Talent.com
Information Security Manager

Information Security Manager

GGVchennai, India
17 hours ago
Job description

Position Summary

The Information Security Lead will lead the enterprise security compliance agenda, ensuring full alignment with evolving regulatory frameworks such as ISO 27001, DPDP Act, CERT-IN, ITGC, and ISO / IEC 42001 (AI Governance) . This role is crucial in maintaining client trust, operational resilience, audit readiness, and risk posture across all firm systems, platforms, and third-party integrations.

Key Responsibilities

  • Implement ISO 27001 in all offices.
  • Lead and maintain ISO 27001 certification , including ISMS policy enforcement, risk treatment plans, SoA, internal audits, and management reviews.
  • Implement and monitor compliance with :
  • DPDP Act (India)
  • CERT-IN Guidelines (incident response, remote access, logging, reporting)
  • ITGC Controls (as part of statutory and internal audits)
  • ISO / IEC 42001 – AI Governance framework and AI risk registers
  • Build and maintain a firm-wide risk register for cyber, privacy, and technology controls.
  • Define and review Information Security Policies, Data Classification, Encryption Standards, Third-party Risk , etc.
  • Partner with Legal, Risk, and IT teams to map risk ownership and corrective action workflows.
  • Own and manage all client security assessments, and due diligence questionnaires .
  • Maintain a structured repository of pre-approved responses, certificates, and audit summaries.
  • Engage with clients’ cybersecurity teams and support InfoSec audits or certifications demanded during onboarding or renewals.
  • Lead GRC and access controls review across all IT systems and applications.
  • Lead cyber insurance renewals , manage exposure data, and maintain claim readiness documentation.
  • Define and test the incident response plan and conduct periodic tabletop exercises with senior leadership and external advisors.
  • Lead BCP for the firm, and ensure it’s regularly tested.
  • Ensure alignment with business continuity and disaster recovery strategies.
  • Define quarterly and annual Vulnerability Assessment & Penetration Testing (VAPT) plan with top-tier CERT-IN certified vendors.
  • Oversee closure of vulnerabilities and tracking of all red / amber findings.
  • Coordinate with IT Infrastructure and App teams for secure configuration baselines (servers, endpoints, cloud).
  • Track global trends and legal obligations in :
  • AI & Data Ethics (align to ISO / IEC 42001)
  • Cloud Security (including contractual obligations with SaaS providers)
  • Encryption & Logging requirements under CERT-IN
  • Draft internal advisories and update control frameworks accordingly.
  • Lead the firm’s cybersecurity awareness and phishing simulation program .
  • Conduct annual ISMS awareness campaigns and mandatory user certification programs.
  • Build a security-conscious culture by regularly engaging with Practice Heads, Partners, and Business Services.

Key Deliverables

  • ISO 27001 maintained with zero non-conformities
  • Full compliance with CERT-IN guidelines and DPDP readiness documentation
  • Quarterly VAPT assessments with remediation closure tracking
  • Quarterly internal reviews to maintain compliance
  • 100% client audit response turnaround within defined SLA
  • Annual cyber tabletop drill executed with report and improvements tracked
  • Internal and external audits passed with minimal observations
  • Cyber Insurance aligned to evolving risks and policy coverage verified
  • Conduct quarterly reviews to maintain all the compliance
  • Certifications Required

  • ISO 27001 Lead Implementer / Auditor
  • CISSP / CISM
  • DPDP Act / Privacy Certifications
  • ISO / IEC 42001 (AI Governance Awareness) – Preferred
  • ITIL v4 – Preferred
  • Education

  • B.E / B.Tech / M.Tech / Master in computer science
  • Leadership & Behavioral Competencies

  • Highly structured, audit-ready, and documentation-oriented
  • Strong stakeholder engagement with Partners, Clients, cross functional teams, and Auditors
  • Proactive risk identifier with a strong grasp of Indian and global compliance regimes
  • Calm under pressure with strong incident response instincts
  • Strategic mindset with tactical attention to operational control and reporting
  • Create a job alert for this search

    Information Security Manager • chennai, India

    Related jobs
    • Promoted
    Information Security Risk Analyst

    Information Security Risk Analyst

    ConfidentialChennai
    The Information Security Risk Analyst will work within a small team delivering a range of risk-related services.You will report to the Information Security Risk Manager. You will share the workload...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    Cube Consultancy ServicesChennai, IN
    We are seeking a highly skilled and adaptable business analyst who focuses on technology and B2B distribution.This role involves working closely with both internal development teams and external cl...Show moreLast updated: 1 day ago
    • Promoted
    Hustek Business Solutions - Senior Information Security Engineer -iAM

    Hustek Business Solutions - Senior Information Security Engineer -iAM

    Hustek Business SolutionsChennai
    Job Title : Senior Software Engineer InfoSec (IAM) Location : Chennai Experience : 610 years (or as req...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Information Security Operations Analyst

    Senior Information Security Operations Analyst

    Cognex Corporationmount, India
    As a Senior Information Security Operations Analyst, you will lead the strategic development, implementation, and adoption of the overall Information Security Program. You will lead the investigatio...Show moreLast updated: 17 hours ago
    • Promoted
    • New!
    Information Security Lead – Managed Security Services

    Information Security Lead – Managed Security Services

    Terralogicchennai, India
    Security Assessments (Web, API, Mobile, Infra, Cloud) | Customer / Delivery Support.We are seeking an experienced Information Security Lead to drive and oversee end-to-end. The role involves hands-on ...Show moreLast updated: 17 hours ago
    • Promoted
    Information Technology Security Manager - CISSP / CISA

    Information Technology Security Manager - CISSP / CISA

    ConfidentialChennai, India
    Job Location : Karapakkam OMR, Chennai.Key Responsibilities : To assist the IT Security Head in the following : .Establish and maintain IT control environment and framework.Develop and maintain IT P...Show moreLast updated: 5 days ago
    • Promoted
    Network and Enterprise Cyber Security Senior Manager

    Network and Enterprise Cyber Security Senior Manager

    Confidentialchennai, India
    The Network and ECS Lead (N&ECS) will be responsible for overseeing all aspects of the Network and Cyber Security delivery. This includes ensuring that the delivery meets customer needs, resource pl...Show moreLast updated: 1 day ago
    • Promoted
    Information Security Auditor

    Information Security Auditor

    ConfidentialChennai
    IT & Cybersecurity Risk Assessment.Conduct regular risk assessments to identify key IT and cybersecurity risk areas.Ensure critical risks are appropriately addressed in the annual IT audit plan.Per...Show moreLast updated: 5 days ago
    • Promoted
    Information Technology Manager

    Information Technology Manager

    CorroHealthChennai, Tamil Nadu, India
    Position : Manager – Cybersecurity Operations.The Manager will lead and manage 24x7 cybersecurity and SOC operations, ensuring round-the-clock protection of the organization's critical infrastructur...Show moreLast updated: 20 days ago
    • Promoted
    Regional Information Security Officer (RISO)

    Regional Information Security Officer (RISO)

    StellantisChennai, Tamil Nadu, India
    The Regional Information Security Officer (RISO) serves as the key cybersecurity and data protection leader within the region, acting as a strategic liaison between the Global CISO organization and...Show moreLast updated: 12 days ago
    • Promoted
    Information Security Manager

    Information Security Manager

    ConfidentialChennai, India
    Review and update of the information asset register in accordance with RBI, SEBI, IRDAI, UIDAI, IT Outsourcing, Data Localization and ISO 27001 : 2013 requirements. Responsible for managing, tracking,...Show moreLast updated: 5 days ago
    • Promoted
    • New!
    Senior Manager – Cyber Security & Digital Infrastructure

    Senior Manager – Cyber Security & Digital Infrastructure

    Taglynkmount, India
    We are seeking a seasoned cybersecurity professional to join our Corporate Cyber Security team as Senior Manager.This role is pivotal in strengthening the Group’s enterprise-wide security posture a...Show moreLast updated: 17 hours ago
    • Promoted
    Information Security Manager

    Information Security Manager

    Northern Arc CapitalChennai, Tamil Nadu, India
    Review and update of the information asset register in accordance with RBI, SEBI, IRDAI, UIDAI, IT Outsourcing, Data Localization and ISO 27001 : 2013 requirements. Responsible for managing, tracking,...Show moreLast updated: 1 day ago
    • Promoted
    Network Security Manager

    Network Security Manager

    Talent ToppersChennai, Tamil Nadu, India
    Manage Day to Day Security Operations (Daily checklist, monitoring of devices for availability / performance, user access management, troubleshooting & resolving user issues, managing user queries, s...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Cyber Security Manager

    Cyber Security Manager

    CareerUS SolutionsChennai, IN
    The Cyber Security Manager is responsible for.The Cyber Security Manager also leads a team of security professionals and collaborates across departments to strengthen the company’s overall.Develop,...Show moreLast updated: 15 hours ago
    • Promoted
    Head of Information Security

    Head of Information Security

    HotelTrader LodgIQ (India) Pvt. Ltd.Chennai, IN
    Hotel Trader is a 100% automated & cloud-based distribution management company providing the tools necessary for hotels to seamlessly connect to global demand with the click of a button.We fully em...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Information Security Manager

    Information Security Manager

    GGVmount, India
    The Information Security Lead will lead the enterprise security compliance agenda, ensuring full alignment with evolving regulatory frameworks such as. ISO 27001, DPDP Act, CERT-IN, ITGC, and ISO / IE...Show moreLast updated: 17 hours ago
    • Promoted
    • New!
    Deputy Manager - Information Security

    Deputy Manager - Information Security

    Hyundai Capital India Pvt Ltdchennai, tamil nadu, in
    Maintain Documentations (Such as, policies, Processes etc.Develop and implement information security policies, procedures, and guidelines to protect organizational data, systems, and networks.Regul...Show moreLast updated: 11 hours ago