Business Information Security Officer

7 days ago


Pune Maharashtra, India Gallagher Full time

**Introduction**

Welcome to Gallagher - a global leader in insurance, risk management, and consulting services. With a growing team of more than 52,000 professionals worldwide, we empower businesses, communities, and individuals to thrive. At Gallagher, you can build a career whether it’s with our brokerage division, our benefits and HR consulting division, or our corporate team. Experience The Gallagher Way, a culture fueled by shared values and a collective passion for excellence. Join one of our dynamic teams, where you'll play a pivotal role in shaping Gallagher's future and unlocking unparalleled opportunities for both clients and yourself.

**Overview**

The Business Information Security Officer (BISO) - India is responsible for managing the Gallagher Cyber Information Security (GCIS) program of works for the Indian region. This includes identifying, evaluating, and reporting on information security risks across all Gallagher divisions in India, in a manner that meets compliance and regulatory requirements, as well as aligning with the company's risk appetite. In addition to reporting on a regular basis to the UK - based EMEA BISO, this role will work closely with:

- IT Directors of India and Local CTO for Gallagher India and Gallagher Centre of Excellence
- The India Senior Business Leaders for IT and QA & Transition
- The India division’s ISMS manager in maintaining their ISO27001 certification
- GCIS Project Managers delivering both new and enhanced capabilities.

This is a hybrid role, in office 2-3 days per week, and can be based out of either our Pune or Bangalore offices, with some travel between the two expected.

**How you'll make an impact**
- Continue to develop and prioritise the information security strategy and roadmap for India that aligns with the GCIS security strategy.
- Monitor and manage security incidents, vulnerabilities, and threats that affect the various Indian divisions, and work with Gallagher’s global security teams to ensure effective response and remediation.
- Ensure compliance with applicable laws, regulations, and contractual requirements related to information security throughout India.
- Work with the Global SOC in the co-ordination and escalation of security incidents to the appropriate Indian authorities when appropriate.
- Develop and maintain relationships with key stakeholders across India, including business leaders, IT teams, and external partners to ensure effective communication and collaboration on information security matters.
- Lead and coordinate the implementation of security policies, standards, and procedures in India.
- Ensure security awareness and training programs are in place and effective in India.
- Manage the security budget for India, ensuring efficient and effective use of resources.
- Represent India in the appropriate security governance forums and ensure alignment with the region security strategy.- Brokerage clients will have time-sensitive due diligence security audits and questionnaires that will need to be managed and responded to.- Business suppliers and IT supply chain vendors must be managed to ensure they do not introduce risk to Gallagher.- Confidential participation in the Merger and Acquisition process with external companies, lawyers and security consultant

**About you**
- Bachelor's degree in computer science, information systems, or a related field. A master's degree is preferred.
- At least 8-10 years of experience in information security, with a minimum of 5 years in a leadership role.
- Strong knowledge of security frameworks and standards such as ISO 27001, NIST, PCI-DSS, and GDPR.
- Demonstrated experience in the management of staff and small teams.
- Experience in managing security incidents and crises.- Excellent communication and stakeholder management skills are required.
- Familiarity with security technologies such as firewalls, intrusion detection systems, and SIEMs.
- Knowledge of cloud security and Insurance practices is a plus.
- Relevant certifications such as CISSP, CISM, or CRISC are preferred.
- Lead auditor experience in ISO27001 is preferred.

LI-DK3

**Additional Information** We value inclusion and diversity**

Inclusion and diversity (I&D) is a core part of our business, and it’s embedded into the fabric of our organization. For more than 95 years, Gallagher has led with a commitment to sustainability and to support the communities where we live and work.

Gallagher embraces our employees’ diverse identities, experiences and talents, allowing us to better serve our clients and communities. We see inclusion as a conscious commitment and diversity as a vital strength. By embracing diversity in all its forms, we live out The Gallagher Way to its fullest.

Gallagher believes that all persons are entitled to equal employment opportunity and prohibits any form of discrimination by its managers, employees, vendors or customers based on race, color, religion, creed, gender (including pregnancy status), sex



  • Pune, Maharashtra, India Davies Full time

    **Description**: - We are seeking a proactive and knowledgeable Information Security Officer to support the business across all aspects of information security. This role is essential in maintaining and strengthening our security posture, ensuring compliance with our regulatory and legal requirements, including maintaining our ISO/IEC 27001 certification. -...


  • Pune, Maharashtra, India Deutsche Bank Full time

    **Information Security Officer (ISO)**: **Job ID**:R0357352 **Full/Part-Time**:Full-time **Regular/Temporary**:Regular **Listed**:2025-06-06 **Location**:Pune **Position Overview**: **Job Title: Information Security Officer (ISO)** **Corporate Title: Associate** **Location: Pune, India** **Role Description** - DWS Group operates in a business...


  • Pune, Maharashtra, India Davies Full time

    **Description**: We are seeking a 3 year+ experienced Information Security Risk Officer to join our second line of defence, providing independent oversight, challenge, and assurance of information security practices across the organisation. This role is critical in ensuring that information security risks are effectively identified, assessed, managed, and...


  • Pune, India Davies Full time

    Application Deadline:30 September 2025 Department:Risk and Compliance Location:Pune Description We are seeking a proactive and knowledgeable Information Security Officer to support the business across all aspects of information security. This role is essential in maintaining and strengthening our security posture, ensuring compliance with our regulatory and...


  • Pune, Maharashtra, India Davies Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Application Deadline:30 September 2025Department:Risk and ComplianceLocation:PuneDescriptionWe are seeking a proactive and knowledgeable Information Security Officer to support the business across all aspects of information security. This role is essential in maintaining and strengthening our security posture, ensuring compliance with our regulatory and...


  • Pune, Maharashtra, India Deutsche Bank Full time

    Job Title Technical Information Security Officer Location Pune India Corporate Title AVP Role Description The TISO acts based on the direction of and the tasks assigned by the Divisional TISO The TISO is typically assigned a set of Application Software Assets and associated Databases IT aspects only Infrastructure Software Assets IT Services Hardware Assets...


  • Pune, Maharashtra, India, Maharashtra Exela Technologies Full time

    The Chief Information Security Officer (CISO) is a strategic executive responsible for the vision, leadership, and execution of the company's global information security program. This role will safeguard all digital and physical information assets, manage cyber risk across the entire enterprise, and ensure resilience against an evolving threat landscape. The...


  • Pune, Maharashtra, India, Maharashtra FPL Technologies Full time

    About the company Credit cards haven't changed much for over half a century so our team of seasoned bankers, technologists, and designers set out to redefine the credit card for you - the consumer. The result is OneCard - a credit card reimagined for the mobile generation. OneCard is India's best metal credit card built with full-stack tech. It is backed by...


  • pune, India Exela Technologies Full time

    The Chief Information Security Officer (CISO) is a strategic executive responsible for the vision, leadership, and execution of the company's global information security program. This role will safeguard all digital and physical information assets, manage cyber risk across the entire enterprise, and ensure resilience against an evolving threat landscape. The...


  • Pune, India Exela Technologies Full time

    The Chief Information Security Officer (CISO) is a strategic executive responsible for the vision, leadership, and execution of the company's global information security program. This role will safeguard all digital and physical information assets, manage cyber risk across the entire enterprise, and ensure resilience against an evolving threat landscape. The...