This position exists to ensure continuity of AMI deployment and O&M activities in line with contractual requirements, with a strong focus on cyber security compliance. The role is responsible for protecting all information assets and systems under the AMI project, identifying exposures that may impact availability, integrity, and confidentiality, and implementing appropriate controls as per Utility and Apraava Energy Information Security Policies, based on the ISO 27000 framework.
The role also involves reviewing cyber security measures during AMI project implementation and driving end-user engagement to strengthen cybersecurity awareness.
-Define, develop, and maintain cyber security strategy and SOPs for AMI projects.
-Align cyber security initiatives with Utility and Apraava Energy Information Security Policies.
-Conduct periodic cyber security audits of AMI systems.
-Ensure protection of all information assets and systems related to AMI projects.
-Identify exposures affecting availability, integrity, and confidentiality of systems.
-Implement appropriate controls as per Apraava Energy Information Security Policies (ISO 27000 framework).
-Review and recommend changes to cyber security policies, procedures, and guidelines.
-Ensure alignment with Indian regulatory laws/acts and international frameworks and best practices.
-Capture and share cyber security knowledge within the IT team.
-Enhance cyber security awareness among end users, including contractors.
-Drive change management and end-user engagement initiatives.
-Provide inputs and continuously work on self-development plans.
-Prepare scope of services and evaluate cyber security-related contracts.
-Coordinate with partners, cyber security auditors, and the Apraava IT team.
Internal Clients:
-Apraava IT Team
External Clients:
-CERT-IN Auditors
-AMI Partners
-Utility IT Teams
Educational Qualifications:
-B.Tech / B.E. in IT, Computer, Electronics, or Electrical
-Certification in Cyber Security
Functional Skills:
-Implementation of ISO 27001, COBIT
-Endpoint security, APT, DLP, SIEM
-Microsoft AIP, MCAS, Intune
-Knowledge of OT controls (added advantage)
-Knowledge of IT standards and frameworks
-Vendor management
-End-user awareness and change management
-People management and interpersonal skills
-Ability to work in teams and across cultures
7+ years of relevant cyber security and compliance experienc