Information Security Manager

10 - 20 years

9 - 17 Lacs

Posted:9 hours ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

ob Title:

Role Category:

Department:

Industry Type:

Employment Type:

Job Summary

The Information Security Manager will be responsible for managing information security, risk, compliance, and customer/vendor security engagements. This role involves responding to customer security queries and RFPs, reviewing contracts, managing audits, vendor risk assessments, and ensuring alignment with global security and privacy standards.

Roles & Responsibilities

  • Accountable for interpreting and responding to

    RFI/RFPs

    and customer security-related queries.
  • Review

    Contracts, MSAs, and DPAs

    to ensure inclusion of appropriate risk-related clauses such as security controls, data privacy, liability, and business continuity.
  • Assess

    vendors and suppliers

    to identify risks related to cybersecurity, data protection, regulatory compliance, and operational resilience.
  • Participate in meetings with

    customers, partners, and vendors

    , handling all security and privacy-related discussions.
  • Collaborate closely with

    IT, HRD, L&D, and other cross-functional teams

    to close customer audit observations.
  • Track and manage

    external advisories and threat intelligence

    until closure.
  • Own and manage

    Enterprise Risk Management (ERM)

    activities.
  • Lead and manage a team, ensuring effective execution of security and compliance initiatives.

Eligibility Criteria / Qualifications

Experience

  • Minimum

    5 years of experience

    in a customer/vendor-facing role involving contract review and security compliance.
  • 7+ years of experience

    in audit management, quality assurance, compliance, and risk management.
  • Proven experience in managing

    customer or external audits

    .
  • Minimum

    5 years of people management experience

    , managing a team of

    3+ members

    .

Technical & Domain Expertise

  • In-depth knowledge of security and compliance standards/frameworks including:
    • ISO 9000, ISO 27001, PCI DSS, SOC 2, CMMi, NIST, HIPAA, GDPR, CCPA

  • Hands-on experience leading implementations of standards such as:
    • ISO 27001, PCI-DSS, SOC 2

  • Working knowledge of privacy regulations such as

    GDPR, PDPD, DPDPA

    (preferred).

Skills & Competencies

  • Excellent

    communication and interpersonal skills

    .
  • Strong

    analytical ability

    with high attention to detail.
  • Ability to work effectively with

    cross-functional teams

    .

Certifications (Preferred)

  • ISO 9001 Lead Auditor
  • ISO 27001 Lead Implementer
  • CEH or equivalent Information Security / Quality certifications

Education

  • UG:

    B.Tech / B.E. in Computer Science, Information Technology, Cyber Security, or related fields
  • PG:

    MCA (Any Specialization) or MBA / PGDM in Information Technology

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You