Experience
18 - 25 yrs
Salary (CTC)
₹35L - ₹60L
Job Location
Mumbai, India
Vacancy
1
Designation
Chief Information Security Officer
Job Type
Not specified
Job Description
Job Scope:
A Chief Information Security Officer (CISO) is a senior executive responsible for overseeing and managing the security of an organization's information assets. The CISO is responsible for developing and implementing the organization's information security strategy and ensuring the confidentiality, integrity, and availability of its data and systems.
Job Responsibilities:
- Here are some key responsibilities typically associated with the CISO role:
- Security Strategy and Planning: The CISO is responsible for developing and implementing a comprehensive information security strategy aligned with the organization's business objectives. This involves assessing risks, establishing security policies and procedures, and defining security standards and guidelines.
- Risk Management: The CISO identifies potential security risks and vulnerabilities and develops strategies to mitigate them. This includes conducting risk assessments, implementing controls, and ensuring compliance with regulatory requirements.
- Incident Response and Management: In the event of a security breach or incident, the CISO leads the response and recovery efforts. This includes investigating and containing security incidents, coordinating with relevant stakeholders, and implementing measures to prevent similar incidents in the future.
- Security Operations: The CISO oversees the day-to-day operations of the organization's security systems and processes. This includes managing security tools, monitoring security events, analyzing threats, and coordinating with internal teams or external vendors.
- Security Awareness and Training: The CISO plays a crucial role in promoting a culture of security within the organization. This involves educating employees about security best practices, conducting training programs, and raising awareness about emerging threats and trends.
- Compliance and Governance: The CISO ensures that the organization complies with applicable security regulations and industry standards. This includes maintaining documentation, conducting audits, and collaborating with internal and external stakeholders to demonstrate compliance.
- Datacenter:A datacenter is a centralized facility that houses computer systems and associated components, such as servers, networking equipment, storage systems, and security devices. It provides a controlled environment to ensure the reliable operation and management of these critical IT infrastructure components. Here are some key aspects of a datacenter:
- Physical Infrastructure: Datacenters are designed to provide a secure and optimal environment for IT equipment. They feature redundant power supplies, backup generators,cooling systems, fire suppression mechanisms, and physical access controls to safeguard the equipment from power failures, environmental hazards, and unauthorized access.
- Server and Storage Infrastructure: Datacenters house a large number of servers and storage devices to handle the processing and storage requirements of organizations. These systems are interconnected and managed to support various applications, databases, and services.
- Networking Infrastructure: Datacenters have robust networking infrastructure to ensure high-speed and reliable connectivity. This includes switches, routers, and firewalls that enable data transfer between servers, storage systems, and external networks.
- Security Measures: Datacenters implement multiple layers of security controls to protect sensitive data and systems. This includes physical security measures like surveillance cameras, biometric access controls, and security personnel, as well as logical security controls such as firewalls, intrusion detection systems, and encryption.
- Redundancy and High Availability: Datacenters are designed with redundancy and fault-tolerant features to ensure continuous operation even in the event of hardware or network failures. This includes redundant power sources, backup systems, and network links to minimize downtime and maximize availability.
- Datacenter Management: Datacenters require ongoing management and monitoring to ensure optimal performance and efficient resource utilization. This involves tasks like capacity planning, system provisioning, hardware maintenance, and performance monitoring.
- Overall, datacenters serve as the backbone of an organization's IT infrastructure, providing the necessary environment, resources, and security measures to support critical business operations and ensure the availability and integrity of data and services.
- Follow & commit with Yottas Policy statements (eg. QMS/EMS/OHS/ISMS/PIMS/ITSM etc)
- Undertake applicable training as communicated from time to time.
- Participation in Risk assessment process, contribute in achieving departmental & management system objectives & Assist in maintaining PIMS controls throughout personal data lifecycle.
Good to Have Skill:
- To develop and execute technical solutions, exceptional leadership and mentorship talents are required.
- Good knowledge about Auto cad Software.
- Understand the Civil. Electrical, HVAC and Fire Fighting Drawings in CAD
- Capable to understand reliability lead’s requirement.
- Coordination with operations team members
- Excellent record-keeping abilities, as well as written and spoken communication abilities.
Behavioral Attributes:
- Managing Vision & Purpose
- Art of Skillful Conversation
- Innovative Mindset
- Risk Management
- Leading Change & Leadership Composure
- Learning on the fly
- Customer Focus
- Intellectual Horsepower
- Drive for results & Ownership
- Prioritizing, Planning & Organizing
- Active Listening
- Building Effective Teams
- Building Collaborative Relationships
Qualification and Experience:
- A Bachelor & or degree in engineering and approximately or a master’s or MBA degree in business, computer science, information systems, engineering,
- 20+ years of experience
- Certifications: CISM (Certified information systems manager), CISA (Certified Information system auditor)
