IT Asset Security Manager
On-siteHyderabad, Telangana, India
Job Summary
Develop and maintain an IT asset security strategy that aligns asset management with cybersecurity, risk, and compliance objectives. Maintain accurate visibility of hardware, software, cloud resources, and endpoints while enforcing controls for ownership, configuration, vulnerability management, and secure disposal. Partner with Security Operations, IT, Procurement, Finance, and Compliance to classify, track, and retire assets, driving remediation for unmanaged or end-of-life items. Lead periodic reconciliations, audits, and incident response coordination to validate data quality and control effectiveness. Define metrics for inventory completeness and remediation progress, delivering actionable risk reports to leadership.
Required Qualifications
- Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Business, or a related field, or equivalent professional experience
- 12+yrs of experience managing IT assets, cybersecurity controls, vulnerability risk, technology governance, or related IT operations functions
- Strong understanding of IT asset lifecycle management, including procurement, deployment, maintenance, monitoring, and secure disposal
- Working knowledge of cybersecurity risk management practices, asset inventory controls, vulnerability management, configuration management, and access control principles
- Ability to analyze asset data, identify risk trends, prioritize remediation activities, and communicate findings to technical and executive audiences
- Experience working with IT asset management, CMDB, endpoint management, vulnerability management, cloud inventory, or security monitoring platforms
- Strong collaboration, documentation, governance, and stakeholder management skills
Desired Qualifications
- Professional certifications such as CISSP, CISM, CRISC, CISA, Security+, ITIL, CSAM, CHAMP, or equivalent asset management, security, or risk certifications
- Experience supporting regulatory, audit, or compliance frameworks such as ISO/IEC 27001, SOC 2, PCI DSS, NIST Cybersecurity Framework, or similar standards
- Familiarity with ServiceNow, Microsoft Intune, Microsoft Defender, SCCM, Tanium, Qualys, Rapid7, Tenable, Wiz, AWS, Azure, or comparable ITAM, endpoint, cloud, and vulnerability management tools
- Experience developing executive-level dashboards, risk reporting, control metrics, and remediation plans
- Experience managing third-party technology assets, SaaS platforms, cloud services, and non-human identities associated with enterprise IT environments
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.