Talent.com
No longer accepting applications
Chief Information Security Officer (CISO) - Indian BFSI - 15 years+

Chief Information Security Officer (CISO) - Indian BFSI - 15 years+

datavrutihosur, tamil nadu, in
1 day ago
Job description

Job Title : Chief Information Security Officer (CISO)

Location : Mumbai - Work From Office

Reporting To : Chief Risk Officer (with dual reporting to Board Risk / Audit Committee)

Sector : General Insurance

Experience : 15+ years in Information Security with leadership exposure in BFSI, ideally Insurance or FinTech

Salary : 50LPA+ based on fitment

Role Overview

  • The Chief Information Security Officer (CISO) will define and implement the company’s end-to-end Information Security framework, ensuring secure design, regulatory readiness, and operational resilience as the company moves from 0 to 1.
  • This is a strategic yet hands-on leadership role, ideal for someone who has managed security at scale in a regulated BFSI / Insurance environment, and now wants to build a secure-by-design foundation for a cloud-native, API-driven, AI-powered insurance platform.
  • The CISO will anticipate and pre-empt risks by leveraging prior experience, ensuring that the company’s technology-led innovation is always backed by enterprise-grade security and compliance discipline.

Key Responsibilities

1. Information Security Strategy & Governance

  • Define and implement the enterprise-wide Information Security strategy, encompassing governance, risk management, data protection, and cybersecurity.
  • Establish security policies, frameworks, and control baselines in alignment with IRDAI, CERT-In, ISO 27001, and DPDP Act.
  • Build a scalable ISMS (Information Security Management System) from the ground up.
  • 2. Cloud, Application & API Security

  • Review and work with engineering teams to develop secure architecture design for cloud-native systems, APIs, and microservices.
  • Review implemented automated controls for containerized and serverless environments.
  • Ensure security by design is baked into engineering processes through DevSecOps practices and CI / CD pipelines.
  • 3. Cybersecurity Operations & Threat Management

  • Set up and oversee Security Operations (SOC), including SIEM, SOAR, and vulnerability management.
  • Build detection and response capability tailored for API-driven, AI-heavy applications.
  • Lead threat intelligence, incident response, and post-incident reviews.
  • 4. AI & Data Security

  • Develop frameworks for secure and responsible AI / ML model governance, including data lineage, model access control, and risk mitigation for bias and data leakage.
  • Protect customer and training data in compliance with DPDP and data residency norms.
  • 5. Regulatory & Compliance Management

  • Ensure readiness for IRDAI cyber security and IT governance audits.
  • Collaborate with Compliance and Legal teams for ongoing adherence to regulatory reporting and certifications (ISO 27001, SOC 2, etc.).
  • Build documentation and audit trails for pre-emptive compliance.
  • 6. Third-Party & Ecosystem Security

  • Design and enforce Third-Party Risk Management (TPRM) framework for partners, TPAs, technology vendors, and data processors.
  • Conduct due diligence and continuous monitoring of vendor security posture.
  • 7. Business Continuity & Resilience

  • Establish cloud-native BCP / DR plans, aligned with IRDAI requirements.
  • Lead incident and crisis management drills to validate resilience under simulated failures.
  • 8. Security Culture & Awareness

  • Foster a security-first culture across engineering, product, and operations teams.
  • Conduct awareness programs, red / blue team simulations, and executive security workshops.
  • 9. Leadership & Board Engagement

  • Advise leadership and Board Risk / Audit Committee on key threats, mitigation strategies, and regulatory posture.
  • Build and mentor an internal security team capable of scaling with the business.
  • Desired Profile

  • 15+ years in Information Security, with at least 5 years in senior InfoSec roles at Insurance, NBFC, Bank, or FinTech.
  • Experience securing cloud-native, API-driven, or AI / ML-intensive platforms.
  • Strong grasp of IRDAI, CERT-In, DPDP Act, and global security standards.
  • Proven ability to design and operationalize security frameworks from zero, while ensuring future scalability.
  • Strong collaboration with Product, Engineering, and Risk teams.
  • Qualifications / Certifications

  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field.
  • Preferred certifications : CISSP, CISM, CCSP, ISO 27001 LA, AWS Security Specialty, CRISC.
  • Familiarity with frameworks like NIST CSF, Zero Trust Architecture, and OWASP API Security Top 10.
  • Key Behavioural Attributes

  • Strategic foresight backed by operational pragmatism.
  • Startup agility with an enterprise governance mindset.
  • Strong executive presence and regulatory confidence.
  • Builder-leader who can “set up from scratch” yet think “at scale.”
  • Ethical, transparent, and decisive under pressure.
  • Create a job alert for this search

    Information Security • hosur, tamil nadu, in

    Related jobs
    • Promoted
    Capital One - Manager - Information Security Risk Management - DataLabs India

    Capital One - Manager - Information Security Risk Management - DataLabs India

    Capital One Services (India) Pvt ltdBangalore, India
    At Capital One, we're building a leading information-based technology company.Still founder-led by Chairman and Chief Executive Officer Richard Fairbank, Capital One is on a mission to help ou...Show moreLast updated: 18 days ago
    • Promoted
    Automation Engineer

    Automation Engineer

    Tata ElectronicsKolar, Karnataka, India
    Tata Electronics (a wholly owned subsidiary of Tata Sons Pvt.India’s first AI-enabled state-of-the-art Semiconductor Foundry. This facility will produce chips for applications such as power manageme...Show moreLast updated: 30+ days ago
    • Promoted
    Chief Information Security Officer

    Chief Information Security Officer

    AviinTech Business SolutionsBangalore
    About the Role : We are seeking a highly skilled and visionary Chief Information Security Officer (CISO) to lead the organizations information sec...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Offshore Delivery Head

    Cyber Security Offshore Delivery Head

    A top Tier IT ServicesBengaluru, Karnataka, India
    Our client, a large global IT services organization, is looking for a senior leader to manage.The role requires managing large-scale teams and complex cybersecurity programs across the.Lead Cyberse...Show moreLast updated: 11 days ago
    • Promoted
    Information Security Lead

    Information Security Lead

    Narayana HealthBengaluru, Karnataka, India
    About the Role : The Information Security Lead will be responsible for developing and implementing the organization’s information security framework to safeguard patient data, clinical systems, and ...Show moreLast updated: 30+ days ago
    • Promoted
    (Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

    (Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

    Triune Infomatics Inchosur, tamil nadu, in
    Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response.Working Hours : Monday to Friday, 9 AM – 5 PM PST (U. Reporting To : Security Operations (SecOps) Leader – USA.We are seeki...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Lead - CISSP / CISM Certified

    Information Security Lead - CISSP / CISM Certified

    DashhireBangalore
    This role involves building and leading the information security function at Nurix AI.The company is experiencing rapid growth and requires a seasoned expert to establish a world-class security pos...Show moreLast updated: 27 days ago
    • Promoted
    SOC Manager

    SOC Manager

    ConfidentialBengaluru / Bangalore
    Job Title : SOC Manager Client Engagement (India).Engagement Model : Client-dedicated, 16x7.As the SOC Manager for one of our client engagements, you will lead a dedicated team of analysts supporting...Show moreLast updated: 30+ days ago
    • Promoted
    Security (Cloud IAM, Network Security, VPC / IAP)

    Security (Cloud IAM, Network Security, VPC / IAP)

    Tata Consultancy ServicesBengaluru, Karnataka, India
    Role : Security (Cloud IAM, Network Security, VPC / IAP).Location : Chennai, Gandhinagar, Bangalore.Security (IAM, Network Security, VPC / IAP), Cloud Ops. Ideally should be at least 3 years of hands-...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Chief Operating Officer (COO-Aerospace)

    Chief Operating Officer (COO-Aerospace)

    Msa Global Technology and Engineering Pvt LtdBengaluru, Karnataka, India
    MSA Global Technology & Engineering Pvt.Class A and mission-critical aero engine and aero structure components.Our clients include global OEMs and Tier-1 suppliers such as GE India, IAMPL, Dynamati...Show moreLast updated: 17 hours ago
    • Promoted
    RMS (Reliability Monitoring System) Technical Expert – OSAT

    RMS (Reliability Monitoring System) Technical Expert – OSAT

    Tata ElectronicsKolar, Karnataka, India
    Tata Electronics (a wholly owned subsidiary of Tata Sons Pvt.India’s first AI-enabled state-of-the-art Semiconductor Foundry. This facility will produce chips for applications such as power manageme...Show moreLast updated: 30+ days ago
    • Promoted
    Unit-Level Traceability Technical Expert – OSAT

    Unit-Level Traceability Technical Expert – OSAT

    Tata ElectronicsKolar, Karnataka, India
    Tata Electronics (a wholly owned subsidiary of Tata Sons Pvt.India’s first AI-enabled state-of-the-art Semiconductor Foundry. This facility will produce chips for applications such as power manageme...Show moreLast updated: 30+ days ago
    • Promoted
    SOC Lead Engineer

    SOC Lead Engineer

    Versa NetworksBengaluru, Karnataka, India
    The SOC Lead Engineer is responsible for overseeing the Security Operations Center team, ensuring 24 / 7 monitoring, detection, analysis, and response to security threats. This role involves managing ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Chief Information Security Officer (CISO) - Indian BFSI - 15 years+

    Chief Information Security Officer (CISO) - Indian BFSI - 15 years+

    datavrutibangalore, India
    Chief Information Security Officer (CISO).Chief Risk Officer (with dual reporting to Board Risk / Audit Committee).Information Security with leadership exposure in BFSI, ideally Insurance or FinTec...Show moreLast updated: 22 hours ago
    • Promoted
    Information Security Engineer - Cloud & Network Security

    Information Security Engineer - Cloud & Network Security

    Intraedge Technologies Ltd.Bangalore
    About the job : Location : Bengaluru, Karnataka, India Job Description : The Information Security Enginee...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Chief Technology Officer

    Chief Technology Officer

    SlayrobeBangalore, IN
    Slayrobe is India’s first styling and confidence ecosystem built at the intersection of fashion, psychology, and AI — decoding how women make everyday style decisions. With 10,000+ users, paying sub...Show moreLast updated: 13 hours ago
    • Promoted
    Director, Information Security

    Director, Information Security

    ConfidentialBengaluru / Bangalore
    Leadership and Team Building : .Build and lead skilled Information Security, Governance, Risk and Compliance teams in India, fostering collaboration, innovation, and continuous improvement.Strategic...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Engineer - CISM / CISSP Certification

    Information Security Engineer - CISM / CISSP Certification

    HyrEzy Talent SolutionsBangalore
    Roles & Responsibilities (BSc.IT, BE) with Information Security Certifications - CISM, CISSP EXPERIENCE : ...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Lead

    Information Security Lead

    TalentOyeBangalore
    Information Security Lead Location : Bangalore, India Experience : 6 to 15 years <...Show moreLast updated: 30+ days ago
    • Promoted
    Cisco Viptela (SDWAN)

    Cisco Viptela (SDWAN)

    Tata Consultancy ServicesBengaluru, Karnataka, India
    Required Technical Skill Set : SDWAN -Velocloud, Viptela, Versa, Meraki, Fortinet.Hands-on Experience in Network Monitoring and Alert Management. Experience in troubleshooting transport layer issue (...Show moreLast updated: 30+ days ago