At Niramai Health Analytics, we are committed to building secure, compliant, and innovative healthcare solutions. We are looking for a skilled professional to lead our Information Security and Privacy initiatives, ensuring strong compliance, risk management, and a secure organizational environment.\n\n📍 Location: Bengaluru\n\nJob Description:\n\nEnsure compliance with industry standards such as: ISO 27001, GDPR, HIPAA, DPDP etc.\n\nOversee & review the implementation of a sound Information Security and Privacy Policy to ensure continuous improvement.\n\nImplement / maintain information security policies by proactively involving in the business where security is an agenda.\n\nEnsure the appropriate level of privacy and security awareness as well as training is provided to staff in accordance with their function.\n\nBe the point of contact for Regulatory Bodies, government & law enforcement agencies on matters relating to security / privacy.\n\nMaintain documentation for audits and regulatory reviews\n\nSet up necessary processes & mechanisms within organization to support all formal regulatory & other agency requirements\n\nEngage with 3rd parties (Regulators & Vendors) for ISMS-related activities\n\nAssist CISO in all the ISMS related activities.\n\nMonitor the management of privacy and information security risks by:\n\nReviewing major risk incidents for adequacy of response and controls; and\n\nEnsuring regular vulnerability assessments and risk reviews of the technology stack comprising systems and applications.\n\nReview incidents and monitor exposure to threats and impacts these may have on the continued operation of the Company.\n\nCompetency Required:\n\nIT security and compliance, ISO 27001\n\nRisk assessment & mitigation\n\nSecurity frameworks & controls\n\nIncident response leadership\n\nStrategic planning\n\nStrong communication and stakeholder management\n\nAnalytical and problem-solving skills\n\nPrior experience in either hands-on software development or IT networking or IT administration is mandatory\n\nQualification required:\n\nBachelor’s degree in Cybersecurity/ Information Technology/ Computer Science or related field\n\nExperience required:\n\n4+ years in IT or cybersecurity\n\nExperience in IT management for regulated industry verticals (finance, healthcare, government) will be preferred.