
Information Security Risk Lead
4 weeks ago
Job description
About The Role
- You'll be an information security expert, with a great eye for information security risk reduction and continual improvement opportunities. If fast-paced environments, cross-team exposure, inquisitive freedom and the ability to have a real impact on a rapidly growing scale-up appeals to you, then you already have the mind of a Tidean. You'll join an ambitious team of highly motivated security specialists who interface with all areas of the business in order to drive down information security risk at Tide, whether it is technical, procedural or cultural.
- Interacting with 3rd party stakeholders such as partners and regulators, on behalf of Information Security.
- Defining Tide's India-specific information security programme in alignment with its global ISMS.
- Acting as a thought leader in the context of local information security requirements.
- Managing information security risk in accordance with Tide's Global Risk Management Framework & Indian Regulatory requirements.
- Managing and improving Tide's Information Security Management System (ISMS) .
- Working with 1LOD stakeholders across the business in order to deliver information security risk reduction projects.
- Ensuring alignment with industry recognised information security control frameworks.
- Conducting information security risk assessments and control testing.
- Defining and measuring key risk indicators, and using data from modern information security tooling to develop insightful risk reporting.
- Facilitating external audit requirements, and working with stakeholders across 1LOD and 3LOD to close information security audit findings.
- Reinforcing a strong security culture and awareness message throughout the business.
- Define, track, and report key risk indicators (KRIs) and metrics related to information security within the PPI environment.
- Prepare and present regular reports on security posture, risk status, and compliance efforts to senior management, audit committees, and regulatory bodies as required.
- Ensuring Tide's compliance with all applicable regulatory requirements, and keeping abreast of new regulatory and compliance developments.
What We Are Looking For
- You have a minimum of 10 years experience working in information security GRC (governance, risk & compliance) related roles
- You have experience interacting with financial regulators and government agencies in India (e.g. RBI, CERT-IN)
- You have experience working at or on behalf of a financially regulated organisation
- You have experience working at or on behalf of a technology-first organisation
- You've implemented, maintained and supported an ISO 27001 program
- You've implemented, maintained and supported a PCI DSS compliance program
- You have experience with security control frameworks such as the ISO 2700 series, NIST CSF, CIS Critical Security Controls, etc.
- You have experience with audits applicable to information security such as ISO 27001, Systems Audit Report (SAR), SOC2, etc.
- You've performed information security risk assessments and/or control testing
- You have good technical knowledge in the field of information security
- You have led information security risk reduction projects
- In-depth knowledge of payment security standards (PCI-DSS), data protection regulations, incident response, and risk management frameworks.
- Relevant certifications such as CISSP, CISM, CISA, or PCI Professional (PCIP) are strongly preferred.
What You'll Get In Return
- Competitive salary
- Self & Family Health Insurance
- Term & Life Insurance
- OPD benefits
- Mental wellbeing platform Plumm
- Learning & Development budget
- WFH setup allowance
- 15 days of Privilege leaves
- 12 days of Casual leaves
- 12 days of Sick leaves
- 3 paid day-offs for volunteering or L&D activities
-
Information Security Investigator
1 day ago
Delhi, Delhi, India beBeeSecurity Full time ₹ 8,00,000 - ₹ 12,00,000Junior SOC Security Analyst Job DescriptionWe are seeking a skilled SOC Security Analyst to join our team in this critical role.Conduct security investigations due to security incidents identified from various entry channels (SIEM, Tickets, Email and Phone).Our ideal candidate will have:Experience with Seceon Tool.Ability to act as a point of escalation in...
-
Information Security Analyst
3 weeks ago
Delhi, Delhi, India Talent Integrators Full timeThis role is pivotal in developing, implementing, and monitoring security policies, ensuring compliance, and managing risk across the firm. The ideal candidate will have expertise in Governance, Risk, and Compliance (GRC) and will play a key role in tracking vulnerabilities, managing security alerts, and overseeing learning modules.Responsibilities and...
-
Junior Geo-Political Risk Analyst
2 days ago
Delhi, Delhi, India MAX Security Full timeCompany Profile:Max is Global Risk Management organization based out in Tel Aviv, Israel and its APAC HQ is based out of Mumbai. Led by veterans from Israeli Military Special Forces, Intelligence, Cyber and Secret Services we operate in 160 countries across the globe. We have capabilities in every continent across the world and carry the experience of 25 +...
-
Delhi, Delhi, India Cuerate PSA Full timePreferred Candidate : Big-4 client facing, large corporates/MNC's corporate IT Position Summary:The Information Security Lead will lead the enterprise security compliance agenda, ensuring full alignment with evolving regulatory frameworks such as ISO 27001, DPDP Act, CERT-IN, ITGC, and ISO/IEC 42001 (AI Governance). This role is crucial in maintaining client...
-
Lead - It Security
4 weeks ago
Delhi, Delhi, India SAEL Full timeJob Summary: We are seeking an experienced and highly skilled IT Security Lead to spearhead our cybersecurity initiatives, with a primary focus on managing and optimizing our Sophos perimeter security and Trend Micro endpoint and email security platforms, while also ensuring the continuous adherence to and improvement of our ISO 27001 Information Security...
-
Delhi, Delhi, India beBeeSecurity Full time ₹ 9,00,000 - ₹ 12,00,000We are seeking a skilled ISO 27001 Information Security Specialist to oversee the assessment, monitoring, and improvement of our Information Security Management System (ISMS) in accordance with the ISO/IEC 27001 standard.The ideal candidate will possess a strong understanding of information security principles and best practices and be responsible for...
-
Security Engineer
4 weeks ago
Delhi, Delhi, India TAC Security Full timeJob descriptionAs a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...
-
Director Information Security
2 weeks ago
Delhi, Delhi, India Mount Talent Consulting Pvt Ltd. Full timeNew Leadership Opportunity: Information Security Director | NoidaAre you a security leader passionate about building world-class secure products?We're hiring an Information Security Director to lead Application Security & Secure SDLC initiatives, ensuring resilience, compliance, and innovation at scale.Location: Sec-90, NoidaExperience: 10+ YearsDesignation:...
-
Security Engineer
3 weeks ago
Delhi, Delhi, India TAC Security Full timeJob descriptionAs a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...
-
Security Engineer
4 weeks ago
Delhi, Delhi, India TAC Security Full timeJob description : As a Security Engineer VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...