05 Aug
|
Biz Hr It Solutions
|
Secunderabad
05 Aug
Biz Hr It Solutions
Secunderabad
Position : Chief Information Security Officer (CISO)
Department : Information Technology
Reporting To : Managing Director
Location : Corporate Office Hyderabad
Employment Type: Full Time
Grade : Senior Leadership
Position Purpose
Responsible for establishing, implementing, monitoring, and continually improving the organizations Information Security Management System (ISMS), cybersecurity governance framework, and Security Operations Center (SOC) oversight across Aarvee Engineering Consultants Limited. The role ensures protection of engineering project data, BIM/CAD, GIS & LiDAR systems, client information, cloud platforms, and business systems against cyber threats, ransomware, unauthorized access, and data leakage while ensuring compliance with ISO/IEC 27001, client cybersecurity requirements, DPDP requirements, and CERT-In advisories.
Key Responsibilities
Develop and implement enterprise-wide cybersecurity strategy, ISMS framework, and information security policies.
Conduct cybersecurity risk assessments and maintain Information Security Risk Registers.
Oversee SOC operations, SIEM monitoring, threat intelligence, incident escalation, vulnerability management, and ransomware preparedness.
Ensure continuous monitoring of networks, servers, endpoints, cloud platforms, VPNs, remote project offices, and business applications.
Lead cybersecurity incident response, digital forensics, disaster recovery, and business continuity activities.
Ensure compliance with ISO/IEC 27001, Indian IT Act, DPDP requirements, client cybersecurity obligations, and CERT-In requirements.
Coordinate VAPT activities, cybersecurity audits, and closure of audit findings.
Ensure protection, backup, retention, secure transfer, and disposal of organizational information assets.
Evaluate cybersecurity posture of vendors, consultants,
cloud providers, and thirdparty service providers.
Qualification & Experience
Bachelors degree in Computer Science / IT / Cybersecurity / Electronics or related discipline; Masters degree preferred.
1215 years of experience in Information Security / Cybersecurity / IT Governance with minimum 5 years in leadership role.
Experience in ISO/IEC 27001 implementation, SOC/SIEM environments, and multilocation organizations preferred.
Exposure to engineering consultancy, infrastructure, BIM/GIS environments desirable.
Preferred Certifications
CISSP, CISM, CISA, ISO/IEC 27001 Lead Implementer/Lead Auditor, CEH, CompTIA Security+, CSA, GCIH, CySA+.
Skills & Competencies
ISMS & SOC management, SIEM monitoring, incident response, cybersecurity risk management, cloud/network security, vendor security assessment, leadership, analytical ability, decisionmaking, and stakeholder management.
KPIs
ISMS compliance status, MTTD & MTTR, vulnerability closure within SLA, reduction in cybersecurity incidents, SOC effectiveness, security awareness effectiveness, and disaster recovery testing success.
Authority
Authorized to recommend cybersecurity controls and investments, initiate cybersecurity investigations/audits, elevate critical cyber risks, enforce compliance with information security policies, and coordinate external cybersecurity assessments.
Working Relationships
Internal: Management, IMS, IT, HR, Finance, Project Managers, BIM/GIS Teams, Divisional Offices.
External: Clients, Certification Bodies, Cybersecurity Consultants, IT Vendors, Managed Security Service Providers (MSSPs), CERTIn empanelled agencies.
Specific Focus Areas
Conduct organizationwide cybersecurity awareness and phishing prevention programs.
Key Deliverables
Information Security Policy Manual & ISMS Documentation. .
📌 Chief Information Security Officer (Secunderabad)
🏢 Biz Hr It Solutions
📍 Secunderabad