
Information Security Officer
3 days ago
**Description**:
- We are seeking a proactive and knowledgeable Information Security Officer to support the business across all aspects of information security. This role is essential in maintaining and strengthening our security posture, ensuring compliance with our regulatory and legal requirements, including maintaining our ISO/IEC 27001 certification.
- Reporting to the Head of Information Security, you will play a key role in advising teams on security best practices, assisting with the implementation and continuous improvement of our Information Security Management System (ISMS), and supporting, audits, risk assessments, and incident response activities. You will collaborate with stakeholders across IT, risk, legal, and operations to ensure security is embedded in business processes and projects from the outset.
- This is a hands-on, business-facing role suited to someone passionate about helping teams operate securely while enabling the business to move with agility and confidence.
**Key Responsibilities**:
- Maintain and continuously improve the ISO/IEC 27001 ISMS across the business.
- Support the planning, coordination, and execution of internal audits related to information security controls and processes.
- Collect, analyse, and report on ISO 27001 objective metrics to monitor compliance and drive continuous improvement initiatives.
- Prepare and present divisional information security updates, risk posture insights, and performance indicators to the Group Head of Information Security.
- Develop, implement, and refine information security procedures, policies, and controls to ensure ongoing compliance with ISO/IEC 27001 and related standards.
- Support the Group Head of Information Security to shape the Information Security strategy.
- Identify, investigate, and remediate information security vulnerabilities, incidents, and control failures, maintaining a focus on root cause analysis and preventative action.
- Drive a culture of security awareness through the development and delivery of tailored education and training programmes in partnership with HR, IT, Data Privacy, and Cybersecurity teams.
- Lead and support information security risk assessments, leveraging a risk-based approach to inform prioritisation and decision-making.
- Provide strategic and tactical guidance on information security matters to business units and project teams, ensuring that security is proactively embedded into systems, products, and processes.
- Monitor emerging threats, vulnerabilities, and industry trends to ensure the business remains resilient and well-prepared.
- Support third-party risk assessments and supplier due diligence activities to ensure the secure handling of data by vendors and partners.
- Contribute to incident response planning and execution, including developing playbooks and participating in simulation exercises.
- Support regulatory compliance efforts (e.g. GDPR, NIS2, DORA) and assist with external audits, certifications, and client security due diligence where required.
**Experience**
At least 3 years of hands-on experience in an information security or risk role.
Solid understanding of:
- ISO 27001 ISMS implementation or audit
- Information security risk management including risk assessments & controls
- Policy, standards, and procedure writing
- Supporting internal and external audits
**Education**
A Bachelor’s degree or higher in Information Security, Computer Science, or related field.
**Skills, Knowledge & Expertise**:
**Knowledge**
- Security governance and compliance (e.g. policies, standards, procedures)
- Information Security principles and frameworks, especially:
- ISO/IEC 27001 (implementation and audit)
- NIST CSF
- CIS Controls
- Risk Management processes (identification, assessment, mitigation)
- Security Incident response procedures
- Regulatory and legal requirements such as:
- GDPR
- Data Protection Act (UK)
- Cyber Essentials / Cyber Essentials Plus
**Skills**
- Strong analytical mindset, with the ability to assess security risks, interpret technical details, and make sound decisions based on available data.
- Clear and confident communicator, capable of translating complex security issues into language appropriate for both technical and non-technical stakeholders.
- Skilled in drafting and maintaining documentation, including policies, standards, procedures, and guidance that align with security frameworks and regulatory requirements.
- Project-focused approach, with the ability to advise and support IT and business initiatives, ensuring security is built-in from the outset.
- Experienced in audit and compliance activities, contributing to the preparation, execution, and follow-up of internal and external audits.
- Able to develop and deliver engaging security awareness training and educational materials to a diverse audience.
**Ability**
- Collaborative team player, comfortable working with IT, Legal, HR, Risk, and operational teams to ensure consistent security i
-
Information Security Risk Officer
3 days ago
Pune, Maharashtra, India Davies Full time**Description**: We are seeking a 3 year+ experienced Information Security Risk Officer to join our second line of defence, providing independent oversight, challenge, and assurance of information security practices across the organisation. This role is critical in ensuring that information security risks are effectively identified, assessed, managed, and...
-
Technical Information Security Officer, Avp
3 days ago
Pune, Maharashtra, India Deutsche Bank Full timeJob Title Technical Information Security Officer Location Pune India Corporate Title AVP Role Description The TISO acts based on the direction of and the tasks assigned by the Divisional TISO The TISO is typically assigned a set of Application Software Assets and associated Databases IT aspects only Infrastructure Software Assets IT Services Hardware Assets...
-
Information Security Officer
3 weeks ago
Pune, India Davies Full timeApplication Deadline:30 September 2025 Department:Risk and Compliance Location:Pune Description We are seeking a proactive and knowledgeable Information Security Officer to support the business across all aspects of information security. This role is essential in maintaining and strengthening our security posture, ensuring compliance with our regulatory and...
-
Information Security Officer
2 days ago
Pune, Maharashtra, India Davies Full time ₹ 9,00,000 - ₹ 12,00,000 per yearApplication Deadline:30 September 2025Department:Risk and ComplianceLocation:PuneDescriptionWe are seeking a proactive and knowledgeable Information Security Officer to support the business across all aspects of information security. This role is essential in maintaining and strengthening our security posture, ensuring compliance with our regulatory and...
-
Business Information Security Officer
1 week ago
Pune, Maharashtra, India Gallagher Full time**Introduction** Welcome to Gallagher - a global leader in insurance, risk management, and consulting services. With a growing team of more than 52,000 professionals worldwide, we empower businesses, communities, and individuals to thrive. At Gallagher, you can build a career whether it’s with our brokerage division, our benefits and HR consulting...
-
Information Security Officer
24 hours ago
Mumbai, Maharashtra, India Hyrmus Full time**Job Title**: Information Security & Compliance Officer (Alternate Title: Infosec Auditor & Governance Manager) **Location**: Mumbai (or Hybrid as per business need) **Reporting To**: Chief Information Security Officer (CISO) / Head of Technology **Purpose of the Role**: To manage and coordinate all Information Security audits, respond to auditor/banker...
-
Information Security Officer
5 days ago
Pune, Maharashtra, India, Maharashtra FPL Technologies Full timeAbout the company Credit cards haven't changed much for over half a century so our team of seasoned bankers, technologists, and designers set out to redefine the credit card for you - the consumer. The result is OneCard - a credit card reimagined for the mobile generation. OneCard is India's best metal credit card built with full-stack tech. It is backed by...
-
Chief Information Security Officer
5 days ago
Pune, Maharashtra, India, Maharashtra Exela Technologies Full timeThe Chief Information Security Officer (CISO) is a strategic executive responsible for the vision, leadership, and execution of the company's global information security program. This role will safeguard all digital and physical information assets, manage cyber risk across the entire enterprise, and ensure resilience against an evolving threat landscape. The...
-
Technical Information Security Officer
3 weeks ago
Pune, India Deutsche Bank Full timeTechnical Information Security Officer (TISO), AVP Job ID: R Full/Part-Time: Full-time Regular/Temporary: Regular Listed: Location: Pune Position Overview Job Title: Technical Information Security Officer (TISO) Corporate Title: Assistant Vice President Location: Pune, India Role Description At the "Service, Solutions and AI" Domain, our mission is to...
-
Technical Information Security Officer
2 weeks ago
Pune, Maharashtra, India Deutsche Bank Full time ₹ 10,00,000 - ₹ 25,00,000 per yearTechnical Information Security Officer (TISO), AVPJob ID: R0394867Full/Part-Time: Full-timeRegular/Temporary: RegularListed: Location: PunePosition OverviewJob Title: Technical Information Security Officer (TISO)Corporate Title: Assistant Vice PresidentLocation: Pune, IndiaRole DescriptionAt the "Service, Solutions and AI" Domain, our mission is to...