Talent.com
No longer accepting applications
Information Security Manager

Information Security Manager

GGVthane, India
1 day ago
Job description

Position Summary

The Information Security Lead will lead the enterprise security compliance agenda, ensuring full alignment with evolving regulatory frameworks such as ISO 27001, DPDP Act, CERT-IN, ITGC, and ISO / IEC 42001 (AI Governance) . This role is crucial in maintaining client trust, operational resilience, audit readiness, and risk posture across all firm systems, platforms, and third-party integrations.

Key Responsibilities

  • Implement ISO 27001 in all offices.
  • Lead and maintain ISO 27001 certification , including ISMS policy enforcement, risk treatment plans, SoA, internal audits, and management reviews.
  • Implement and monitor compliance with :
  • DPDP Act (India)
  • CERT-IN Guidelines (incident response, remote access, logging, reporting)
  • ITGC Controls (as part of statutory and internal audits)
  • ISO / IEC 42001 – AI Governance framework and AI risk registers
  • Build and maintain a firm-wide risk register for cyber, privacy, and technology controls.
  • Define and review Information Security Policies, Data Classification, Encryption Standards, Third-party Risk , etc.
  • Partner with Legal, Risk, and IT teams to map risk ownership and corrective action workflows.
  • Own and manage all client security assessments, and due diligence questionnaires .
  • Maintain a structured repository of pre-approved responses, certificates, and audit summaries.
  • Engage with clients’ cybersecurity teams and support InfoSec audits or certifications demanded during onboarding or renewals.
  • Lead GRC and access controls review across all IT systems and applications.
  • Lead cyber insurance renewals , manage exposure data, and maintain claim readiness documentation.
  • Define and test the incident response plan and conduct periodic tabletop exercises with senior leadership and external advisors.
  • Lead BCP for the firm, and ensure it’s regularly tested.
  • Ensure alignment with business continuity and disaster recovery strategies.
  • Define quarterly and annual Vulnerability Assessment & Penetration Testing (VAPT) plan with top-tier CERT-IN certified vendors.
  • Oversee closure of vulnerabilities and tracking of all red / amber findings.
  • Coordinate with IT Infrastructure and App teams for secure configuration baselines (servers, endpoints, cloud).
  • Track global trends and legal obligations in :
  • AI & Data Ethics (align to ISO / IEC 42001)
  • Cloud Security (including contractual obligations with SaaS providers)
  • Encryption & Logging requirements under CERT-IN
  • Draft internal advisories and update control frameworks accordingly.
  • Lead the firm’s cybersecurity awareness and phishing simulation program .
  • Conduct annual ISMS awareness campaigns and mandatory user certification programs.
  • Build a security-conscious culture by regularly engaging with Practice Heads, Partners, and Business Services.

Key Deliverables

  • ISO 27001 maintained with zero non-conformities
  • Full compliance with CERT-IN guidelines and DPDP readiness documentation
  • Quarterly VAPT assessments with remediation closure tracking
  • Quarterly internal reviews to maintain compliance
  • 100% client audit response turnaround within defined SLA
  • Annual cyber tabletop drill executed with report and improvements tracked
  • Internal and external audits passed with minimal observations
  • Cyber Insurance aligned to evolving risks and policy coverage verified
  • Conduct quarterly reviews to maintain all the compliance
  • Certifications Required

  • ISO 27001 Lead Implementer / Auditor
  • CISSP / CISM
  • DPDP Act / Privacy Certifications
  • ISO / IEC 42001 (AI Governance Awareness) – Preferred
  • ITIL v4 – Preferred
  • Education

  • B.E / B.Tech / M.Tech / Master in computer science
  • Leadership & Behavioral Competencies

  • Highly structured, audit-ready, and documentation-oriented
  • Strong stakeholder engagement with Partners, Clients, cross functional teams, and Auditors
  • Proactive risk identifier with a strong grasp of Indian and global compliance regimes
  • Calm under pressure with strong incident response instincts
  • Strategic mindset with tactical attention to operational control and reporting
  • Create a job alert for this search

    Information Security Manager • thane, India

    Related jobs
    • Promoted
    Manager - Information Security

    Manager - Information Security

    Hipos Consulting Services LLPThane
    About : - Master's or bachelor's degree in information technology / Information Security / Computer Science, or a related field. Information Security, specifically in ...Show moreLast updated: 20 days ago
    • Promoted
    Manager - Information Security And Governance

    Manager - Information Security And Governance

    ConfidentialMumbai, India
    Information Security Manager to lead initiatives across SOC operations and Governance, Breach attack simulation, cloud security, and governance. The ideal candidate will possess deep technical exper...Show moreLast updated: 5 days ago
    • Promoted
    • New!
    Information Security Manager

    Information Security Manager

    questWThane, Maharashtra, India
    This is a full time role with our global client for their captive finance arm in Gurgaon.Key objective- The position will be responsible for ensuring regulatory compliance under RBI guidelines for ...Show moreLast updated: 14 hours ago
    • Promoted
    Manager - TPRM & ISO Information Security

    Manager - TPRM & ISO Information Security

    ConfidentialMumbai, Navi Mumbai
    Conduct third-party / vendor risk assessments.Monitor & manage third-party risk throughout the vendor lifecycle.Implement & maintain the ISO 27001aligned ISMS. Experience in TPRM, vendor risk, informa...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Application Security Manager

    Senior Application Security Manager

    ARCONMumbai, Mumbai (district)
    We are seeking a highly experienced and strategic-minded Senior Manager of Application Security to lead our security initiatives. The ideal candidate will be a seasoned leader with a deep understand...Show moreLast updated: 13 hours ago
    • Promoted
    Head of Information Security

    Head of Information Security

    Cube Consultancy ServicesKalyan-Dombivli, IN
    We are seeking a highly skilled and adaptable business analyst who focuses on technology and B2B distribution.This role involves working closely with both internal development teams and external cl...Show moreLast updated: 1 day ago
    • Promoted
    Senior Manager - Information Security

    Senior Manager - Information Security

    NMS ConsultantMumbai
    Description : The Senior Manager Information Security will spearhead the development and execution of a comprehensive information security strateg...Show moreLast updated: 20 days ago
    • Promoted
    • New!
    Deputy Manager - Information Security

    Deputy Manager - Information Security

    Hyundai Capital India Pvt LtdDombivli, Republic Of India, IN
    Maintain Documentations (Such as, policies, Processes etc.Develop and implement information security policies, procedures, and guidelines to protect organizational data, systems, and networks.Regul...Show moreLast updated: 19 hours ago
    • Promoted
    • New!
    Network Security Manager

    Network Security Manager

    BNP ParibasMumbai, Maharashtra, India
    The main activities of the Manager iNet is to manage, maintain, implement and promote secure, robust, stable, redundant, Network Security infrastructure. Explore, evaluate and propose latest technol...Show moreLast updated: 9 hours ago
    • Promoted
    Information Security Analyst- Urgent-Thane

    Information Security Analyst- Urgent-Thane

    Aditya Birla Groupthane, maharashtra, in
    Job Description – Information Security Analyst (Defensive Security).Thane, Maharashtra, India (On-site).Job Description – Senior Information Security Analyst (SOC Function).Senior Information Secur...Show moreLast updated: 30+ days ago
    • Promoted
    HDB Financial Services - Senior Manager - Information Security & Governance

    HDB Financial Services - Senior Manager - Information Security & Governance

    HDB Financial Services LtdMumbai
    HDB Financial Services Ltd is looking for an experienced Red Team Assessment expert to join our Cyber Security Team.This role is responsible for simulating real-world attacks to test the effectiven...Show moreLast updated: 30+ days ago
    • Promoted
    VAYUZ Technologies - IT Security Manager

    VAYUZ Technologies - IT Security Manager

    VAYUZ TechnologiesMumbai
    Description : About the Role : We are seeking an exp...Show moreLast updated: 29 days ago
    • Promoted
    Lead - Information Security Audit

    Lead - Information Security Audit

    Alpha OrionMumbai, India
    Lead IS Audit Job description The primary objective of Technology audits includes : - Ensure IT systems and...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Manager Information Security

    Senior Manager Information Security

    ConfidentialMumbai, India
    The Senior Manager – Information Security will spearhead the development and execution of.This role requires a strategic leader with deep. Develop and implement a comprehensive information security ...Show moreLast updated: 5 days ago
    • Promoted
    Information Security / ITGC Audit

    Information Security / ITGC Audit

    Digihelic Solutions Private LimitedMumbai, India
    Conduct IT General Controls (ITGC) and Information Security audits.Review compliance with ISO 27001, SOC, and IT security standards. Evaluate access controls, change management, and incident respons...Show moreLast updated: 8 days ago
    • Promoted
    Information Security Manager

    Information Security Manager

    Ajanta Pharma Ltdmumbai, maharashtra, in
    Senior Manager – Information Security.The Senior Manager – Information Security will spearhead the development and execution of a comprehensive information security strategy that supports the organ...Show moreLast updated: 2 days ago
    • Promoted
    Cyber Security Manager

    Cyber Security Manager

    CareerUS SolutionsKalyan-Dombivli, IN
    The Cyber Security Manager is responsible for.The Cyber Security Manager also leads a team of security professionals and collaborates across departments to strengthen the company’s overall.Develop,...Show moreLast updated: 1 day ago
    • Promoted
    Head of Information Security

    Head of Information Security

    HotelTrader LodgIQ (India) Pvt. Ltd.Kalyan-Dombivli, IN
    Hotel Trader is a 100% automated & cloud-based distribution management company providing the tools necessary for hotels to seamlessly connect to global demand with the click of a button.We fully em...Show moreLast updated: 30+ days ago