Cyber Security Advisory Lead
Indexed description
Why Mizuho
At Mizuho, we provide the stability of an international industry leader with the career trajectory of a growing business. Our steady, strategic growth gives our people at all levels rewarding degrees of responsibility and richer work experience than a boutique firm or an established giant could offer alone.
It’s the local expertise of our employees that makes our global network so powerful. By collaborating with colleagues and clients who share the same ambition and drive, you can amplify your sphere of influence and base of knowledge as part of one of the largest banks in the world.
Role Overview:
The Cyber Security Advisory Lead serves as a trusted advisor to business and technology partners across the organization, embedding security expertise into decision-making from strategy through delivery. This role provides risk consultation, secure-by-design guidance, and regulatory mapping, and delivers security input into strategic programs, mergers and acquisitions, and vendor due diligence to ensure risk-informed, business-aligned outcome
Key Responsibilities:
Trusted Advisory & Stakeholder Partnership
- Act as the primary trusted security advisor to business, product, and technology leadership
- Build trusted relationships that position security as an enabler of business objectives
- Translate complex security concepts into clear, actionable guidance for technical and non-technical stakeholders
Risk advisory & Secure-by-Design Guidance
- Provide risk advisory on new initiatives, products, and architectural decisions
- Embed secure-by-design principles across solution design and development lifecycles
- Advise teams on control selection, residual risk, and risk acceptance and treatment options
Security Assessment
- Lead security assessments and design reviews across applications, platforms, and infrastructure
- Advise on cloud security, application security, identity security, data protection, and emerging technology risks as part of solution design and architecture reviews.
- Identify and prioritize security weaknesses, control gaps, and design risks
- Recommend proportionate, risk-based mitigations aligned the organization’s risk appetite
Regulatory Mapping & Compliance Alignment
- Map regulatory and compliance requirements to security controls and business processes
- Advise on the security implications of evolving regulatory obligations
- Partner with risk, legal, compliance, and audit teams to support examinations and assessments
Strategic Programs, M&A & Vendor Due Diligence
- Provide security input into strategic programs and enterprise-wide initiatives
- Lead security due diligence for mergers, acquisitions, and divestitures
- Assess third-party and vendor security posture and advise on risk-based onboarding decisions
- Build and maintain ongoing security partnerships with key third parties and vendors to strengthen the extended risk posture
Leadership & Collaboration
- Lead and develop a high-performing security consulting and advisory practice
- Partner closely with the security engineering and operations teams to align advice with delivery
- Champion a culture of security awareness and shared accountability across the enterprise
Required Qualifications:
- 8+ years of experience in cybersecurity consulting, advisory, risk management, security architecture, or related leadership roles.
- Experience operating within large enterprises or highly regulated environments, preferably within financial services.
- Strong understanding of cybersecurity risk management, threat modeling, secure architecture, security governance, and control frameworks.
- Experience supporting business transformation initiatives, strategic programs, mergers & acquisitions, and third-party risk evaluations.
- Strong knowledge of cybersecurity regulatory and compliance requirements and their application within enterprise environments.
- Exceptional stakeholder engagement, communication, influencing, and relationship management skills.
- Proven ability to translate technical risks into business impact and communicate effectively with senior executives.
- Experience leading teams, developing talent, and building trusted advisory functions.
Preferred Qualifications:
- Experience supporting large financial institutions or other highly regulated organizations.
- Working knowledge of cloud security, application security, identity security, data protection, third-party risk, and security governance.
- Professional certifications such as CISSP, CISM, CCSP, CRISC, SABSA, TOGAF, CCSK, or equivalent.
Company Overview:
Mizuho Pune is an integral part of Mizuho Financial Group, one of the world’s leading financial institutions with a strong global presence across the Americas, EMEA, and Asia. Based in India, Mizuho Pune supports Mizuho’s international businesses by delivering high-quality, scalable, and resilient services across multiple functions.
Mizuho Pune plays a critical role in driving operational excellence, standardization, and innovation for Mizuho Americas. By combining deep domain expertise with strong process, technology, and analytical capabilities, it partners closely with regional and global teams to support corporate and investment banking, capital markets, and corporate services functions, while adhering to the highest standards of risk management, regulatory compliance, and control.
Mizuho Pune offers competitive compensation and benefits package aligned with industry standards and local market practices.
Mizuho Pune is an equal opportunity employer and is committed to fostering an inclusive and diverse workplace.
Employment is subject to applicable background verification checks in accordance with Indian laws and company policies.
https://www.mizuhogroup.com/asia-pacific/mizuho-global-services/careers
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search