Senior Leader Information Security

Zoho

Mumbai

On-site

INR 1,800,000 - 2,800,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Insurance & Wellness
Parental Leave
Nanny at home Support
Mobility Benefits
Home loan reimbursement
Mobile reimbursement
Car lease
Salary advance
Subsidized meals
Reward & Recognition Program
Technology Innovation policy
Provident Fund and Gratuity

Job summary

National Payments Corporation of India (NPCI) invites a senior cybersecurity and regulatory governance professional to oversee risk management, security controls, and third‑party cybersecurity assurance across NPCI ecosystems. The role requires coordinating with banks, TPAPs, CERT-In and other regulatory bodies while driving privacy and data protection commitments.

You will lead cross‑functional teams to implement robust security controls, ensure GDPR/DPDP and PCI DSS alignment, and guide

Qualifications

  • Experience with information security standards such as GDPR, DPDP Act, ISO 27001, NIST, CIS, PCI DSS.
  • Ability to engage and influence multiple stakeholders up to C-suite levels.
  • Understanding of cloud security concepts and deployment across AWS, Azure, and GCP.

Responsibilities

  • Provide direction on regulatory compliance and cybersecurity protection.
  • Develop and maintain robust international information security controls.
  • Lead assessments and certifications for external agencies and TPAPs.
  • Identify emerging cyber threats and align security strategy accordingly.
  • Act as SME across IAM, infrastructure security, application security, data privacy.
  • Collaborate with development teams to enable secure DevSecOps practices.

Skills

Cybersecurity
Regulatory compliance
Information security
Cloud security
Risk management
Stakeholder management
DevSecOps

Tools

AWS
Azure
GCP
Firewall
IDS/IPS
PAM

Job description

National Payments Corporation of India (NPCI) | Full Time

The National Payments Corporation of India (NPCI) is a pivotal institution in India's digital payments ecosystem, established by the Reserve Bank of India (RBI) and the Indian Banks’ Association (IBA). It operates under the Payment and Settlement Systems Act, 2007, and is incorporated as a “Not for Profit” company under Section 25 of the Companies Act 1956 (now Section 8 of the Companies Act 2013). NPCI is dedicated to building world‑class digital payment infrastructure through innovative and efficient retail payment platforms. As an Equal Opportunity Employer, NPCI is committed to fostering an inclusive workplace culture, with zero tolerance for discrimination based on race, ethnicity, disability, gender identity, or sexual orientation, including support for the LGBTQ+ community.

To learn more about our company please click on link AboutNPCI

Our Culture

TheNPCIWAY -OurGuidingPrinciples

At NPCI, we foster a culture of Inclusion, Innovation, and a High- Performance Workplace .

The NPCIWAY isnotjustaframework - it’sasharedcommitmentbyevery individual to align with our evolving business needs, dynamic market conditions, and workforce expectations.

FiveTenetsoftheNPCIWAY
  • ForwardThinkingMind-Set
  • CustomerFirst
  • LeadWith Purpose
  • PassiontoDeliver
  • AllSucceedTogether
Employee Perks and Benefits

Insurance&Wellness:

  • ComprehensiveCoverage :Medical,accidental,andlifeinsurance.
  • Employee Assistance Program : Onsite medical center, financial/legal counselling, mental wellness.
  • AnnualWellnessBouquet :Holisticwellbeingsupport
Family &Childcare:
  • ParentalLeave :Inclusivematernityandpaternityleave.
  • Nanny at home Support: Assistance for Working Parents
Mobility&Lifestyle:
  • MobilityBenefits :Relocation,transfers,andtravelsupport.
  • HomeLoanInterestSupport :Upto50%reimbursement*
  • MobileReimbursement :Newhandsetevery2years.
  • CarLease,SalaryAdvance,SubsidizedMeals.
  • Reward&RecognitionProgram.
  • TechnologyInnovation: PatentsandIPRightspolicy.
RetirementPlanning:
  • ProvidentFund(PF) and Gratuity Contributions .
Why Join Us

At NPCI, you’ll be part of a purpose-driven organization shaping the future of digital payments in India and beyond. NPCI offers a unique opportunity to work on cutting‑edge projects that directly impact millions. We foster a culture of innovation, inclusion, and high performance, where every individual is empowered to lead with purpose and deliver with passion. With a strong focus on employee wellbeing, continuous learning, and collaborative success, NPCI is more than just a workplace - it’s a platform to grow, contribute, and make a meaningful difference.

This role is responsible for ascertaining and overseeing the risk and security guidelines and controls applicable to third parties interacting with NPCI. It will ensure ecosystem‑wide compliance with evolving security requirements arising from innovations across the organization.

The core focus of the role will be to ensure that member banks and TPAPs comply with the standards laid down by NPCI. It will also interface with CERT‑In, NCIIPC, NCCC, RBI, MeitY and other government bodies on cybersecurity‑related matters.

The role will also play a key part in addressing privacy‑related aspects, including adherence to the DPDP Act, GDPR and other applicable data protection requirements.

What you’ll own
Stakeholder Management and Leadership

Provide direction on regulatory compliance and cybersecurity protection.

Demonstrate a thorough understanding of international governance and management principles.

Engage with multiple stakeholders across organizational boundaries.

Risk and Control Objectives

Develop and maintain robust international information security controls.

Provide an external perspective to strengthen the design and implementation of security controls.

Lead and review assessments for external agencies and members.

Decision-Making and Problem-Solving

Make decisions regarding the maintenance of the security posture of the organization and its subsidiaries.

Identify emerging global cyber‑threat trends and align organizational strategy to address them.

Provide solutions to address international challenges related to security architecture.

Specialization in Multiple Security Domains

Act as a subject matter expert (SME) across multiple internal security domains, such as Identity and Access Management (IAM), infrastructure security, application security cloud security, Data Privacy and DPDP Act.

Engage with development teams to enable DevSecOps.

Demonstrate SME‑level knowledge of key security and data protection standards and frameworks, such as GDPR, CIS, ISO 27001, NIST and PCI DSS.

What sets you apart

Coordinating with external entities and multiple stakeholders on information security‑related matters.

Identifying security gaps and following up to ensure their closure.

Focusing information security operations on external parties and addressing data protection and privacy‑related concerns.

Decisions Made by the Job Holder

Reviewing and verifying controls relating to third‑party applications and member banks.

Certifying third parties associated with NPCI.

Reviewing information security controls and guidelines followed by TPAPs and member banks.

Effectively addressing various data‑related concerns, as required by the Data Protection Officer (DPO), and ensuring adherence to DPDP and GDPR requirements.

Conducting various third‑party audits to ensure acceptable levels of cyber hygiene.

Recommendations to or Approval by Superior

Exceptions and approvals relating to third‑party risks.

Measures to strengthen ecosystem‑wide cyber hygiene.

Matters relating to data protection and privacy.

Requirements
  • Understanding of Cybersecurity maturity frameworks and Information security standards like, but not limited to, ISO 27701, GDPR, PCI DSS, NIST 800-53, CIS 20, ISO 22301.
  • Experience at engaging, influencing, and managing multiple stakeholders across departmental and organizational boundaries up to C-suite.
  • Excellent understanding of legislations and regulations that impact Information security, e.g. GDPR.
  • Develop, implement and administer technical security standards as well as a suite of security practices.
  • Understanding of cloud service deployment and architecture with implementation experience on multiple cloud platforms like AWS, Azure, GCP etc.
  • Good understanding of security technologies and wider payment business solutions like Firewall, IDS/IPS, PIM/PAM, IAM setup, APIs, ISO 8583 etc.
  • Understanding of the emerging threat landscape and technologies, and what measures can be taken to protect the information security posture of the organization.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior - Information Security & Privacy
Senior - Information Security & Privacy

National Payments Corporation of India • Mumbai

On-site
INR 3,500,000 - 7,000,000
Insurance & Wellness
Annual Wellness Bouquet
Parental Leave
+1
Senior Associate Non Regulatory Governance
Senior Associate Non Regulatory Governance

Zoho • Mumbai

On-site
INR 1,200,000 - 2,000,000
Comprehensive Coverage
Employee Assistance Program
Annual Wellness Bouquet
+10
Business Compliance
Business Compliance

Zoho • Mumbai

On-site
INR 1,400,000 - 2,200,000
Comprehensive Insurance
Employee Assistance Program
Annual Wellness Bouquet
+6
Surveillance Enforcement & Compliance
Surveillance Enforcement & Compliance

National Payments Corporation of India • Mumbai

On-site
INR 2,500,000 - 4,500,000
Comprehensive Coverage
Employee Assistance Program
Annual Wellness Bouquet
+10
Surveillance Enforcement & Compliance
Surveillance Enforcement & Compliance

Zoho • Mumbai

On-site
INR 1,800,000 - 3,600,000
Senior Associate Monitoring & Control (Onboarding)
Senior Associate Monitoring & Control (Onboarding)

Zoho • Hyderabad

On-site
INR 900,000 - 1,300,000
Comprehensive Coverage
Employee Assistance Program
Annual Wellness Bouquet
+1
Lead Risk Management
Lead Risk Management

Zoho • Mumbai

On-site
INR 2,400,000 - 3,600,000
Senior Associate Non Regulatory Governance
Senior Associate Non Regulatory Governance

NPCI International • Mumbai

On-site
INR 600,000 - 800,000
Comprehensive Medical, Accidental, and Life Insurance
Employee Assistance Program
Annual Wellness Bouquet
+10
Senior Associate
Senior Associate

Zoho • Chennai District

On-site
INR 700,000 - 1,100,000
Comprehensive Insurance
Employee Assistance Program
Annual Wellness Bouquet
+4
Incharge Business Compliance
Incharge Business Compliance

National Payments Corporation of India • Mumbai

On-site
INR 5,500,000 - 7,000,000