CareerScanCareerScan
JobsCompanies
BlogContact
For Employers
Sign InRegister Free
CareerScanCareerScan

India's verified job platform connecting candidates directly with employers. 100% free applications with instant ATS resume scoring.

Chennai, Bengaluru & Hyderabad
Jobs by location
Jobs in ChennaiJobs in BengaluruJobs in HyderabadJobs in PuneJobs in Mumbai
Popular roles
AR Caller JobsHealthcare Medical CodingReact / Full Stack DeveloperData & Power BI AnalystCustomer Support Executive
Top companies
TCS CareersCognizant JobsInfosys OpeningsApollo HospitalsOmega Healthcare
Career services
Free ATS Resume CheckerAI Resume Builder (Free)AI Job MatcherSalary Guide & BenchmarksJob Alerts on WhatsApp
© 2026 CareerScan India. All rights reserved.256-bit SSL encrypted & verified
Back to all jobs
  1. Home
  2. Jobs
  3. Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance
Zensar
Zensar

Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

India
8+ years exp
Contract
Posted 5d ago
0 views
Actively Hiring Direct 1-Click Apply

Check Your Resume Match Score

Scan your resume against ATS criteria for this Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance role at Zensar.

Apply for this position

Apply on Company Website
Notice a broken link or wrong info?

Job Description

Job Description

Position Title: Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

Location

Hybrid (Remote with Scheduled Visits to Nchanga)

Reporting To

Service Delivery Director

Job Purpose

The Virtual Chief Information Security Officer (vCISO) will provide strategic leadership and governance for Cybersecurity and Operational Technology (OT) security program. The role is responsible for establishing and executing the cybersecurity strategy, developing governance frameworks, managing cyber risk, ensuring regulatory and audit compliance, overseeing security policies and controls, driving security awareness, coordinating incident response activities, and providing executive-level reporting to management and Board stakeholders.

The vCISO will act as trusted cybersecurity advisor, ensuring that IT and OT environments remain secure, resilient, compliant, and aligned with business objectives. The role will be particularly focused on securing mining operations, industrial control systems, SCADA environments, critical infrastructure, and enterprise technology platforms.


Key Responsibilities

Security Strategy & Leadership

  • Develop and maintain Cybersecurity and OT Security Strategy.
  • Define short-term, medium-term, and long-term security roadmaps.
  • Align cybersecurity initiatives with business objectives and operational risks.
  • Advise executive leadership on security priorities, investments, and emerging threats.
  • Establish cybersecurity governance structures and steering committees.

OT Security Governance

  • Develop security controls and governance frameworks for Operational Technology (OT) environments.
  • Assess and improve security posture across mining operations, industrial networks, SCADA systems, and production environments.
  • Define network segmentation and security architecture standards between IT and OT environments.
  • Oversee OT cybersecurity risk management and mitigation programs.
  • Recommend security controls for critical industrial infrastructure.

Cyber Risk Management

  • Establish enterprise cybersecurity risk management frameworks.
  • Conduct cyber risk assessments and maturity assessments.
  • Maintain Cyber Risk Registers and remediation roadmaps.
  • Identify vulnerabilities, threats, and potential business impacts.
  • Present risk findings and mitigation plans to executive leadership and governance boards.

Security Governance & Compliance

  • Establish cybersecurity policies, standards, procedures, and security baselines.
  • Define governance controls for identity management, privileged access, endpoint security, network security, cloud security, and OT environments.
  • Ensure compliance with industry standards and internal security requirements.
  • Support internal audits, external audits, and regulatory assessments.
  • Drive closure of audit observations and security findings.

Security Architecture & Control Oversight

  • Review and approve security designs for infrastructure and transformation initiatives.
  • Provide governance over firewalls, VPNs, endpoint protection, identity services, network security, cloud security, and monitoring platforms.
  • Ensure security-by-design principles are adopted across projects.
  • Review security exceptions and compensating controls.
  • Advise on technology investments and cybersecurity improvements.

Incident Response & Cyber Resilience

  • Establish and maintain Cyber Incident Response and Escalation Procedures.
  • Provide executive oversight during cybersecurity incidents.
  • Coordinate investigation, containment, recovery, and post-incident reviews.
  • Ensure lessons learned and corrective actions are implemented.
  • Develop cybersecurity resilience, business continuity, and disaster recovery governance programs.

Security Awareness & Culture

  • Develop and lead enterprise-wide cybersecurity awareness programs.
  • Conduct executive security awareness sessions and phishing simulations.
  • Promote cybersecurity best practices across business and operational teams.
  • Develop security communications, advisories, and awareness campaigns.
  • Improve overall security maturity and culture.

Executive & Board Reporting

  • Prepare cybersecurity dashboards and executive reports.
  • Present cybersecurity risks, compliance status, incidents, and strategic initiatives to management and board members.
  • Define and report cybersecurity KPIs, KRIs, and maturity metrics.
  • Provide recommendations on risk acceptance, mitigation priorities, and investment planning.
  • Facilitate periodic Cybersecurity Governance Review meetings.

Third-Party & Vendor Security Governance

  • Assess third-party cybersecurity risks.
  • Review vendor security controls and compliance requirements.
  • Participate in contract reviews from a security perspective.
  • Ensure suppliers and service providers comply with security expectations.
  • Monitor remediation of third-party security risks.

Required Skills & Experience

Core Cybersecurity Competencies

  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development

Technical Knowledge

  • Industrial Control Systems (ICS)
  • SCADA Security
  • Network Security
  • Identity & Access Management (IAM)
  • Privileged Access Management (PAM)
  • Endpoint Security
  • Cloud Security (M365, Azure, AWS)
  • Vulnerability Management
  • Security Operations & SIEM
  • Data Protection & Information Security

Experience

  • 15+ years of IT and Cybersecurity experience.
  • 8+ years in Cybersecurity Leadership, Governance, or CISO-level functions.
  • Demonstrated experience securing OT, SCADA, Industrial, Mining, Utilities, Manufacturing, or Critical Infrastructure environments.
  • Experience leading audit readiness, risk management, and enterprise security programs.
  • Experience presenting to Executive Leadership and Board-level stakeholders.

Educational Qualifications

  • Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field.
  • Master's Degree preferred.

Preferred Certifications

  • CISSP
  • CISM
  • CRISC
  • CGEIT
  • ISO 27001 Lead Implementer / Lead Auditor
  • IEC 62443 (Industrial Cybersecurity)
  • CCSP or equivalent cloud security certification

Job Description

Position Title: Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

Location

Hybrid (Remote with Scheduled Visits to Nchanga)

Reporting To

Service Delivery Director

Job Purpose

The Virtual Chief Information Security Officer (vCISO) will provide strategic leadership and governance for Cybersecurity and Operational Technology (OT) security program. The role is responsible for establishing and executing the cybersecurity strategy, developing governance frameworks, managing cyber risk, ensuring regulatory and audit compliance, overseeing security policies and controls, driving security awareness, coordinating incident response activities, and providing executive-level reporting to management and Board stakeholders.

The vCISO will act as trusted cybersecurity advisor, ensuring that IT and OT environments remain secure, resilient, compliant, and aligned with business objectives. The role will be particularly focused on securing mining operations, industrial control systems, SCADA environments, critical infrastructure, and enterprise technology platforms.


Key Responsibilities

Security Strategy & Leadership

  • Develop and maintain Cybersecurity and OT Security Strategy.
  • Define short-term, medium-term, and long-term security roadmaps.
  • Align cybersecurity initiatives with business objectives and operational risks.
  • Advise executive leadership on security priorities, investments, and emerging threats.
  • Establish cybersecurity governance structures and steering committees.

OT Security Governance

  • Develop security controls and governance frameworks for Operational Technology (OT) environments.
  • Assess and improve security posture across mining operations, industrial networks, SCADA systems, and production environments.
  • Define network segmentation and security architecture standards between IT and OT environments.
  • Oversee OT cybersecurity risk management and mitigation programs.
  • Recommend security controls for critical industrial infrastructure.

Cyber Risk Management

  • Establish enterprise cybersecurity risk management frameworks.
  • Conduct cyber risk assessments and maturity assessments.
  • Maintain Cyber Risk Registers and remediation roadmaps.
  • Identify vulnerabilities, threats, and potential business impacts.
  • Present risk findings and mitigation plans to executive leadership and governance boards.

Security Governance & Compliance

  • Establish cybersecurity policies, standards, procedures, and security baselines.
  • Define governance controls for identity management, privileged access, endpoint security, network security, cloud security, and OT environments.
  • Ensure compliance with industry standards and internal security requirements.
  • Support internal audits, external audits, and regulatory assessments.
  • Drive closure of audit observations and security findings.

Security Architecture & Control Oversight

  • Review and approve security designs for infrastructure and transformation initiatives.
  • Provide governance over firewalls, VPNs, endpoint protection, identity services, network security, cloud security, and monitoring platforms.
  • Ensure security-by-design principles are adopted across projects.
  • Review security exceptions and compensating controls.
  • Advise on technology investments and cybersecurity improvements.

Incident Response & Cyber Resilience

  • Establish and maintain Cyber Incident Response and Escalation Procedures.
  • Provide executive oversight during cybersecurity incidents.
  • Coordinate investigation, containment, recovery, and post-incident reviews.
  • Ensure lessons learned and corrective actions are implemented.
  • Develop cybersecurity resilience, business continuity, and disaster recovery governance programs.

Security Awareness & Culture

  • Develop and lead enterprise-wide cybersecurity awareness programs.
  • Conduct executive security awareness sessions and phishing simulations.
  • Promote cybersecurity best practices across business and operational teams.
  • Develop security communications, advisories, and awareness campaigns.
  • Improve overall security maturity and culture.

Executive & Board Reporting

  • Prepare cybersecurity dashboards and executive reports.
  • Present cybersecurity risks, compliance status, incidents, and strategic initiatives to management and board members.
  • Define and report cybersecurity KPIs, KRIs, and maturity metrics.
  • Provide recommendations on risk acceptance, mitigation priorities, and investment planning.
  • Facilitate periodic Cybersecurity Governance Review meetings.

Third-Party & Vendor Security Governance

  • Assess third-party cybersecurity risks.
  • Review vendor security controls and compliance requirements.
  • Participate in contract reviews from a security perspective.
  • Ensure suppliers and service providers comply with security expectations.
  • Monitor remediation of third-party security risks.

Required Skills & Experience

Core Cybersecurity Competencies

  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development

Technical Knowledge

  • Industrial Control Systems (ICS)
  • SCADA Security
  • Network Security
  • Identity & Access Management (IAM)
  • Privileged Access Management (PAM)
  • Endpoint Security
  • Cloud Security (M365, Azure, AWS)
  • Vulnerability Management
  • Security Operations & SIEM
  • Data Protection & Information Security

Experience

  • 15+ years of IT and Cybersecurity experience.
  • 8+ years in Cybersecurity Leadership, Governance, or CISO-level functions.
  • Demonstrated experience securing OT, SCADA, Industrial, Mining, Utilities, Manufacturing, or Critical Infrastructure environments.
  • Experience leading audit readiness, risk management, and enterprise security programs.
  • Experience presenting to Executive Leadership and Board-level stakeholders.

Educational Qualifications

  • Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field.
  • Master's Degree preferred.

Preferred Certifications

  • CISSP
  • CISM
  • CRISC
  • CGEIT
  • ISO 27001 Lead Implementer / Lead Auditor
  • IEC 62443 (Industrial Cybersecurity)
  • CCSP or equivalent cloud security certification

Job Description

Position Title: Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

Location

Hybrid (Remote with Scheduled Visits to Nchanga)

Reporting To

Service Delivery Director

Job Purpose

The Virtual Chief Information Security Officer (vCISO) will provide strategic leadership and governance for Cybersecurity and Operational Technology (OT) security program. The role is responsible for establishing and executing the cybersecurity strategy, developing governance frameworks, managing cyber risk, ensuring regulatory and audit compliance, overseeing security policies and controls, driving security awareness, coordinating incident response activities, and providing executive-level reporting to management and Board stakeholders.

The vCISO will act as trusted cybersecurity advisor, ensuring that IT and OT environments remain secure, resilient, compliant, and aligned with business objectives. The role will be particularly focused on securing mining operations, industrial control systems, SCADA environments, critical infrastructure, and enterprise technology platforms.


Key Responsibilities

Security Strategy & Leadership

  • Develop and maintain Cybersecurity and OT Security Strategy.
  • Define short-term, medium-term, and long-term security roadmaps.
  • Align cybersecurity initiatives with business objectives and operational risks.
  • Advise executive leadership on security priorities, investments, and emerging threats.
  • Establish cybersecurity governance structures and steering committees.

OT Security Governance

  • Develop security controls and governance frameworks for Operational Technology (OT) environments.
  • Assess and improve security posture across mining operations, industrial networks, SCADA systems, and production environments.
  • Define network segmentation and security architecture standards between IT and OT environments.
  • Oversee OT cybersecurity risk management and mitigation programs.
  • Recommend security controls for critical industrial infrastructure.

Cyber Risk Management

  • Establish enterprise cybersecurity risk management frameworks.
  • Conduct cyber risk assessments and maturity assessments.
  • Maintain Cyber Risk Registers and remediation roadmaps.
  • Identify vulnerabilities, threats, and potential business impacts.
  • Present risk findings and mitigation plans to executive leadership and governance boards.

Security Governance & Compliance

  • Establish cybersecurity policies, standards, procedures, and security baselines.
  • Define governance controls for identity management, privileged access, endpoint security, network security, cloud security, and OT environments.
  • Ensure compliance with industry standards and internal security requirements.
  • Support internal audits, external audits, and regulatory assessments.
  • Drive closure of audit observations and security findings.

Security Architecture & Control Oversight

  • Review and approve security designs for infrastructure and transformation initiatives.
  • Provide governance over firewalls, VPNs, endpoint protection, identity services, network security, cloud security, and monitoring platforms.
  • Ensure security-by-design principles are adopted across projects.
  • Review security exceptions and compensating controls.
  • Advise on technology investments and cybersecurity improvements.

Incident Response & Cyber Resilience

  • Establish and maintain Cyber Incident Response and Escalation Procedures.
  • Provide executive oversight during cybersecurity incidents.
  • Coordinate investigation, containment, recovery, and post-incident reviews.
  • Ensure lessons learned and corrective actions are implemented.
  • Develop cybersecurity resilience, business continuity, and disaster recovery governance programs.

Security Awareness & Culture

  • Develop and lead enterprise-wide cybersecurity awareness programs.
  • Conduct executive security awareness sessions and phishing simulations.
  • Promote cybersecurity best practices across business and operational teams.
  • Develop security communications, advisories, and awareness campaigns.
  • Improve overall security maturity and culture.

Executive & Board Reporting

  • Prepare cybersecurity dashboards and executive reports.
  • Present cybersecurity risks, compliance status, incidents, and strategic initiatives to management and board members.
  • Define and report cybersecurity KPIs, KRIs, and maturity metrics.
  • Provide recommendations on risk acceptance, mitigation priorities, and investment planning.
  • Facilitate periodic Cybersecurity Governance Review meetings.

Third-Party & Vendor Security Governance

  • Assess third-party cybersecurity risks.
  • Review vendor security controls and compliance requirements.
  • Participate in contract reviews from a security perspective.
  • Ensure suppliers and service providers comply with security expectations.
  • Monitor remediation of third-party security risks.

Required Skills & Experience

Core Cybersecurity Competencies

  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development

Technical Knowledge

  • Industrial Control Systems (ICS)
  • SCADA Security
  • Network Security
  • Identity & Access Management (IAM)
  • Privileged Access Management (PAM)
  • Endpoint Security
  • Cloud Security (M365, Azure, AWS)
  • Vulnerability Management
  • Security Operations & SIEM
  • Data Protection & Information Security

Experience

  • 15+ years of IT and Cybersecurity experience.
  • 8+ years in Cybersecurity Leadership, Governance, or CISO-level functions.
  • Demonstrated experience securing OT, SCADA, Industrial, Mining, Utilities, Manufacturing, or Critical Infrastructure environments.
  • Experience leading audit readiness, risk management, and enterprise security programs.
  • Experience presenting to Executive Leadership and Board-level stakeholders.

Educational Qualifications

  • Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, Engineering, or related field.
  • Master's Degree preferred.

Preferred Certifications

  • CISSP
  • CISM
  • CRISC
  • CGEIT
  • ISO 27001 Lead Implementer / Lead Auditor
  • IEC 62443 (Industrial Cybersecurity)
  • CCSP or equivalent cloud security certification

Key Requirements & Skills

  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development
  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development
  • Cybersecurity Governance
  • OT/ICS/SCADA Security
  • Enterprise Security Architecture
  • Risk Management
  • Security Compliance & Audits
  • Incident Response Governance
  • Business Continuity & Disaster Recovery
  • Security Awareness & Training
  • Third-Party Risk Management
  • Security Program Development

Frequently Asked Questions

How to apply for Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance at Zensar?

Click the "Apply on Company Website" button on this page to submit your application directly on the employer's official portal.

What is the salary for this role?

Salary details will be discussed during the interview.

What experience is required?

8+ years of experience is required.

Is this position still open?

Yes, currently active and accepting applications.

ApplicationActively Hiring
Apply on Company Website
Broken link or expired?
Zensar

Zensar

Skip to main content Global What We Do Explore Our Services Explore our full-stack services across applications, data, cloud, security, platforms, and marketing - built to help businesses grow, adapt, and lead. Application Services Manage, modernize, and scale apps with services that enhance performance, usability, and integration across the enterprise. Artificial Intelligence By turning data into actionable insights, our Al solutions unlock growth, boost efficiency, and power intelligent decision-making. Cloud, Infrastructure, and Security Transform operations with intelligent cloud, robust i

Visit Company Website

More jobs at Zensar

SAP SD

Mumbai, Maharashtra, India

Oracle Fusion Technical with AI expertise

Hyderabad, Telangana, India

Salesforce domain combination

India

Share this Opening

Job Alerts for security

Receive email alerts whenever new security roles in India are posted.

Set Free Alert →

Similar Openings

Explore related active roles in security

View all
UrgentActively Hiring
Doppel
Product Security
Doppel Verified
7+ years
₹12.1L – ₹13.8L/mo
US Remote
securityFull-timeRemote
Posted 21h ago
Apply Now
UrgentActively Hiring
Immersivelabs
Solutions Consultant (Cyber Security) - Portugal
Immersivelabs Verified
2+ years
₹1,245/mo
Portugal
securityFull-time
Posted 21h ago
Apply Now
UrgentActively Hiring
Teciem
Job Role – IAM and PAM Security Lead
Teciem Verified
8+ years
Salary not disclosed
TCMi - Bengaluru
securityFull-time
Posted 21h ago
Apply Now

Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity Governance

Zensar · India

Apply on Company Website