Manager - Information Security

2 days ago


Thiruvananthapuram, Kerala, India Envestnet Full time

Description
Job Summary
The Manager – Information Security will be instrumental in developing, evaluating, and ensuring alignment with cybersecurity controls and policies, maintaining compliance with standards, and embedding security into the organization's products, services, and technology infrastructure. This position demands a subject matter expert capable of bridging the gap between security policy, risk, and technical implementation. A solid understanding of the latest security frameworks and technologies, including Cloud and AI, is essential to effectively inform and support risk-based decision-making

Key Responsibilities
Cybersecurity Policy & Governance

  • Develop, review, and maintain cybersecurity policies, standards, and procedures consistent with NIST, Cloud Security Alliance, CIS, and other global security frameworks.
  • Convert identified security risks into policy requirements while ensuring alignment with business objectives.
  • Work with security, engineering, architecture, and operational teams to confirm that policies are technically feasible and provide guidance on implementing and enforcing controls.

Risk Management and Assessments

  • Function as a security specialist, providing advisory support or directly conducting comprehensive risk assessments and control gap analyses across services, products, infrastructure, and applications.
  • Offer recommendations and guidance on effective risk mitigation strategies that align with business objectives and maintain appropriate security standards.
  • Track emerging threats, evolving industry standards, best practices, and regulatory changes in order to proactively advise on necessary updates to policies, controls, or other measures required to strengthen and modernize our risk management posture.

Security Architecture

  • Provide guidance on secure cloud, network architecture, segmentation, and system hardening.
  • Work with engineering teams to monitor and maintain secure configurations and access controls.
  • Lead or advise on security reviews of new technologies and system changes.
  • Carry out Security Architecture Integration by conducting ongoing or targeted architecture reviews to confirm that security is incorporated, integrated, and verified in designs and implemented services.
  • Establish and uphold architectural security principles throughout the technology and services ecosystem.
  • Assess and integrate security tools and technologies to support the enterprise security posture.

Security Assurance and Attestations

  • Maintain documentation and evidence repositories to facilitate internal and external support.
  • Utilize platforms such as SharePoint and Jira to ensure optimal assessment preparedness.
  • Collaborate with control owners to monitor, address, and close findings efficiently.

Awareness & Communication

  • Develop and implement cybersecurity awareness programs designed for both technical and non-technical teams.
  • Prepare concise communications regarding policy changes, risk advisories, and incident notifications.
  • Deliver training sessions to stakeholders on security controls and risk management procedures.

Required Qualifications

  • Bachelor's / Master's degree in Information Security, Computer Science, or related field.
  • 12 –15 years of experience in Information Security with a strong focus on risk management, network security, and security architecture.
  • Hands-on experience in system/network administration (Windows/Linux/Cloud).
  • Deep understanding of frameworks such as ISO 27001, NIST, PCI DSS, and COBIT.
  • Proven experience in drafting and implementing security policies and technical standards.
  • Strong knowledge of identity lifecycle management and access governance.
  • Experience with audit documentation and evidence management tools (e.g., SharePoint, Jira).
  • Excellent communication and stakeholder engagement skills.

Preferred Qualifications

  • Certifications: CISSP, CISM, CISA, CRISC, or equivalent.
  • Experience with GRC platforms and risk assessment methodologies.
  • Familiarity with regulatory standards such as GDPR, CCPA, and other data protection laws.
  • Exposure to cloud platforms (Azure, AWS) and security tools (e.g., Defender, CrowdStrike, Tenable).
  • Knowledge of enterprise architecture frameworks and secure design principles.


  • Thiruvananthapuram, Kerala, India Muthoot Fincorp Ltd. Full time

    ROLE SUMMARYThe National Head of Information Security, Audit, and Compliance is responsible for organization's information security governance, risk management, and compliance frameworks are robust, aligned with regulatory requirements, and continuously improved to mitigate risks and enhance security controls. The role will be responsible for overseeing and...


  • Thiruvananthapuram, Kerala, India Armada Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    LocationThis role is office-based and can be performed from Trivandrum, Kerala, India. What You'll Do (Key Responsibilities)IT Support & OperationsRespond to IT helpdesk requests from global personnel.Oversee onboarding and offboarding processes within your region.Manage end-to-end corporate asset lifecycle, including purchasing and tracking of corporate...


  • Thiruvananthapuram, Kerala, India UST Full time

    Hi All,We are looking for Cloud security Engineer in Healthcare domain.Experience- 6-8 yearsLocation- Thiruvananthapuram, Bangalore, Chennai, Pune, Gurgeon.please share the resume to JD:The ideal candidate will possess strong analytical skills, solid understanding of healthcare data protection requirements and the ability to collaborate effectively with...

  • Security Supervisor

    4 days ago


    Thiruvananthapuram, Kerala, India cox & Fox pvt ltd Full time

    Job Description:Attitude Worldwide Pvt. Ltd. is looking for a Security Supervisor to lead and manage our security personnel. The ideal candidate will be an Ex-Service professional (Army/Navy/Air Force/Paramilitary) with a proven record of discipline, leadership, and operational excellence.Key Responsibilities:Supervise and coordinate the activities of all...


  • Thiruvananthapuram, Kerala, India Envestnet Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    DescriptionRequirements:Manage and optimize endpoint protection platforms (EDR/XDR, AV, DLP, disk encryption, host firewalls) for a range of environments, including development workstations, virtual desktops (Citrix, AWS Workspaces), and cloud-managed devices (Autopilot, Intune). Optimize controls for development systems running EPM, Containers and other...


  • Thiruvananthapuram, Kerala, India Envestnet Full time ₹ 5,00,000 - ₹ 25,00,000 per year

    DescriptionResponsibilitiesDefine and enforce secure coding standards and best practices.Perform threat modeling, security architecture reviews, and code analysis.Design and implement secure CI/CD pipelines with integrated security controls.Automate security testing (SAST, DAST, IAST, SCA, container scanning) in SDLC process.Evaluate and integrate security...


  • Thiruvananthapuram, Kerala, India UST Full time

    3 - 5 Years1 OpeningTrivandrumRole descriptionThe Senior Security Engineer will be responsible for leading and managing Identity, PKI, and Cryptographic Security solutions across enterprise-scale environments. This role involves hands-on administration, design, and integration of Saviynt IGA, PKI infrastructure, and data encryption platforms to ensure...


  • Thiruvananthapuram, Kerala, India UST Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Responsibilities:Firewall Management: Configure, manage, and troubleshoot firewalls including policies, NAT, VPNs (IPSec/SSL), and threat prevention.Network Infrastructure: Manage and maintain enterprise LAN/WAN infrastructure, including switching and routing (L2/L3), VLANs, STP, OSPF, BGP.Wireless: Deploy and maintain enterprise wireless networks using...

  • Manager II

    1 week ago


    Thiruvananthapuram, Kerala, India UST Full time

    Years1 OpeningTrivandrumRole descriptionKey ResponsibilitiesEnsure adherence to internal policies and external regulatory standards such as ISO 27001, SOC 2, HITRUST, SOX, and ITGC.Monitor changes in industry regulations and standards; update internal controls and documentation accordingly.Collaborate with cross-functional teams (Security, Legal,...

  • Security Guard

    2 days ago


    Thiruvananthapuram, Kerala, India Season Two Senior Living Full time

    Monitoring: Conduct regular patrols and monitor CCTV,parking areasAccess Control: Manage entry points, ensuring authorized access and maintaining visitor logs.All log books should be filledEmergency Response: Respond to emergencies, assist in evacuations, and coordinate with authorities.Assistance: Provide support to residents,Control the facilities time to...