Information Security Manager

Sigmoid

Bengaluru

Hybrid

INR 4,000,000 - 6,400,000

Full time

3 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Sigmoid in Bengaluru is seeking an experienced Cybersecurity Manager to mature enterprise security programs across governance, risk management, and compliance. You will own certification programs (SOC 2 II, ISO 27001/27701, PCI-DSS, HIPAA) and drive AI risk management and Responsible AI initiatives.

The role leads security architecture governance, vulnerability management, and vendor risk, while collaborating with IT and engineering teams to implement Zero Trust and secure SDLC practices.

Qualifications

  • Bachelor's degree in Cybersecurity / IT / Engineering or related fields
  • 8–12+ years cybersecurity experience
  • 3–5 years in leadership roles
  • Experience in cyber risk, audits, certifications, cloud security, and governance programs
  • Experience supporting client assurance and regulatory initiatives

Responsibilities

  • Security Strategy & Governance: Define and execute enterprise cybersecurity strategy aligned to business objectives and regulatory requirements
  • Govern security operations from risk and governance perspective
  • Review security incidents, operational risks, trends, and management reporting
  • Support incident readiness and post-incident governance activities
  • Cyber Risk Management: Lead enterprise cyber risk management programs including risk identification, assessment, treatment, and reporting
  • Maintain risk registers and executive reporting
  • Integrate cyber risks across cloud, applications, AI systems, infrastructure, and third parties
  • IT Audits & Compliance Ownership: Own enterprise certification and audit programs including SOC 2 Type II, ISO 27001 / 27701, PCI-DSS, HIPAA
  • Responsibilities include: IT audits, certification readiness, evidence management, remediation tracking, and client assurance support.
  • Vulnerability Governance: Govern enterprise vulnerability management programs; Oversee VAPT activities and remediation tracking
  • Drive risk-based prioritization and exposure reduction initiatives
  • AI Risk Management & Responsible AI: Define AI security and AI risk management frameworks; identify risks related to AI systems including data leakage, model manipulation, privacy, and bias risks; drive Responsible AI governance and policy implementation; support secure AI lifecycle initiatives
  • Security Architecture & Engineering Governance: Collaborate with IT and engineering teams on secure architecture initiatives; promote Zero Trust, identity-first security, and secure SDLC practices
  • Vendor Risk Management & Security Awareness: Conduct vendor risk assessments and third-party reviews; support supplier security governance and contractual security requirements; lead enterprise awareness programs and phishing initiatives; promote organization-wide security culture initiatives

Skills

Cyber Risk Management
IT Audit & Compliance
Vulnerability Governance
Cloud Security Governance
AI Risk Management
Security Governance
Vendor Risk Management
Leadership & Stakeholder Management

Education

Bachelor's degree in Cybersecurity / IT / Engineering

Job description

Role Overview

We are seeking an experienced Cybersecurity Manager to lead and mature enterprise security programs across governance, cyber risk management, compliance, cloud security, AI security governance, and certification initiatives.

Job Title: Cybersecurity Manager

Location: Bengaluru / Hybrid

Department: Information Security

Role Overview

We are seeking an experienced Cybersecurity Manager to lead and mature enterprise security programs across governance, cyber risk management, compliance, cloud security, AI security governance, and certification initiatives.

This role will be responsible for cyber risk management, IT audits, vulnerability governance, certification ownership, and enterprise security programs across key standards including SOC 2 Type II, ISO 27001, PCI-DSS, and HIPAA.

The role will also lead AI risk management and Responsible AI initiatives to ensure secure adoption of emerging technologies.

Key Responsibilities
  • Security Strategy & Governance
  • Define and execute enterprise cybersecurity strategy aligned to business objectives and regulatory requirements
  • Establish security policies, standards, and governance frameworks
  • Drive adoption of security frameworks including NIST CSF, ISO 27001, and CIS Controls
  • Govern security operations from risk and governance perspective
  • Review security incidents, operational risks, trends, and management reporting
  • Support incident readiness and post-incident governance activities
  • Cyber Risk Management
  • Lead enterprise cyber risk management programs including risk identification, assessment, treatment, and reporting
  • Maintain risk registers and executive reporting
  • Integrate cyber risks across cloud, applications, AI systems, infrastructure, and third parties
  • IT Audits & Compliance Ownership

Own enterprise certification and audit programs including:

  • SOC 2 Type II
  • ISO 27001 / ISO 27701
  • PCI-DSS
  • HIPAA

Responsibilities include: Responsibilities include IT audits, certification readiness, evidence management, remediation tracking, and client assurance support.

  • Vulnerability Governance
  • Govern enterprise vulnerability management programs
  • Oversee VAPT activities and remediation tracking
  • Drive risk-based prioritization and exposure reduction initiatives
  • AI Risk Management & Responsible AI
  • Define AI security and AI risk management frameworks
  • Identify risks related to AI systems including data leakage, model manipulation, privacy, and bias risks
  • Drive Responsible AI governance and policy implementation
  • Support secure AI lifecycle initiatives
  • Security Architecture & Engineering Governance
  • Collaborate with IT and engineering teams on secure architecture initiatives
  • Promote Zero Trust, identity-first security, and secure SDLC practices
  • Vendor Risk Management & Security Awareness
  • Conduct vendor risk assessments and third-party reviews
  • Support supplier security governance and contractual security requirements
  • Lead enterprise awareness programs and phishing initiatives
  • Promote organization-wide security culture initiatives
Required Qualifications
  • Bachelor's degree in Cybersecurity / IT / Engineering or related fields
  • 8–12+ years cybersecurity experience
  • 3–5 years in leadership roles
  • Experience in cyber risk, audits, certifications, cloud security, and governance programs
  • Experience supporting client assurance and regulatory initiatives
Preferred Certifications

CISSP | CISM | CISA | CRISC | CCSP | ISO 27001 Lead Implementer / Lead Auditor | SC-100 | AZ-500

Key Skills
  • Cyber Risk Management
  • IT Audit & Compliance (SOC2, ISO, PCI-DSS, HIPAA)
  • Vulnerability Governance & VAPT
  • Cloud Security Governance
  • AI Risk Management & Responsible AI
  • Security Governance
  • Vendor Risk Management
  • Leadership & Stakeholder Management
Note:

By submitting your application, you consent to being contacted by our Talent Acquisition team via phone call, email, SMS, WhatsApp, or other communication channels regarding your application and relevant career opportunities.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager | JP Nagar, Bangalore | Fulltime
Information Security Manager | JP Nagar, Bangalore | Fulltime

Two95 International Inc. • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Information Security Analyst
Information Security Analyst

ASSA ABLOY Global Solutions • Chennai District

Hybrid
INR 900,000 - 1,500,000
Information securities & Audit Manager
Information securities & Audit Manager

Talentgigs • Bengaluru

On-site
IT Compliance Lead
IT Compliance Lead

Mobileum • Bengaluru

Hybrid
INR 2,500,000 - 4,000,000
Cyber Security Manager
Cyber Security Manager

Insight Global • Hyderabad

On-site
INR 1,800,000 - 2,800,000
Cyber Security Manager / Architect
Cyber Security Manager / Architect

Resillion • Bengaluru

Hybrid
INR 1,500,000 - 2,000,000
Global collaboration opportunities
Diversity and inclusion focus
Innovative work environment
CISO
CISO

Michael Page • Bengaluru Urban

On-site
INR 2,500,000 - 3,500,000
Competitive salary package
Access to professional development and training programs
Comprehensive benefits, including health coverage and paid leave
ISMS - Senior Executive
ISMS - Senior Executive

Dailyhunt • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Manager, Information Security & Compliance
Manager, Information Security & Compliance

Neara • India

On-site
INR 3,000,000 - 5,500,000
Senior Security Engineer- 2
Senior Security Engineer- 2

AstroFarm by 42Gears • Bengaluru

On-site
INR 4,000,000 - 6,000,000