As a Chief Information Security Officer at a renowned NBFC in Manesar, Gurgaon, you will play a crucial role in leading and enhancing the organization's information security and cyber security framework. Your responsibilities will include:
• Defining and implementing the organization's information security and cyber security strategy to align with business objectives and regulatory requirements.• Establishing and maintaining robust security governance frameworks, policies, and standards across the enterprise.• Ensuring full compliance with RBI cyber security guidelines, data protection regulations, and regulatory frameworks applicable to NBFCs and financial institutions.• Overseeing the implementation of cyber threat monitoring systems, vulnerability management programs, and incident detection mechanisms.• Leading and managing cyber incident response processes for rapid containment, mitigation, and recovery from security events.• Overseeing the security of cloud infrastructure, enterprise applications, and core technology platforms with best practices in architecture and operational security.• Implementing strong Identity and Access Management (IAM) frameworks and ensuring proper governance of user access across critical systems.• Establishing effective data protection controls, including encryption, data classification, and secure data handling practices.• Managing and mitigating third-party and vendor security risks to ensure compliance with the organization's security standards.• Driving security awareness and training programs to promote a strong culture of cyber security and risk awareness.• Monitoring evolving cyber threats, vulnerabilities, and emerging technologies to proactively enhance the organization's security posture.• Providing regular updates to executive leadership and board-level committees regarding cyber security risks, incidents, and security strategy initiatives.Qualifications and Experience required for this role include:
• 15-20 years of experience in information security, cyber security, or technology risk management, with significant leadership exposure.• Proven experience as a CISO or Deputy CISO within Banks, NBFCs, or financial services organizations.• Deep understanding of RBI cyber security frameworks, regulatory compliance requirements, and financial sector security practices.• Demonstrated experience in leading cyber incident response programs and regulatory engagements.• Strong leadership capabilities with the authority and independence of judgment required to manage enterprise security risks.• Hands-on experience with cloud security frameworks, zero-trust architectures, and modern security technologies.• Strong knowledge of data privacy and data protection frameworks.• Experience working closely with board-level committees and senior leadership on information security governance.• Relevant industry certifications such as CISM, CISSP, CRISC, or equivalent are highly preferred. As a Chief Information Security Officer at a renowned NBFC in Manesar, Gurgaon, you will play a crucial role in leading and enhancing the organization's information security and cyber security framework. Your responsibilities will include:• Defining and implementing the organization's information security and cyber security strategy to align with business objectives and regulatory requirements.• Establishing and maintaining robust security governance frameworks, policies, and standards across the enterprise.• Ensuring full compliance with RBI cyber security guidelines, data protection regulations, and regulatory frameworks applicable to NBFCs and financial institutions.• Overseeing the implementation of cyber threat monitoring systems, vulnerability management programs, and incident detection mechanisms.• Leading and managing cyber incident response processes for rapid containment, mitigation, and recovery from security events.• Overseeing the security of cloud infrastructure, enterprise applications, and core technology platforms with best practices in architecture and operational security.• Implementing strong Identity and Access Management (IAM) frameworks and ensuring proper governance of user access across critical systems.• Establishing effective data protection controls, including encryption, data classification, and secure data handling practices.• Managing and mitigating third-party and vendor security risks to ensure compliance with the organization's security standards.• Driving security awareness and training programs to promote a strong culture of cyber security and risk awareness.• Monitoring evolving cyber threats, vulnerabilities, and emerging technologies to proactively enhance the organization's security posture.• Providing regular updates to executive leadership and board-level committees regarding cyber security risks, incidents, and security strategy initiatives.Qualifications and Experience required for this role include:
• 15-20 years of ex