Information Security - Manager

Promaynov Advisory Services Pvt. Ltd

Delhi

On-site

INR 1,800,000 - 2,400,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Promaynov Advisory Services Pvt. Ltd in New Delhi seeks a Manager - Information Security to establish and manage the information security framework, lead ISO 27001 certification, and oversee audits.

The role demands hands-on security operations experience, regulatory compliance, and strong collaboration with engineering and leadership. Responsibilities include ISO lifecycle management, audit coordination, and risk governance across cloud, APIs, and on-premises systems.

Qualifications

  • 8-10 years of experience in Information Security with hands-on ISO 27001 implementation and audits.
  • Strong experience in security operations, SOC management, incident response, and vulnerability management.
  • Good understanding of cloud security (AWS, Azure, or GCP) and API security principles.
  • ISO 27001 Lead Implementer or Lead Auditor certification preferred; CISSP/CISM appreciated.

Responsibilities

  • Own end-to-end ISO 27001 ISMS implementation and certification lifecycle, from gap assessment to surveillance audits.
  • Coordinate with certification bodies and internal stakeholders for audit readiness.
  • Track and close non-conformities and maintain audit documentation and corrective actions.
  • Ensure compliance with IT Act, DPDP Act, and CERT-In advisories.
  • Manage day-to-day security operations, including threat monitoring and incident response.
  • Define and enforce security baselines across cloud and API environments.
  • Collaborate with engineering to embed security in the SDLC (DevSecOps).
  • Conduct risk assessments and maintain risk registers with mitigation plans.
  • Plan and execute internal information security audits and coordinate with external auditors.

Skills

Information Security Operations
Audit Management
ISO 27001
Cloud Security
DevSecOps
Risk Management
Governance
Stakeholder Management
Incident Response
Threat Monitoring

Tools

SIEM
Endpoint Protection
WAF
IAM
DLP

Job description

Manager - Information Security

Department: Technology

Reporting To: SVP - Technology

Location: New Delhi

Role Overview

The Manager - Information Security will be responsible for establishing and managing the organization's information security framework. The role will lead ISO 27001 certification, drive information security operations, and manage internal and external audits while ensuring compliance with applicable regulatory requirements.

The ideal candidate will have strong experience in information security operations, compliance, ISO 27001 implementation, and audit management.

Key Responsibilities
ISO Certification & Compliance

Own the end-to-end ISO 27001 ISMS implementation and certification lifecycle, from gap assessment through certification and surveillance audits.

Coordinate with certification bodies and internal stakeholders to ensure audit readiness.

Track and close non-conformities and maintain audit documentation and corrective action plans.

Ensure compliance with applicable regulations, including the IT Act, DPDP Act, and CERT-In advisories.

Security Operations

Manage day-to-day information security operations, including threat monitoring, incident response, and vulnerability management.

Administer security tools such as SIEM, Endpoint Protection, WAF, IAM, and DLP solutions.

Define and enforce security baselines across cloud infrastructure and API environments.

Collaborate with engineering teams to integrate security practices into the software development lifecycle (DevSecOps).

Risk Management & Governance

Conduct periodic risk assessments and maintain a risk register with mitigation plans.

Develop, review, and maintain information security policies, standards, and procedures.

Perform security assessments for third-party vendors and partners.

Report security metrics and risk posture to senior leadership.

Audit Management

Plan and execute internal information security audits across systems, processes, and integrations.

Coordinate with external auditors and regulatory bodies during audit engagements.

Maintain audit trails and compliance evidence repositories.

Prepare management review reports and security posture updates for leadership.

Candidate Profile
Experience

8-10 years of experience in Information Security, including hands-on ownership of ISO 27001 implementation and audit cycles.

Strong experience in security operations, including SOC management, incident response, and vulnerability management.

Good understanding of cloud security (AWS, Azure, or GCP) and API security principles.

Certifications

ISO 27001 Lead Implementer or Lead Auditor.

CISSP and/or CISM certification preferred.

Skills

Strong communication and stakeholder management skills.

Ability to work effectively with both technical teams and senior leadership.

Strong analytical, governance, and risk management capabilities.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager
Information Security Manager

Altraize • Mumbai

On-site
Information Security Officer
Information Security Officer

Indutch Composites Technology • Vadodara

On-site
INR 600,000 - 1,000,000
InfoSec Executive
InfoSec Executive

QualityKiosk Technologies • Navi Mumbai

On-site
INR <4,500,000
Information Security Manager
Information Security Manager

Rahi Platform Technologies • Pune District

On-site
INR 1,000,000 - 1,500,000
ISMS Compliance - Manager
ISMS Compliance - Manager

Quest Global • Bengaluru

On-site
INR 2,800,000 - 4,200,000
Technical Architect
Technical Architect

ESP Engineered • Hyderabad

On-site
INR 1,000,000 - 1,500,000
Security, Risk & Compliance Lead
Security, Risk & Compliance Lead

RedDoorz • Dadri

On-site
INR 2,400,000 - 4,800,000
Compliance Associate - (ISO- Implementation)
Compliance Associate - (ISO- Implementation)

Iamops • Surat, Pune District

On-site
INR 600,000 - 900,000
IT Security & ISO Implementation Support Engineer
IT Security & ISO Implementation Support Engineer

PrivacyPillar Inc. • Gurgaon

On-site
INR 600,000 - 900,000
Deputy General Manager-GRC
Deputy General Manager-GRC

SupportFinity™ • Ahmedabad District

On-site
INR 1,200,000 - 2,000,000