Chief Information Security Officer (CISO):
Position Summary:
· Looking for candidates to serve as the Bank’s lead information security officer, overseeing all security initiatives, policies, and procedures.
· The Security leader (CISO) will define strategic direction and lead overall program ownership for cyber security intelligence & personal identifiable data security (Data Privacy) for the business.
· Create and implement strategic plans to secure the Bank’s IT infrastructure.
· Develop and implement information security strategies including vulnerability assessments and penetration testing, and cyber security awareness and training.
Qualification:
Essential: - Graduate / Postgraduate Degree in Computer Engineering / Computer Applications / Information Technology /Electronics & Cyber security/ Graduates having passed DOEACC ‘B’ level
Key Responsibilities:
· Develop an information security roadmap for CCBL, communicating business risk and recommended changes.
· Define and own security operations compliance strategies for RBI and Regulatory compliance.
- Send regular updates to RBI on security matters and also update the system.
- Be responsible for compliance to IT security policies as well as regulatory prescriptions.
· Secure network architectures, identity and access management principles, application security, encryption technologies, DNS, incident detection technologies, database and web applications.
- Perform risk assessment and vulnerability analysis.
- IT Risk assessment and implementation of Risk Management Committee decisions.
- Ownership to conduct DR drills of all services as per compliance requirement.
· Ensure all the IT Audit compliance requirements of regulators and statutory are delivered in timely manners and ensure compliance audits are cleared successfully. Any gaps in compliance are closed in given timeframe.
· Develop and implement security incident response plans.
- Real-time analysis of immediate threats, and triage when something goes wrong.
- Data loss and fraud prevention.
- Translate IT security risks into actionable requirements.
· Develop strategies to integrate internal threat tools such as data loss prevention into the IT Security Operations framework.
· Design and implement methods for staying abreast of current cyber threats, and analysing exposure to Customer.
· Act as liaison between CCBL IT Dept and Business functions for security initiatives and security programs.
- Cyber Security Training for Board and staff.
· Operational integration, and operational input into architectural decisions in support of business application security.
· Evaluate security adequacy of third-party service providers.
- Network vendor Management.
Pay: ₹1,800,000.00 - ₹2,000,000.00 per year
Work Location: In person