Talent.com
Director of corporate Information Security
Director of corporate Information SecurityChargebee • Vellore, IN
No longer accepting applications
Director of corporate Information Security

Director of corporate Information Security

Chargebee • Vellore, IN
5 days ago
Job description

Role Purpose

The Director / Head of Information Security will lead Chargebee’s Corporate Information Security function, working in close partnership with the Enterprise Cyber security (ECS) which manages product and infrastructure security and Corporate IT (which manages employee systems, devices, and operations) teams.

This role focuses on strengthening enterprise-wide governance, compliance, and risk management by designing new security capabilities while leveraging existing technical and operational controls across the broader ecosystem.

The leader will own the ISMS (ISO 27001 Program), Incident Management, Data Protection, Endpoint Security, and other GRC (Governance, Risk & Compliance) programs that protect our people, systems, and customers.

The ideal candidate will enable Chargebee to stay audit-ready, resilient, and trusted by customers as we continue to scale globally.

Key Responsibilities

1. Information Security Strategy & Governance

  • Lead the design and execution of Chargebee’s enterprise security strategy aligned with business goals
  • Own and continuously improve the Information Security Management System (ISMS) under ISO 27001, SOC 2, PCI DSS, and GDPR.
  • Establish and maintain the security governance framework, policies, and standards across business units.
  • Drive adoption of a unified security maturity model and track progress across all security domains.
  • Report quarterly to senior leadership on posture, risks, incidents, and roadmap progress.

2. Program Ownership Across Core AORs

Own and mature the following functions and teams :

  • ISMS & ISO 27001 Program – Governance, internal audits, controls, SoA, and certification management.
  • Corporate Incident Management (CIM) – Centralized IR process, playbooks, RCA / CAPA, and coordination of each incident, coordinating Product security, Global Technology Infrastructure and internal operations team
  • Data Leakage Prevention (DLP) – Policy, enforcement, and insider data risk management of corporate systems and corporate technology (Collaboration and knowledge management systems).
  • AI information Security Governance – AI risk reviews, usage policy, vendor evaluation, and compliance oversight of corporate information systems and Corporate Technology.
  • Security Awareness Program – Continuous education, phishing simulation, and behavioral improvement of corporate information systems and Corporate Technology.
  • Corporate IT Risk Management – Risk register, reviews, and treatment lifecycle of corporate information systems and Corporate Technology.
  • Business Continuity Program (BCP) & Data Recovery (DR) (Corporate) – Continuity governance, simulation testing, recovery validation of corporate information systems and Corporate Technology.
  • Policy Governance – Centralized authoring, review, communication, and adoption tracking of corporate information systems and Corporate Technology.
  • Access Governance (RBAC) – Access policy, JML automation, and certification reviews of all systems, product operations and corporate systems and technology.
  • Endpoint Security (Systems & Hardware) – Device hardening, monitoring, and compliance visibility of corporate information systems and Corporate Technology.
  • GTM Trust Enablement (RFP / RFI) – Customer trust documentation, security questionnaires, SLAs in response to processes and governance related questions referring to Chargebee’s corporate information systems and Corporate Technology.
  • 3. Operational Execution & Oversight

  • Establish a centralized incident classification and escalation model for all business functions.
  • Drive RCA & CAPA closure across incidents and audits; ensure risks are documented and tracked.
  • Maintain audit and evidence readiness for customer and external certifications.
  • Oversee DLP and endpoint monitoring, ensuring response workflows are automated and integrated.
  • Partner with ECS and IT to embed security by design into products, infrastructure, and employee systems.
  • Assist in responding to customer RFP’s to clarify and confirm Chargebee’s information security and corporate systems compliance
  • 4. Risk, Compliance, and Reporting

  • Maintain the enterprise security risk register; ensure high / critical risks have defined treatment and ownership.
  • Manage ISO internal audits and, surveillance reviews, and customer due diligence requests.
  • Develop and publish quarterly security KPIs and KRIs, including metrics on incidents, risk aging, compliance, and awareness.
  • Lead regular security governance reviews with senior leadership, providing updates on posture, risks, and strategic initiatives
  • 5. People Leadership & Culture

  • Build and lead a high-performing infosec team across GRC, Risk, DLP, IR, and Awareness.
  • Partner cross-functionally with IT, ECS, Legal, HR, Comms, Risk & Compliance, and GTM enablement functions..
  • Promote a culture where security is everyone’s responsibility through communication, enablement, and collaboration.
  • Mentor, coach, and grow internal talent to scale the security program sustainably.
  • Create a job alert for this search

    Information Security • Vellore, IN

    Related jobs
    Delivery Head

    Delivery Head

    TRUGlobal • Vellore, IN
    Job Title : Delivery Head – IT Infrastructure Services.IT Infrastructure Delivery, P&L Management, and Client Engagement. Delivery Head (IT Infrastructure).IT infrastructure services (Cloud, Data Cen...Show more
    Last updated: 30+ days ago • Promoted
    Information Technology Infrastructure Specialist

    Information Technology Infrastructure Specialist

    R3TEK • Vellore, IN
    Plan and lead end-to-end infrastructure operations and projects.Design and develop infrastructure, procedures, and best practice standards for. Collaborate with business owners to translate core bus...Show more
    Last updated: 4 hours ago • Promoted • New!
    Director of Security

    Director of Security

    Birdeye • Vellore, IN
    Director of Security (Acting CISO / Head of Security).Director of Security (Acting CISO).This role blends executive-level responsibility with hands-on operational leadership, ideal for a high-calib...Show more
    Last updated: 4 hours ago • Promoted • New!
    Lead Security Engineer

    Lead Security Engineer

    Arcana • Vellore, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
    Last updated: 30+ days ago • Promoted
    Director of Internal Audit

    Director of Internal Audit

    EXECUTIVE HUNT • Vellore, IN
    Ther role is based out of Kuala Lumpur, Malaysia.Having experience of IT Audit is Mandatory.Candidate with 15+ years of experience. Only relevant candidates will be replied to.Show more
    Last updated: 1 day ago • Promoted
    Senior Vice President of Technology

    Senior Vice President of Technology

    Promaynov Advisory Services Pvt. Ltd • Vellore, IN
    Product Head, Tech Head, 7 Product, 11-12 Dev / Engg) with plans for expansion.Lead platform engineering, product technology, infrastructure, DevOps and QA functions. Strategic architect of start up p...Show more
    Last updated: 4 hours ago • Promoted • New!
    Security Engineer III

    Security Engineer III

    CME Group • Vellore, IN
    The Application Security Engineer leads efforts to enhance application security and the secure software development lifecycle. This individual is responsible for performing manual application securi...Show more
    Last updated: 4 hours ago • Promoted • New!
    Sr. Lead - Cloud Security

    Sr. Lead - Cloud Security

    Sycamore Informatics Inc. • Vellore, IN
    Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show more
    Last updated: 30+ days ago • Promoted
    IT Cloud infrastructure security manager

    IT Cloud infrastructure security manager

    Brigade Group • Vellore, IN
    Cloud Expertise (AWS and AZURE) : .Proven hands-on experience with AWS services (EC2, S3, IAM, VPC, CloudWatch, RDS) and Azure services (VMs, Storage, Azure Monitor). Strong understanding of cloud net...Show more
    Last updated: 4 hours ago • Promoted • New!
    Director Operations - AI-Powered Global Tech Startup

    Director Operations - AI-Powered Global Tech Startup

    SkillsCapital • Vellore, IN
    We are a high-growth startup revolutionizing how companies access top-tier tech talent.Our proprietary AI / ML / NLP-powered Talent Cloud and Blockchain-based vetting engine enable global clients to hi...Show more
    Last updated: 8 days ago • Promoted
    Assistant Manager Information Technology

    Assistant Manager Information Technology

    The Leela Gandhinagar • Vellore, IN
    Supports daily IT operations, manages and mentors junior staff, ensures system security / integrity, handles troubleshooting, implements policies, plans projects, and reports to senior management, re...Show more
    Last updated: 4 hours ago • Promoted • New!
    Enterprise Sales Manager (Cyber Security)

    Enterprise Sales Manager (Cyber Security)

    WhizHack Technologies • Vellore, IN
    The Cybersecurity Enterprise Sales Representative is responsible for identifying, prospecting, and closing sales opportunities within the enterprise sector. This role involves understanding clients'...Show more
    Last updated: 25 days ago • Promoted
    Vice President, Data Engineering & Architecture

    Vice President, Data Engineering & Architecture

    Three Across • Vellore, IN
    Role : - Vice President – Data Engineering & Architecture.We are seeking a hands-on and visionary leader to serve as Vice President – Data Engineering & Architecture. This role will drive digital tran...Show more
    Last updated: 13 days ago • Promoted
    Programme Manager - IP / SoC

    Programme Manager - IP / SoC

    Incube Consulting Ltd • Vellore, IN
    Type : Permanent, Full time, Onsite.We are looking for a highly motivated Technical Project and Program Manager to oversee complex. The ideal candidate will have strong technical understanding, excel...Show more
    Last updated: 4 hours ago • Promoted • New!
    Information Technology Risk Manager

    Information Technology Risk Manager

    National Payments Corporation Of India (NPCI) • Vellore, IN
    We are looking for Operational IT Risk professional who have good experience into IT Risk.Mode of Operation : work from office. Education : Engineering Background (BE / BTech into computer or equivalent...Show more
    Last updated: 4 hours ago • Promoted • New!
    Information Security Specialist

    Information Security Specialist

    ACL Digital • Vellore, IN
    Archer Information Security GRC Data Management.Type of resource : Consulting Based Services (CBS).Support the Corporate Information Security GRC team in managing and enhancing the qual-ity, integra...Show more
    Last updated: 4 hours ago • Promoted • New!
    Senior Infosec Engineer – Cloud & Security Solutions

    Senior Infosec Engineer – Cloud & Security Solutions

    IDfy • Vellore, IN
    IDfy is Asia’s leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech, we’re solving trust challenges, making compliance easy, fraud detection smarter, and onboard...Show more
    Last updated: 4 hours ago • Promoted • New!
    Lead Security Engineer

    Lead Security Engineer

    interface.ai • Vellore, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show more
    Last updated: 30+ days ago • Promoted