Manager - Information Security

3 days ago


Pune Maharashtra India Easebuzz Full time ₹ 8,00,000 - ₹ 24,00,000 per year

About Easebuzz Private Limited:

Easebuzz is a payment solutions (fintech organisation) company which enables online merchants to accept, process and disburse payments through developer friendly APIs. We are focusing on building plug n play products including the payment infrastructure to solve complete business problems. Definitely a wonderful place where all the actions related to payments, subscription, eKYC is happening at the same time.

Easebuzz is one of India's few payment aggregators which is building SAAS emebedded with payments infrastrucure. We are well capitalised and have recently closed a fundraise of $4M in March, 2021 from prominent VC firms and angel investors. The company is based out of Pune and has a total strength of 280 + employees. Easebuzz's corporate culture is tied into the vision of building a workplace which breeds open communication and minimal bureaucracy. An equal opportunity employer, we welcome and encourage diversity in the workplace. One thing you can be sure of is that you will be surrounded by colleagues who are committed to helping each other grow.

Position Overview

The Manager of Information Security is responsible for overseeing the development, implementation, and management of an organization's information security program. This role involves ensuring the confidentiality, integrity, and availability of corporate data and IT systems, protecting them from cyber threats and vulnerabilities. The Manager will work closely with various teams to establish and enforce security policies, conduct risk assessments, and lead incident response efforts.

Key Responsibilities

- Lead the creation of security awareness programs for employees to foster a security-conscious culture.

   - Maintain and report on the status of the organization's security posture to leadership.

  - Conduct regular risk assessments to identify vulnerabilities and threats to critical systems and data.

   - Work with the business to evaluate security risks associated with new projects, third-party vendors, and technologies.

   - Prioritize and recommend security measures to mitigate identified risks.

   - Lead efforts to perform security audits and assessments, ensuring adherence to compliance and regulatory requirements.

   - Lead the response to security incidents, including identification, containment, eradication, recovery, and post-incident analysis.

   - Develop and maintain incident response plans, conduct tabletop exercises, and ensure effective communication during a crisis.

   - Collaborate with legal, communications, and management teams during and after incidents, particularly for breach notifications and regulatory reporting.

  - Oversee the day-to-day operations of security technologies and tools (e.g., SIEM, firewalls, endpoint security, intrusion detection systems).

   - Ensure continuous monitoring of security events and threats, performing analysis and response as needed.

   - Maintain and optimize vulnerability management programs, including patching and remediation efforts.

   - Foster a collaborative and effective security team, ensuring appropriate skill sets and training programs.

   - Work closely with IT and other departments to ensure that security is integrated into all stages of system development and operations.

  - Ensure compliance with relevant legal, regulatory, and industry standards for data protection and cybersecurity.

  - Maintain documentation for audits, certifications, and external assessments.

   - Coordinate with external auditors and regulators, as needed.

 - Stay current on evolving security threats, vulnerabilities, and technologies.

   - Continuously evaluate and improve security processes, tools, and policies.

   - Participate in industry forums, conferences, and professional groups to enhance knowledge and best practices.

Required Qualifications

- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent work experience).

- At least 3-5 years of experience in information security.

- Deep knowledge of information security principles, frameworks (NIST, ISO 27001,PCI-DSS,SOC2 Type II, RBI Regulation related to Payment Industries), and compliance requirements.

- Hands-on experience with security tools and technologies (e.g., SIEM, firewalls, intrusion detection/prevention systems, endpoint protection, DLP, E-mail Security).

- Strong understanding of risk management and incident response practices.

- Proven ability to manage and lead security teams in a dynamic, fast-paced environment.

- Strong communication skills, both written and verbal, with the ability to convey complex security concepts to non-technical stakeholders.

Preferred Qualifications

- Security certifications such as ISO27001 Lead Auditor or CISA (Certified Information Systems Auditor).

- Experience with cloud security and securing cloud infrastructures (AWS).

- Knowledge of secure software development practices and DevSecOps.

- Experience in vulnerability management and penetration testing.



  • India Aditya Birla Capital Full time

    Job Description To handle technical information security aspects of Aditya Birla Capital (NBFC) including handling information security tools, application security testing, infrastructure security testing, technical security compliance and cloud security controls. The role defines, implements and monitor security controls for IT assets of the organization -...


  • Pune, Maharashtra, India NAVNIT GROUP Full time

    We have a job Opening for Role: Consultant - Information Security for location **Responsibilities**: Support senior consultants in all aspects of the clients on ISO 27001, 22301, NIST core, NIST CSF, and/or and other international standard implementation lifecycle, including gap analysis, risk assessments, control selection and implementation, and...


  • pune, India Altraize Full time

    Key Responsibilities1. Information Security ManagementEstablish, implement, and maintain the organization's Information Security Management System (ISMS) in line with ISO 27001 standards.Lead ISO 27001 audits (internal & external) — coordinate with auditors, manage corrective actions, and ensure ongoing compliance.Develop and enforce information...


  • Pune, Maharashtra, India Altraize Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Key ResponsibilitiesInformation Security ManagementEstablish, implement, and maintain the organization's Information Security Management System (ISMS) in line with ISO 27001 standards.Lead ISO 27001 audits (internal & external) — coordinate with auditors, manage corrective actions, and ensure ongoing compliance.Develop and enforce information security...


  • Pune, India Intangles Full time

    Job Description Job Title: Head of Information Security Location: Pune Department: Information Security Job Summary: The Head of Information Security will be responsible for establishing and maintaining the company's information security strategy and programs. This role involves identifying, evaluating, and reporting on information security risks in a manner...


  • Pune, Maharashtra, India Altraize Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Key Responsibilities1. Information Security ManagementEstablish, implement, and maintain the organization's Information Security Management System (ISMS) in line with ISO 27001 standards.Lead ISO 27001 audits (internal & external) — coordinate with auditors, manage corrective actions, and ensure ongoing compliance.Develop and enforce information...


  • India Information Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    (Senior) Cloud DevOps Engineer - Persistent ABOUT UTIMACOUtimaco is a worldwide supplier of professional cyber-security solutions and is based in Aachen, Germany. Since 1983, Utimaco develops hardware security modules and compliance solutions for telecommunication provider regulations. Utimaco is a world-market leader in both segments. Customers and parters...


  • Mohali, India Cogneesol Full time

    Job Description Company Description Cogneesol is a global professional services firm delivering bespoke and ready-to-deploy business process management solutions to help businesses achieve optimization and innovation. With deep domain expertise and a data-driven framework, Cogneesol specializes in leveraging data management, analytics, and advanced...


  • Pune, Maharashtra, India Compucom Full time

    **About **CompuCom**: CompuCom Systems Inc. is a technology-managed services provider and product reseller headquartered in Indian Land, South Carolina, a southern suburb of Charlotte, North Carolina. It is a wholly owned subsidiary of Variant Equity Advisors. In business since 1987, CompuCom provides Managed Workplace Services including IT solutions and...


  • Pune, Maharashtra, India, Maharashtra ACL Digital Full time

    About the Company: We are a leading organization in the field of information security, dedicated to protecting our clients' data and ensuring their digital safety. Our mission is to provide innovative security solutions while fostering a culture of collaboration and continuous improvement.About the Role: We are seeking a Sr Information Security Engineer with...