Chief Information Security Officer

2 days ago


Mumbai, Maharashtra, India Zurich Kotak General Insurance Full time

The Opportunity The CISO is primarily responsible for the overall information security governance across ZKGI and business units/segments. The CISO is responsible for ensuring the business units/segments comply with local regulations and Zurichs information security policies via remediation programs, stakeholder engagement, security education and awareness programs and security advisory.

What will you be doing?

Information Security governance

  • Provide governance on information security controls in ZKGI BUs.
  • Drive remediation actions to fix security control gaps
  • Security consultancy on business, IT and security projects (including major changes)
  • Ensure Global Information Security strategy is understood by local Senior Management and stakeholders
  • Influence BU work culture to ensure Security by Design is adopted in all IT projects and BAU activities

Information Security & Risk Reporting

  • Provide transparency and education to BU ExCo, Senior Management and the Board on information security topics
  • Share Regional and BU level information security reports and dashboards to help BU management understand information security risk exposure
  • Collaborate with Risk Management to assess Cyber risk exposure for Bus

Information Security Risk and Compliance

  • Engage with business/IT and coordinate/perform the following assessments and drive remediation:

  • Cloud security assessments

  • Vendor assessments
  • Business / IT Application assessments (incl. pre & post implementation reviews, major changes)
  • Regulatory assessments (local regulations, PCI, etc)
  • IT Compliance assessments
  • IT Risk assessment (e.g. M&A)
  • Themed security reviews

  • Exception management

  • Act as the local Subject Matter Expert in the global ICIF and ORM KRI work to ensure these frameworks are understood and executed appropriately at the local level. Review BUs deliverables to ensure accuracy and quality
  • Ensure BU compliance with applicable regulations. Test the effectiveness of related information security controls on a regular basis, leveraging existing frameworks such as ORM KRIs and ICIF etc.

Application Security & Cloud

  • Collaborate with business / IT to ensure application security controls are implemented throughout the application development life-cycle (supported by the Global Application Security team)
  • Work with Group to develop DevSecOps capabilities locally
  • Work with the Cloud Center of Excellence and other relevant teams to ensure security risks associated with the local cloud environments are identified and addressed

Security Awareness & Education

  • Drive BU level security awareness and education program
  • Facilitate global Security Awareness & Education initiatives at the BU level

Security Incident Response

  • Coordinate and facilitate IT security incidents response and forensic investigations (supported by the Global Cyber Response team)

Security Threat Intelligence

  • Participate in industry forums or communications with local regulators to identify Cyber threats in India. Engage with the Cyber Threat Intelligence team to ensure these threats are reviewed and responded to.
  • Ensure actions recommended by global Cyber Threat Intelligence team are completed at the BU level
  • Communicate Cyber threat alerts to the Bus

People Management and Development

  • Ensure the local team continue to acquire new information security skills and knowledge through training and certification
  • Provide coaching to team members (including local and regional team members) to develop them to advance in their career


  • Mumbai, Maharashtra, India CyberCorp Limited Full time

    Company DescriptionCyberCorp Limited is a leading organization specializing in the development of robust and reliable cybersecurity solutions. By integrating innovative products, cutting-edge services, and strategic partnerships, CyberCorp serves both public and private organizations. The company is dedicated to building secure systems that address the...


  • Mumbai, Maharashtra, India Neo Wealth and Asset Management Full time

    Role OverviewTheChief Information Security Officer (CISO)will be responsible for developing, implementing, and overseeing the organization's information security strategy, governance, and risk management framework. This is anindividual contributor role, focused on driving enterprise-wide security initiatives without direct team management, while working...


  • Mumbai, Maharashtra, India Adani Electricity Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Role PurposeThe Chief Information Security Officer (CISO) will lead the cybersecurity strategy and operations for Adani Electricity Mumbai, ensuring the protection of critical infrastructure, customer data, and operational technologies. This role is pivotal in safeguarding the organization's digital assets, aligning with Adani Group's commitment to...


  • Mumbai, Maharashtra, India Weaver Full time

    𝗝𝗼𝗯 𝗧𝗶𝘁𝗹𝗲: Chief Information Security Officer (CISO)𝗟𝗼𝗰𝗮𝘁𝗶𝗼𝗻: 𝗠𝘂𝗺𝗯𝗮𝗶, 𝗠𝗮𝗵𝗮𝗿𝗮𝘀𝗵𝘁𝗿𝗮, 𝗖𝗼𝗺𝗽𝗮𝗻𝘆: 𝗪𝗲𝗮𝘃𝗲𝗿𝗔𝗯𝗼𝘂𝘁 𝗪𝗲𝗮𝘃𝗲𝗿:At Weaver, we are redefining affordable housing finance in India. Launched in...


  • Mumbai, Maharashtra, India, Maharashtra Weaver Full time

    : Chief Information Security Officer (CISO): , , : :At Weaver, we are redefining affordable housing finance in India. Launched in 2025, we are not patching legacy systems; we are building the future from a clean slate. Backed by over $170M from leading investors like Lightspeed and Premji Invest, we have acquired two profitable NBFCs to solve the cold-start...


  • Mumbai, Maharashtra, India Career Stone Consultant Full time

    Job Description:The job purpose is to lead and implement comprehensive cybersecurity and information securityinitiatives, including policy development, risk assessment, incident management, and compliance.Responsible for data privacy protection, infrastructure security, vendor management, and fostering asecurity-conscious culture.Roles and...


  • Mumbai, Maharashtra, India Prudential Plc Full time

    Prudential's purpose is to be partners for every life and protectors for every future. Our purpose encourages everything we do by creating a culture in which diversity is celebrated and inclusion assured, for our people, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and we support our...


  • Mumbai, Maharashtra, India Piramal Finance Full time

    Roles & Responsibilities:He/She will be responsible for managing Regulatory Information & Cybersecurity compliance requirements like RBI & IRDAIPerform risk assessment of all key applications and IT Infrastructure to ensure all risks are identified and mitigatedResponsible for handling the relevant application security practice areas like vulnerability...


  • Mumbai, Maharashtra, India, Maharashtra Career Stone Consultant Full time

    Job Description:The job purpose is to lead and implement comprehensive cybersecurity and information securityinitiatives, including policy development, risk assessment, incident management, and compliance.Responsible for data privacy protection, infrastructure security, vendor management, and fostering asecurity-conscious culture.Roles and...


  • Mumbai, Maharashtra, India BNP Paribas Full time

    Position Purpose The key objective of this role is to ensure that processes across IT operate securely. The remit extends across all aspects of IT security (i.e. policies and procedures, authorization and administration of accesses, networks and firewalls, servers and workstations, operation systems, databases and applications), wherever applicable and...