Lead cyber risk assessments, maintain IT risk registers, remediate technical debt, develop KRIs/KPIs and reporting, support privacy and third-party risk activities, aid incident response, and collaborate across IT, legal, product, and regulatory teams to drive continuous improvement in IT risk management.
We are seeking a motivated Cybersecurity Architect/Engineer with a strong foundation in Governance, Risk, and Compliance (GRC) to join our team. This role will primarily focus on Cyber Risk Management, with a secondary emphasis on Privacy and Third-Party Risk Management. You will play a key role in identifying, assessing, and mitigating cyber risks across the organization while supporting privacy initiatives and third-party risk activities to ensure comprehensive security and compliance practices.
You will collaborate closely with IT, legal, product, and regulatory teams to embed cyber risk considerations into projects and processes, helping Honeywell Aerospace maintain a strong security posture in a fast-paced, global environment.
Responsibilities- Conduct Cyber Risk assessments, identifying and evaluating risks related to processes, services, and assets.
- Maintain and update IT Risk Registers and contribute to risk universe refinement.
- Manage and remediate Tech Debt across the organization.
- Work closely with IT and business risk domains to ensure risk mitigation plans are in place, managed, and effective.
- Develop, deploy, and refine risk metrics (KRIs, KPIs) and reporting to reflect the efficacy and maturity of IT Risk Management and drive continuous improvement.
- Communicate IT Risk policies and processes effectively across all organizational levels, including senior management.
- Identify opportunities for continuous improvement, automation and optimization within cyber risk, privacy, and third-party risk processes.
- Serve as a backup resource for privacy and third-party risk management functions as needed.
- Participate in incident response related to cyber risks and privacy breaches.
- Bachelor’s degree in computer science, Information Technology, Engineering, or related field.
- 3-5 years of progressive experience in IT Risk Management, Cybersecurity, Privacy, GRC, and Third-Party Risk Management.
- Advanced English writing and speaking communication skills with the ability to influence stakeholders at all levels.
- Indian citizen with valid work permit.
We Value:
- Strong understanding of IT Risk Management principles and security frameworks (NIST, CMMC, ISO27001, CoBIT).
- Experience with risk assessments, compliance audits, and security controls implementation.
- Knowledge of privacy frameworks and regulations such as NIST, CMMC, ISO 27001, GDPR, CCPA, and relevant local laws.
- Experience working with multiple regions and time zones in a global environment.
- Self-starter with strong analytical, organizational, and problem-solving skills.
- Ability to work independently and collaboratively in a fast-paced, global environment.
Similar Jobs
Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Perform L2 security monitoring and incident response: analyze and remediate network intrusions and endpoint compromises, build processes and automation, mentor L1 analysts, document incidents, and collaborate with global teams in a 24/7 shift rotation to drive incidents to closure.
Top Skills:
AWSAzureDemistoEdrKill ChainLinuxMdeMicrosoft Defender For EndpointsMicrosoft Office 365Mitre Att&CkPowershellPythonSIEMSplunkWindowsXsoar
Aerospace
Perform security assessments and testing of Honeywell products and partner technologies across hardware, firmware, applications, networks, mobile and cloud. Develop repeatable testing processes, automate tools, identify vulnerabilities, recommend remediations, and report findings to cross-functional teams.
Top Skills:
.NetApktoolBacnetBashBurp SuiteCC++Cloud Security ToolsDnp3DnsFridaFtpGenymotionGhidraHttp(S)Ida ProJavaJavaScriptKaliMetasploitMobile Security ToolsMobsfModbus (TcpMqttNessusNmapNtpOwaspPowershellProtocol FuzzingPythonRadiusReverse Engineering ToolsRtu)Snmp V1/V2/V3SshTelnet
Aerospace • Security • Energy • Industrial
Evaluate and test Honeywell products for security vulnerabilities across hardware, firmware, applications, networks, mobile and cloud. Deliver and automate security testing, partner with tools teams, report findings, and provide remediation guidance. Contribute to repeatable testing processes and work with cross-functional teams to improve product security.
Top Skills:
.NetApktoolBacnetBashBurp SuiteCC++CloudDebuggersDnp3DnsEmbeddedFirmwareFridaFtpFuzzingGenymotionGhidraHttp/HttpsIda ProJavaJavaScriptKaliMetasploitMobileMobsfModbusMqttNessusNetwork SecurityNmapNtpOwaspPowershellPythonRadiusReverse EngineeringSnmpSshTelnet
What you need to know about the Kolkata Tech Scene
When considering the industries shaping India's tech scene, gaming might not immediately come to mind. However, in the last decade, increased internet usage and greater access to mobile devices have catapulted the industry to new heights, with Kolkata-based companies like Virtualinfocom, Red Apple Technologies and Digitoonz, at the forefront, driving the design and animation of new gaming titles for players.


