03 Sep
|
undisclosed
|
Pune
Location: Pune, India
Function: Information Security
Level: L3
Employment Type: Full-time, Client-side deployment
Role Purpose The Information Security Communications Officer is responsible for delivering clear, engaging, and effective communications that strengthen security awareness and promote secure behaviors across the organization.
The role partners with Information Security subject matter experts, Global Communications, business stakeholders, and leadership to translate complex security topics into relevant and actionable communications. The role also supports security awareness campaigns, training initiatives, organizational change, and measurement of employee engagement and program effectiveness.
Key Responsibilities
- Security Communications & Campaigns: Plan and deliver Information Security communications, awareness campaigns, and employee engagement initiatives aligned with security priorities, risks, and organizational objectives.
- Content Development: Create clear and engaging content across multiple channels, including emails, intranet articles, newsletters, presentations, FAQs, digital signage, videos, leader toolkits, and collaboration platforms.
- Technical Content Simplification: Partner with Information Security SMEs to translate complex cybersecurity and technical concepts into simple, relevant, and actionable communications for technical and non-technical audiences.
- Security Awareness & Culture: Coordinate awareness initiatives such as mandatory security training, phishing simulations, secure coding awareness, security ambassador programs, awareness events, and security culture campaigns.
- Communication Planning: Develop and maintain communication and engagement plans, editorial calendars, templates, content repositories, and campaign assets.
- Stakeholder Collaboration: Partner with Global Communications, Information Security teams, HR, Learning & Development, Technology, and other stakeholders to ensure consistent messaging, branding, timing, and channel selection.
- Leadership Communications: Develop presentations, briefing materials, talking points, leadership updates, and other communications to support senior leaders and key Information Security initiatives.
- Channel Management: Manage and continuously improve Information Security communication channels, including SharePoint, Microsoft Teams communities, newsletters, digital displays, and other employee communication platforms.
- Measurement & Continuous Improvement: Track and analyze communication, training, and engagement metrics, surveys, employee feedback, and campaign results to assess effectiveness and identify opportunities for improvement.
- Change Communications: Develop and deliver communications supporting the introduction or change of security tools,
policies, processes, standards, regulatory requirements, and other Information Security initiatives.
Key Accountabilities / Success Measures Success in this role will be measured through:
- Timely and effective delivery of security communication and awareness campaigns.
- Employee reach, participation, and engagement with security communications.
- Completion and engagement rates for security awareness and training initiatives.
- Improvement in employee security awareness and security-conscious behaviors.
- Effectiveness of phishing awareness and related employee education campaigns.
- Quality, clarity, consistency, and accuracy of communication content.
- Stakeholder satisfaction and effectiveness of cross-functional collaboration.
- Use of data and employee feedback to continuously improve communication and awareness activities.
Required Qualifications & Experience
- Bachelor’s degree in Communications, Marketing, Journalism, Business, Information Technology, Cybersecurity, or a related discipline.
- Approximately 4–7 years of relevant professional experience in corporate communications, internal/employee communications, cybersecurity awareness, technology communications, change communications, or a related area.
- Demonstrated experience developing and delivering communications or engagement campaigns in a large, matrixed, or global organization.
- Strong writing, editing, proofreading, storytelling, and presentation skills.
- Demonstrated ability to simplify complex or technical information for diverse audiences.
- Experience managing multiple communication activities and priorities with limited supervision.
- Strong stakeholder management skills and experience working across functions and geographies.
- Experience measuring communication effectiveness using engagement data, surveys, feedback, or other metrics.
Information Security Knowledge The successful candidate should have a working understanding of Information Security and cybersecurity concepts. This may include:
- Security awareness and employee security behaviors.
- Phishing and social engineering.
- Password and authentication security.
- Data protection and information handling.
- Cybersecurity risks and common threats.
- Security policies and compliance requirements.
- Secure use of technology and collaboration tools.
Deep technical cybersecurity expertise is not required; however, the candidate must be comfortable working with technical SMEs and converting security concepts into effective employee communications. Skills & Competencies
- Excellent written and verbal communication skills.
- Strong content development, editing, and storytelling capability.
- Ability to communicate effectively with technical and non-technical audiences.
- Robust planning, organization, and project coordination skills.
- Stakeholder management and relationship-building skills.
- High attention to detail and commitment to communication quality.
- Ability to work independently and manage competing priorities.
- Analytical mindset with the ability to interpret engagement metrics and employee feedback.
- Collaborative approach and ability to work effectively in a global, cross-functional environment.
- Ability to handle sensitive or confidential Information Security topics appropriately.
Tools & Platforms Experience with some of the following is desirable:
- Microsoft SharePoint
- Microsoft Teams
- Microsoft PowerPoint
- Microsoft Outlook
- Content management and employee communication platforms
- Learning Management Systems (LMS)
- Security awareness and phishing simulation platforms
- Survey and employee feedback tools
- Basic reporting and analytics tools
Preferred Qualifications
- Previous experience within an Information Security, Cybersecurity, Technology, Risk, or Compliance environment.
- Experience supporting enterprise security awareness and culture programs.
- Experience with change management communications for technology, security, or policy implementations.
- Familiarity with security awareness platforms, phishing simulation tools, or LMS platforms.
- Awareness of cybersecurity frameworks, regulatory requirements, data protection, or security culture practices.
- Relevant training or certification in communications, change management, cybersecurity, or security awareness is advantageous but not mandatory.
Key Stakeholders The role will regularly collaborate with:
- Information Security and Cybersecurity teams
- Information Security leadership
- Global/Internal Communications
- Technology and IT teams
- Risk and Compliance
- HR and Learning & Development
- Business and functional stakeholders
- Security champions/ambassadors
- External vendors and service providers, where applicable
Candidate Profile The ideal candidate is a strong communicator who can combine communications expertise with an understanding of cybersecurity. They are comfortable engaging with technical specialists, asking the right questions, and transforming complex security information into communications that employees can easily understand and act upon.
📌 Information Security Officer (Pune)
🏢 undisclosed
📍 Pune