Source description
About the role
Role Overview: As an experienced Information Security professional, you will be responsible for developing and continuously improving the enterprise information security strategy, policies, and procedures aligned with business objectives. You will lead the implementation and maintenance of the ISO 27001 Information Security Management System (ISMS) and ensure ongoing compliance with relevant regulatory standards. Additionally, you will oversee security operations, regulatory compliance management, risk management, team leadership, technology solutions management, reporting, and communication. Key Responsibilities: - Develop, execute, and continuously improve the enterprise information security strategy, policies, and procedures aligned with business objectives. - Lead the implementation and maintenance of the ISO 27001 Information Security Management System (ISMS) and ensure ongoing compliance with regulatory standards like GDPR, HIPAA, FDA 21 CFR Part 11, PCI-DSS, NIST, and SOC 2. - Conduct internal audits, gap analyses, and readiness assessments for certifications, and develop policies, procedures, and controls to maintain compliance. - Oversee SOC operations, SIEM monitoring, threat detection, and incident response. - Lead vulnerability management and penetration testing programs. - Ensure compliance with pharmaceutical and healthcare regulatory requirements. - Manage enterprise risk assessment and mitigation strategies, including vulnerability management, threat intelligence, and incident response. - Lead, mentor, and manage the IT Security team, providing guidance, performance management, and professional development. - Evaluate, recommend, and oversee the deployment of cybersecurity solutions, including network security, data protection, endpoint security, and identity and access management (IAM). - Prepare and present detailed reports on security metrics, risk posture, compliance status, and remediation plans to senior leadership and stakeholders. Qualifications Required: - Bachelors or Masters degree in Computer Science, Information Security, or related field. - 12+ years of experience in information security. - Strong knowledge of cybersecurity frameworks, risk management, and regulatory compliance. - Hands-on experience with security technologies such as SIEM, firewalls, IDS/IPS, DLP, IAM, encryption, endpoint security, and cloud security (AWS, Azure, GCP). - Proven experience in incident response, forensic investigations, vulnerability management, and business continuity planning. Additional Details of the Company: Omit this section as no additional details of the company are mentioned in the provided Job Description. Role Overview: As an experienced Information Security professional, you will be responsible for developing and continuously improving the enterprise information security strategy, policies, and procedures aligned with business objectives. You will lead the implementation and maintenance of the ISO 27001 Information Security Management System (ISMS) and ensure ongoing compliance with relevant regulatory standards. Additionally, you will oversee security operations, regulatory compliance management, risk management, team leadership, technology solutions management, reporting, and communication. Key Responsibilities: - Develop, execute, and continuously improve the enterprise information security strategy, policies, and procedures aligned with business objectives. - Lead the implementation and maintenance of the ISO 27001 Information Security Management System (ISMS) and ensure ongoing compliance with regulatory standards like GDPR, HIPAA, FDA 21 CFR Part 11, PCI-DSS, NIST, and SOC 2. - Conduct internal audits, gap analyses, and readiness assessments for certifications, and develop policies, procedures, and controls to maintain compliance. - Oversee SOC operations, SIEM monitoring, threat detection, and incident response. - Lead vulnerability management and penetration testing programs. - Ensure compliance with pharmaceutical and healthcare regulatory requirements. - Manage enterprise risk assessment and mitigation strategies, including vulnerability management, threat intelligence, and incident response. - Lead, mentor, and manage the IT Security team, providing guidance, performance management, and professional development. - Evaluate, recommend, and oversee the deployment of cybersecurity solutions, including network security, data protection, endpoint security, and identity and access management (IAM). - Prepare and present detailed reports on security metrics, risk posture, compliance status, and remediation plans to senior leadership and stakeholders. Qualifications Required: - Bachelors or Masters degree in Computer Science, Information Security, or related field. - 12+ years of experience in information security. - Strong knowledge of cybersecurity frameworks, risk management, and regulatory compliance. - Hands-on experience with security technologies such as SIEM, fir
More at Sai Life Sciences Limited
Related open roles
Engineering @R&D Lab - AM/DM - Shameerpet
Hyderabad
AM/ DM - Process Engineer - Designing (ASPEN)
Hyderabad
Civil Lead - Projects, AM/DM - Bidar
India
Quantity Engineer/Billing Engineer - Projects - AM/DM - Corporate
Hyderabad
Network Engineer
India
Deputy Manager - Instrumentation Lead - API RnD - Shameerpet
Hyderabad