Avp- information & cyber security
Canara HSBC Life Insurance · Faridabad, India
FULL TIMEpermanent
Job Description
Dear Candidates,
Role - AVP- Information & Cyber Security
Minimum Experience – 12+ years of experience in Information Security
Minimum Certifications (Any two) - CISA/CISM/CISSP/ CCSP/ AWS or Azure or GCP Solution Architect
Architecture review and Security baselining of any new application/ ICT Infrastructure component/ third party solution going live
Review and assessment of Company’s Cloud Security posture and supporting in remediation of vulnerabilities noted
Contribute to the design and rollout of the AI Governance framework; support in defining roles/responsibilities for model owners, risk, security, and IT. Partner with the AI Governance team to define AI Security and AI Risk controls aligned to ISO 42001 and NIST AI RMF; educate use-case owners on Responsible AI. Align AI controls and LLM in use to ISO 42001 and NIST AI RMF, translating standards into practical guardrails for data, models, and access. Establish AI/Gen AI control baselines (data security, access, model monitoring, human-in-the-loop); integrate into vendor and solution onboarding.
Overseeing implementation and ongoing effectiveness of security solutions as required by IRDAI, ISO 27001 and other best practices including technical & organization measures required by DPDP. Ensuring all risks with respect to Information & Cyber Security are identified and appropriately mitigated and exposure is not unreasonable and outside the risk appetite of the Company
Oversee the SIEM solution implemented and monitoring carried by SOC partner. Ensuring all devices and assets are integrated and monitoring is effective by reducing the MMTD and MTTR. Strengthen SOC use‑cases designed basis experience and leverage AI for enhancing its effectiveness.
Review & assessment of security logs for applicable devices during any security breach/ event
Overseeing and designing KPI’s and KRI’s across Cloud, ICT infrastructure and AI agents/LLM’s in use
Ensure security related controls are documented as a part of functional RCSA framework and the same is periodically assessed in conjunction with first line of defense
Cyber Security drills with Sr. management and review and upgradation of Cyber Emergency response plan
Role - AVP- Information & Cyber Security
Minimum Experience – 12+ years of experience in Information Security
Minimum Certifications (Any two) - CISA/CISM/CISSP/ CCSP/ AWS or Azure or GCP Solution Architect
Architecture review and Security baselining of any new application/ ICT Infrastructure component/ third party solution going live
Review and assessment of Company’s Cloud Security posture and supporting in remediation of vulnerabilities noted
Contribute to the design and rollout of the AI Governance framework; support in defining roles/responsibilities for model owners, risk, security, and IT. Partner with the AI Governance team to define AI Security and AI Risk controls aligned to ISO 42001 and NIST AI RMF; educate use-case owners on Responsible AI. Align AI controls and LLM in use to ISO 42001 and NIST AI RMF, translating standards into practical guardrails for data, models, and access. Establish AI/Gen AI control baselines (data security, access, model monitoring, human-in-the-loop); integrate into vendor and solution onboarding.
Overseeing implementation and ongoing effectiveness of security solutions as required by IRDAI, ISO 27001 and other best practices including technical & organization measures required by DPDP. Ensuring all risks with respect to Information & Cyber Security are identified and appropriately mitigated and exposure is not unreasonable and outside the risk appetite of the Company
Oversee the SIEM solution implemented and monitoring carried by SOC partner. Ensuring all devices and assets are integrated and monitoring is effective by reducing the MMTD and MTTR. Strengthen SOC use‑cases designed basis experience and leverage AI for enhancing its effectiveness.
Review & assessment of security logs for applicable devices during any security breach/ event
Overseeing and designing KPI’s and KRI’s across Cloud, ICT infrastructure and AI agents/LLM’s in use
Ensure security related controls are documented as a part of functional RCSA framework and the same is periodically assessed in conjunction with first line of defense
Cyber Security drills with Sr. management and review and upgradation of Cyber Emergency response plan
Details
| Company | Canara HSBC Life Insurance |
| Location | Faridabad, India |
| Type | FULL TIME |
| Niche | tech |
| Experience | permanent |
