
Senior Manager Information Security
4 days ago
Senior Information Security & Control Manager
Key Skills:
Information Security, Cyber Security, ISO 27001, IT Risk Assessment.
Location:
Pune
Experience:
8 – 12 years
Work Model:
5 days WFO
Budget:
26 LPA
Domain:
Payments, Banking or IT.
Job Description:
We are seeking a seasoned and strategic
Senior Manager, Information Security & Control
to lead and strengthen our cybersecurity, IT risk, and compliance initiatives. In this leadership role, you will oversee the development and execution of security governance, risk management, internal control frameworks, and compliance programs across a portfolio of client environments.
As a key advisor to executive stakeholders, you will be responsible for delivering secure, compliant, and resilient information systems by driving the alignment of cybersecurity practices with business goals, regulatory mandates, and industry standards.
Key Responsibilities:
1. Enterprise IT Risk Assessment & Control Framework Oversight
- Lead the identification, evaluation, and mitigation of IT and cybersecurity risks across infrastructure, applications, and data assets.
- Define and manage control frameworks to address key risk areas, especially in cloud, hybrid, and multi-tenant environments.
- Conduct executive-level risk assessments and deliver control strategies to reduce vulnerabilities and ensure operational integrity.
- Oversee business impact analyses, risk appetite assessments, and the integration of risk controls into broader IT governance.
2. Security Operations & Incident Oversight
- Provide strategic direction and oversight to Security Operations Center (SOC) activities and security monitoring initiatives.
- Lead high-severity incident management efforts, ensuring timely escalation, communication, and root cause analysis.
- Evaluate detection and response capabilities and implement enhancements for real-time threat intelligence and response workflows.
- Define SOC performance metrics and ensure adherence to service-level agreements and best practices.
3. Compliance Management & Regulatory Alignment
- Lead enterprise compliance efforts with international and local regulations (e.g.,
GDPR, Law 25, PIPEDA, ISO 27001, PCI-DSS
). - Develop and maintain governance models, internal controls, and audit mechanisms to ensure regulatory readiness.
- Manage client-facing and internal audit engagements, ensuring timely resolution of compliance gaps and issues.
- Act as a strategic liaison between technical teams, compliance officers, and legal counsel.
4. Data Privacy & Protection Governance
- Oversee the design and implementation of robust data protection programs, including encryption, anonymization, and access controls.
- Ensure organizational adherence to privacy laws through formal policies, data protection impact assessments (DPIAs), and secure data lifecycle management.
- Collaborate with Data Protection Officers (DPOs) and client stakeholders to operationalize privacy-by-design principles.
5. Crisis Management & Business Continuity Leadership
- Lead enterprise crisis response planning and business continuity initiatives, including scenario testing and tabletop exercises.
- Provide senior guidance during major cybersecurity incidents or breaches, ensuring minimal business disruption and timely recovery.
- Evaluate and enhance continuity plans to account for evolving threats and operational dependencies.
6. Security Awareness, Training & Stakeholder Engagement
- Develop organization-wide training programs to promote security best practices and compliance awareness.
- Deliver executive workshops and functional team training on cybersecurity risks, policy compliance, and secure operations.
- Foster a culture of accountability and security ownership across business units and client organizations.
7. Strategic Threat Intelligence & Regulatory Monitoring
- Monitor emerging cybersecurity threats, evolving attack vectors, and global regulatory developments.
- Translate external intelligence into actionable internal strategies, technology investments, and control adjustments.
- Provide forward-looking guidance to leadership and clients to stay ahead of regulatory and technological shifts.
8. Reporting, Governance, and Executive Communication
- Oversee the creation of risk dashboards, compliance status reports, and security performance metrics for executive audiences.
- Present complex security and compliance concepts to senior stakeholders in a clear and actionable manner.
- Support board-level reporting and contribute to security strategy development in alignment with corporate objectives.
Required Qualifications:
- Bachelor's or master's degree in computer science
, Information Security, Risk Management
, or related discipline. - 8-14 years of experience
in cybersecurity, IT risk management, compliance, or information security governance, with
3+ years in managerial role
. - Deep expertise in regulatory standards and control frameworks, such as
ISO 27001, NIST, COBIT, PCI-DSS, GDPR, Law 25, and PIPEDA
. - Strong knowledge of SOC operations, SIEM tools, threat detection, and incident response strategies.
- Proven ability to manage and influence stakeholders at all levels, including C-suite and board members.
- Preferred certifications:
CISSP, CISM, CISA, CRISC, ISO 27001 Lead Implementer/Auditor
, or equivalent.
-
Senior Manager Information Security
2 days ago
Pune, Maharashtra, India Solytics Partners Full time ₹ 6,00,000 - ₹ 18,00,000 per yearWe are looking forImmediate JoinersJob Mode: Work from Office (5days)Location: PuneAbout Us:Solytics Partners is a Global Analytics firm, recognized with multiple industry awards for innovation and excellence. Our team comprises experts with deep domain knowledge in risk, analytics, AI/ML, AML/FCC, and fraud. By converging this expertise with cutting-edge...
-
Information Security
2 days ago
Pune, Maharashtra, India Luxoft Full time ₹ 2,00,000 - ₹ 6,00,000 per yearProject descriptionCISO organization plays a leading role in ensuring cyber and information security for our clients, employees and data and also manages the Group Operations and Technology (GOTO) risk and group strategies combined firm.We seek a resourceful Generalist with up to 5 years' experience, hands-on data sharing expertise, broad cyber security and...
-
Senior Information Security Analyst
7 hours ago
Pune, Maharashtra, India Western Union Full time ₹ 12,00,000 - ₹ 24,00,000 per yearSenior Information Security Analyst - Pune, IndiaAre you looking to perform Security Risk assessments, identifying and recommending security controls to on premises and cloud information systems? Do you want to unleash your potential in a global Fintech company looking to move money for better? Join Western Union as a Senior Information Security...
-
Head of Information Security
2 days ago
Pune, Maharashtra, India Intangles Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJob Title:Head of Information SecurityLocation:PuneDepartment:Information SecurityJob Summary:The Head of Information Security will be responsible for establishing and maintaining the company's information security strategy and programs. This role involves identifying, evaluating, and reporting on information security risks in a manner that meets compliance...
-
Information Security Lead
2 weeks ago
Pune, Maharashtra, India Allianz Full time ₹ 20,00,000 - ₹ 25,00,000 per yearYou will lead a team of dedicated security professionals, providing strategic direction and technical guidance. This position requires a strong blend of leadership, technical expertise, and a forward-thinking approach to security, including a keen understanding of how emerging technologies like Artificial Intelligence can be leveraged for both offense and...
-
Manager, Information Security
2 weeks ago
Pune, Maharashtra, India TSYS|Total System Services Full time ₹ 10,000 - ₹ 60,000 per yearEvery day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services. Our worldwide team helps over 3 million companies, more than 1,300 financial institutions and over 600 million cardholders grow with confidence and achieve amazing results....
-
Information Security
2 days ago
Pune, Maharashtra, India Tekskills Inc. Full time ₹ 9,00,000 - ₹ 12,00,000 per yearJob Title:Information Security & Compliance AnalystLocation:Pune, MH (WFO)Skills Required: ISO 27001:2005~Cyber Security Digital: Risk Regulatory Compliance Analytics Cyber Security - Information Security Risk & ComplianceExperience: yearsJob Description:We seek a resourceful generalist with up to 7 years' experience, hands-on data sharing expertise, broad...
-
Information Security Risk Officer
5 hours ago
Pune, Maharashtra, India Davies Full time ₹ 11,500 - ₹ 18,000Information Security Risk OfficerDepartment: Risk and ComplianceEmployment Type: Permanent - Full TimeLocation: PuneCompensation: ₹11,500 - ₹18,000 / yearDescription We are seeking a 3 year+ experienced Information Security Risk Officer to join our second line of defence, providing independent oversight, challenge, and assurance of information security...
-
Technical Information Security Officer
1 week ago
Pune, Maharashtra, India Deutsche Bank Full time ₹ 10,00,000 - ₹ 25,00,000 per yearTechnical Information Security Officer (TISO), AVPJob ID: R0394867Full/Part-Time: Full-timeRegular/Temporary: RegularListed: Location: PunePosition OverviewJob Title: Technical Information Security Officer (TISO)Corporate Title: Assistant Vice PresidentLocation: Pune, IndiaRole DescriptionAt the "Service, Solutions and AI" Domain, our mission is to...
-
Information Security Risk Officer
2 hours ago
Pune, Maharashtra, India DAVIES Full time ₹ 9,00,000 - ₹ 12,00,000 per yearDescriptionWe are seeking a 3 year+ experienced Information Security Risk Officer to join our second line of defence, providing independent oversight, challenge, and assurance of information security practices across the organisation. This role is critical in ensuring that information security risks are effectively identified, assessed, managed, and reported...