners
- Develop a strong, open and proactive working relationship with the outsourced Service Delivery team
- Be the primary interface between organisations and the infrastructure security service providers and ensure they meet contractually defined Service Level Agreements (e.g : Patching activities , NisT controls, AD assessments, Disaster recovery exercises …)
- Define and collect metrics / KPIs for the measurement of infrastructure security and periodically report to leadership on events and incidents to help ensure performance is in line with organisations' risk appetite
- Hold regular governance calls (weekly, monthly, quarterly, as needed) with outsourced providers to monitor and review cyber performance of their contract
- Challenge the quality of diagnostics, escalations, and resolutions
- Manage the collection of evidence for compliance reporting : SOC2 reports , ISO27001, ORADAD .. with all 3rd parties
4. Support Enablement & Excellence
Support the Infrastructure teams in all Infrastructure Security matters to ensure compliance
Contribute to the formalization of:
- Technical procedures
- Operational runbooks
- Knowledge Base content
- Promote skill development and autonomy within support teams
- Identify weaknesses and recurring incidents
- Propose and lead improvement initiatives
- Contribute to the evolution of Production and Support standards
Technical Skills
- Good understanding & knowledge of Infrastructure security, including Windows Client & Server technologies, Virtualisation technologies, Networking, Patch/ Vulnerability management and Business Continuity / Disaster Recovery
- Very strong knowledge of ITIL processes and their operational application
- Ability to understand complex environments and architectures
- Will have proven track record of working with external service providers and building strong relationships with them
- Professional qualification in Project Management and/or 3 years demonstrated work experience
- Experience in managing, executing, and improving IT controls
- English (Fluent, verbally and written)
Posture & Soft Skills
- High level of autonomy
- Strong Customer and Service Management Mindset
- Natural technical leadership
- Problem solving & analysis
- Strong Communication
- Planning, Coordinating & Organizing
- Strong ability to manage pressure and critical situations
This is a cross functional Security reference role, accountable for the management of cybersecurity across all stack of it infrastructure