
Information Security Manager
Role Summary:
The Information Security Manager will serve as the subject-matter expert for cybersecurity protection, detection, response, and recovery. This role is accountable for guiding the design, implementation, and continuous improvement of an enterprise-wide security framework.
Key Responsibilities:
- Serve as the primary point of contact between the internal information security team, external security partners, and customers.
- Manage internal and external security team members, including third-party security service providers.
- Guide the IT function and business units in developing and maintaining a comprehensive enterprise security framework.
- Lead the development of baseline infrastructure and application hardening guides based on industry best practices.
- Assess business processes, technology, and IT architecture to evaluate risk posture and determine appropriate security models.
- Lead the design, implementation, and maintenance of an ISO 27001, PCI-DSS, DPDP, and GDPR compliant security framework.
- Own and maintain security systems and controls, including firewalls, DLP, patch management, encryption, and vulnerability scanning.
- Ensure round-the-clock monitoring of all security operations and infrastructure.
- Develop and maintain a detailed Security Incident Response Program.
- Design and deliver information security awareness training programs.
Qualifications & Skills:
- Bachelor's degree in Information Technology, Computer Science, or an equivalent discipline.
- Strong technical knowledge of applications, systems, network, and infrastructure.
- Working knowledge of cloud security across AWS, GCP, and Azure.
- Hands-on proficiency with EDR, DLP, Anti-Virus, Vulnerability Management, and SIEM platforms.
- Demonstrated expertise in developing and executing Incident Response Playbooks.
- Hands-on exposure to Information Security Management Systems such as ISO 27001, NIST CSF, and NCIIPC guidelines is mandatory.
- Excellent communication skills, with the ability to coordinate effectively across diverse stakeholders.
Experience:
- 12 to 14 years of relevant experience in information security or cybersecurity roles.
Didn’t find the job appropriate? Report this Job