29 Aug
|
Capitalmind Mutual Fund
|
Bengaluru
29 Aug
Capitalmind Mutual Fund
Bengaluru
Company Description:
Capitalmind Mutual Fund is a SEBI-registered mutual fund that focuses on quantitative, rules-based factor investing across equity, debt, and commodities. The firm emphasizes disciplined, process-driven investing to support long-term wealth compounding for its investors. Investment decisions are made using data-backed quantitative models with continuous human oversight and refinement as recent evidence emerges.
Its funds, including Flexi Cap, Liquid, Multi Asset Allocation, and Arbitrage, are designed for investors seeking a consistent, evidence-based approach to wealth creation.
Role Purpose:
The incumbent will play a pivotal role in strengthening the organization's information security governance framework and regulatory compliance. Working closely with the Executive Director and the Tech / Information Security leadership, this role will drive cyber governance initiatives, manage regulatory audits, coordinate with internal and external stakeholders, oversee security compliance activities, and ensure adherence to SEBI's Cyber Security and Cyber Resilience Framework (CSCRF), CERT-In requirements, and other applicable regulatory standards.
Key responsibilities:
- Coordinate Cyber Audits, System Audits,, and VAPT engagements, including planning, stakeholder coordination, audit execution,, and closure.
- Track and drive closure of audit observations by working closely with internal teams.
- Manage the Information Security governance calendar, ensuring timely completion of all regulatory and compliance activities.
- Prepare and coordinate submission of reports to SEBI, CERT-In, Board Committees, and other regulatory authorities.
- Coordinate with auditors, regulators,
technology teams, and external vendors for information security compliance requirements.
- Track and review security deliverables from vendors, including audit reports, VAPT reports, SBOMs,, and other security artefacts.
- Coordinate Information Security Committee meetings, track action items and ensure timely closure.
- Perform periodic compliance checks and support implementation and review of information security policies, standards, and SOPs.
- Support internal audit activities and maintain governance documentation.
Desired Candidate Profile:
- Bachelor's degree in Engineering, Computer Science, Information Technology or a related discipline.
- 6–10 years of experience in Information Security Governance, Cyber Security, GRC or Information Security Compliance within Banking, Financial Services, Insurance or other regulated industries.
- Strong understanding of Information Security Governance, Cyber Audits, VAPT, regulatory compliance and security standards.
- Familiarity with SEBI CSCRF, CERT-In guidelines and ISO 27001 will be an advantage.
- Excellent stakeholder management, communication and project coordination skills.
Preferred certifications:
- ISO 27001 Lead Implementer or Lead Auditor
- CISA
- CRISC
- CISSP (preferred, not mandatory)
- CEH (good to have)
- ISO 22301 (good to have)
Success Measures:
- Timely completion of all regulatory submissions.
- Zero overdue audit observations.
- Successful completion of Cyber Audit, System Audit and VAPT within defined timelines.
- Compliance with SEBI CSCRF and CERT-In requirements.
- Effective closure of committee action items.
- High-quality governance reporting to senior management and the Board
📌 Infosec Engineer (Bengaluru)
🏢 Capitalmind Mutual Fund
📍 Bengaluru