Chief Information Security Officer

3 days ago


Haryana, India Qode Full time ₹ 15,00,000 - ₹ 20,00,000 per year

Chief Information Security Officer (CISO) & Head of Cybersecurity Practice

Location: Gurgaon, India Experience: Minimum 10 years of progressive experience in cybersecurity leadership roles Type: Full-time, Leadership Role

Level: Director or Sr. Director

About Incedo

Incedo is a US-based consulting, analytics, and technology services firm helping our clients achieve competitive advantage through end-to-end digital transformation. We bring in a unique combination of Consulting, Data/AI, and Digital Technologies to solve complex business problems for its global set of marquee clients. With offices across the US, Canada, Mexico, and India, and over 4,000 employees globally, we operate at the cutting edge of data, design, and technology. Our core verticals include Telecom, Banking & Payments, Wealth Management, Hi-Tech/Product Engineering, Life Sciences/Pharma/Healthcare.

Our unique value lies in blending strong engineering, data science, and experience design capabilities with deep domain expertise, enabling us to deliver significant business impact using emerging technologies.

Job Summary: The Chief Information Security Officer (CISO) is responsible for developing, implementing, and overseeing the security strategy for an IT outsourcing company. The CISO will ensure the security, integrity, and compliance of client and internal IT systems while mitigating cybersecurity risks. This role involves working closely with clients, regulatory bodies, and internal teams to implement best security practices and maintain compliance with industry standards.

Key Responsibilities:

Strategic Leadership


Develop and implement a comprehensive cybersecurity strategy aligned with business objectives.


Lead the information security function to protect company and client data from cyber threats.


Establish policies, procedures, and frameworks to secure IT infrastructure and outsourced services.

Security Governance & Compliance


Ensure compliance with industry regulations, such as ISO 27001, SOC 2, GDPR, HIPAA, and other applicable security frameworks.


Conduct regular security audits and risk assessments to identify vulnerabilities and implement corrective actions.


Establish security governance frameworks and ensure adherence to global best practices in IT security.


Work with legal and compliance teams to assess security risks in contracts and SLAs with clients.

Risk Management & Incident Response


Identify, assess, and mitigate security risks related to IT outsourcing operations.


Develop, implement, and test incident response plans to address security breaches and cyber threats.


Monitor and analyse security incidents, ensuring timely resolution and documentation.


Lead disaster recovery and business continuity planning efforts.

Security Architecture & Technology


Define and oversee the implementation of security architecture for outsourced IT services.


Collaborate with IT teams to integrate security into DevOps, cloud services, and application development.


Evaluate and implement advanced cybersecurity tools and threat intelligence solutions.


Ensure security best practices in network, endpoint, and data protection for client engagements.


Implement secure email gateways, DMARC, DKIM, and SPF protocols to prevent email spoofing and phishing attacks.


Deploy and manage advanced endpoint security solutions, including next-gen antivirus (NGAV) and behavioural analytics.


Monitor and enhance web application firewall (WAF) solutions to prevent application-layer attacks.


Strengthen security posture with zero-trust architecture, data loss prevention (DLP), and privileged access management (PAM).

Client & Stakeholder Engagement


Act as a trusted advisor for clients on cybersecurity and data protection matters.


Provide security guidance and assurance during client onboarding and ongoing engagements.


Educate clients on emerging threats and security measures to safeguard their IT assets.


Collaborate with sales and pre-sales teams to address security concerns in RFPs and proposals.

Team Development & Security Awareness


Build and lead a high-performing cybersecurity team within the organization.


Develop and deliver security awareness training programs for employees and outsourced IT teams.


Foster a culture of cybersecurity awareness across all levels of the organization.

Required Skills & Expertise

Comprehensive Expertise in Cybersecurity Tools & Platforms:

Demonstrated hands-on experience with a wide range of advanced cybersecurity technologies including Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM) systems like Splunk and Microsoft Sentinel, Data Loss Prevention (DLP), Identity and Access Management (IAM), Web Application Firewalls (WAF), Firewalls, and Cloud Access Security Brokers (CASB). The CISO must be adept at selecting, implementing, and optimizing these tools to secure both internal and client-facing environments.

Leadership in Cybersecurity Transformation:

Proven track record of conceptualizing and leading enterprise-wide cybersecurity transformation programs, ensuring alignment with business goals, industry regulations, and emerging threat landscapes. This includes modernizing security architectures, redefining incident response frameworks, and embedding security into the company's digital transformation journey.

Cloud Security Mastery:

In-depth knowledge of cloud security frameworks and implementation across major platforms such as AWS, Microsoft Azure, and Google Cloud Platform (GCP). The candidate should be capable of enforcing security controls in hybrid and multi-cloud environments, including workload protection, cloud-native controls, encryption, and identity governance.

DevSecOps & Infrastructure Security:

Strong understanding and practical application of DevSecOps principles, infrastructure security, and the secure software development lifecycle (SSDLC). The CISO must be able to embed security automation and compliance checks into CI/CD pipelines and promote secure coding practices.

Audit & Compliance Management:

Significant hands-on experience managing internal and third-party audits, overseeing regulatory inspections, and conducting enterprise risk assessments. Familiarity with compliance frameworks such as ISO 27001, SOC 2, GDPR, HIPAA, and other relevant standards for IT outsourcing firms is essential.

Incident & Crisis Management:

Demonstrated ability to lead cross-functional teams during critical security incidents, including managing the technical response, external communications, legal implications, and post-incident reviews. Experience handling data breaches and ransomware attacks with minimal disruption is a strong plus.

Cybersecurity Analytics & Threat Intelligence:

Expertise in utilizing cybersecurity analytics platforms and threat intelligence tools such as Qualys, Tenable, and commercial/government feeds to proactively detect, investigate, and respond to advanced threats.

Executive-Level Communication:

Excellent ability to communicate complex security concepts and risks clearly and effectively to C-suite executives, board members, clients, and regulators. Should be capable of creating board-level reports, security dashboards, and business-aligned risk assessments.

Educational & Professional Qualifications

Academic Background:

A bachelor's degree in engineering, Computer Science, Information Systems, or a related technical discipline is required. A Postgraduate Degree or MBA is preferred to ensure a balanced perspective between business and technical leadership.

Certifications:

Possession of industry-recognized certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CISA (Certified Information Systems Auditor), CRISC (Certified in Risk and Information

Systems Control), or CCSP (Certified Cloud Security Professional) is essential, highlighting a commitment to professional excellence and continuing education in the field.

Soft Skills & Core Competencies


Visionary Leadership: Builds and mentors high-performing, globally distributed cybersecurity teams; fosters innovation and accountability


Strategic Execution: Balances long-term security vision with hands-on execution to drive measurable business outcomes


Analytical Risk Management: Proactively identifies threats and mitigates risks using a data-driven, practical approach


Ethical Leadership: Operates with integrity and transparency, ensuring compliance with all legal and regulatory standards


Crisis Resilience: Remains calm and decisive under pressure, effectively managing incidents and audits


Clear Communication: Simplifies complex technical issues for stakeholders; excels in documentation and board-level reporting

Why Join Us?

This is a high-impact leadership role at a pivotal moment in our growth. You will shape how we scale our product ecosystem, modernize engineering practices, and deliver value across business verticals. Join a collaborative, forward-looking team that values innovation, autonomy, and bold thinking.



  • Haryana, India Qode Full time

    Chief Information Security Officer (CISO) & Head of Cybersecurity PracticeLocation: Gurgaon, India Experience: Minimum 10 years of progressive experience in cybersecurity leadership roles Type: Full-time, Leadership RoleLevel: Director or Sr. DirectorAbout IncedoIncedo is a US-based consulting, analytics, and technology services firm helping our clients...


  • Haryana, India Qode Full time US$ 1,50,000 - US$ 2,00,000 per year

    Chief Information Security Officer (CISO) & Head of Cybersecurity Practice Location: Gurgaon, India Experience: Minimum 10 years of progressive experience in cybersecurity leadership roles Type: Full-time, Leadership Role Level: Director or Sr. Director About Incedo Incedo is a US-based consulting, analytics, and technology services firm helping our clients...


  • Gurugram, Haryana, India Bravura Solutions Full time

    Close date: Wednesday, 30 July 2025 Working pattern: Full time Contract Type: Permanent **Location**: Gurgaon (SEZ1) Department: 13 - 13 Security Description & Requirements: **Bravura’s Commitment and Mission** - At Bravura Solutions, collaboration, diversity and excellence matter. We value your ideas, giving you room to be curious and innovate in an...


  • Haryana, India Coforge Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Job Title / Role: Information Security Analyst Key Skills: SIEM, SOAR, DLP Monitoring Experience: 5-10 Years Location: Gurugram Mode: Hybrid We at Coforge are looking for Information Security Analyst with following skill set : Experience of using security tools - SIEM, Anti-Virus, Threat Intel Platform, DLP monitoring, Vulnerability Management, SOAR, etc....


  • Haryana, India beBeeCybersecurity Full time ₹ 10,00,000 - ₹ 15,00,000

    Job OverviewWe are seeking a highly skilled Information Security professional to lead the implementation and management of our organization's information security strategy. The ideal candidate will be responsible for ensuring compliance with industry standards, managing cybersecurity risks, and safeguarding our digital infrastructure against threats.Key...


  • Gurugram, Haryana, India tiger hunt security services pvt ltd Full time

    field area officer for NRC region Minimum experience 3 years form the security industries **Job Types**: Full-time, Permanent, Fresher **Salary**: ₹25,000.00 - ₹37,000.00 per month **Benefits**: - Health insurance Schedule: - Day shift Supplemental pay types: - Commission pay **Education**: - Higher Secondary(12th Pass)...


  • Gurugram, Haryana, India K.R. Mangalam University Full time

    **Job Category**:Non - Faculty **Job Type**:Full Time **Required Experience**:14-30 Yers **Job Location**:Gurugram **Job Title**:Security and Discipline Officer - **Location**: K.R Managalam University, Sohna - Gurgaon Rd, Sohna, Gurugram, Haryana - 122103 **Type**: Full-time - **Job Overview** **Key Responsibilities** **1. Campus Security...


  • Gurugram, Haryana, India Orange Mantra Full time

    Gurgaon - 1 - 2 to 4 years - Full Time **Key Responsibilities**: - Conduct Vulnerability Assessments: - Use various tools and techniques to scan and analyze security weaknesses. - Penetration Testing: - Document and report security issues and vulnerabilities identified during testing. - Security Analysis and Reporting: - Help in analyzing assessment and...


  • Gurgaon District, Haryana, India Thrive Career Today Full time

    Role: CTO (Chief Technology Officer) Exp: 8+ years **Salary**: as per the industry Location: Gurgaoun Joining: ASAP **Skills**: vue, node, django, python, Devops & Databases, scalable Architecture etc **Responsibilities**: Strategy and Planning: - Specific duties include leading the strategy for technology platforms as well as building and managing...

  • Field Officer

    1 week ago


    Gurugram, Haryana, India Vigilant security Full time

    Security field officer Experience - 1 year salary - 25000 to 35000 Bike is compulsory Pay: ₹25,000.00 - ₹35,000.00 per month **Benefits**: - Cell phone reimbursement - Provident Fund Schedule: - Day shift Supplemental Pay: - Performance bonus - Yearly bonus **Experience**: - total work: 1 year (preferred) Work Location: In person