TymblHub

© 2026 TymblHub

Information Security Officer

GMO Globalsign Certificate Services
Posted on

Experience
3 - 5 yrs
Job Location
Not specified
Vacancy
1
Designation
Information Security Officer
Job Type
ONSITE

Job Description

ABOUT GLOBALSIGN


Established in 1996, GlobalSign is the leading provider of trusted identity and security solutions enabling businesses, large enterprises, cloud service providers and IoT innovators around the world to secure online communications, manage millions of verified digital identities and automate digital signing, authentication, and encryption. Its high-scale PKI solutions support billions of services, devices, people, and things comprising the Internet of Everything (IoE). The company has offices in the Americas, Europe, and Asia.


GMO GlobalSign Certificate Services Private Limited has also been certified as Great Place to Work for 3 consecutive years. This is another step for us on our journey of building a High-Trust and High- Performance Culture. GlobalSign India also has fared much better than Top 75 Great midsized companies.


JOB SUMMARY

The Information Security Officer is responsible for overseeing the end-to-end vulnerability management lifecycle to identify, assess, prioritize, and drive remediation of security risks across enterprise environments. The role applies risk-based analysis using CVSS, threat intelligence, and business impact to ensure timely mitigation within defined SLAs. This position collaborates closely with technical and business stakeholders, supports regulatory compliance and audits, and provides executive level reporting to strengthen the organizations overall security posture.


RESPONSIBILITIES

• Own and manage the end-to-end vulnerability management lifecycle across infrastructure, applications, and cloud environments

• Triage, validate, and classify vulnerabilities from multiple sources (scanners, threat intelligence, audits, etc.)

• Prioritize vulnerabilities using CVSS scores, exploitability, threat intelligence, and business impact

• Define, implement, and enforce remediation SLAs with internal stakeholders

• Collaborate with engineering, IT, and DevOps teams to ensure timely remediation and risk mitigation

• Track and respond to zero-day vulnerabilities and global threat intelligence alerts

• Maintain and enhance vulnerability dashboards, metrics, and monthly executive reports

• Ensure compliance with internal security policies and external regulatory requirements

• Support internal and external security audits and assessments

• Continuously improving vulnerability management processes, tools, and automation

• Provide risk-based recommendations to stakeholders and leadership


Required Skills

• Strong understanding of vulnerability management lifecycle and risk-based remediation

• Expertise in CVE, CVSS scoring, exploitability, and threat intelligence analysis

• Hands-on experience with vulnerability scanning tools (e.g., Qualys, Nessus, Rapid7)

• Ability to perform risk-based prioritization considering asset criticality and business impact

• Knowledge of patch management and secure remediation practices

• Strong stakeholder management and cross-functional collaboration skills

• Proficiency in vulnerability reporting, dashboards, and executive metrics

• DevSecOps practices and secure SDLC


Preferred Qualifications (Good to Have)


• Certifications such as CEH, CompTIA Security+, or equivalent

• Experience with automation or scripting for vulnerability management • Familiarity with cloud security (AWS, Azure, etc.)

• Understanding regulatory frameworks (ISO 27001, 27017, etc.)


Key Competencies

• Analytical thinking and problem-solving

• Strong attention to detail

• Ability to manage multiple priorities and deadlines

• Strong verbal and written English communication skills, with the ability to clearly communicate in a global, multicultural business and technical environment.


SECURITY RESPONSIBILITIES


At GlobalSign we believe that security is the responsibility of every employee. We therefore expect the employee to minimize risk by reducing and preventing the impact of information security threats to GlobalSign, to protect against loss of confidentiality, integrity, and availability. All GlobalSign employees are held responsible for maintaining the required level of information security within the scope of their job function.


The GlobalSign information security framework clearly defines and documents these responsibilities, as well as responsibilities for individual information assets and security processes.


At a minimum, the responsibilities include:

• Using information assets for authorized purposes only.

• Understanding the security classification of information assets and using the information assets accordingly.

• Not disclosing or releasing direct or indirect information assets to any third-party without appropriate authorized management approval.

• Protecting information assets placed in the care of users from misuse, disclosure, theft, and destruction, whether it is by accident or deliberate means.


GlobalSign employees are required to sign the Acceptable Use Policy that stipulates their responsibilities in terms of information security at the start of their employment and at any time these are updated.


BENEFITS

• Be a part of Japanese MNC operating and scaling up well in India since years.

• Work with one of the Great Places to Work among top 75 mid-sized companies.

• Meaningful and rewarding work that is performed with integrity.

• A culture of learning in collaboration with great young colleagues and leaders. A unique career journey shaped by your talent and curiosity.

• Support and trust to thrive in your career and life.

• Get Insurance against your and immediate familys health. Get Flexible Working Hours environment.

• Make Fun & Friends at Office, Go for outings and yearly off-site.



No Referrers Available

There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.