Talent.com
Information Security Manager

Information Security Manager

GGVlucknow, India
21 hours ago
Job description

Position Summary

The Information Security Lead will lead the enterprise security compliance agenda, ensuring full alignment with evolving regulatory frameworks such as ISO 27001, DPDP Act, CERT-IN, ITGC, and ISO / IEC 42001 (AI Governance) . This role is crucial in maintaining client trust, operational resilience, audit readiness, and risk posture across all firm systems, platforms, and third-party integrations.

Key Responsibilities

  • Implement ISO 27001 in all offices.
  • Lead and maintain ISO 27001 certification , including ISMS policy enforcement, risk treatment plans, SoA, internal audits, and management reviews.
  • Implement and monitor compliance with :
  • DPDP Act (India)
  • CERT-IN Guidelines (incident response, remote access, logging, reporting)
  • ITGC Controls (as part of statutory and internal audits)
  • ISO / IEC 42001 – AI Governance framework and AI risk registers
  • Build and maintain a firm-wide risk register for cyber, privacy, and technology controls.
  • Define and review Information Security Policies, Data Classification, Encryption Standards, Third-party Risk , etc.
  • Partner with Legal, Risk, and IT teams to map risk ownership and corrective action workflows.
  • Own and manage all client security assessments, and due diligence questionnaires .
  • Maintain a structured repository of pre-approved responses, certificates, and audit summaries.
  • Engage with clients’ cybersecurity teams and support InfoSec audits or certifications demanded during onboarding or renewals.
  • Lead GRC and access controls review across all IT systems and applications.
  • Lead cyber insurance renewals , manage exposure data, and maintain claim readiness documentation.
  • Define and test the incident response plan and conduct periodic tabletop exercises with senior leadership and external advisors.
  • Lead BCP for the firm, and ensure it’s regularly tested.
  • Ensure alignment with business continuity and disaster recovery strategies.
  • Define quarterly and annual Vulnerability Assessment & Penetration Testing (VAPT) plan with top-tier CERT-IN certified vendors.
  • Oversee closure of vulnerabilities and tracking of all red / amber findings.
  • Coordinate with IT Infrastructure and App teams for secure configuration baselines (servers, endpoints, cloud).
  • Track global trends and legal obligations in :
  • AI & Data Ethics (align to ISO / IEC 42001)
  • Cloud Security (including contractual obligations with SaaS providers)
  • Encryption & Logging requirements under CERT-IN
  • Draft internal advisories and update control frameworks accordingly.
  • Lead the firm’s cybersecurity awareness and phishing simulation program .
  • Conduct annual ISMS awareness campaigns and mandatory user certification programs.
  • Build a security-conscious culture by regularly engaging with Practice Heads, Partners, and Business Services.

Key Deliverables

  • ISO 27001 maintained with zero non-conformities
  • Full compliance with CERT-IN guidelines and DPDP readiness documentation
  • Quarterly VAPT assessments with remediation closure tracking
  • Quarterly internal reviews to maintain compliance
  • 100% client audit response turnaround within defined SLA
  • Annual cyber tabletop drill executed with report and improvements tracked
  • Internal and external audits passed with minimal observations
  • Cyber Insurance aligned to evolving risks and policy coverage verified
  • Conduct quarterly reviews to maintain all the compliance
  • Certifications Required

  • ISO 27001 Lead Implementer / Auditor
  • CISSP / CISM
  • DPDP Act / Privacy Certifications
  • ISO / IEC 42001 (AI Governance Awareness) – Preferred
  • ITIL v4 – Preferred
  • Education

  • B.E / B.Tech / M.Tech / Master in computer science
  • Leadership & Behavioral Competencies

  • Highly structured, audit-ready, and documentation-oriented
  • Strong stakeholder engagement with Partners, Clients, cross functional teams, and Auditors
  • Proactive risk identifier with a strong grasp of Indian and global compliance regimes
  • Calm under pressure with strong incident response instincts
  • Strategic mindset with tactical attention to operational control and reporting
  • Create a job alert for this search

    Information Security Manager • lucknow, India

    Related jobs
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaLucknow, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    Cube Consultancy Serviceslucknow, uttar pradesh, in
    We are seeking a highly skilled and adaptable business analyst who focuses on technology and B2B distribution.This role involves working closely with both internal development teams and external cl...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Trainer

    Cyber Security Trainer

    Veherelucknow, uttar pradesh, in
    Vehere is seeking a Cybersecurity Trainer to design, develop, and deliver world-class training for our customers, partners, and internal teams. You will play a key role in enabling users to master V...Show moreLast updated: 14 days ago
    • Promoted
    • New!
    Cyber Security Manager

    Cyber Security Manager

    CareerUS Solutionslucknow, uttar pradesh, in
    The Cyber Security Manager is responsible for.The Cyber Security Manager also leads a team of security professionals and collaborates across departments to strengthen the company’s overall.Develop,...Show moreLast updated: 15 hours ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiLucknow, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Security & Compliance IT Specialist / Engineer

    Security & Compliance IT Specialist / Engineer

    aecc - digital innovation hubLucknow, IN
    Support the organisation’s security posture through monitoring, incident response coordination, and compliance activities. Work closely with IT operations, engineering, and leadership to ensure syst...Show moreLast updated: 13 days ago
    • Promoted
    Lead Network & Security Engineer

    Lead Network & Security Engineer

    Cloud4C ServicesLucknow, Republic Of India, IN
    Gartner’s Magic Quadrant (2021), is a leading automation-driven Cloud Managed Services Provider (MSP).We specialize in multi-cloud migration, management, and disaster recovery with zero data loss g...Show moreLast updated: 15 days ago
    • Promoted
    Security Manager - Hilton and Hilton Garden Inn, Lucknow

    Security Manager - Hilton and Hilton Garden Inn, Lucknow

    ConfidentialLucknow, India
    A Security Manager directs security personal to deliver a safe Guest and Member experience while coordinating with government and law enforcement and ensuring compliance with local safety legislati...Show moreLast updated: 5 days ago
    • Promoted
    Head of Information Security

    Head of Information Security

    HotelTrader LodgIQ (India) Pvt. Ltd.Lucknow, IN
    Hotel Trader is a 100% automated & cloud-based distribution management company providing the tools necessary for hotels to seamlessly connect to global demand with the click of a button.We fully em...Show moreLast updated: 30+ days ago
    • Promoted
    Illumio- Zero Trust Microsegmentation

    Illumio- Zero Trust Microsegmentation

    CareerXperts ConsultingLucknow, IN
    Hiring : Manager - Zero Trust Microsegmentation.Bengaluru | 💼 5+ Years Experience.Lead Illumio microsegmentation implementations. Design & deploy Zero Trust policies.Analyze network infrastructure &...Show moreLast updated: 13 days ago
    • Promoted
    • New!
    IT CYBER SECURITY (CISO)

    IT CYBER SECURITY (CISO)

    Banking client if New Era Indialucknow, uttar pradesh, in
    The purpose of the position is to manage, support, and coordinate all information security activities and programs for the branch. He / she shall be primarily responsible for ensuring compliance to va...Show moreLast updated: 15 hours ago
    • Promoted
    Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

    Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

    Cloud4C Serviceslucknow, uttar pradesh, in
    Gartner’s Magic Quadrant (2021), is a leading automation-driven Cloud Managed Services Provider (MSP).We specialize in multi-cloud migration, management, and disaster recovery with zero data loss g...Show moreLast updated: 16 days ago
    • Promoted
    Sr. Lead - Cloud Security

    Sr. Lead - Cloud Security

    Sycamore Informatics Inc.Lucknow, IN
    Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Third-Party Risk Management

    Third-Party Risk Management

    Live Connectionslucknow, uttar pradesh, in
    Manager – Information Security (Third-Party Risk Management).Educational Qualifications / Certifications.Bachelor’s degree in Computer Science, Engineering, or a related field (or equivalent work e...Show moreLast updated: 15 hours ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    CBTSlucknow, uttar pradesh, in
    Senior level roles as IT Security Architect, IT Security Engineer, IT Security Auditor, Cyber-Security Analyst, Cyber-Intelligence Analyst. Certifications, Accreditations, Licenses.One or more of th...Show moreLast updated: 14 days ago
    • Promoted
    Security Operations Center Analyst

    Security Operations Center Analyst

    Tata Consultancy Serviceslucknow, India
    We await your innovation at TCS : Hiring |.Security Operations Center Analyst.Required Total Experience : 5+ years.Work location : Hyderabad, Bangalore. Required Skills Proficiency with.IDS / IPS, firewa...Show moreLast updated: 1 day ago
    • Promoted
    Security & Compliance It Specialist / Engineer

    Security & Compliance It Specialist / Engineer

    aecc - digital innovation hubLucknow, Republic Of India, IN
    Support the organisation’s security posture through monitoring, incident response coordination, and compliance activities. Work closely with IT operations, engineering, and leadership to ensure syst...Show moreLast updated: 12 days ago
    • Promoted
    • New!
    Cyber & Information Security

    Cyber & Information Security

    WEBSKITTERS TECHNOLOGY SOLUTIONS PRIVATE LIMITEDlucknow, uttar pradesh, in
    We are seeking a strategic, forward-thinking Head of Cyber & Information Security to lead the design, implementation, and governance of enterprise-wide information security frameworks across Webski...Show moreLast updated: 15 hours ago