Chief Information Security Officer
Intellectual Capital HR Consulting Pvt. Ltd. · Mumbai, Maharashtra, India
Apply & track with Apply EdgeJob Opening – Chief Information Security Officer (CISO)Location: MumbaiExperience: 10+ YearsIndustry: Financial Services / Capital MarketsRole OverviewWe are looking for an experienced Chief Information Security Officer (CISO) to lead the organisation’s Information Security and Cybersecurity function. The role will be responsible for strengthening the information security framework, managing cyber risks, ensuring regulatory compliance, and protecting critical technology and information assets.Candidates should have strong experience within Capital Markets, Stock Broking, Investment Banking, Banking, NBFC, AMC or other regulated Financial Services organisations.Key ResponsibilitiesDevelop and implement the organisation’s Information Security & Cybersecurity strategy, policies and governance framework.Ensure compliance with applicable SEBI, RBI, CERT-In and other cybersecurity and information-security regulations.Lead Cyber Risk Assessments, VAPT and remediation governance.Manage Security Operations, SOC, SIEM, threat monitoring and incident response.Establish and periodically test Business Continuity Planning (BCP) and Disaster Recovery (DR) frameworks.Drive Information Security Risk Assessments, IT audits and regulatory/security audits and ensure timely closure of observations.Manage cybersecurity controls across networks, infrastructure, applications, cloud environments, endpoints and databases.Oversee Identity & Access Management (IAM), Data Loss Prevention (DLP), privileged access and data protection.Assess and manage third-party/vendor information-security risks.Report cybersecurity risks, incidents, KRIs and compliance status to senior management.Work closely with Technology, Risk, Compliance, Legal, Operations and Business teams to strengthen the overall security posture.Candidate Profile10+ years of experience in Information Security / Cybersecurity / Technology Risk.Financial Services / Capital Markets experience is required.Strong understanding of SEBI / RBI / CERT-In cybersecurity regulations applicable to regulated financial institutions.Hands-on understanding of SOC, SIEM, VAPT, Incident Response, IAM, DLP, BCP/DR and Cyber Risk.Experience handling IT/security audits, regulatory audits and internal/external auditors.Knowledge of security frameworks such as ISO 27001 and NIST.Strong stakeholder-management skills with the ability to engage with senior management, regulators, auditors and technology teams.Preferred CertificationsCISSP / CISM / CISA / ISO 27001 Lead Auditor or equivalent cybersecurity certifications preferred.