SARC
Website:
sarcoregon.org
Company:
https://www.linkedin.com/company/sarcglobal
Industries: Financial Services
Job details:
About SARC Global
SARC Global is a multidisciplinary advisory firm with over 40 years of experience, 100+ partners, 500+ professionals, and a presence across India, the UK, USA, Singapore, and UAE. The firm has built deep, board-level relationships with some of India's largest and most regulated enterprises across banking, financial services, public sector, energy, infrastructure, and manufacturing.
SARC has launched a dedicated cybersecurity and data protection practice, supported by strategic OEM partnerships and an operating model that spans the full lifecycle - from consulting, assessment, and audit through to solution architecture design, implementation, and managed services. This is a founding leadership role, offering the opportunity to build and own a cybersecurity practice within an established, trusted, and well-capitalised advisory firm.
The Role
SARC is seeking a Practice Leader / Vice President to lead its cybersecurity practice end-to-end owning the strategy, the profit and loss, the team, and the market positioning. This individual will be the face of SARC's cybersecurity practice in the market, the architect of its service offerings, and the leader responsible for scaling it from an early-stage practice into a market-leading business over the coming years.
This is not a role for someone who wants to inherit a running practice. It is a role for a proven builder who can start lean, establish the fundamentals, win the early credibility-defining engagements, and then scale the team, the delivery capability, and the revenue in a disciplined, sustainable way.
Key Responsibilities
Business Ownership and P&L
- Own the cybersecurity practice profit and loss — revenue, margin, cost, and profitability. Build and execute an annual operating plan and a multi-year growth roadmap.
- Define the practice's go-to-market strategy across target sectors — BFSI, PSU, energy, infrastructure, and enterprise and translate it into a quarterly and annual bookings and revenue plan.
- Strategically structure early wins towards building credibility for large scale engagements
- Own forecasting, pipeline management, and business reporting to the leadership. Maintain healthy pipeline coverage and accurate revenue visibility.
- Make disciplined decisions on where to invest, which service lines to prioritise, and how to sequence the build so that the practice reaches profitability without over-extending.
Strategy, Vision, and Practice Building
- Set the vision for what SARC's cybersecurity practice will become, and build the roadmap to get there - service portfolio, delivery model, capability build, and market positioning.
- Design and evolve the service catalogue across consulting and assessments, solution architecture and implementation, and managed services, calibrated to the Indian regulatory and enterprise context.
- Establish the operating model, delivery methodology, quality standards, and commercial frameworks (pricing, scoping, SOWs) that allow the practice to deliver consistently and scale repeatably.
- Position SARC's differentiated "risk to resilience" model in the market — combining the firm's regulatory and advisory heritage with cybersecurity implementation capability.
Market Credibility and Client Engagement
- Serve as the senior cybersecurity voice of SARC in the market — representing the practice to CISOs, CIOs, CXOs, boards, and regulators with authority and credibility.
- Lead and win the early, credibility-defining engagements. Present proposals, capabilities, and solution architectures to C-level and board-level stakeholders across enterprise and public sector accounts.
- Leverage the firm's board-level relationships and top-down access, converting warm introductions into scoped, signed engagements.
- Build SARC's cybersecurity brand through thought leadership, industry forums (DSCI, NASSCOM, CII), speaking engagements, and peer credibility in the CISO community.
Team Building and Leadership
- Build, mentor, and lead a high-performing cybersecurity team across consulting, pre-sales, solution architecture, delivery, and managed services.
- Attract senior talent to a founding-stage practice on the strength of the vision and the platform. Establish the culture, the performance standards, and the career pathways.
- Structure the team to start lean and scale with demand — knowing when to hire, what to hire, and how to balance senior expertise with delivery capacity.
Technical Leadership and Solution Credibility
- Provide technical leadership across the practice's domains — network security and segmentation, SOC/SIEM, endpoint, cloud security, identity, application and API security, GRC, and data protection.
- Be sufficiently strong technically to represent the practice credibly in front of a client's security team, guide solution architecture, and make sound judgements on OEM selection, delivery approach, and technical risk.
- Map every service and solution to the applicable regulatory frameworks — RBI, SEBI, IRDAI, CERT-In, DPDP Act 2023, NIST, ISO 27001 — so that recommendations connect to mandatory compliance obligations, not discretionary spend.
OEM, Partner, and Alliance Management
- Own the strategic relationships with SARC's OEM partners — deal registration, joint go-to-market, channel protection, and commercial structuring that captures both licensing margin and services revenue.
- Evaluate and onboard additional OEM and technology partnerships as the practice's service portfolio expands.
Delivery Governance
- Establish delivery governance, quality assurance, and client-success standards that protect SARC's reputation as the practice scales.
- Ensure engagements are delivered on scope, on time, and to a standard consistent with the firm's Big 4-calibre positioning.
Who You Are
- 20+ years in cybersecurity, with a substantial portion in leadership roles owning business outcomes practice building, P&L, or a significant revenue line at a consulting firm, SI, MSSP, OEM, or enterprise security function.
- Proven credibility in the Indian cybersecurity market — recognised by peers, clients, and partners. You are known in the ecosystem and your name opens doors.
- Demonstrated practice-building or business-building experience — you have built something from an early stage and scaled it, not just managed an established book of business.
- Technically strong across the breadth of cybersecurity domains — able to represent the practice credibly to a CISO and guide solution architecture, even where you are not the deepest specialist in every domain.
- A proven builder of teams — you have hired, mentored, and led high-performing cybersecurity teams, and senior people have chosen to follow you.
- An outstanding communicator — able to command a boardroom, present to CXOs, handle objections with authority, and translate technical complexity into business and regulatory terms.
- Commercially disciplined — you understand margins, pricing, scoping, and the economics of a services business, and you make sound investment and hiring decisions.
- Consistent and committed — your career shows depth and stability, not frequent moves. You have stayed, built, and seen things through. (This role requires someone who will commit to a multi-year build; we are specifically looking for a track record of sustained tenure and follow-through.)
- Comfortable building from the ground up — energised rather than daunted by an early-stage practice, able to operate lean, wear multiple hats, and tolerate the ambiguity of a business under construction.
What Sets You Apart
- Experience building not just owning the cybersecurity/risk advisory P&L or practice at a recognised firm.
- Deep familiarity with Indian regulatory frameworks and how they drive enterprise security spend.
- Experience selling and delivering across both private enterprise and PSU/government sectors, including familiarity with public procurement.
- Existing strong relationships across the CISO and CXO community
- Relevant certifications (CISSP, CISM, CCISO, or equivalent) - valued but not a substitute for demonstrated leadership and business-building.
What This Role Offers
- The opportunity to build and own a cybersecurity practice within a 40-year-old, trusted, well-capitalised advisory firm - with the board-level access and enterprise relationships that most standalone cybersecurity firms spend a decade trying to build.
- A founding leadership position with genuine ownership of strategy, P&L, and team, and a clear path to expand the mandate as the practice scales.
- Equity + P&L + Compensation
Location: New Delhi (Okhla Phase 1), in-office with travel across India.
Click on Apply to know more.