Cybersecurity Lead

Caterpillar Caterpillar · Industrial · Bangalore, Karnataka

Lead cybersecurity initiatives for Product Support & Logistics Division (PSLD), focusing on applications, infrastructure, cloud, and OT environments. Responsibilities include vulnerability management, risk assessment, implementing enterprise policies, and driving DevSecOps practices.

What you'd actually do

  1. Provide cybersecurity leadership and advisory services to PSLD stakeholders on securing applications, infrastructure, cloud, and OT environments.
  2. Act as the central coordination point for cybersecurity activities across PSLD to ensure consistent execution and governance.
  3. Drive implementation of enterprise cybersecurity policies, standards, and control requirements across all platforms.
  4. Lead and support vulnerability management programs including identification, prioritization, remediation tracking, and reporting across IT, application, cloud, and OT assets.
  5. Collaborate with development and infrastructure teams to embed security controls within SDLC and operational processes, leveraging automation where applicable.

Skills

Required

  • Bachelor's degree in computer science/technology, Information Security, or related field
  • 10+ years of experience in ERP/SaaS/PaaS applications, and Open-sourced Technologies, Application/IT security domains
  • Enterprise cybersecurity frameworks and policies
  • Vulnerability management and risk assessment
  • Secure SDLC and DevSecOps practices
  • Cloud, infrastructure, and OT/ICT security concepts
  • Experience working across multiple technology domains (Applications, Infrastructure, Cloud, OT)
  • Familiarity with security tools such as Qualys, SAST/DAST, Wiz, Nozomi or equivalent platforms
  • Strong collaboration and influencing skills
  • Ability to communicate risks and insights to technical and senior leadership audiences

Nice to have

  • Cybersecurity certifications preferred (e.g., CISSP, CISM, CSSLP, GIAC or equivalent)

What the JD emphasized

  • 10+ years of experience
  • multiple technology domains (Applications, Infrastructure, Cloud, OT)
  • Qualys, SAST/DAST, Wiz, Nozomi or equivalent platforms
  • technical and senior leadership audiences