Ladders UP HR Solutions LLP - Connecting Right Talent Since 2016
Website:
laddersuphr.com
Job details:
Function Information Security / Information Technology
Location Corporate Office (Mumbai)
Role Chief Information Security Officer (CISO)
To establish, implement, and continuously enhance the Information Security framework of the
organization by safeguarding information assets, ensuring compliance with RBI/NHB regulations,
mitigating cyber risks, protecting customer data, and strengthening the organization’s
cybersecurity posture while supporting business growth and digital transformation initiatives.
Reporting - CEO /Chief Technology Officer
Key Responsibilities Areas
Information Security Strategy & Governance and Compliance
Establish Information Security policies, standards, procedures, and governance framework.
Present security posture and risk updates to Senior Management, Board, and IT Strategy Committee.
Ensure compliance with RBI and NHB Master Directions on Cyber Security
Coordinate internal and external regulatory audits and inspections.
Ensure timely closure of audit observations and CERT-IN advisories.
Support compliance with applicable privacy laws.
Information Security Risk Management
Implement endpoint security, email security, network security, and cloud security controls.
Ensure regular vulnerability assessments and penetration testing (VAPT) and remediation.
Recommend mitigation strategies, monitor KRI and maintain Information Risk Register.
Ensure protection of confidential customer data.
Security Operations
Review security architecture of applications.
Support cloud security implementation.
Ensure monitoring of critical systems, RCA for incidents.
Ensure timely incident reporting and conduct post-incident reviews.
Third Party & Vendor Risk Management
Assess security posture of outsourced vendors and technology partners.
Conduct Information Security Due Diligence.
Review vendor compliance.
Ensure contractual security clauses.
Business Continuity & Disaster Recovery
Support Business Continuity Planning (BCP).
Conduct Disaster Recovery (DR) drills.
Security Awareness
Develop organization-wide Information Security Awareness Program.
Deliver cybersecurity training.
Reporting & MIS
Prepare monthly Information Security Dashboard.
Report Cyber Security KPIs.
Present Board-level Information Security reports.
Qualification
Bachelor’s/Master’s degree in IT or Cyber Security
Experience
10 to 15 years of experience in Bank, Housing Finance Company, NBFC, Financial Services or BFSI organisation
Experience interacting with RBI/NHB regulators and Board-level Information Security Committees is highly desirable
Click on Apply to know more.