Director of corporate Information Security
1 day ago
Role PurposeThe Director / Head of Information Security will lead Chargebee’s Corporate Information Security function, working in close partnership with the Enterprise Cyber security (ECS) which manages product and infrastructure security and Corporate IT (which manages employee systems, devices, and operations) teams.This role focuses on strengthening enterprise-wide governance, compliance, and risk management by designing new security capabilities while leveraging existing technical and operational controls across the broader ecosystem. The leader will own the ISMS (ISO 27001 Program), Incident Management, Data Protection, Endpoint Security, and other GRC (Governance, Risk & Compliance) programs that protect our people, systems, and customers.The ideal candidate will enable Chargebee to stay audit-ready, resilient, and trusted by customers as we continue to scale globally.Key Responsibilities 1. Information Security Strategy & Governance Lead the design and execution of Chargebee’s enterprise security strategy aligned with business goals Own and continuously improve the Information Security Management System (ISMS) under ISO 27001, SOC 2, PCI DSS, and GDPR. Establish and maintain the security governance framework, policies, and standards across business units. Drive adoption of a unified security maturity model and track progress across all security domains. Report quarterly to senior leadership on posture, risks, incidents, and roadmap progress.2. Program Ownership Across Core AORs Own and mature the following functions and teams: ISMS & ISO 27001 Program– Governance, internal audits, controls, SoA, and certification management.Corporate Incident Management (CIM)– Centralized IR process, playbooks, RCA/CAPA, and coordination of each incident, coordinating Product security, Global Technology Infrastructure and internal operations team Data Leakage Prevention (DLP)– Policy, enforcement, and insider data risk management of corporate systems and corporate technology (Collaboration and knowledge management systems). AI information Security Governance– AI risk reviews, usage policy, vendor evaluation, and compliance oversight of corporate information systems and Corporate Technology. Security Awareness Program– Continuous education, phishing simulation, and behavioral improvement of corporate information systems and Corporate Technology. Corporate IT Risk Management– Risk register, reviews, and treatment lifecycle of corporate information systems and Corporate Technology. Business Continuity Program (BCP) & Data Recovery (DR) (Corporate)– Continuity governance, simulation testing, recovery validation of corporate information systems and Corporate Technology. Policy Governance– Centralized authoring, review, communication, and adoption tracking of corporate information systems and Corporate Technology. Access Governance (RBAC)– Access policy, JML automation, and certification reviews of all systems, product operations and corporate systems and technology. Endpoint Security (Systems & Hardware)– Device hardening, monitoring, and compliance visibility of corporate information systems and Corporate Technology. GTM Trust Enablement (RFP/RFI)– Customer trust documentation, security questionnaires, SLAs in response to processes and governance related questions referring to Chargebee’s corporate information systems and Corporate Technology.3. Operational Execution & Oversight Establish a centralized incident classification and escalation model for all business functions. Drive RCA & CAPA closure across incidents and audits; ensure risks are documented and tracked. Maintain audit and evidence readiness for customer and external certifications. Oversee DLP and endpoint monitoring, ensuring response workflows are automated and integrated. Partner with ECS and IT to embed security by design into products, infrastructure, and employee systems. Assist in responding to customer RFP’s to clarify and confirm Chargebee’s information security and corporate systems compliance4. Risk, Compliance, and Reporting Maintain the enterprise security risk register; ensure high/critical risks have defined treatment and ownership. Manage ISO internal audits and, surveillance reviews, and customer due diligence requests. Develop and publish quarterly security KPIs and KRIs, including metrics on incidents, risk aging, compliance, and awareness.Lead regular security governance reviews with senior leadership, providing updates on posture, risks, and strategic initiatives5. People Leadership & Culture Build and lead a high-performing infosec team across GRC, Risk, DLP, IR, and Awareness. Partner cross-functionally with IT, ECS, Legal, HR, Comms, Risk & Compliance, and GTM enablement functions.. Promote a culture where security is everyone’s responsibility through communication, enablement, and collaboration. Mentor, coach, and grow internal talent to scale the security program sustainably.
-
Director of Development
2 weeks ago
new delhi, India Kiran Nadar Museum of Art Full time1. POSITION VACANT: Director of Development, Kiran Nadar Museum of Art, New Delhi 2. ORGANIZATION BACKGROUND: Our client, the Kiran Nadar Museum of Art (KNMA) , is a pioneering institution in the world of Indian art and culture. Established in 2010 at the initiative of avid art collector Kiran Nadar, KNMA holds the distinction of being India's first private...
-
Director of Development
4 days ago
New Delhi, India Kiran Nadar Museum of Art Full time1. POSITION VACANT: Director of Development, Kiran Nadar Museum of Art, New Delhi 2. ORGANIZATION BACKGROUND: Our client, the Kiran Nadar Museum of Art (KNMA) , is a pioneering institution in the world of Indian art and culture. Established in 2010 at the initiative of avid art collector Kiran Nadar, KNMA holds the distinction of being India's first private...
-
Information Security Leader
3 days ago
New Delhi, India Cvent Full timeCvent is a leading meetings, events, and hospitality technology provider with more than 4,800 employees and ~22,000 customers worldwide, including 53% of the Fortune 500. Founded in 1999, Cvent delivers a comprehensive event marketing and management platform for marketers and event professionals and offers software solutions to hotels, special event venues,...
-
Director of Development
2 weeks ago
New Delhi, India Kiran Nadar Museum of Art Full time1. POSITION VACANT: Director of Development, Kiran Nadar Museum of Art, New Delhi2. ORGANIZATION BACKGROUND:Our client, the Kiran Nadar Museum of Art (KNMA) , is a pioneering institution in the world of Indian art and culture. Established in 2010 at the initiative of avid art collector Kiran Nadar, KNMA holds the distinction of being India's first private...
-
Director of Development
2 weeks ago
new delhi, India Kiran Nadar Museum of Art Full time1. POSITION VACANT: Director of Development, Kiran Nadar Museum of Art, New Delhi2. ORGANIZATION BACKGROUND:Our client, the Kiran Nadar Museum of Art (KNMA), is a pioneering institution in the world of Indian art and culture. Established in 2010 at the initiative of avid art collector Kiran Nadar, KNMA holds the distinction of being India's first private...
-
Head of Information Security
4 weeks ago
New Delhi, India Pixis Full timeAbout us:Pixis is a global AI technology company transforming how brands plan, create, and optimize marketing. Our flagship marketing operating system, Prism, sits at the core of the Pixis platform, using AI to turn fragmented performance data into clear, actionable insights and directly into execution. With native integrations across major ad platforms,...
-
Endpoint Security Engineer
4 weeks ago
New Delhi, India Sattrix Information Security Full timeDevice Management (Endpoint) Support Engineers – L1 & L2 Location: Chennai, Hyderabad and Mumbai Mode: work from office (5 days) Shifts: Rotational Shifts (24x7) Budget - L1: 6-7 LPA; L2: 15-18 LPASkills required (End Point Security): Sentinal One Carbon Black Aruba - NAC DAM - Imperva DSF - ImpervaJob Overview: We are looking forDevice Management L1 and...
-
Endpoint Security Engineer
4 weeks ago
New Delhi, India Sattrix Information Security Full timeDevice Management (Endpoint) Support Engineers – L1 & L2Location: Chennai, Hyderabad and MumbaiMode: work from office (5 days)Shifts: Rotational Shifts (24x7)Budget - L1: 6-7 LPA; L2: 15-18 LPASkills required (End Point Security):- Sentinal One - Carbon Black - Aruba - NAC - DAM - Imperva - DSF - ImpervaJob Overview:We are looking for Device Management L1...
-
Information Security Analyst
4 weeks ago
New Delhi, India Lexitas Full timeAbout the company Lexitas is a high growth company. The Company is built on a belief that having strong personal relationships with our clients, and providing reliable, accurate and professional services, is the driving force of our success. Lexitas offers an array of services including local and national court reporting, medical record retrieval, process...
-
Delhi, Mumbai, NCR, India Vertex Corporate Full time US$ 1,50,000 - US$ 2,00,000 per yearPosition: Associate Director-Credit Ratings - Large Corporates (Mumbai/ Delhi NCR yrs)Role :- This position is part of the Large Corporate Credit Rating team. 8-13 yrs of work experience, preferably in credit rating/credit appraisal/ financial research, is a prerequisite. There should be exposed to / credit analysis of corporate entities in any sector-...