Information Security Officer
1 day ago
About the company
Credit cards haven't changed much for over half a century so our team of seasoned bankers, technologists, and designers set out to redefine the credit card for you - the consumer. The result is OneCard - a credit card reimagined for the mobile generation. OneCard is India's best metal credit card built with full-stack tech. It is backed by the principles of simplicity, transparency, and giving back control to the user.
Key Responsibilities:
Security Strategy and Governance:
- Develop, implement, and maintain a comprehensive information security roadmap and strategy aligned with business objectives.
- Establish, mature, and enforce security policies, standards, and procedures to ensure a robust governance framework.
- Collaborate with executive leadership on budget planning, forecasting, and management for security-related expenditures.
Audit and Compliance Management:
- Lead and manage all aspects of internal and external audits, including those from regulatory bodies and clients (vendor due diligence).
- Serve as the primary point of contact for auditors, ensuring all evidence requests are fulfilled accurately and on time.
- Drive the remediation and closure of audit findings by coordinating with relevant technical and business teams.
- Ensure ongoing compliance with key standards and regulations, including ISO 27001, ISO 22301, Credit Information Companies (CIC), and data localization laws.
- Conduct routine compliance activities, such as management review meetings, to maintain certifications and ensure continuous improvement.
Risk and Vendor Management:
- Establish and operate a robust vendor due diligence (VDD) program, working with internal teams and external audit vendors to assess third-party risk.
- Oversee the end-to-end financial process for security vendors, including obtaining proposals, securing internal approvals, and tracking payments.
- Identify, assess, and communicate security risks to the company's leadership and other key stakeholders.
Security Operations and Collaboration:
- Act as the primary security advisor for the company, working closely with various technical teams and Technology Service Providers (TSPs).
- Provide expert guidance and oversight for the implementation and management of security controls across key domains, including:
Cloud Security:
- Advise on best practices for securing AWS environments.
- Application Security: Champion the integration of security into the SDLC (SAST/DAST, penetration testing).
Network & Endpoint Security:
- Guide the deployment and configuration of firewalls, WAF, IDS/IPS, and EDR solutions.
- Identity & Access Management (IAM): Ensure robust implementation of SSO, MFA, and privileged access controls.
Qualifications and Experience:
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- 5-6 years of progressive experience in information security, with a focus on governance, risk, and compliance.
- Demonstrated experience in developing or significantly maturing an information security program.
- In-depth, hands-on experience leading and facing audits for frameworks like ISO 27001, SOC 2, or PCI DSS.
- Professional certifications such as CISSP, CISM, CISA, or ISO 27001 Lead Auditor/Implementer are highly desirable.
Skills and Competencies:
- Leadership and Ownership: A strategic leader with the ability to operate with a high degree of autonomy. Possesses a strong sense of ownership and takes full responsibility for the security posture of the company.
- Independent Decision-Making: Proven ability to make critical, well-reasoned decisions independently and confidently drive security initiatives forward.
- Stakeholder Management: Exceptional communication and interpersonal skills, with the ability to effectively articulate complex security concepts and risks to diverse stakeholders, including company directors, executive leadership, and heads of technology departments.
- Broad Technical Proficiency: Strong, advisory-level knowledge across multiple security domains (Cloud, Network, Application, Endpoint, IAM).
- Compliance Expertise: Deep understanding of ISO 27001, ISO 22301, CIC, and data localization principles.
- Creative Problem-Solving: A proactive and innovative approach to identifying and solving complex security challenges in a dynamic environment.
-
Information Security Officer
5 days ago
Pune, Maharashtra, India Davies Full timeApplication Deadline:31 December 2025Department:Risk and ComplianceLocation:PuneDescriptionWe are seeking a proactive and knowledgeable Information Security Officer to support the business across all aspects of information security. This role is essential in maintaining and strengthening our security posture, ensuring compliance with our regulatory and legal...
-
Information Security Officer
5 days ago
Pune, Maharashtra, India Agiliad Full time ₹ 8,00,000 - ₹ 18,00,000 per yearEssential Responsibilities include (but are not limited to):Help to plan and carry out the organizations information security strategy. Prepare and execute actions based on an ISMS calendar.Develop a set of security standards, policies and best practices for the organization.Regularly monitor computer networks and systems for security issues, breaches, or...
-
Chief Information Security Officer
3 days ago
Pune, Maharashtra, India Electronica Finance Full time ₹ 12,00,000 - ₹ 36,00,000 per yearRole & responsibilitiesJob Summary:We are seeking a strategic and hands-on Chief Information Security Officer (CISO) to lead and manage the information security function at our mid-sized NBFC. The CISO will be responsible for defining and implementing the enterprise security strategy, policies, and programs to protect digital assets, customer data, and IT...
-
Technical Information Security Officer, AVP
2 weeks ago
Pune, Maharashtra, India Deutsche Bank Full time ₹ 12,00,000 - ₹ 36,00,000 per year**Job Description:Job Title: Technical Information Security OfficerLocation: Pune, IndiaCorporate Title: AVPRole DescriptionThe TISO acts based on the direction of and the tasks assigned by the Divisional TISO. The TISO is typically assigned a set of Application Software Assets and associated Databases (IT aspects only), Infrastructure Software Assets, IT...
-
Information Security Risk Officer
2 weeks ago
Pune, Maharashtra, India Davies Full time ₹ 11,50,000 - ₹ 18,00,000 per yearDepartment:Risk and ComplianceLocation:PuneCompensation:₹11,500 - ₹18,000 / yearDescriptionWe are seeking a 3 year+ experienced Information Security Risk Officer to join our second line of defence, providing independent oversight, challenge, and assurance of information security practices across the organisation. This role is critical in ensuring that...
-
Information Security
1 week ago
Pune, Maharashtra, India Cortex Consultants Full time ₹ 12,00,000 - ₹ 24,00,000 per yearInformation Security & Control Analyst II Information Security & Control Analyst II 3-5 Years Experience We are looking for an Information Security Analyst II to join our dynamic team. You will be responsible for advising and assisting our clients in managing risks related to information systems, implementing security processes, ensuring regulatory...
-
Information Security Specialist
5 days ago
Pune, Maharashtra, India Deutsche Bank Full time ₹ 1,50,00,000 - ₹ 2,50,00,000 per yearPosition OverviewJob Title: Information Security Specialist - AVPLocation:Pune, IndiaRole DescriptionWe are seeking an accomplished Information Security Specialist (Assistant Vice President) to lead engineering, configuration, and assurance activities for Microsoft Purview, the enterprise data governance and protection platform.In this high-impact role, you...
-
Information Security Analyst
2 weeks ago
Pune, Maharashtra, India Cohesity Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCohesity is the leader in AI-powered data security. Over 13,600 enterprise customers, including over 85 of the Fortune 100 and nearly 70% of the Global 500, rely on Cohesity to strengthen their resilience while providing Gen AI insights into their vast amounts of data. Formed from the combination of Cohesity with Veritas' enterprise data protection business,...
-
Lead Information Security Engineer
2 weeks ago
Pune, Maharashtra, India MASTERCARD Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Description Our Purpose Mastercard powers economies and empowers people in 200 countries and territories worldwide. Together with our customers, were helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart, and accessible. Our technology and...
-
Information Security Lead
7 days ago
Pune, Maharashtra, India Allianz Full time ₹ 20,00,000 - ₹ 25,00,000 per yearYou will lead a team of dedicated security professionals, providing strategic direction and technical guidance. This position requires a strong blend of leadership, technical expertise, and a forward-thinking approach to security, including a keen understanding of how emerging technologies like Artificial Intelligence can be leveraged for both offense and...