04 Oct
|
Galytix
|
Gurugram
Business Overview:
Galytix (GX) is delivering Agentic AI for financial services.
Founded in 2015 by credit and insurance experts together with world-class AI engineers, GX' financial services specialised AI Agents empower credit and risk professionals with a trusted and personalised agent delivering a step change in productivity and decision-making.
Built for Financial Institutions. With Financial Institutions.
GX' Agentic AI technology, built in partnership with global FIs, implements a multi-model approach, combining industry-specific data and domain knowledge with 'human in the loop' oversight, delivering trustworthy outcomes.
Our Specialised AI Agents deliver 30 hours work in 30 minutes.
GX' AI Agents are already helping banks and insurers gain new insights into their customers, reduce costs, automate workflows, and transform teams' day-to-day work experience.
Detailed Role Description:
We are looking for an experienced, senior security and governance professional to take up the role of Head of Information Security - India. This is a senior managerial position accountable for governance, risk and compliance (GRC) and for the overall information security posture of Galytix India.
This role reports to the Global CISO on all information security, GRC and ISMS matters, and reports locally to the Head of the India Branch for day-to-day, in-country operational and regulatory matters. The incumbent will work closely with the Senior leadership and technical and business functions.
The ideal candidate combines strong GRC and information security expertise with governance discipline, stakeholder management and team leadership capability, and is comfortable operating within a global ISMS and a dual (functional and local) reporting structure.
The broad responsibilities are as follows:
Governance, Risk & Compliance
· Adopt and implement the Galytix ISMS in full across the India and ensure that the information security controls, procedures and evidence are consistent with the global ISMS.
· Lead or support ISO 27001, client, statutory and internal audits for the India branch, and coordinate responses to client security questionnaires and due-diligence reviews.
· Maintain risk registers, control documentation and evidence repositories to demonstrate India's compliance and audit readiness.
· Report risk status, incidents, control effectiveness, audit findings and improvement plans for India to the Global CISO on a regular basis or as required.
Security Posture Oversight (India)
· Own the day-to-day security posture of the India branch: security monitoring, vulnerability management, and remediation tracking, escalating and coordinating incident response.
· Oversee identity and access management, privileged access and periodic access reviews for India-based systems and personnel, per the ISMS.
· Coordinate India-based business continuity and disaster recovery readiness with the global Business Continuity Policy and its designated roles.
· Deliver security awareness training and phishing simulations to India-based personnel.
Leadership & Stakeholder Management
· Build, lead and develop the GRC and information security capability in India.
· Partner with the Global CISO and global technical functions to maintain a consistent security posture and ISMS conformance across Galytix locations.
· Work closely with HR on joiner, mover and leaver controls, employee investigations and security awareness in India.
· Collaborate with Legal, Compliance and the DPO on data-protection, contractual and regulatory matters affecting India.
· Promote a robust culture of security ownership and responsible technology use across the India branch.
Reporting Line
· Organisationally and functionally reports to the Global CISO on all information security, GRC and ISMS matters.
· Locally reports to the Head of the India Branch for day-to-day, in-country operational and people matters.
Qualifications and Experience
· Bachelor's or master's degree in Computer Science, Information Technology, Cybersecurity, Risk Management or a related field.
· Approximately 8-9 years of relevant experience, with significant experience in information security governance, risk and compliance.
· At least five years of experience in a leadership or managerial position.
· Strong understanding of information security governance, risk management, ISO 27001 and applicable India data-protection and cybersecurity requirements (e.g. the Digital Personal Data Protection Act, CERT-In reporting obligations).
· Experience implementing or operating within a global information security management system across a local entity, including working within a policy-approval and change-governance process.
· Demonstrated experience with security audits, risk registers, control documentation and regulatory/client compliance reviews.
· Experience coordinating security incidents, investigations and confidential-data risks with a central/global security function.
· Working knowledge of ISO 27001 Controls, other frameworks a bonus.
· Strong governance, stakeholder management and communication skills.
📌 Head of Security (Gurugram)
🏢 Galytix
📍 Gurugram