Chief Information Security Officer

3 weeks ago


Kanpur, India Jubilant Pharmova Limited Full time

JOB DESCRIPTION1, PURPOSE OF THE JOB: The purpose of the Head of Information Security role is to safeguard Jubilant Bhartia Group’s digital assets, operations, and reputation by establishing and leading a comprehensive cybersecurity strategy. The role ensures that information security is embedded into business processes, technology adoption, and regulatory compliance while enabling the Group’s digital transformation and innovation objectives. By driving governance, risk management, cyber defense, data protection, and security awareness, the Head of Information Security provides resilience against evolving threats, builds stakeholder trust, and empowers the organization to operate securely and competitively in global markets.Job Context: The Jubilant Bhartia Group operates across diverse industries including pharmaceuticals, life sciences, food services, and manufacturing, with a significant global footprint. In this highly digitized and regulated environment, protecting intellectual property, customer trust, critical infrastructure, and sensitive data is central to business resilience and growth.The Head of Information Security plays a pivotal role in shaping and executing the Group’s cybersecurity vision. This role provides leadership in safeguarding IT and OT ecosystems, driving compliance with global regulations, and ensuring alignment of security programs with business strategy. With increasing cyber threats, regulatory expectations, and digital transformation initiatives, the position requires balancing robust security with business agility.The role involves: Developing a Group-wide cybersecurity strategy and governance framework. Protecting enterprise systems, data, and operations from evolving threats. Leading cyber defence, risk management, privacy, and compliance initiatives. Driving awareness and culture change across diverse business units. Acting as the primary interface with regulators, auditors, partners, and executive leadership on security matters.Key Challenges: The Head of Information Security faces the challenge of balancing strong cybersecurity with the Group’s growth and digital transformation goals, ensuring that controls do not hinder business agility. Securing both IT and OT environments is complex, especially as manufacturing plants, industrial systems, and supply chain ecosystems converge with enterprise IT. The role must navigate diverse global regulatory requirements such as the DPDP Act, GDPR & HIPAA, while also managing risks posed by third parties and extended vendor networks. Evolving threats like ransomware, advanced persistent attacks, and insider risks demand proactive defenses, intelligence-led operations, and rapid incident response. At the same time, building a security-first culture across varied business units and geographies, while developing and retaining skilled cybersecurity talent in a competitive market, remains a constant priority.2, DETAILS OF THE JOB:Designation & Job :Sr. Director - Information Security Work Location :Noida Reporting Manager:Group CDIO Direct Reportees :2 Team Size :53, KEY ACCOUNTABILITIES:Cyber DefenseCloud Security -Secure workloads, applications, and data across public, private, and hybrid cloud platforms. Endpoint Security -Protect laptops, desktops, mobiles, and OT devices from malware, ransomware, and unauthorized access. Identity Security -Safeguard digital identities, enforce access controls, and manage privileged accounts. Email / O365 Security -Defend corporate email and collaboration tools from phishing, spoofing, and business email compromise. Threat Detection & Response-Monitor systems continuously, detect anomalies, and respond swiftly to security incidents. Threat Intelligence & Hunting-Leverage internal and external intelligence to proactively identify and mitigate emerging threats. Application Security-Embed security into the software development lifecycle and protect applications against vulnerabilities. Vulnerability Management -Continuously identify, assess, and remediate vulnerabilities across IT, OT, and cloud environments.Cybersecurity Strategy, Architecture & ProgramStrategy -Define the long-term cybersecurity vision and align it with business and digital transformation goals. Strategic Initiatives -Drive group-wide programs such as Zero Trust, cloud security, and OT/ICS security modernization. Architecture -Establish and govern enterprise security architecture standards across IT, OT, cloud, and applications.Data Security & PrivacyWeb Security -Protect enterprise web applications and gateways against exploits, malware, and unauthorized access. Engineering Incident / Request Resolution -Provide timely resolution of security-related incidents and requests raised by business or IT teams. Policy Effectiveness-Ensure security policies are practical, up to date, and effectively enforced across the organization. DLP Incident Response & Resolution -Monitor, investigate, and resolve data loss prevention alerts to prevent sensitive data exfiltration. Data Classification- Protect sensitive business and customer data through classification, encryption, and retention controls. Privacy Compliance- Ensure compliance with global privacy regulations (GDPR, DPDP Act, HIPAA, etc.). Data Privacy -Implement consent management, anonymization, and data minimization practices and Conduct regular Privacy Impact Assessments (PIAs) for new initiatives.Risk and ComplianceGovernance -Establish cybersecurity governance structures, policies, and oversight aligned with business objectives. Risk Management -Identify, assess, and prioritize cyber risks, integrating them with enterprise risk management frameworks. Third-Party Risk Management -Evaluate and monitor security posture of vendors, partners, and supply chain entities handling sensitive data. Compliance -Ensure adherence to regulatory, legal, and industry-specific security standards across geographies. Audit Closure -Track, remediate, and close internal and external audit findings within agreed timelines. Mitigation Task Completion -Ensure timely closure of identified risks, vulnerabilities, and incident-driven corrective actions.Awareness & TrainingSecurity Training & Awareness Campaigns -Develop structured programs and campaigns to build a security-first mindset across the organization. Employee Engagement-Encourage active participation through gamification, contests, and recognition for secure behaviors. Phishing & Social Engineering Readiness - Conduct simulations and drills to assess and improve employee resilience against phishing and manipulation. Live Sessions -Deliver interactive workshops and townhalls with experts to address real-world threats and Q&A.Skill Enhancement – Security TeamCertifications -Encourage and support attainment of industry-recognized certifications (e.g., CISSP, CISM, OSCP, CCSP, cloud security). Trainings -Provide continuous learning opportunities through internal/external training programs, workshops, and knowledge-sharing sessions. Tools and Technology Training -Ensure hands-on expertise in deployed security tools, platforms, and emerging technologies to strengthen operational effectiveness.4, KEY INTERFACES Regulators (FDA, CERT-In) Industry bodies (DSCI, ISACA, NASSCOM) External auditors and assessors Security vendors, MSSPs, and technology partners Group CDIO and IT Business Partners CEOs and Business Heads IT Infrastructure & IT Applications Support Risk Management, Legal & Compliance Internal Audit & Finance BU Leadership, Manufacturing/OT Heads HR (for awareness and training)5, EDUCATION & EXPERIENCEEducation Qualification: BE / B-Tech/ M-Tech/MBA or MCA from a reputed university.Desired Certifications: CISSP, CISM, CISA, GIAC, CRISC, CEH, ISO 27001 LI/LAExperience Range:15-20 yearsDesirable experience: 15–20 years in IT/OT Security, with at least 7 years in leadership roles Exposure to large, diversified conglomerates with global operation Proven track record in building security strategy and incident response at scale Experience of working in Pharma Industry is desirable6, SKILLS REQUIRED:Cybersecurity Frameworks & StandardsRisk ManagementCloud Security Expertise in AWS & Azure security controls; CSPM, CIEM, encryption, and shared responsibility models.Identity & Access Management (IAM)Network & Infrastructure SecurityEndpoint & Mobile SecurityApplication SecurityThreat Detection & ResponseData Security & PrivacyVulnerability ManagementThird-Party SecurityGovernance, Risk, and Compliance (GRC)OT/ICS SecurityForensics & Incident HandlingCryptographyEmerging TechnologiesBehavioural Skills Executive presence with ability to influence Board & CXO Strategic mindset with business acumen Strong decision-making under crisis Collaborative and cross-functional leadership High integrity and trustworthiness Ability to inspire, mentor, and develop high-performing teams



  • Kanpur, India SQ1 Security Full time

    Job Overview: SQ1 Security is seeking an experienced Cybersecurity and Compliance Expert to lead and drive our initiatives toward achieving SOC 2, ISO 27001, GDPR, and HITRUST certifications. Key Responsibilities: • Develop and Maintain Security Frameworks: Design, implement, and maintain information security policies, procedures, and controls aligned with...

  • Chief Ai Officer

    2 weeks ago


    Kanpur, Uttar Pradesh, India f68e2baa-2543-4775-ba5c-a90d85cf0ec8 Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Company DescriptionWe suggest you enter details here.Role DescriptionThe Chief AI Officer (CAIO) is a full-time, on-site role based in Kanpur. The CAIO will be responsible for overseeing the development and implementation of AI strategies to achieve the organization's goals. This includes leading AI research initiatives, managing teams of data scientists and...

  • Security Officer

    2 weeks ago


    Kanpur, India Riddhima Placement Full time

    Only Hotel security officer experience condidate required Manage ALL branches security Minimum 2-5 year experience required Contact 9580479215 **Salary**: ₹25,000.00 - ₹30,000.00 per month Schedule: - Morning shift Ability to commute/relocate: - Kanpur, Uttar Pradesh: Reliably commute or planning to relocate before starting work...

  • Chief of Staff

    2 weeks ago


    Kanpur, India Magma Digital Ventures Full time

    Chief of Staff (Founder’s Office) – Ex-MBB Consultant/Analyst Preferred Full- Time- Remote- US hours A US-based EdTech/Product leadership company is hiring a high-impact Chief of Staff to work directly with the Founder/CEO. This is a strategic, execution-driven role ideal for front-office McKinsey, Bain, or BCG Analysts/Associates who want to move into a...

  • Chief of Staff

    3 days ago


    Kanpur, India MKU Limited Full time

    **Job Description: Chief of Staff** - **Job Objective** Work closely with MD for relentless growth of the organization, assist the MD in optimized decision making to maximize the impact in Operations, Sales, Relationship-building, Finance & Strategy, conduct secondary research on selected topics and provide insight to the top management and help develop MKU...

  • Security Officer

    2 weeks ago


    Kanpur Dehat, India Astral Limited Full time ₹ 6,00,000 - ₹ 8,00,000 per year

    Job Posting: Security Officer – Manufacturing Industry Location: Jainpur Industrial Area, Kanpur Dehat, U.P Company: Astral Limited (Astral Pipes) Employment Type: Full-TimeAbout Us:Astral Limited is a leading manufacturer in UPVC & CPVC Plumbing System, committed to excellence in production, safety, and innovation. As we expand operations, we're seeking...

  • Security Auditor

    19 hours ago


    Kanpur, Uttar Pradesh, India C3iHub, IIT Kanpur Full time ₹ 64,00,000 - ₹ 1,28,00,000 per year

    Company DescriptionC3iHub, established in 2020 under the National Mission on Interdisciplinary Cyber-Physical Systems (NM-ICPS) with funding from the Department of Science and Technology, is a pioneering initiative focused on cybersecurity advancements. The organization works toward analyzing security vulnerabilities, developing tools to address them, and...

  • C3i Hub

    3 weeks ago


    Kanpur, India C3iHub Full time

    are looking for a skilled and proactive ISMS Auditor to join our team, responsible for conducting audits and assessments of our & our clients Information Security Management System (ISMS).The ideal candidate will possess a solid understanding of ISMS frameworks and standards, such as ISO 27001 NIST, and IEC 62443, and demonstrate expertise in evaluating...

  • Security Analyst

    1 week ago


    Kanpur, India Shiv Nadar School Full time

    Position Type: Full TimeJob Type: Experienced (2-4 years)Location: Noida, Core OfficeJob Title: Cyber Security AnalystTHE POSITION :A Cybersecurity Analyst is responsible for identifying, analyzing, and mitigating security threats to an organization's computer systems, networks, and data. They work to ensure the confidentiality, integrity, and availability...

  • Back Office

    1 day ago


    Kanpur, India R S security sarvice Full time

    Kotak mahindra bank HDFC BANK job Back office **Job Types**: Part-time, Fresher Part-time hours: 6 per week **Salary**: ₹१५०.०० per month Schedule: - Monday to Friday - Rotational shift Supplemental pay types: - Overtime pay Ability to commute/relocate: - Kanpur, Uttar Pradesh: Reliably commute or planning to relocate before starting...