Security Awareness & Training Specialist

Posted 4 Hours Ago
Be an Early Applicant
Pune, Maharashtra, IND
Hybrid
Senior level
Artificial Intelligence • Healthtech • Professional Services • Analytics • Consulting
Where passion changes lives
The Role
Leads the enterprise Human Risk Management program, including security awareness, phishing resilience, role-based cybersecurity education, mandatory training, behavior-change initiatives, risk metrics, dashboards, governance, and executive reporting. Partners with security, HR, legal, technology, and business teams to reduce human-related cybersecurity risk. Evaluates awareness platforms, develops security culture programs, uses automation and AI, and maintains audit-ready documentation and continuous-improvement practices.
Summary Generated by Built In
ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you'll work side-by-side with a powerful collective of thinkers and experts shaping life-changing solutions for patients, caregivers and consumers, worldwide. ZSers drive impact by bringing a client-first mentality to each and every engagement. We partner collaboratively with our clients to develop custom solutions and technology products that create value and deliver company results across critical areas of their business. Bring your curiosity for learning, bold ideas, courage and passion to drive life-changing impact to ZS.
What You'll Do: Security Awareness & Training Specialist (Human Risk Management Program Lead) in Enterprise will own and advance enterprise programs that reduce human-related cybersecurity risk and strengthen security culture . This role will drive strategy, governance, awareness, behavior change, phishing resilience, role-based learning, risk measurement and continuous improvement across the employee lifecycle. The ideal candidate will bring strong program leadership, data-driven decision-making, executive communication and cross-functional partnership skills to help shift the organization from reactive awareness to proactive, measurable risk reduction.
  • Own the Human Risk Management strategy, roadmap and operating model, aligning awareness, behavior- change and risk-reduction initiatives with enterprise security priorities.
  • Design and scale enterprise-wide security awareness programs, including mandatory training, phishing resilience, role-based education, targeted interventions, reinforcement campaigns and employee engagement initiatives.
  • Lead phishing resilience programs, including simulation strategy, real-world reporting analysis, difficulty calibration, high-risk cohort management, repeat-clicker remediation and new-joiner education.
  • Drive role-based cybersecurity education for technical and business audiences, including secure coding awareness, developer engagement, compliance tracking, targeted communications and reinforcement activities.
  • Manage annual mandatory security training programs from launch through closure, including enrollment, reminders, exception handling, escalation, dashboard visibility, containment coordination, recognition and audit evidence.
  • Define and operationalize human risk metrics, dashboards and reporting to measure program effectiveness, behavior change, risk reduction, completion rates, phishing trends, secure coding compliance and business impact.
  • Partner with SOC, Incident Response, Security Architecture, GRC, HR, Legal, Technology and business teams to identify behavioral patterns, threat trends and human-risk signals, then convert those insights into proactive education, controls and remediation plans.
  • Lead HRM governance discussions, leadership meetings and executive updates by presenting progress, risks, decisions, success metrics, program maturity and the measurable impact delivered by the HRM team.
  • Evaluate, implement and optimize HRM platforms and capabilities, including requirements definition, vendor assessment, proof-of-value planning, behavior-signal mapping, privacy readiness, success criteria and adoption planning.
  • Build and sustain security culture initiatives, including ambassador or champion programs, office engagement, communication toolkits, regional feedback loops, and campaign-based awareness.
  • Use AI, automation and workflow optimization to streamline reporting, content creation, audience segmentation, campaign operations and insight generation while maintaining quality, privacy and governance standards.
  • Establish and maintain scalable program governance, including SOPs, RACI models, decision logs, evidence packs, audit-ready documentation and continuous-improvement practices.

What You'll Bring:
  • Bachelor's degree in Information Security , Technology, Risk Management, Psychology, Organizational Behavior or a related discipline.
  • 5+ years of experience in cybersecurity, security awareness, human risk management, risk management, behavioral change, learning programs or related disciplines.
  • Proven experience leading enterprise-wide awareness, phishing, training, behavior- change or risk-reduction programs in a complex organization.
  • Strong program management skills with the ability to manage multiple initiatives, stakeholders, timelines, dependencies and operational risks.
  • Experience partnering with security, technology, HR, legal, compliance and business teams to translate risk insights into practical workforce interventions.
  • Ability to define success metrics, analyze program data, develop dashboards and communicate measurable business outcomes to leadership.
  • Excellent written and verbal communication skills, with the ability to simplify complex security topics for executive, technical and non-technical audiences.
  • Knowledge of cybersecurity concepts, security governance, risk management principles and workforce behavior-change practices.
  • Fluency in English
  • Client-first mentality
  • Intense work ethic
  • Collaborative spirit and problem-solving approach

Preferred Qualifications
  • Experience implementing, administering or evaluating Human Risk Management, phishing simulation or security awareness platforms.
  • Experience with behavioral analytics, risk scoring, user segmentation, security culture measurement or human-risk reporting.
  • Familiarity with frameworks and models such as NIST CSF, ISO 27001, SANS Security Awareness Maturity Model or similar control and maturity frameworks.
  • Experience with dashboarding, reporting or data visualization tools such as Power BI, Excel or similar platforms.
  • Security or awareness-related certifications such as SSAP, Security+ or equivalent are preferred.

How you'll grow:
  • Cross-functional skills development & custom learning pathways
  • Milestone training programs aligned to career progression opportunities
  • Internal mobility paths that empower growth via s-curves, individual contribution and role expansions

Perks & Benefits:
At ZS, your growth matters. We offer a comprehensive total rewards package that supports your health and well-being, financial future, time away, and professional development. With robust skills-building programs, multiple career progression paths, internal mobility, and a deeply collaborative culture, you'll have the opportunity to do meaningful work, expand your capabilities, and thrive as part of a global community. For details on total rewards in India , visit ZS India office locations | Where we work | ZS .
Hybrid working model:
We are committed to giving our employees a flexible and connected way of working. A flexible and connected ZS allows us to combine work from home and on-site presence at clients/ZS offices for the majority of our week. The magic of ZS culture and innovation thrives in both planned and spontaneous face-to-face connections.
Travel:
Travel is a requirement at ZS for client facing ZSers; business needs of your project and client are the priority. While some projects may be local, all client-facing ZSers should be prepared to travel as needed. Travel provides opportunities to strengthen client relationships, gain diverse experiences, and enhance professional growth by working in different environments and cultures.
Considering applying?
At ZS, we honor the visible and invisible elements of our identities, personal experiences, and belief systems-the ones that comprise us as individuals, shape who we are, and make us unique. We believe your personal interests, identities, and desire to learn are integral to your success here. We are committed to building a team that reflects a broad variety of backgrounds, perspectives, and experiences. Learn more about our inclusion and belonging efforts and the networks ZS supports to assist our ZSers in cultivating community spaces and obtaining the resources they need to thrive.
If you're eager to grow, contribute, and bring your unique self to our work, we encourage you to apply.
ZS is an equal opportunity employer and is committed to providing equal employment and advancement opportunities without regard to any class protected by applicable law.
To complete your application:
Candidates must possess or be able to obtain work authorization for their intended country of employment. An on-line application, including a full set of transcripts (official or unofficial), is required to be considered.
NO AGENCY CALLS, PLEASE.
Find Out More At:
www.zs.com

Skills Required

  • Bachelor's degree in Information Security, Technology, Risk Management, Psychology, Organizational Behavior, or a related discipline
  • 5+ years of experience in cybersecurity, security awareness, human risk management, risk management, behavioral change, learning programs, or related disciplines
  • Experience leading enterprise-wide awareness, phishing, training, behavior-change, or risk-reduction programs in a complex organization
  • Strong program management skills managing multiple initiatives, stakeholders, timelines, dependencies, and operational risks
  • Experience partnering with security, technology, HR, legal, compliance, and business teams
  • Ability to define success metrics, analyze program data, develop dashboards, and communicate measurable business outcomes
  • Excellent written and verbal communication skills for executive, technical, and non-technical audiences
  • Knowledge of cybersecurity concepts, security governance, risk management principles, and workforce behavior-change practices
  • Fluency in English
  • Client-first mentality
  • Intense work ethic
  • Collaborative spirit and problem-solving approach
  • Experience implementing, administering, or evaluating Human Risk Management, phishing simulation, or security awareness platforms
  • Experience with behavioral analytics, risk scoring, user segmentation, security culture measurement, or human-risk reporting
  • Familiarity with NIST CSF, ISO 27001, SANS Security Awareness Maturity Model, or similar frameworks
  • Experience with dashboarding, reporting, or data visualization tools such as Power BI or Excel
  • Security or awareness-related certification such as SSAP or Security+

What the Team is Saying

Ash Easwar
Suzanne Boyan
Kristina Sambucci
Callum Brazier
Michelle Lu
Mike Vula
Mina Labib
Judith Kulich
Anna Simon
Rachana Late
Bazgha Qutab
Ayush Kataria
Carolina Blanco
Kumar Ritwik
Emily Reynolds
Mahmood Majeed
Mahmood Majeed
Bazgha Qutab
Mahmood Majeed

ZS Compensation & Benefits Highlights

  • Healthcare Strength Medical through UMR/UnitedHealthcare with CVS Caremark, fully covered vision exams with an eyewear allowance, robust dental (including orthodontia), and multiple mental‑health options (Talkspace, Bend Health, EAP) indicate a broad, high‑quality package. Additional programs like Sword for musculoskeletal care and company‑paid life and disability coverage further reinforce the depth of health protections.
  • Parental & Family Support Family‑forming and hormonal‑health coverage via Carrot is described up to $95,000, alongside adoption support, backup care for children/elders/pets, and Milk Stork for business‑traveling parents. Paid family leave is outlined at 10 weeks, with birth mothers potentially reaching up to 16 weeks when combined with the Family Leave Program.
  • Leave & Time Off Breadth Vacation starts at 15 days per year and increases to 20 days after 36 months, paired with 11 company holidays and a floating holiday. Sick leave with rollover and bereavement provisions add practical flexibility around time away.

ZS Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Evanston, IL
15,000 Employees
Year Founded: 1983

What We Do

ZS is a management consulting and technology firm that partners with companies to improve life and how we live it. We transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Founded in 1983, ZS has more than 15,000+ employees in over 40 offices worldwide.

Why Work With Us

ZS is home to passionate people who embrace innovative thinking, collaboration and a client-first mindset. Welcome to a company where new ideas are celebrated, curiosity is welcomed, learning opportunities are abundant and colleagues become lifelong connections.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

ZS Teams

Team
Product & Tech
Team
Engineering
Team
Insights & Analytics
Team
Continuous Learning and Growth
About our Teams

ZS Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

The Flexible & Connected model is our ZS standard. ZSers decide where it makes the most sense for them to work each day given client or teamwork.

Typical time on-site: 3 days a week
Company Office Image
HQEvanston (Global HQ)
Company Office Image
JP
Company Office Image
Atlanta, GA
Company Office Image
Barcelona, ES
Company Office Image
Seattle
Company Office Image
Bengaluru, Karnataka
Company Office Image
Berlin, DE
Company Office Image
Washington D.C.
Company Office Image
Boston, MA
Company Office Image
Buenos Aires
Company Office Image
Cambridge, GB
Company Office Image
Chicago - Merchandise Mart
Company Office Image
Chicago—Prudential Plaza
Company Office Image
Raleigh-Durham
Company Office Image
San Francisco (Foster City)
Company Office Image
Frankfurt
Company Office Image
Gurugram
Company Office Image
Hyderabad (Global Capability Center)
Company Office Image
Copenhagen
Company Office Image
London, GB
Company Office Image
Milan, MI
Company Office Image
New York, NY
Company Office Image
Noida
Company Office Image
Paris, FR
Company Office Image
Philadelphia, PA
Company Office Image
Princeton
Company Office Image
Pune (International Tech Park)
Company Office Image
Pune (World Trade Center)
Company Office Image
San Diego, CA
Company Office Image
São Paulo, BR
Company Office Image
Singapore
Company Office Image
San Francisco (South)
Company Office Image
Los Angeles
Company Office Image
Tokyo, JP
Company Office Image
Toronto, Ontario
Company Office Image
Zürich, CH
Learn more

Similar Jobs

ZS Logo ZS

Consultant

Artificial Intelligence • Healthtech • Professional Services • Analytics • Consulting
Hybrid
3 Locations
15000 Employees

ZS Logo ZS

Information Protection Analyst

Artificial Intelligence • Healthtech • Professional Services • Analytics • Consulting
Hybrid
Pune, Maharashtra, IND
15000 Employees

ZS Logo ZS

Cloud Administrator

Artificial Intelligence • Healthtech • Professional Services • Analytics • Consulting
Hybrid
Pune, Maharashtra, IND
15000 Employees

ZS Logo ZS

Program Manager

Artificial Intelligence • Healthtech • Professional Services • Analytics • Consulting
Hybrid
2 Locations
15000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account