Platform Owner - Data Security
Bengaluru, IN Pune, IN
About SKF
SKF started its operations in India in 1923. Today, SKF provides industry leading automotive and industrial engineered solutions through its five technology-centric platforms: bearings and units, seals, mechatronics, lubrication solutions and services. Over the years the company has evolved from being a pioneer ball bearing manufacturing company to a knowledge-driven engineering company helping customers achieve sustainable and competitive business excellence.
SKF's solutions provide sustainable ways for companies across the automotive and industrial sectors to achieve breakthroughs in friction reduction, energy efficiency, and equipment longevity and reliability. With a strong commitment to research-based innovation, SKF India offers customized value-added solutions that integrate all its five technology platforms.
To know more, please visit: www.skf.com/in
SKF Purpose Statement
Together, we re-imagine rotation for a better tomorrow.
By creating intelligent and clean solutions for people and the planet
JOB DESCRIPTION
Position Title: Platform Owner – Data Security
Reports To: Head of Global IT & OT Infrastructure, SIAM and Securities
Role Type: Individual Contributor
Location: Pune/Bengaluru
Roles & Responsibilities:
- Hands-on experience with enterprise Encryption and CLM solutions (SertiGo, DigiCert TLM, Vormetric, Venafi, Keyfactor, AppviewX, Azure Key Vault, SandboxAQ, SSH Key Management or HSMs.).
- Strong ability to lead and guide policy configuration, upgrades, and integration for encryption tools.
- Evaluate and deploy data discovery and classification tools (e.g., Microsoft Purview, Varonis, Symantec DLP, or OneTrust).
- Integrate Data Loss Prevention (DLP), CASB, and encryption solutions across endpoints, networks, and cloud services.
- Define and implement tokenization, masking, and encryption strategies for structured and unstructured data.
- Knowledge of "Post Quantum Cryptography" and "SSH Key Management".
- Demonstrated experience deploying and managing Encryption & PKI solutions across various projects.
- Provide recommendations and best practices for DAM operations, including system optimization and periodic tool upgrades.
- Solid working knowledge of Unix/Linux environments for operational support.
- Oversight of encryption tool availability, readiness, and health monitoring.
- Author and review technical standard operating procedures for encryption platforms.
- Coordination of day-to-day operations and ongoing incidents with regional BCIO / Shadow IT / Business partners.
- Monitor compliance with established objectives, SLAs/SLOs/OLAs, and lead incident, change, and service request processes.
- Conduct status meetings/workshops with business stakeholders and suppliers to align expectations, gather feedback, and drive progress.
- Proactively identify operational improvements and communicate solutions to IT Suppliers, Cyber teams, regional business and Data governance bodies.
- Strong troubleshooting, problem solving, and logical thinking skills.
- Effective communicator and able to represent security solutions to stakeholders at varying levels.
- Should analyze scan result reports, troubleshoot failures, and support business in interpreting findings.
- Design and implement scalable data protection frameworks aligned with enterprise security architecture and compliance standards (ISO 27001, DPDP, GDPR, PCI DSS, Data Security Law (2021), CII Regulations etc.).
Data Governance & Compliance
- Collaborate with SKF’s data and AI governance team to map data flows and maintain an up-to-date Data Inventory and Risk Register.
- Ensure compliance with data residency and privacy regulations, including GDPR, DPDP, PII, CCPA, and regional data protection laws.
- Conduct data risk assessments and define remediation plans to reduce exposure of sensitive data and shadow data.
Cloud & Application Security
- Integrate data security controls into cloud workloads (AWS, Azure, GCP) through services like KMS, Azure Key Vault, and Cloud DLP.
- Support secure data integration between SaaS applications, APIs, and data lakes.
- Partner with DevSecOps teams to embed data security in CI/CD pipelines, ensuring encryption, secrets management, and secure data access.
Monitoring, Incident Response & Continuous Improvement
- Advanced Analytics & Tooling: Utilize Security Information and Event Management (SIEM), Data security tools to identify any data breach, Stolen, Leak detection and propose new use case with SOC team to detect malicious activity.
- Incident Response: Serve as a subject matter expert during high-priority security incidents. Conduct deep-dive forensic analysis to determine the root cause, scope, and impact of breaches.
- Mentorship & Collaboration: Collaborate with Cyber Security partners to improve Data security posture and close visibility gaps.
- Reporting & Communication: Clearly document and communicate findings, methodologies, and recommendations to both technical and executive stakeholders.
Knowledge/Skills/Competencies
- Strong understanding of the framework and its Data Security and encryption.
- Evaluate AI-driven data security capabilities and use cases to grow SKF expertise, improve automation, and strengthen data protection outcomes.
- Experience in risk and compliance management and process development in the areas of information technology and security.
- Advanced knowledge of risk mitigation and business controls
- Excellent problem resolution and creative problem-solving skills
- Excellent project management skills and strong knowledge of change management processes.
- Analytical Mindset: Exceptional analytical, problem-solving, and critical-thinking skills with a keen eye for detail.
- Communication: Excellent written and verbal communication skills, with the ability to articulate complex technical concepts to diverse audiences.
Qualifications :
- 14+ years of experience in Data & Cyber security
- Hands-on expertise on Microsoft suite public cloud platform, such as Azure, O365, Microsoft Security Center are Mandatory.
- Desired candidate should have working knowledge on any one of the additional public cloud platforms like AWS, Ali, OCI.
- Experience and deep understanding of vulnerabilities e.g. OWASP Top 10
- Should be a visionary leader with hands on experience to manage data portion of cyber security with AI for growth strategy in the organization