Padmi

Chief Information Security Officer

HyderabadPosted 2 months ago
Technology ManagementStaff+
Apply at Biz Hr It Solutions

Opens the source posting on naukri.com

Source description

About the role

View original

Position : Chief Information Security Officer (CISO) Department : Information Technology Reporting To : Managing Director Location : Corporate Office Hyderabad Employment Type: Full Time Grade : Senior Leadership Position Purpose Responsible for establishing, implementing, monitoring, and continually improving the organizations Information Security Management System (ISMS), cybersecurity governance framework, and Security Operations Center (SOC) oversight across Aarvee Engineering Consultants Limited. The role ensures protection of engineering project data, BIM/CAD, GIS & LiDAR systems, client information, cloud platforms, and business systems against cyber threats, ransomware, unauthorized access, and data leakage while ensuring compliance with ISO/IEC 27001, client cybersecurity requirements, DPDP requirements, and CERT-In advisories. Key Responsibilities Develop and implement enterprise-wide cybersecurity strategy, ISMS framework, and information security policies. Conduct cybersecurity risk assessments and maintain Information Security Risk Registers. Oversee SOC operations, SIEM monitoring, threat intelligence, incident escalation, vulnerability management, and ransomware preparedness. Ensure continuous monitoring of networks, servers, endpoints, cloud platforms, VPNs, remote project offices, and business applications. Lead cybersecurity incident response, digital forensics, disaster recovery, and business continuity activities. Ensure compliance with ISO/IEC 27001, Indian IT Act, DPDP requirements, client cybersecurity obligations, and CERT-In requirements. Coordinate VAPT activities, cybersecurity audits, and closure of audit findings. Ensure protection, backup, retention, secure transfer, and disposal of organizational information assets. Evaluate cybersecurity posture of vendors, consultants, cloud providers, and third-party service providers. • Cybersecurity Risk Register & SOC Governance Framework • SIEM Monitoring Reports & Incident Response Procedures • VAPT Reports & Vulnerability Closure Tracking • Business Continuity & Disaster Recovery Plans • Cybersecurity Dashboards, Threat Intelligence & MIS Reports Qualification & Experience • Bachelors degree in Computer Science / IT / Cybersecurity / Electronics or related discipline; Master’s degree preferred. • 12–15 years of experience in Information Security / Cybersecurity / IT Governance with minimum 5 years in leadership role. • Experience in ISO/IEC 27001 implementation, SOC/SIEM environments, and multi- location organizations preferred. • Exposure to engineering consultancy, infrastructure, BIM/GIS environments desirable. Preferred Certifications CISSP, CISM, CISA, ISO/IEC 27001 Lead Implementer/Lead Auditor, CEH, CompTIA Security+, CSA, GCIH, CySA+. Skills & Competencies ISMS & SOC management, SIEM monitoring, incident response, cybersecurity risk management, cloud/network security, vendor security assessment, leadership, analytical ability, decision- making, and stakeholder management. KPIs ISMS compliance status, MTTD & MTTR, vulnerability closure within SLA, reduction in cybersecurity incidents, SOC effectiveness, security awareness effectiveness, and disaster recovery testing success. Authority Authorized to recommend cybersecurity controls and investments, initiate cybersecurity investigations/audits, escalate critical cyber risks, enforce compliance with information security policies, and coordinate external cybersecurity assessments. Working Relationships Internal: Management, IMS, IT, HR, Finance, Project Managers, BIM/GIS Teams, Divisional Offices External: Clients, Certification Bodies, Cybersecurity Consultants, IT Vendors, Managed Security Service Providers (MSSPs), CERT-In empanelled agencies Specific Focus Areas JOB DESCRIPTION Conduct organization-wide cybersecurity awareness and phishing prevention programs. Key Deliverables Information Security Policy Manual & ISMS Documentation

One address, no account. We’ll tell you when matching roles go live.

More at Biz Hr It Solutions

Related open roles

View all roles