Information Security Manager

2 days ago


bangalore, India Mashreq Full time

Job Purpose


Management:

  • To Strategize, develop and implement Data Protection Controls in coordination with stakeholders across the Organization globally.
  • To ensure compliance of the Organization with the defined policy & framework with a data driven approach

Execution

  • To ensure that the protection operations are executed effectively in a timely manner and with required quality
  • Assists in the development and implementation of Data Protection strategic initiatives. Leads all Data protection related tasks with effective monitoring and protection of information security assets.

Manager – Data Protection has overall responsibility to coordinate and support the Head of Data Privacy and Protection to achieve organization’s Protection strategy and goals.

He/she is a T-Shaped expert with proven skills in most core capability areas of Data Protection and security: Policy, Governance, Protection Strategy & Program Management.

Performance evaluation of the role will be based on the positive impact on the bank in terms of Data protection posture enhancement rather than the effort put in place.


Key result Areas


  • Develop and coordinate with stakeholder (internal/external) to implement Data Protection policies, procedures, and protocols.
  • Collaborate with internal departments, such as human resources, business and IT, to ensure compliance with security protocols and standards.
  • Drive the creation of a comprehensive data protection framework, ensuring compliance with applicable data security laws.
  • Develop and maintain metrics (Key Performance / Risk Indicators) for measuring effectiveness of the managed solution and reporting to key stakeholders.
  • Work closely with legal and compliance teams to manage risk, breaches, and audits related to data protection.
  • Advice on implementation robust security controls across all stages of the data lifecycle, including data collection, storage, processing, transmission, and destruction.
  • Ensure the use of encryption (at rest, in transit) and secure key management strategies.
  • Apply anonymization and pseudonymization techniques where required to mitigate privacy risks.
  • Collaborate with IT teams to integrate security measures into application and system design from the outset (security by design).
  • Good understanding/hands-on knowledge of DLP solution and data classification concepts.
  • Raise awareness and provide training about information handling rules to end-users;
  • Design and implement controls to reduce information risk and coordinate remediation actions with the support of the business;
  • Gather and document business and security requirements, identify and define opportunities and lead the development and implementation of Data Protection Controls that meet business needs.
  • Establish an exception management process for scenarios where data protection policies cannot be fully enforced.
  • Evaluate and approve security exceptions, ensuring that any deviations from standards are properly justified, documented, and risk-assessed.
  • Monitor and review approved exceptions regularly to ensure ongoing security and compliance.


Knowledge, Skills and Experience


Essential knowledge

  • Graduate/ Post Graduate degree in Science/ Engineering/ IT.
  • Minimum 2 Professional certification related to Information Security like CISM / CISSP./CASP+/ CEH / CCSP
  • 8+ years Information Security experience in large financial institution/ banks with minimum 5 years’ experience within Compliance, audit and/or risk function, with recent experience in Data protection projects implementation.
  • In-depth knowledge of data encryption, anonymization, pseudonymization techniques.
  • Strong understanding of security controls required at different stages of the data lifecycle.

Skills and Application

  • Coordinate with internal stakeholders and cross-functional teams to execute Protection initiatives, ensuring that projects are completed on time and achieve desired outcomes.
  • Excellent communication skills with the ability to work cross-functionally with different teams.

Strong analytical skills and the ability to evaluate the effectiveness of implemented security measures



  • Bangalore, India Mashreq Full time

    Job Purpose Management : To Strategize, develop and implement Data Protection Controls in coordination with stakeholders across the Organization globally. To ensure compliance of the Organization with the defined policy & framework with a data driven approach Execution To ensure that the protection operations are executed effectively in a...

  • Lead Manager

    12 hours ago


    Bangalore, Karnataka, India Infosys Full time

    Responsibilities 11 1 Risk Management 11 1 1 Lead the identification assessment analysis treatment and management of security risks across the organization and its subsidiaries 11 1 2 Facilitate smooth conduct of Risk Assessment on different levels and functional verticals of the organization and subsidiaries 11 1 3 Collaborate with cross-functional...


  • Bangalore, India Worldwide Flight Services Full time

    The Information Security Specialist will be responsible for monitoring, maintaining, and improving the organization’s security posture. The role involves incident management and response, endpoint security, identity and access management, compliance with ISO 27001:2022, and support in employee awareness programs. The specialist will work closely with...


  • bangalore, India Narayana Health Full time

    About the Role:The Information Security Lead will be responsible for developing and implementing the organization’s information security framework to safeguard patient data, clinical systems, and enterprise IT infrastructure. This role ensures compliance with healthcare regulations, international standards, and hospital group policies, while building a...


  • Bangalore, India Ample Full time

    Designation - Information Security Specialist Location - Address: 4th Floor, NCC Windsor, International Airport Road, opposite Flying Club, Yashoda Nagar, Jakkur, Bengaluru, Karnataka Job Type: Full Time Job Summary: We are seeking a skilled and proactive Information Security Specialist to join our Internal IT team. This role will be pivotal in...

  • Security Researcher

    2 weeks ago


    bangalore, India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts!Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information security training, cyber ranges, online labs and security...


  • bangalore, India Worldwide Flight Services (WFS) Full time

    The Information Security Specialist will be responsible for monitoring, maintaining, and improving the organization’s security posture. The role involves incident management and response, endpoint security, identity and access management, compliance with ISO 27001:2022, and support in employee awareness programs. The specialist will work closely with...


  • Bangalore, Karnataka, India ORACLE Full time

    Given the breadth and complexity of the hundreds of products and services developed and provided by Oracle there are many vastly different attributes including education skills knowledge experience and abilities required for specific roles within this job code Consult with your manager about the specific expectations for your role and career...


  • Bangalore, India Navi Full time

    About the Team At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regulatory compliance, and data protection, while championing a security-first culture across all teams. Navi is looking for an Associate Manager II...


  • Bangalore, India Pixis Full time

    About us: Pixis is a global AI technology company transforming how brands plan, create, and optimize marketing. Our flagship marketing operating system, Prism, sits at the core of the Pixis platform, using AI to turn fragmented performance data into clear, actionable insights and directly into execution. With native integrations across major ad platforms,...