Chief Information Security Officer

1 day ago


Chennai, Tamil Nadu, India RiverForest Connections Inc Full time ₹ 15,00,000 - ₹ 30,00,000 per year

Role Overview

The Chief Information Security Officer (CISO) will be responsible for establishing and leading the information security strategy, governance, and execution across the Group//'s NBFC and Agro Trading entities. The role ensures compliance with RBI cybersecurity guidelines, data privacy laws, and sectoral best practices, while aligning security with business growth, digital initiatives, and risk management.

Key Responsibilities

1. Information Security Strategy & Governance

  • Develop and implement the Group-wide Information & Cyber Security Framework aligned to RBI NBFC Cybersecurity Directions, ISO 27001, and NIST standards.
  • Establish governance mechanisms to oversee security across both financial and agri-trading operations.
  • Drive group-level cybersecurity policies, SOPs, and awareness programs.
  • Report regularly to the Board / Risk & Audit Committee on cybersecurity posture, risks, and incidents.

2. Regulatory Compliance & Risk Management

  • Ensure compliance with RBI//'s Cyber Security Framework for NBFCs, CERT-In directives, and relevant data privacy regulations (DPDP Act).
  • Conduct periodic IT & IS audits, vulnerability assessments, and penetration tests.
  • Manage regulatory inspections, audits, and reporting requirements.
  • Establish a risk-based approach to protect sensitive customer, financial, and trading data.

3. Security Operations & Incident Response

  • Establish a Security Operations Centre (SOC) / outsource managed services for continuous monitoring.
  • Define and lead the Incident Response Plan (IRP) including detection, containment, investigation, and recovery.
  • Coordinate cyber crisis management and business continuity planning across group entities.
  • Oversee endpoint security, data protection, identity & access management, and fraud monitoring.

4. Technology & Process Security

  • Implement and monitor network, application, and cloud security controls.
  • Secure digital lending platforms, Oracle NetSuite ERP, mobile apps, and multiple customer portals for Agri Finance and Agri trading entities.
  • Ensure trading operations (ERP, commodity platforms, Digital Marketplaces, External Interfaces) are safeguarded from cyber threats.
  • Define secure DevSecOps practices for in-house and/or outsourced application development.

5. Leadership & Stakeholder Management

  • Lead the Information Security team and coordinate with IT, Risk, Compliance, Legal, and Business Units.
  • Work with external vendors, cybersecurity consultants, and regulators.
  • Build a culture of security awareness across employees, agents, and third parties.
  • Act as the single point of accountability for group-level cybersecurity.

Qualifications & Experience

  • Bachelor//'s degree in IT/Computer Science/Engineering; Master//'s preferred.
  • Certifications: CISSP / CISM / CISA / ISO 27001 Lead Implementer / CRISC (preferred).
  • 12+ years of IT/Information Security experience, with at least 5 years in a leadership role.
  • Proven experience in NBFC / BFSI cybersecurity compliance. Exposure to agri trading systems is an advantage.
  • Strong understanding of RBI NBFC guidelines, DPDP Act, NIST, ISO 27001, cloud security, fraud risk management.

Key Competencies

  • Strategic thinking with strong risk management mindset.
  • Hands-on knowledge of security operations, threat management, and compliance.
  • Ability to balance security with business agility and cost constraints of a mid-sized group.
  • Excellent communication with senior management, regulators, and external partners.
  • Leadership, influence, and cross-functional collaboration.

Success Metrics

  • Zero major regulatory non-compliance findings.
  • Timely reporting and closure of vulnerabilities and incidents.
  • Improved security maturity score (e.g., ISO/NIST assessments).
  • Enhanced employee security awareness levels.
  • Reduced cyber risk exposure across NBFC and Agro Trading operations.


  • Chennai, Tamil Nadu, India Harita Insurance Broking LLP Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Role DetailsRole Title: Chief Information Security OfficerBackground to the role:The Chief Information Security Officer (CISO) is responsible for developing and implementing the overall security strategy for [Company Name], an insurance player. The CISO will ensure the protection of information assets, IT infrastructure, applications, data owned / managed by...


  • Chennai, Tamil Nadu, India Valueplus Technologies Private Limited Full time

    About the Role : We are looking for a seasoned Information Security Officer to lead our enterprise-wide information security and compliance initiatives. This role is critical in safeguarding sensitive data, ensuring regulatory compliance, and embedding a culture of security across the organization. The ideal candidate brings deep technical expertise combined...


  • Chennai, Tamil Nadu, India Srigathi Solutions Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Cyber security strategy ,compliance External Regulators, Risk Management Committee, SIEM,EDR,DLP,ITSC,RMCB,ITSC,SOC,RBI's extant regulatory/statutory instructions, ISO 27001


  • Chennai, Tamil Nadu, India Valeo Full time

    MissionIn charge of Cybersecurity of one or several countries or one subsidiary ('Region'):➔ Act as the Cybersecurity point of contact for the 'Region'➔ Functionally manage the Sites Cybersecurity Officers➔ Deploy the Valeo ISSP (Information Systems Security Policy) within the 'Region', assess and improvethe level of Cybersecurity of the different...


  • Chennai, Tamil Nadu, India Rajalakshmi Group Full time

    Company Description Rajalakshmi group is a 40 year old diversified group with interest in Education, Renewable Energy, Manufacturing, Real Estate Development and Automobile Dealerships.It currently emplys over 3000 people across all these areas of operation.Role Description This is a full-time on-site role for a Chief Financial Officer located in Chennai.The...


  • Chennai, Tamil Nadu, India Rajalakshmi Group Full time

    Company DescriptionRajalakshmi group is a 40 year old diversified group with interest in Education, Renewable Energy, Manufacturing, Real Estate Development and Automobile Dealerships. It currently emplys over 3000 people across all these areas of operation.Role DescriptionThis is a full-time on-site role for a Chief Financial Officer located in Chennai. The...


  • Chennai, Tamil Nadu, India Rajalakshmi Group Full time

    Company DescriptionRajalakshmi group is a 40 year old diversified group with interest in Education, Renewable Energy, Manufacturing, Real Estate Development and Automobile Dealerships. It currently emplys over 3000 people across all these areas of operation. Role DescriptionThis is a full-time on-site role for a Chief Financial Officer located in Chennai....


  • Chennai, Tamil Nadu, India Rajalakshmi Group Full time

    Company Description Rajalakshmi group is a 40 year old diversified group with interest in Education, Renewable Energy, Manufacturing, Real Estate Development and Automobile Dealerships. It currently emplys over 3000 people across all these areas of operation. Role Description This is a full-time on-site role for a Chief Financial Officer located in...


  • Chennai, Tamil Nadu, India Auronis Innovations Private Limited Full time

    Hiring: Chief Technology Officer (CTO) | Senior Leadership RoleWe are building an innovative logistics-tech platform designed to simplify and optimize the way shippers and logistics service providers connect. To lead the technology vision, we are looking for a Chief Technology Officer (CTO) to join our senior leadership team.Responsibilities:Define and...


  • Chennai, Tamil Nadu, India Lexitas Full time

    About the company Lexitas is a high growth company. The Company is built on a belief that having strong personal relationships with our clients, and providing reliable, accurate and professional services, is the driving force of our success. Lexitas offers an array of services including local and national court reporting, medical record retrieval, process...