Talent.com
No longer accepting applications
Information Security Manager

Information Security Manager

GGVvijayapura, India
1 day ago
Job description

Position Summary

The Information Security Lead will lead the enterprise security compliance agenda, ensuring full alignment with evolving regulatory frameworks such as ISO 27001, DPDP Act, CERT-IN, ITGC, and ISO / IEC 42001 (AI Governance) . This role is crucial in maintaining client trust, operational resilience, audit readiness, and risk posture across all firm systems, platforms, and third-party integrations.

Key Responsibilities

  • Implement ISO 27001 in all offices.
  • Lead and maintain ISO 27001 certification , including ISMS policy enforcement, risk treatment plans, SoA, internal audits, and management reviews.
  • Implement and monitor compliance with :
  • DPDP Act (India)
  • CERT-IN Guidelines (incident response, remote access, logging, reporting)
  • ITGC Controls (as part of statutory and internal audits)
  • ISO / IEC 42001 – AI Governance framework and AI risk registers
  • Build and maintain a firm-wide risk register for cyber, privacy, and technology controls.
  • Define and review Information Security Policies, Data Classification, Encryption Standards, Third-party Risk , etc.
  • Partner with Legal, Risk, and IT teams to map risk ownership and corrective action workflows.
  • Own and manage all client security assessments, and due diligence questionnaires .
  • Maintain a structured repository of pre-approved responses, certificates, and audit summaries.
  • Engage with clients’ cybersecurity teams and support InfoSec audits or certifications demanded during onboarding or renewals.
  • Lead GRC and access controls review across all IT systems and applications.
  • Lead cyber insurance renewals , manage exposure data, and maintain claim readiness documentation.
  • Define and test the incident response plan and conduct periodic tabletop exercises with senior leadership and external advisors.
  • Lead BCP for the firm, and ensure it’s regularly tested.
  • Ensure alignment with business continuity and disaster recovery strategies.
  • Define quarterly and annual Vulnerability Assessment & Penetration Testing (VAPT) plan with top-tier CERT-IN certified vendors.
  • Oversee closure of vulnerabilities and tracking of all red / amber findings.
  • Coordinate with IT Infrastructure and App teams for secure configuration baselines (servers, endpoints, cloud).
  • Track global trends and legal obligations in :
  • AI & Data Ethics (align to ISO / IEC 42001)
  • Cloud Security (including contractual obligations with SaaS providers)
  • Encryption & Logging requirements under CERT-IN
  • Draft internal advisories and update control frameworks accordingly.
  • Lead the firm’s cybersecurity awareness and phishing simulation program .
  • Conduct annual ISMS awareness campaigns and mandatory user certification programs.
  • Build a security-conscious culture by regularly engaging with Practice Heads, Partners, and Business Services.

Key Deliverables

  • ISO 27001 maintained with zero non-conformities
  • Full compliance with CERT-IN guidelines and DPDP readiness documentation
  • Quarterly VAPT assessments with remediation closure tracking
  • Quarterly internal reviews to maintain compliance
  • 100% client audit response turnaround within defined SLA
  • Annual cyber tabletop drill executed with report and improvements tracked
  • Internal and external audits passed with minimal observations
  • Cyber Insurance aligned to evolving risks and policy coverage verified
  • Conduct quarterly reviews to maintain all the compliance
  • Certifications Required

  • ISO 27001 Lead Implementer / Auditor
  • CISSP / CISM
  • DPDP Act / Privacy Certifications
  • ISO / IEC 42001 (AI Governance Awareness) – Preferred
  • ITIL v4 – Preferred
  • Education

  • B.E / B.Tech / M.Tech / Master in computer science
  • Leadership & Behavioral Competencies

  • Highly structured, audit-ready, and documentation-oriented
  • Strong stakeholder engagement with Partners, Clients, cross functional teams, and Auditors
  • Proactive risk identifier with a strong grasp of Indian and global compliance regimes
  • Calm under pressure with strong incident response instincts
  • Strategic mindset with tactical attention to operational control and reporting
  • Create a job alert for this search

    Information Security Manager • vijayapura, India

    Related jobs
    • Promoted
    Senior Manager - Information Security (Governance, Risk and Compliance)

    Senior Manager - Information Security (Governance, Risk and Compliance)

    NaviBengaluru, Karnataka, India
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 2 days ago
    • Promoted
    Information Security Engineer

    Information Security Engineer

    InCred CapitalBangalore Urban, Karnataka, India
    We are seeking a highly motivated and independent Information Security Engineer to join.The ideal candidate will possess a broad range of technical and compliance expertise across various informati...Show moreLast updated: 23 days ago
    • Promoted
    Senior Manager - Information Security (Governance, Risk And Compliance)

    Senior Manager - Information Security (Governance, Risk And Compliance)

    NaviBengaluru, Republic Of India, IN
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 2 days ago
    • Promoted
    Program Manager (Information Security)

    Program Manager (Information Security)

    NaviBengaluru, Karnataka, India
    About the Team At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk ...Show moreLast updated: 9 days ago
    • Promoted
    Senior Manager - Information Security And System Audit

    Senior Manager - Information Security And System Audit

    sliceBengaluru, Republic Of India, IN
    The individual will be responsible for executing IT security audits, ensuring adherence to ISMS and ITGC controls, and identifying potential security risks. The role involves conducting security ass...Show moreLast updated: 15 days ago
    • Promoted
    Mashreq - Manager - Information Security

    Mashreq - Manager - Information Security

    Mashreq Global Services Private LimitedBangalore, India
    Management : - To Strategize, develop and implement Data Protection Controls in coordination with stakeholders across the Organization globally. To ensure compliance of the Organ...Show moreLast updated: 29 days ago
    • Promoted
    Information Security Manager

    Information Security Manager

    ConfidentialBengaluru / Bangalore, India
    Space Surveillance and Intelligence.With expertise in space-based detection, tracking, identification, and monitoring, Digantara provides comprehensive domain awareness across all regimes, enabling...Show moreLast updated: 5 days ago
    • Promoted
    Information Security Risk Manager

    Information Security Risk Manager

    ConfidentialBengaluru / Bangalore
    The Information Security Risk Manager will be responsible for identifying, assessing, and mitigating information security risks within the organization. This role involves developing and implementin...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Information Security Manager

    Information Security Manager

    questWBengaluru, Karnataka, India
    This is a full time role with our global client for their captive finance arm in Gurgaon.Key objective- The position will be responsible for ensuring regulatory compliance under RBI guidelines for ...Show moreLast updated: 15 hours ago
    • Promoted
    Mashreq - Senior Manager - Information Security Cyber Culture & Awareness

    Mashreq - Senior Manager - Information Security Cyber Culture & Awareness

    Mashreq Global Services Private LimitedBangalore, India
    Responsibilities : - Cybersecurity Training Program Development - Design, develop, and deliver engaging cybersecurity training programs tailored f...Show moreLast updated: 14 days ago
    • Promoted
    Information Security Team Manager

    Information Security Team Manager

    Ocwen Financial Solutions Pvt. Ltd. - APACBengaluru, Republic Of India, IN
    This position will allow working for Information Security Governance on information systems, processes, and technologies within the organization. This is a global role engaging stakeholders (at all ...Show moreLast updated: 2 days ago
    • Promoted
    Manager, Information Risk & Security

    Manager, Information Risk & Security

    Cubical Operations LLPBengaluru, Republic Of India, IN
    Manager – Third Party Risk Management (TPRM).Information Risk Management / Information Security.Third-Party Risk Management framework. The ideal candidate will have a strong background in.Informatio...Show moreLast updated: 2 days ago
    • Promoted
    Senior Manager - Information Security and System Audit

    Senior Manager - Information Security and System Audit

    sliceBengaluru, Karnataka, India
    The individual will be responsible for executing IT security audits, ensuring adherence to ISMS and ITGC controls, and identifying potential security risks. The role involves conducting security ass...Show moreLast updated: 15 days ago
    • Promoted
    Information Security Audit Manager

    Information Security Audit Manager

    HCLTechBengaluru, Republic Of India, IN
    The position is a member of Risk & Compliance org within HCL Technologies.The DCO will be aligned to critical service delivery engagements and will be responsible for ensuring compliance in accorda...Show moreLast updated: 30+ days ago
    • Promoted
    Niyo Solutions - Manager - Information Security

    Niyo Solutions - Manager - Information Security

    Niyo SolutionsBangalore
    PROFILE : ISM / Information Security Manager.Niyo Information Security function looking for a candidate who can manage Information Security operations in order to maintain and improve Information S...Show moreLast updated: 7 days ago
    • Promoted
    Information Security Initiatives Manager

    Information Security Initiatives Manager

    NaviBengaluru, Republic Of India, IN
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 10 days ago
    • Promoted
    Information Security Project Manager

    Information Security Project Manager

    NokiaBengaluru, Republic Of India, IN
    Bachelor’s degree in Engineering or a comparable major;.Minimum of 10 years of telecom experience, with at least 5 years in Program / Project Management or NPI Project Management.Proven track record ...Show moreLast updated: 2 days ago
    • Promoted
    Manager - Information Security

    Manager - Information Security

    ConfidentialBengaluru / Bangalore, India
    Partner with the product development team in the development of new products including cloud based and recommend privacy related features controls in summary Privacy by Design.Review and respond to...Show moreLast updated: 30+ days ago