Talent.com
Senior Manager - Information Security And Governance

Senior Manager - Information Security And Governance

ConfidentialHyderabad / Secunderabad, Telangana, India
4 days ago
Job description

Detailed Job Description

Manager - IT & IS Governance (Controls Testing Specialist)

  • Pivotal role in ensuring the effective governance, control testing framework, risk management and compliance of the organization's information security and technology infrastructure.
  • Timely responses / compliance towards any advisories received from RBI and other applicable regulatory bodies.
  • Sound knowledge of applicable RBI regulations / circulars to NBFC business and its compliance adherence practices.
  • Ensure efforts to establish and maintain robust IT governance frameworks, control testing, policies, and procedures, ensuring alignment with industry best practices, and regulatory requirements.

Roles & Responsibilities

  • Compliance Assurance :
  • Ensure compliance with relevant laws, regulations, and industry standards, be updated with the new / changes in compliance requirements. Ensure required compliance within IS & IT team.
  • Ensure timely response / compliance to advisories / questionnaires received from RBI and other applicable regulatory bodies.
  • Collaborate and work along with business, legal and compliance teams to address regulatory / compliance requirements.
  • Governance Framework :
  • Ensure adherence towards implementation of comprehensive IT & IS governance, testing control frameworks to guide decision-making processes.
  • Help drive the Governance activities across the Technology estate of the organization. Key areas of focus would be timely response towards advisories / compliance towards RBI, CERT-In advisories / guidelines, Control Testing & Assessment framework, Change Management, Vulnerability & Patch Management, Obsolescence, Asset Management, BCP-DR, Training awareness, TPRA etc.
  • Ensure alignment with organizational objectives, industry standards, and regulatory requirements. (Example : RBI, SEBI, CERT-IN, etc.)
  • Policy Enforcement :
  • Enforcement and monitoring of adherence to IT policies and procedures - covering areas such as information security, cyber security, data privacy & security controls, data classification, BCP-DR and IT Risk Management etc.
  • Regularly assess the implementation of policies / procedures to address emerging threats and technology trends.
  • Risk Management :
  • Help identification and evaluation of IT / IS related risks.
  • Assist the information security function in developing and maintaining the security and risk management program, including risk analysis and tracking process.
  • Help in implementation of risk mitigation strategies and monitor the effectiveness of risk controls.
  • Prepare dashboard for the management on periodic basis.
  • Review and track IT & IS exceptions, risks and exceptions and prepare dashboard for the management.
  • Control Testing and Assessment :
  • Design, plan and execute control testing activities to evaluate effectiveness of process / procedures as outlined by the organization.
  • Coordinate with internal teams to perform walkthroughs and document control processes to understand the design and implementation of the organizations controls related to IS & IT requirements.
  • Clearly communicate detailed test plans, testing methodology and report on the control performance.
  • Validate remediation of identified control deficiencies and report gaps to the stakeholders and follow-up for closure.
  • Audit and Assurance :
  • Coordinate with internal, external, RBI auditors related to IS & IT requirements.
  • Ensure timely submission of the artefacts / evidences basis requirements.
  • Tracking, reporting and ensure compliance of observations / gaps raised by the auditors.
  • Training and Awareness :
  • Develop and deliver training programs to enhance IT & IS governance awareness across the organization.
  • Foster a culture of cybersecurity and compliance among staff.
  • Management Presentation :
  • Liaising with various internal stakeholders for preparing decks for various Board level committees.
  • Tracking of actionable items from various committees of the organisation and ensure compliance / logical closure for the same.
  • Additional Skill-set

  • Bachelor's degree in Information Technology, Computer Science, or a related field. Master's degree or relevant certifications (e.g., CISM, CRISC) is a plus.
  • Proven experience of 8+ years in a similar role with a focus on IS & IT governance.
  • Must have knowledge of areas as outlined, but not limited to :
  • Information Security (Confidentiality, Integrity, Availability and Privacy)
  • Strong understanding of IT and operational controls
  • Security Testing (White box, Black box and Code review)
  • Application architecture, application security, network security In-depth knowledge of relevant laws, regulations, and industry standards.
  • Applicable RBI regulations / circulars to NBFC business and its compliance adherence practices.
  • Should have good understanding of ISO 27001 ISMS, NIST Cybersecurity Framework, ISO 22301, GDPR, DPDP Act 2023 etc.
  • Strong understanding of risk management principles and methodologies.
  • Excellent interpersonal and communication skills.
  • Ability to collaborate effectively with cross-functional teams.
  • Skills Required

    Gdpr, Compliance, Network Security, control testing , Information Security, Risk Management, Security Testing, It Governance, Iso 27001, Application Security, iso 22301

    Create a job alert for this search

    Manager Information Security • Hyderabad / Secunderabad, Telangana, India

    Related jobs
    • Promoted
    Senior Information Security Engineer

    Senior Information Security Engineer

    QualiZealhyderabad, telangana, in
    We are looking for an experienced Security Information Engineer to strengthen our cloud and infrastructure security posture. The ideal candidate will be certified in Microsoft Azure Security (AZ-500...Show moreLast updated: 30+ days ago
    • Promoted
    Administrator

    Administrator

    MNR UniversitySangareddy, Telangana, India
    Assistant / Deputy / Senior Manager.Post Graduate will be preferred.Good written and oral communication skills in English. Excellent knowledge in computer applications (MS Office and other any accounts....Show moreLast updated: 22 days ago
    • Promoted
    Information Technology Operations Manager

    Information Technology Operations Manager

    TransFiHyderabad, IN
    TransFi powers the world’s payments, helping businesses and individuals access better ways to move money.Combining industry-leading coverage of currencies and payment methods, we deliver compliant ...Show moreLast updated: 1 day ago
    • Promoted
    Manager- Information Security, Vulnerability And Risk Management)

    Manager- Information Security, Vulnerability And Risk Management)

    Infosys BPMHyderabad, Republic Of India, IN
    Role : Manager Information Security (Release Management).Cyber security & Security engineer, Release & Change Management, Vulnerability Management. Strong understanding of the insurance industry.Expe...Show moreLast updated: 30+ days ago
    • Promoted
    Sr Manager - Compliance, Information Security

    Sr Manager - Compliance, Information Security

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Compliance, Information Security and BCM Domains.Compliance & Information Security.Should be ready to work as per US / UK shift timings as and when needed. ISO27001 Lead Auditor / PCI DSS / CEH-EC council...Show moreLast updated: 4 days ago
    • Promoted
    Senior Manager, Security Architecture and Strategy

    Senior Manager, Security Architecture and Strategy

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Senior Specialist, ITRMS Architecture.We are seeking a highly skilled Security Architect with a strong background in designing resilient and highly available cloud-hybrid systems.In this role you w...Show moreLast updated: 4 days ago
    • Promoted
    Manager - Information Security And Governance

    Manager - Information Security And Governance

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Seeking a skilled Vendor Assessment and Penetration Tester to join our Cyber Security team.The individual in this role will be responsible for evaluating the overall security posture of third-party...Show moreLast updated: 4 days ago
    • Promoted
    Senior Information Security Engineer - Access Management

    Senior Information Security Engineer - Access Management

    ConfidentialHyderabad / Secunderabad, Telangana
    OUD (Oracle Unified Directory) Management and Optimization : Support, manage, and enhance OUD for optimal performance, maintaining and scaling it to accommodate a large user base with an anticipated...Show moreLast updated: 30+ days ago
    • Promoted
    Manager- Information Security, Vulnerability and Risk Management)

    Manager- Information Security, Vulnerability and Risk Management)

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Role : Manager Information Security (Release Management).Cyber security & Security engineer, Release & Change Management, Vulnerability Management. Strong understanding of the insurance industry.Expe...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Architect Senior

    Information Security Architect Senior

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Designs, Develops and Documents the Identity & Access Management security solutions.Provides oversight over the implementations for access enforcement. Acts as the subject matter expert on Informati...Show moreLast updated: 4 days ago
    • Promoted
    Senior Manager IS Cyber Culture & Awareness

    Senior Manager IS Cyber Culture & Awareness

    MashreqHyderabad, IN
    The Cyber Security Awareness Specialist plays a critical role in maturing Mashreq Bank’s cyber security awareness program. The specialist is responsible for fostering a culture where Cybersecurity i...Show moreLast updated: 1 day ago
    • Promoted
    Senior Information Security Engineer Analyst

    Senior Information Security Engineer Analyst

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives.The work you do with our team will directly improve health outcomes by connect...Show moreLast updated: 4 days ago
    • Promoted
    Senior Data Security & Governance Specialist

    Senior Data Security & Governance Specialist

    Integris GroupHyderabad, IN
    The Senior Data Security & Governance Specialist is responsible for defining and enforcing governance, compliance, and security controls across modern data platforms built on Azure and Databricks.T...Show moreLast updated: 1 day ago
    • Promoted
    Manager- Information Security, Vulnerability and Risk Management)

    Manager- Information Security, Vulnerability and Risk Management)

    Infosys BPMHyderabad, Telangana, India
    Role : Manager Information Security (Release Management).Cyber security & Security engineer, Release & Change Management, Vulnerability Management. Strong understanding of the insurance industry.Expe...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Information Security Analyst

    Senior Information Security Analyst

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Transcend Street Solutions (www.Fintech company headquartered in New Jersey, USA, with a global technology center in Hyderabad. We are on an exciting journey to help capital market participants impr...Show moreLast updated: 4 days ago
    • Promoted
    Information System Manager

    Information System Manager

    AmgenHyderabad, Telangana, India
    Role Description : The ideal candidate will have a proven track record of leadership and mentoring in a technology-driven environment, with a strong focus within Manufacturing and Supply Chain appl...Show moreLast updated: 22 days ago
    • Promoted
    • New!
    Information Technology Manager

    Information Technology Manager

    MS Agarwal Foundries Pvt LtdSecunderabad, India
    The IT Infrastructure Manager will be responsible for the IT infrastructure transformation by planning, implementation, and upkeep of the organization’s IT infrastructure across corporate and facto...Show moreLast updated: 19 hours ago
    • Promoted
    Information Technology Infrastructure Manager

    Information Technology Infrastructure Manager

    Dodla Dairy Ltdhyderabad, telangana, in
    Oversee the management and maintenance of our core IT infrastructure, including servers, operating systems, databases, and IT assets & accessories including surveillance system.Ensure the reliabili...Show moreLast updated: 30+ days ago