Academic : B Graduation in any discipline, B.E preferred; professional certification like CISA, CISSP etc. preferable
Experience : 15 years and above experience in IT security, preferably from GI or banks
Experience of working with multi-national organisations, will be preferred
Competencies
- Good understanding and knowledge of evolving IT technologies, frameworks and solutions
- Understanding Business and IT landscape and applying security mindset to address issues and requirements
- Analytical and problem-solving abilities with a security mindset to identify and fix security risks and issues.
- Good Techno managerial skills
Primary Responsibilities-
Define and execute the enterprise-wide information security vision and strategy.Align security initiatives with business goals and regulatory requirements.Report regularly to the board and executive leadership on cyber posture and risk.Oversee IT risk assessments, threat modeling, and mitigation strategies.Ensure compliance with frameworks like ISO 27001, NIST, GDPR, PCI-DSS, HIPAA, etc.Lead disaster recovery and business continuity planning.Manage incident response and breach investigations.Direct the implementation of security technologies and infrastructure.Monitor emerging threats and evaluate defensive capabilitiesDevelop and enforce security policies, standards, and procedures.Lead security awareness and training programs across the organization.Liaise with legal, HR, IT, finance, and external regulators.Manage Vulnerability Management programOversee audit activities and ensure closure of reported observations within defined TATManage security KPIs and metrics for security effectivenessConduct regular security assessments and measure effectiveness of controlsReview IT architecture and provide adequate security controls to mitigate risks.Consult, advice, coordinate and support Business, IT teams and other internal and external stakeholders to meet security requirements.