Information Security Officer

3 days ago


Mumbai Maharashtra, India Hyrmus Full time

**Job Title**: Information Security & Compliance Officer (Alternate Title: Infosec Auditor & Governance Manager)

**Location**: Mumbai (or Hybrid as per business need)

**Reporting To**: Chief Information Security Officer (CISO) / Head of Technology

**Purpose of the Role**: To manage and coordinate all Information Security audits, respond to auditor/banker queries, track remediation timelines, maintain audit-ready documentation, implement security controls, and ensure compliance with ISO 27001, RBI guidelines, CICRA (Credit Information Companies Regulation Act), and other regulatory requirements.

**Key Responsibilities**:
1. **Audit & Compliance Management**
- Own end-to-end audit lifecycle across internal, external, partner, and regulatory audits (ISO 27001, RBI, CISA, Bank Infosec teams, CICs).
- Liaise with banks, auditors, NBFC partners to provide timely responses and evidence.
- Maintain an exhaustive audit tracker with timelines, evidence folders, and closure reports. - Prepare documentation and ensure regular reviews of quarterly and half-yearly items (UARs, VAPT, password policy reviews, etc.).

2. **Policy Implementation & Review**
- Coordinate implementation and periodic review of all security policies such as:

- Information Security Policy
- Access Control Policy
- Encryption & Cryptographic Policy
- Password Policy
- Cloud Security Policy
- DLP, Antivirus & Patch Management Policy
- Data Retention & Disposal Policy
- Change Management & SDLC
- HR Policy Security Clauses (Separation, Laptop return, Fidelity declaration)
- Ensure all policies are updated, approved, communicated, and enforced.

3. **Security Controls & Infrastructure Compliance**
- Maintain evidence of:

- AWS security group reviews and hardening reports
- VPN tools and access mechanisms
- IDS/IPS deployment
- Endpoint protection software, patch deployment
- DR/BCP drills and logs
- Cloud/network diagrams and access logs
- Coordinate with infra & DevOps team to track VAPT, SIEM, and firewall configurations.

4. **Vendor, Cloud & Third-Party Governance**
- Monitor and govern cloud configurations and vendor relationships for:

- AWS (Encryption, KMS, access control, VPC architecture)
- Anti-virus/DLP/MDM/USB blocking tools
- VAPT / Penetration Test vendors
- Subcontractor compliance with privacy & data sharing agreements

5. **Documentation, Evidence & Automation**
- Maintain updated SOPs, policy documents, declaration forms, signed NDAs, audit reports. - Create periodic evidence checklists and trackers (UAR logs, patch updates, policy review minutes, Form III declarations).
- Work with tech & HR to automate compliance triggers (alerts for quarterly reviews, policy expiry, form sign-offs, etc.)

**Qualifications**:

- Bachelor’s degree in IT, Computer Science, Cybersecurity or equivalent.
- Preferred: CISA, ISO 27001 Lead Implementer/Auditor, CEH, or other infosec certifications.

**Experience**:

- 3-7 years of hands-on experience in information security audits, IT compliance, or governance roles.
- Experience with ISO 27001, RBI IT frameworks, CICRA, or financial sector infosec requirements preferred.

**Key Skills**:

- Strong documentation and audit response skills
- Familiarity with AWS cloud, SIEM tools, endpoint protection, patching cycles
- Working knowledge of SDLC and DevSecOps frameworks
- Comfortable working cross-functionally with Tech, HR, Admin, Vendors, and Legal teams
- Strong command over Excel trackers, file documentation, and policy drafting

**Bonus Skills**:

- Knowledge of Indian regulatory requirements (CICRA, RBI Circulars)
- Experience in fintech or BFSI domain
- Familiarity with VAPT report analysis and remediation tracking

**Job Types**: Full-time, Permanent

Pay: ₹40,000.00 - ₹70,000.00 per month

**Benefits**:

- Cell phone reimbursement
- Health insurance
- Paid sick time
- Provident Fund

Schedule:

- Day shift
- Fixed shift

Work Location: In person



  • Mumbai, Maharashtra, India Kuber and Company Full time

    **Job Title: Information Security & Compliance Officer** **(Alternate Title: Infosec Auditor & Governance Manager)** **Location**:Mumbai (or Hybrid as per business need) Reporting To: Chief Information Security Officer (CISO) / Head of Technology **Purpose of the Role**: To manage and coordinate all Information Security audits, respond to auditor/banker...


  • Pune, Maharashtra, India Davies Full time

    **Description**: - We are seeking a proactive and knowledgeable Information Security Officer to support the business across all aspects of information security. This role is essential in maintaining and strengthening our security posture, ensuring compliance with our regulatory and legal requirements, including maintaining our ISO/IEC 27001 certification. -...


  • Pune, Maharashtra, India Deutsche Bank Full time

    **Information Security Officer (ISO)**: **Job ID**:R0357351**Full/Part-Time**:Full-time**Regular/Temporary**:Regular**Listed**:2024-10-22**Location**:Pune**Position Overview**: **Job Title: Information Security Officer (ISO)** **Corporate Title: AVP** **Location: Pune, India** **Role Description** - DWS Group operates in a business environment with an...


  • Mumbai, Maharashtra, India Sattrix Information Security Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    Job Title:Network Security Engineers (L1 / L2 / L3)Location:Chennai / Mumbai / HyderabadEmployment Type:Full-time | Client RoleShifts: Rotational ShiftsWork Mode:Work from OfficeAbout the Role:We are looking for highly skilled and motivatedNetwork Security Engineers (L1, L2 & L3). You'll be responsible for managing, operating, and optimizing a wide range of...

  • Security Officer

    4 days ago


    Mumbai, Maharashtra, India Terrier Security Services Full time ₹ 2,50,000 - ₹ 7,50,000 per year

    Role DescriptionThis is a full-time, on-site role for a Security Officer based in Fort, Mumbai. The Security Officer will be responsible for overseeing the safety and security of premises, monitoring entry and exit points, conducting routine checks of the facility, and responding promptly to incidents or emergencies. Additional responsibilities include...


  • Mumbai, India Sattrix Information Security Full time

    Job Title: Network Security Engineers (L1 / L2 / L3) Location: Chennai / Mumbai / Hyderabad Employment Type: Full-time | Client Role Shifts : Rotational Shifts Work Mode: Work from Office About the Role: We are looking for highly skilled and motivated Network Security Engineers (L1, L2 & L3) . You’ll be responsible for managing, operating, and optimizing a...


  • Mumbai, India Sattrix Information Security Full time

    Job Title: Network Security Engineers (L1 / L2 / L3) Location: Chennai / Mumbai / Hyderabad Employment Type: Full-time | Client Role Shifts : Rotational Shifts Work Mode: Work from Office About the Role: We are looking for highly skilled and motivated Network Security Engineers (L1, L2 & L3) . You’ll be responsible for managing, operating, and optimizing a...


  • Mumbai, India Sattrix Information Security Full time

    Job Title: Network Security Engineers (L1 / L2 / L3) Location: Chennai / Mumbai / Hyderabad Employment Type: Full-time | Client Role Shifts: Rotational Shifts Work Mode: Work from Office About the Role: We are looking for highly skilled and motivated Network Security Engineers (L1, L2 & L3). You’ll be responsible for managing, operating, and optimizing a...


  • Mumbai, India Firstventure Full time

    Job Description The employee is responsible for establishing, implementing, securing, maintaining and continually improving Quality Management Systems (QMS), Information Security Management Systems (ISMS) integrated in Information Security and Quality Management Systems (IQMS) vide designing appropriate policies, procedures and controls for maintaining,...


  • Fort, Mumbai, Maharashtra, India Dhara Consulting Group Full time US$ 80,000 - US$ 1,20,000 per year

    TodayTop SecretUnspecifiedUnspecifiedIT - SecurityFort Wayne, IN (ON-SITE/OFFICE)Date Posted: Country:United States of AmericaLocation:IN301: 1010 Production Rd Ft Wayne IN 1010 Production Road , Fort Wayne, IN, 46808 USAPosition Role Type:OnsiteU.S. Citizen, U.S. Person, or Immigration Status Requirements:Active and transferable U.S. government issued...