Key Responsibilities: Security Strategy & Awareness - Develop and lead security awareness programs for employees.
Maintain and report on the organization's overall security posture to leadership. Risk Assessment & Mitigation - Conduct regular risk assessments to identify vulnerabilities and threats.
Evaluate security risks associated with projects, vendors, and technologies.
Recommend and prioritize security measures to mitigate risks.
Incident
Response & Compliance - Lead responses to security incidents (identification, containment, eradication, recovery, post-incident analysis).
Develop and maintain incident response plans; conduct tabletop exercises.
Collaborate with legal, communications, and management teams for breach notifications and regulatory reporting. Operations & Technology Management - Oversee day-to-day operations of security technologies (SIEM, firewalls, endpoint security, intrusion detection).
Monitor security events continuously and respond as needed.
Maintain and optimize vulnerability management programs (patching and remediation). Team Leadership & Collaboration - Build and mentor a team-oriented, skilled security team.
Work with IT and other departments to integrate security into all system development and operational processes. Regulatory & Industry Compliance - Ensure compliance with relevant laws, regulations, and industry standards for data protection and cybersecurity.
Maintain documentation for audits, certifications, and external assessments.
Coordinate with external auditors and regulators.
Continuous
Improvement & Career development - Stay current on emerging security threats, vulnerabilities, and technologies.
Continuously evaluate and improve security processes, policies, and tools.
Participate in industry forums, conferences, and qualified groups to enhance knowledge and best practices.
📌 Manager Information Security Pune
🏢 Easebuzz
📍 Pune