INFORMATION SECURITY MANAGER (ISM)

7 years

0 Lacs

Posted:6 days ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Company:

Location:

Experience Required:

Type:

Industry:


ABOUT MEON TECHNOLOGIES

Meon Technologies is a leading digital onboarding and KYC automation platform offering Aadhaar eKYC, PAN Fetch, Digilocker, Penny Drop, eSign, Face Match, Video Verification, Corporate KYC, CRM modules, and multiple fintech APIs.


ROLE OVERVIEW

The Information Security Manager (ISM) will own Meon’s complete Information Security, Data Privacy, and Compliance framework aligned with:

  • ISO 27001
  • SOC 2 Type II
  • CERT-In
  • DPDP Act

critical leadership role



KEY RESPONSIBILITIES


1. Information Security Compliance

  • Lead ISO 27001 implementation & maintenance
  • Drive SOC 2 Type II compliance
  • Ensure CERT-In compliance (logs, reporting, time sync)
  • Ensure DPDP Act readiness (consent, privacy, DPIA)
  • Prepare evidence, conduct internal audits, coordinate external audits

2. Policy & Process Development

  • Draft & enforce all InfoSec policies
  • Access control, password policy, vendor security, BCP/DR
  • Incident response & escalation matrix
  • Secure coding & release guidelines

3. Risk Management

  • Maintain risk register
  • Perform quarterly risk assessments
  • Identify vulnerabilities and drive remediation with DevOps/Tech

4. Technical Security Oversight

  • Work with DevOps on AWS security
  • API security (JWT, whitelisting, rate limits)
  • WAF, firewalls, SIEM, monitoring
  • Server/DB hardening
  • Secrets management

5. Data Protection & Privacy

  • Ensure secure handling of Aadhaar, PAN, CKYC, bank data
  • Enforce data classification
  • Implement privacy-by-design in all new products

6. Employee Security & Awareness

  • Conduct monthly security training
  • Run phishing simulations
  • Enforce MFA and least-privilege access

7. Incident Response & Monitoring

  • Create and manage Incident Response Plan
  • Lead investigations during any security alert/breach
  • Maintain logs, evidence, RCA, preventive measures

8. Vendor & Third-Party Security

  • Conduct third-party risk assessments
  • Ensure contracts include necessary security clauses



REQUIRED SKILLS & EXPERIENCE


Must Have

  • 3–7 years in Information Security
  • Hands-on ISO 27001 or SOC 2 experience
  • Strong AWS/Azure/cloud security experience
  • API security understanding
  • Knowledge of Aadhaar/KYC/Digilocker/eSign compliance
  • Experience with SIEM, WAF, VAPT


Good To Have

  • ISO 27001 Lead Auditor / CISM / CISSP
  • Experience in fintech/KYC/compliance-heavy SaaS


WHAT WE OFFER

  • Leadership role with high ownership
  • Opportunity to build InfoSec from scratch
  • Exposure to large BFSI clients
  • Fast-growing environment


HOW TO APPLY

HR@meon.co.in

Subject:

Location:

Mock Interview

Practice Video Interview with JobPe AI

Start DevOps Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You