Manager - Information Security
4 days ago
Please note this is an urgent requirement.
Job Summary:
We are seeking a forward-thinking and experienced Manager – Information Security to lead our enterprise-wide security posture across on-premise, cloud, and third-party environments. The candidate will be responsible for managing security governance, technical controls, incident response, data protection, and regulatory compliance while also enabling secure digital transformation initiatives.
This role demands strong technical acumen, leadership capabilities, and deep understanding of both global and local regulatory frameworks, such as ISO 27001, PCI DSS, DPDPA, and GDPR.
Key Responsibilities: Security Governance & Compliance
- Develop, maintain, and enforce security policies, standards, and procedures aligned with ISO 27001, NIST CSF, PCI DSS, DPDPA, GDPR, and CCPA.
- Lead periodic internal risk assessments, audits, and ensure timely closure of findings.
- Manage regulatory and third-party security audits, and track risk remediation activities.
- Drive organization-wide security awareness and training programs.
Security Operations & Incident Response
- Lead security incident response, including triage, root cause analysis, and reporting.
- Oversee SIEM/SOAR platforms (e.g., Splunk, Sentinel, QRadar) and coordinate with SOC teams for threat detection and response.
- Own and regularly test Cyber Crisis Management Plan (CCMP) and DR/BCP cyber resilience procedures.
Cloud, Network & Infrastructure Security
- Ensure secure deployment and configuration of cloud platforms (AWS, Azure, GCP) using CSPM tools (e.g., Prisma Cloud, AWS Security Hub).
- Oversee network security controls across firewalls (Palo Alto, SonicWALL), VPN, NAC, and segmentation.
- Review cloud workload protections, IAM roles, VPC designs, and encryption management (KMS, Azure Key Vault).
Identity, Access & Data Protection
- Manage Identity and Access Management (IAM) systems, enforcing RBAC, MFA, SSO, and least privilege principles.
- Implement and monitor Data Loss Prevention (DLP) tools across endpoints, cloud services, and email.
- Ensure strong data classification, encryption at rest/in transit, and compliance with data retention policies.
DevSecOps & Application Security
- Collaborate with DevOps and engineering teams to embed security in the SDLC, enabling DevSecOps practices such as code reviews, pipeline scanning, and container security.
- Support secure design reviews and threat modeling for new applications or major changes.
Third-Party & Supply Chain Security
- Lead vendor security evaluations, contract reviews, and third-party risk assessments.
- Implement ongoing monitoring of vendor performance and regulatory compliance.
- Maintain an approved list of vendors with documented security controls.
Security Metrics, Strategy & Reporting
- Define and track KPIs, KRIs, and compliance dashboards for executive and board-level reporting.
- Own and drive the execution of the Information Security Program, aligned with business goals and regulatory mandates.
- Provide guidance to business and IT stakeholders to ensure secure digital enablement.
Required Qualifications & Experience:
- Bachelor's degree in Computer Science, Information Security, or related field.
- 7–10 years of relevant InfoSec experience with 2+ years in a leadership/managerial role.
- Industry certifications: CISSP, CISA, CEH, ISO 27001 Lead Auditor/Implementer (any two strongly preferred).
- Strong hands-on and strategic experience with:
- Security frameworks: ISO 27001, NIST, PCI DSS, GDPR, DPDPA
- Tools: SIEM, EDR/XDR, DLP, IAM, CSPM, SAST/DAST
- Platforms: AWS, Azure, GCP
- Controls: Firewall, VPN, NAC, Encryption, DevSecOps pipelines
Key Skills:
- Information security leadership across multi-cloud and on-prem environments
- Risk management and compliance
- Security incident and crisis handling
- Secure architecture and DevSecOps collaboration
- Third-party and supply chain risk governance
- Excellent communication, reporting, and cross-functional influence
Job Types: Full-time, Permanent
Pay: Up to ₹1,300,000.00 per year
Benefits:
- Health insurance
- Paid sick time
- Provident Fund
Ability to commute/relocate:
- Lower Parel, Mumbai, Maharashtra: Reliably commute or planning to relocate before starting work (Preferred)
Application Question(s):
- How many years of relevant experience you have?
- Have you done setup of policies for DAM, XDR, DLP, PAM, IAM based on use cases.
- How many years of experience you have in devsecops.
- How many years of experience you have in managing the information security audits.
Willingness to travel:
- 25% (Preferred)
Work Location: In person
-
IT Security Officer
3 days ago
Lower Parel, Mumbai, Maharashtra, India Master Marine Services Pvt Ltd Full time**Company Description** Master Group is a leading supply chain brand with over 2000 professionals spread across 48 branches and laboratories in India. The company aims to offer simplified, innovative, reliable, and seamless supply chain solutions with real-time visibility. **Role Description** This is a full-time on-site role for an IT Security Officer...
-
Network Security Engineer
2 weeks ago
Mumbai, Maharashtra, India Sattrix Information Security Full time ₹ 4,00,000 - ₹ 12,00,000 per yearJob Title:Network Security Engineers (L1 / L2 / L3)Location:Chennai / Mumbai / HyderabadEmployment Type:Full-time | Client RoleShifts: Rotational ShiftsWork Mode:Work from OfficeAbout the Role:We are looking for highly skilled and motivatedNetwork Security Engineers (L1, L2 & L3). You'll be responsible for managing, operating, and optimizing a wide range of...
-
Security Executive
4 days ago
Lower Parel, Mumbai, Maharashtra, India a76ae46e-75b5-4534-bac7-525b31b3bc72 Full time ₹ 7,00,000 - ₹ 9,00,000 per yearJob Summary:Master Marine Services is seeking a junior IT Security professional with 1–3 years' experience in security operations, network administration, and IT policy implementation. The candidate should be hands-on with security tools, incident management, and have implemented ISO27001 ISMS standards; IT/Computer Science degree and CISSP/CISM...
-
Endpoint Security Engineer L2
1 week ago
Mumbai, India Sattrix Information Security Full timeJob Title: Endpoint Engineer / Device Management L2 Support Engineer Location: Mumbai & Chennai Experience: 4–6 Years (Minimum 5 years in Security Device Management & Operations) Education: B.E. / B.Tech / MCA Budget: 15-18 LPA About the Role We are looking for skilled Endpoint Engineers (L2 Support) with strong experience in managing and operating...
-
Endpoint Security Engineer L2
1 week ago
Mumbai, India Sattrix Information Security Full timeJob Title: Endpoint Engineer / Device Management L2 Support Engineer Location: Mumbai & Chennai Experience: 4–6 Years (Minimum 5 years in Security Device Management & Operations) Education: B.E. / B.Tech / MCA Budget: 15-18 LPA About the Role We are looking for skilled Endpoint Engineers (L2 Support) with strong experience in managing and operating...
-
Endpoint Security Engineer L2
1 week ago
Mumbai, India Sattrix Information Security Full timeJob Title: Endpoint Engineer / Device Management L2 Support EngineerLocation: Mumbai & ChennaiExperience: 4–6 Years (Minimum 5 years in Security Device Management & Operations)Education: B.E. / B.Tech / MCABudget: 15-18 LPAAbout the RoleWe are looking for skilled Endpoint Engineers (L2 Support) with strong experience in managing and operating enterprise...
-
Endpoint Security Engineer L2
1 week ago
mumbai, India Sattrix Information Security Full timeJob Title: Endpoint Engineer / Device Management L2 Support EngineerLocation: Mumbai & ChennaiExperience: 4–6 Years (Minimum 5 years in Security Device Management & Operations)Education: B.E. / B.Tech / MCABudget: 15-18 LPAAbout the RoleWe are looking for skilled Endpoint Engineers (L2 Support) with strong experience in managing and operating enterprise...
-
Information Security Manager
3 weeks ago
mumbai, India Ajanta Pharma Ltd Full timeSenior Manager – Information Security Location: Mumbai (Andheri) Department: IT Reports to: Head of IT Job Summary The Senior Manager – Information Security will spearhead the development and execution of a comprehensive information security strategy that supports the organization’s business objectives and regulatory requirements. This role requires a...
-
Information Security Manager
3 weeks ago
Mumbai, India Ajanta Pharma Ltd Full timeSenior Manager – Information Security Location: Mumbai (Andheri) Department: IT Reports to: Head of IT Job Summary The Senior Manager – Information Security will spearhead the development and execution of a comprehensive information security strategy that supports the organization’s business objectives and regulatory requirements. This role requires a...
-
Information Security Manager
2 days ago
Mumbai, India Ajanta Pharma Ltd Full timeSenior Manager – Information Security Location: Mumbai (Andheri) Department: IT Reports to: Head of IT Job Summary The Senior Manager – Information Security will spearhead the development and execution of a comprehensive information security strategy that supports the organization’s business objectives and regulatory requirements. This role requires a...