Manager - Information Security And Governance
2 weeks ago
Job Description HDB Financial Services Ltd. is seeking a highly skilled and motivated Information Security Manager to lead initiatives across SOC operations and Governance, Breach attack simulation, cloud security, and governance. The ideal candidate will possess deep technical expertise, strategic thinking, and strong communication skills to drive a secure and resilient environment. Key Responsibilities Security Operations Center (SOC) Management Platform Optimization: Fine-tune SIEM ingestion devices to reduce noise and improve signal-to-noise ratio. Implement SOAR integrations for automated incident response and ticketing. Conduct regular health checks and performance tuning of SOC tools. MITRE ATT&CK Mapping: Align detection rules with MITRE tactics and techniques using AI-powered tagging tools. Maintain MITRE coverage dashboards and ensure completeness across analytics rules. SLA Tracking & Governance: Define and monitor SLAs for incident triage, escalation, and closure. Conduct weekly governance reviews with SOC partners to assess KPIs and incident trends. Develop playbooks and runbooks for consistent incident handling Oversee File Integrity Monitoring (FIM) implementation to detect unauthorized changes to critical files, system configurations, and registries. Define baseline configurations and monitor deviations. Ensure FIM alerts are integrated into SIEM for centralized visibility. Use FIM data to support forensic investigations and compliance audits. Implement and manage Database Access Monitoring to track and analyse user activity across critical databases. Monitor query execution, access patterns, and privilege usage. Detect unauthorized access attempts and suspicious behaviour. Ensure logging and alerting are in place for compliance and audit readiness. Cloud Security Posture Management (CSPM) / Cloud Workload Protection (CWP) Alert Triage & Remediation: Investigate alerts from CSPM/CWP tools and drive timely closure. Implement automated remediation scripts for common misconfigurations. Security Best Practices: Enforce secure-by-design principles across cloud deployments. Conduct periodic reviews of cloud policies, IAM roles, and network configurations. Automation & Optimization: Integrate CSPM/CWP tools with CI/CD pipelines for proactive security. Develop custom rules and policies tailored to business needs. External Threat Intelligence Brand Monitoring: Use threat intelligence platforms to detect phishing, impersonation, and brand abuse. Coordinate takedown requests and take required actions as needed. Dark Web Surveillance: Monitor forums and marketplaces for leaked credentials, insider threats, and data exposure. Governance, Risk & Compliance Policy & Frameworks: Develop and maintain security policies aligned with ISO 27001 and RBI guidelines. Conduct gap assessments and drive remediation plans. Audit & Risk Management: Support internal and external audits with evidence and documentation. Track risk mitigation efforts and report progress to senior leadership. Reporting & Stakeholder Engagement Executive Dashboards: Prepare monthly and quarterly reports on security posture, incidents, and metrics. Present findings to leadership and internal stakeholders. Mandatory Skills Required - Bachelor's degree in Information Security, Computer Science, or a related field (or equivalent experience). - SOC operations and SIEM optimization - MITRE ATT&CK mapping and threat modelling - CSPM/CWP alert management and automation - BAS execution and gap remediation - Threat intelligence (brand/dark web) - Strong understanding of regulatory frameworks (RBI, ISO 27001). - Excellent soft skills: stakeholder communication, presentation, and leadership. - Preferred certifications: CISM, CEH, CCSP, or equivalent. - Understanding of secure network architecture, segmentation and defence in depth. - Designing and implementing security controls across systems, networks and applications. - Ability to analyze complex security issues and clearly communicate them to non-technical stakeholders.
-
Avp(Information Security Governance
1 week ago
Mumbai, India BharatHire.Com Full timeFrom 10 to 17 year(s) of experience- ₹ Not Disclosed by Recruiter- Mumbai (All Areas)**Roles and Responsibilities** Engineering/Management Graduate with ISO 27001 LA & having mini 12 yrs of total exp, out of which minimum 7 years in the areas of Information Security/IT Security/ IT Governance, Risk & Compliance. experience on ISO 27001...
-
Information Security Officer
4 weeks ago
Mumbai, India Wave HR and Advisory Pvt Ltd Full timeABOUT THE ROLE:We are building a Public Digital Infrastructure for Banking using emerging technologies to enable high-volume, cost-effective financial transactions. We are looking for a strategic and hands-on CISO to lead our cybersecurity efforts and ensure the integrity, security, governance, risk and compliance (GRC) and cyber security and BCP for of this...
-
Navi Mumbai, Maharashtra, India Evoke HR Solutions Pvt. Ltd. Full time ₹ 12,00,000 - ₹ 36,00,000 per yearPosition TitleAVP – Information Security Governance & ComplianceRoleManaging Information Security Governance, Risk & Compliance, and Awareness Activities.Reporting ToVP – Information Security Governance & ComplianceKey ResponsibilitiesTo manageCompliance with "Guidelines on Information and Cyber Security for Insurers" issued by the Insurance regulator,...
-
Avp, Information Security
1 week ago
Mumbai, India TransUnion Full timeTransUnion's Job Applicant Privacy Notice **What We'll Bring**: Basic Requirements: - 7-8 years of experience in information security - audits & assessments, security operations - Team management experience, leadership presentations - Metrics and Dashboard, weekly, monthly reports and quarterly presentations to the management. - At minimum, one security...
-
Mumbai, India Raise Full timeRole Summary : Raise is built on this core philosophy - we will bring exceptionally great products, awesome user experience and best in class customer service to our users. We have started with our first step by launching an Investment & Trading platform Dhan in November 2021.As an IT Governance & Compliance Manager, you will be responsible for driving the...
-
Information Security
3 weeks ago
Mumbai, India Snapmint Full timeJob Description About Snapmint Snapmint is a leading fintech company redefining access to consumer credit in India. With over 10 million customers across 2,200+ cities, our zero-cost EMI platform enables responsible purchases without the need for a credit card across categories like fashion, electronics, and lifestyle. India has over 300 million...
-
Lead Manager
3 weeks ago
Bengaluru, India Infosys Limited Full timeJob Description Key Responsibilities: - Work closely with the Head of Cyber Security Governance and CISO to champion organization wide Cyber Security Governance initiatives in line with the Cyber Security Strategy to ensure the CISO s agenda is achieved as a whole - Responsible for effective Cyber Security Governance Roadmap across Infosys group of companies...
-
Information Security
3 days ago
Mumbai, Maharashtra, India Kotak Life Insurance Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDEPARTMENTInformation SecurityREPORTING POSITIONCISOKEY RESPONSIBILITIESSecurity Engineering:Experience in review and /or implementation of technology components like networks, Infrastructure, security solutions like DLP, AD, end point security tools, Email Security, mobile device Security, proxy, firewall etc.Review effectiveness of IT architecture, Data...
-
Information Security Manager
2 weeks ago
Mumbai, Maharashtra, India Aditya Birla Capital (ABCL) Full time ₹ 15,00,000 - ₹ 25,00,000 per yearWe are seeking a proactive and technically sound Information Security Manager to lead and manage critical areas of enterprise security, including automation, AI integration, application and API security, continuous compliance, and risk governance. The ideal candidate will be responsible for establishing a secure, compliant, and resilient IT environment,...
-
IT Governance and Security
1 week ago
Navi Mumbai, Maharashtra, India Kaivale It Services Full time ₹ 4,00,000 - ₹ 12,00,000 per yearStrong knowledge of IT governance frameworks (e.g., COBIT, ITIL) and information security standards (e.g., ISO 27001, NIST).Expertise in risk management, cybersecurity, and regulatory compliance. Excellent communication, and interpersonal skills.