Director of Information Security and Privacy (InfoSec)

10 - 14 years

32 - 37 Lacs

Posted:8 months ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Leena AI is seeking a visionary and accomplished

Director of Security & Privacy Engineering

to lead our efforts in protecting sensitive data, ensuring compliance, and building a robust security posture. This is a pivotal role reporting directly to the CTO & CEO with the responsibility of ensuring data security, privacy, and compliance across all customers. You will play a critical role in defining and executing a forward-thinking security strategy to protect sensitive data, ensure regulatory compliance, and respond to an evolving threat landscape.

Responsibilities:

  • Develop and implement a comprehensive security and privacy program, encompassing policies, procedures, standards, and controls to safeguard data and systems.
  • Incident Management & Risk Mitigation - Lead the charge on detecting, responding to, and mitigating security and privacy incidents. Ensure business continuity through proactive risk management and threat intelligence.
  • Conduct regular risk assessments to identify vulnerabilities and prioritize security initiatives.
  • Define and execute quarterly business goals (QBRs) specific to security and privacy, collaborating with cross-functional teams.
  • Provide expert guidance and support to Sales, pre-sales, legal, and engineering teams on security and privacy matters.
  • Build and lead a high-performing team of security engineers.
  • Handle customer inquiries and concerns related to information security and privacy.
  • Manage all security operations, including vulnerability management, risk management, SIEM, and internal SOC.
  • Stay abreast of evolving global and regulatory requirements and proactively ensure Leena AI meets compliance standards.
  • Foster relationships with external security partners, legal advisors, and regulators to advance Leena AIs security and privacy objectives.

Qualifications:

  • 10+ years of leadership experience in security, information security, privacy, or compliance roles in enterprise SaaS or cloud environments.
  • Expertise in global compliance frameworks such as GDPR, HIPAA, CCPA, SOC 2, ISO 27001, and NIST.
  • Strong cloud security knowledge, especially in AWS and multi-cloud environments..
  • Experience leading Security Operations Centers (SOC), incident response, and vulnerability management.
  • Exceptional communication, problem-solving, and critical thinking skills.
  • Exceptional leadership and communication skills to guide diverse teams, collaborate cross-functionally, and engage with customers and regulators.
  • Bachelor's degree in a related field; Master's degree preferred.

Workplace TypeHybrid
Employment TypeFull-time
Experience Leveldirector-vp
Work Experience (years)10 - 14 years
EducationBachelor's Degree
Skills
securityiso 27001soc 2 compliancecomplianceriskrisk managementvulnerability managementinformation securityteam leadershipcloud security (aws, multi-cloud environments)gdpr compliancecustomer engagementsecurity and privacy policies and proceduressecurity operations center (soc) managementcompliance frameworks (gdpr, hipaa, ccpa, soc 2, iso 27001, nist)incident responseregulatory complianceleadership and communicationsecurity and privacy program development