Assistant Manager - Information Security Audit and Vulnerability Management
Build, Review & Tailor Your Resume with AI (Create an ATS-friendly resume, improve it, and tailor it for this job instantly.)
Position Summary:
We are seeking a skilled and proactive Assistant Manager – Information Security Audit and Vulnerability Management to join our dynamic team. The ideal candidate will have prior experience in the Indian stock broking industry, with a solid understanding of SEBI and other regulatory requirements, strong technical expertise in security assessments, and the ability to communicate effectively with foreign clients and senior management.
Key Responsibilities:
- Lead and manage periodic internal and external security audits, including system, process, and compliance audits.
- Monitor and coordinate vulnerability assessments and penetration testing (VAPT), ensuring timely remediation of identified issues.
- Act as a liaison with regulatory authorities (SEBI, NSE, BSE, CDSL, NSDL, etc.), internal / external auditors, clients and ensure compliance with applicable cyber security guidelines and circulars.
- Interpret and translate complex regulatory and technical requirements into clear, actionable security controls.
- Prepare and present audit findings, risk assessments, and security posture reports to senior management and international clients in a clear and concise manner.
- Collaborate with IT, DevOps, Infrastructure, and Business teams to drive timely closure of audit and vulnerability findings.
Required Qualifications & Experience:
- Bachelor's degree in Information Technology, Computer Science, Cyber Security, or related field.
- 5–8 years of experience in Information Security, preferably within a stock broking firm or capital markets organization in India.
- Proven experience with SEBI circulars, RBI/IRDA guidelines, and IT security audits.
- Hands-on experience with vulnerability scanning tools (e.g., Nessus, Qualys, OpenVAS) and SIEM platforms.
- Strong understanding of network and application security, encryption standards, and data privacy regulations.
- Relevant certifications such as CISA, CISSP, CEH, ISO 27001 LA/LI are highly preferred.
Key Skills:
- Strong analytical and problem-solving skills.
- Ability to articulate regulatory and technical concepts to non-technical stakeholders.
- Excellent written and verbal communication skills, with experience handling foreign clients and executive-level presentations.
- Ability to work independently and as part of a cross-functional team.
- Project management skills and attention to detail.
Preferred Attributes:
- Experience working in a hybrid or distributed team environment.
- Prior involvement in red/blue team exercises, or threat intelligence initiatives is a plus.
Build Your Resume for Free in Minutes
Create ATS-friendly resumes with modern templates and AI-powered suggestions.
Professional Summary
Experience
Get Your Resume
Reviewed for Free
Discover missing skills, ATS issues, and get personalized suggestions to improve your chances.
Tailor Your Resume for This Job
Match your resume to this job's requirements in one click.