Job Title: CISO | Location: Bangalore (On-site; full-time)
Role Description
As the CISO, you will be responsible for developing and implementing an organization-wide information security strategy and framework. You will lead a team of security professionals and work closely with other stakeholders to protect the organization's information assets from security threats and ensure compliance with applicable regulations and industry best practices.
Key Responsibilities
- Information Security Strategy: Develop and implement a comprehensive information security strategy aligned with the organization's goals and objectives. Ensure the strategy addresses current and emerging security threats, vulnerabilities, and risks.
- Security Governance: Establish and maintain an effective security governance framework, including policies, procedures, standards, and guidelines. Ensure compliance with applicable laws, regulations, and industry standards.
- Risk Management: Identify, assess, and manage information security risks throughout the organization. Develop risk mitigation plans and ensure their implementation.
- Security Operations: Oversee day-to-day security operations, including incident response, vulnerability management, threat intelligence, security monitoring, and access control. Ensure the organization has appropriate security tools, technologies, and processes in place.
- Security Awareness and Training: Develop and deliver information security awareness and training programs to educate employees and contractors about their roles and responsibilities in protecting information assets.
- Security Architecture: Collaborate with IT and other relevant teams to develop and maintain a secure technology infrastructure. Provide guidance on security requirements for new systems, applications, and technologies.
- Security Compliance: Monitor and enforce compliance with relevant security policies, standards, and regulations. Conduct periodic security audits and assessments to identify and address compliance gaps.
- Incident Response: Lead the response to security incidents, including investigating and containing incidents, coordinating with internal teams and external stakeholders, and implementing remediation measures to prevent future incidents.
- Vendor and Third-Party Risk Management: Establish and maintain a vendor and third-party risk management program to assess and monitor the security posture of external partners and suppliers.
- Security Metrics and Reporting: Define and track key security metrics to measure the effectiveness of security controls and initiatives. Prepare and present regular reports on the organization's security posture to executive management and the board.
Qualifications & Requirements
- Bachelor's or Master’s degree in Computer Science, Information Security, or a related field.
- Professional certifications such as CISSP, CISM, or equivalent.
- Proven experience (typically 6‑8+ years) in information security management, including hands‑on experience in security operations, risk management, and compliance.
- Strong knowledge of information security principles, standards, frameworks (e.g., ISO 27001, NIST Cybersecurity Framework), and regulations (e.g., GDPR, CCPA).
- Experience in developing and implementing information security strategies and programs.
- Familiarity with security technologies, such as firewalls, intrusion detection/prevention systems, SIEM, and endpoint protection.
- Excellent leadership and team management skills.
- Strong communication and presentation abilities, with the ability to articulate complex security concepts to both technical and non‑technical stakeholders.
- Analytical mindset and problem‑solving skills to identify and address security risks and incidents.
- Ability to adapt to a fast‑paced, evolving security landscape and keep up with emerging threats and trends.
Benefits
- The opportunity to have a strategic impact on the organization’s customer experience and overall success.
- You get to establish yourself as a thought leader in the logistics industry and participate in industry conferences and networking events.
- Autonomy to make key decisions and influence key business outcomes.
What We Offer
Join Locus and become part of a visionary team that is redefining logistics through innovation and smart distribution. We provide competitive compensation, comprehensive benefits, and a collaborative environment where your expertise will drive both your growth and the organization’s success.
Locus is an equal‑opportunity employer dedicated to creating a diverse and inclusive workplace.