Information Security Officer
3 weeks ago
About the companyCredit cards haven't changed much for over half a century so our team of seasoned bankers, technologists, and designers set out to redefine the credit card for you - the consumer. The result is OneCard - a credit card reimagined for the mobile generation. OneCard is India's best metal credit card built with full-stack tech. It is backed by the principles of simplicity, transparency, and giving back control to the user.Key Responsibilities:Security Strategy and Governance:- Develop, implement, and maintain a comprehensive information security roadmap and strategy aligned with business objectives. - Establish, mature, and enforce security policies, standards, and procedures to ensure a robust governance framework. - Collaborate with executive leadership on budget planning, forecasting, and management for security-related expenditures.Audit and Compliance Management:- Lead and manage all aspects of internal and external audits, including those from regulatory bodies and clients (vendor due diligence). - Serve as the primary point of contact for auditors, ensuring all evidence requests are fulfilled accurately and on time. - Drive the remediation and closure of audit findings by coordinating with relevant technical and business teams. - Ensure ongoing compliance with key standards and regulations, including ISO 27001, ISO 22301, Credit Information Companies (CIC), and data localization laws. - Conduct routine compliance activities, such as management review meetings, to maintain certifications and ensure continuous improvement.Risk and Vendor Management:- Establish and operate a robust vendor due diligence (VDD) program, working with internal teams and external audit vendors to assess third-party risk. - Oversee the end-to-end financial process for security vendors, including obtaining proposals, securing internal approvals, and tracking payments. - Identify, assess, and communicate security risks to the company's leadership and other key stakeholders.Security Operations and Collaboration:- Act as the primary security advisor for the company, working closely with various technical teams and Technology Service Providers (TSPs). - Provide expert guidance and oversight for the implementation and management of security controls across key domains, including:Cloud Security:- Advise on best practices for securing AWS environments. - Application Security: Champion the integration of security into the SDLC (SAST/DAST, penetration testing).Network & Endpoint Security:- Guide the deployment and configuration of firewalls, WAF, IDS/IPS, and EDR solutions. - Identity & Access Management (IAM): Ensure robust implementation of SSO, MFA, and privileged access controls.Qualifications and Experience:- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field. - 5-6 years of progressive experience in information security, with a focus on governance, risk, and compliance. - Demonstrated experience in developing or significantly maturing an information security program. - In-depth, hands-on experience leading and facing audits for frameworks like ISO 27001, SOC 2, or PCI DSS. - Professional certifications such as CISSP, CISM, CISA, or ISO 27001 Lead Auditor/Implementer are highly desirable.Skills and Competencies:- Leadership and Ownership: A strategic leader with the ability to operate with a high degree of autonomy. Possesses a strong sense of ownership and takes full responsibility for the security posture of the company. - Independent Decision-Making: Proven ability to make critical, well-reasoned decisions independently and confidently drive security initiatives forward. - Stakeholder Management: Exceptional communication and interpersonal skills, with the ability to effectively articulate complex security concepts and risks to diverse stakeholders, including company directors, executive leadership, and heads of technology departments. - Broad Technical Proficiency: Strong, advisory-level knowledge across multiple security domains (Cloud, Network, Application, Endpoint, IAM). - Compliance Expertise: Deep understanding of ISO 27001, ISO 22301, CIC, and data localization principles. - Creative Problem-Solving: A proactive and innovative approach to identifying and solving complex security challenges in a dynamic environment.
-
Chief Information Security Officer
1 week ago
Delhi, Delhi, India Intelligent Digital Security Full time**Job Responsibilities -**: - Accountable executive for providing overall direction and oversight of the strategy, development, implementation, and administration of information assurance and security policies, plans, and controls that will protect competitive corporate information. - Develops and executes security risk, audit and incident management,...
-
Endpoint Security Engineer
3 weeks ago
New Delhi, India Sattrix Information Security Full timeDevice Management (Endpoint) Support Engineers – L1 & L2 Location: Chennai, Hyderabad and Mumbai Mode: work from office (5 days) Shifts: Rotational Shifts (24x7) Budget - L1: 6-7 LPA; L2: 15-18 LPASkills required (End Point Security): Sentinal One Carbon Black Aruba - NAC DAM - Imperva DSF - ImpervaJob Overview: We are looking forDevice Management L1 and...
-
Endpoint Security Engineer
3 weeks ago
New Delhi, India Sattrix Information Security Full timeDevice Management (Endpoint) Support Engineers – L1 & L2Location: Chennai, Hyderabad and MumbaiMode: work from office (5 days)Shifts: Rotational Shifts (24x7)Budget - L1: 6-7 LPA; L2: 15-18 LPASkills required (End Point Security):- Sentinal One - Carbon Black - Aruba - NAC - DAM - Imperva - DSF - ImpervaJob Overview:We are looking for Device Management L1...
-
Chief Information Security Officer
3 weeks ago
New Delhi, India CYBER سايبر Full timeWe at CYBER are looking for an exceptional Chief Information Security Officer (CISO) to join our leadership team.This is a full-time leadership role offering occasional flexibility but requiring a strong on-site and executive presence to drive security strategy across the organization.As CISO, you will design, implement, and oversee a world-class...
-
Chief Information Security Officer
3 weeks ago
New Delhi, India Exela Technologies Full timeThe Chief Information Security Officer (CISO) is a strategic executive responsible for the vision, leadership, and execution of the company's global information security program. This role will safeguard all digital and physical information assets, manage cyber risk across the entire enterprise, and ensure resilience against an evolving threat landscape. The...
-
Information Security Officer
5 days ago
Delhi, India Acme Hr Consulting Full timeJob code: TATISO4FH Job Description of Information Security Officer Exp: 4-5 yrs - Good knowledge of software security concepts including development and cloud operations security - Hands-on experience on security audits and compliance topics like ISO-27001/SOC - Support implementation of audit controls and manage the auditability of the operational...
-
Chief Information Security Officer
2 days ago
New Delhi, India Adani Cement Full timeCement manufacturing involves complex industrial processes and supply chains that rely heavily on digital systems. This role is vital in protecting the operational technology (OT) environments, ERP platforms, and logistics systems that drive production efficiency and cost optimization. By securing these assets, the cybersecurity lead helps prevent downtime,...
-
Chief Information Security Officer
3 weeks ago
New Delhi, India XL Advisors Full timeWe are seeking an experiencedChief Information Security Officer (CISO)to lead and enhance the organization’s cybersecurity framework. The ideal candidate will have15+ years of experience in IT Security , preferably within theinsurance or banking sector , with exposure tomultinational environments . AB.E. degreeis preferred, along with certifications such...
-
Information Security Auditor
1 week ago
Delhi, Delhi, India Intelligent Digital Security Full time**Job Responsibilities -**: - Conduct based on various IT security compliances (such as ISO 27001, PCI DSS, NIST SP 800-53, etc.) and support organization to remediate the identified risks - Design policy framework based on ISO 27001:2013 - Define controls as per ISO 27002:2013/15 Framework. - Define controls as per NIST SP 800-53 framework - Conduct ISMS...
-
Chief Information Security Officer
2 days ago
New Delhi, India Adani Electricity Full timeRole PurposeAEML powers one of India’s largest metropolitan areas, making cybersecurity a mission-critical function. This role safeguards the smart grid infrastructure, customer data, and digital control systems that ensure reliable electricity distribution across Mumbai. The cybersecurity lead will play a strategic role in protecting against cyberattacks...