Information Security Officer
Gurgaon (SEZ1)
Bravura Solutions
General Information
Close date:
Wednesday, 30 July 2025Working pattern:
Full timeContract Type:
PermanentLocation:
Gurgaon (SEZ1)Department:
13 - 13 SecurityDescription & Requirements:
Bravura’s Commitment and MissionAt Bravura Solutions, collaboration, diversity and excellence matter. We value your ideas, giving you room to be curious and innovate in an exciting, fast-paced, and flexible environment. We look for many different skills and abilities, as well as how you can add value to Bravura and our culture.
As a Global FinTech market leader and ASX listed company, Bravura is a trusted partner to over 350 leading financial services clients, delivering wealth management technology and products. We invest significantly in our technology hubs and innovation labs, which inspire and drive our creative, future-focused mindset. We take pride in developing cutting-edge, digital first technology solutions that support our clients to achieve financial security and prosperity for their customers.
About The Team/Project
The Information Security Officer is responsible for supporting the implementation and operation of the organisation's Information Security Management System (ISMS) within their region. This role will support security risk management, policy compliance, audits (internal, external and client), training and awareness, supply chain risk, and support security operations in incident management. As a Managed Service Provider (MSP) and data processor for clients, the analysts will enable security controls aligning with client contractual obligations, regulatory requirements, and industry best practices. The analyst will work closely with global security leadership, regional stakeholders and clients to address both internal and client-specific security challenges
What You’ll Do
The position is within the Information Security team. Main activities will include but are not limited to:
Internal Audit & Assurance:
- Support the implementation and operations of the ISMS within the region.
- Support alignment with global security policies and regulatory requirements including ISO27001, SOC2 type II and PCI-DSS.
- Support continuous assessment and improvement of security controls and processes.
Information Security Risk Management
- Support, identify, assess, and mitigate security risks.
- Maintain the risk register and track remediation activities.
- Provide risk-based guidance to business units, IT teams, and client-facing operations.
Information Security Policy & Standards
- Ensure compliance with corporate security policies, frameworks, and client-specific security mandates.
- Develop and enforce security standards and client requirements.
- Input into periodic reviews and updates to security policies to align with evolving requirements.
Information Security Audit & Compliance
- Support internal and external security audits, ensuring timely remediation of findings.
- Provide security assurance to clients by responding to security questionnaires and participating in client audits.
- Coordinate with service delivery teams to meet client-specific obligations.
- Monitor and report on security posture, client security commitments, and compliance status.
Information Security Training & Awareness
- Support the delivery of security awareness programs
- Support phishing exercises and other training initiatives to enhance security culture.
- Collaborate with HR and other departments to ensure security education is embedded in employee onboarding and ongoing training.
Supply Chain Risk Management
- Support the assessment and management of security risks associated with third-party vendors and suppliers.
- Support security requirements are included in vendor contracts and SLAs.
- Enable regular security assessments of critical suppliers, considering the impact on client services.
Security Operations & Incident Management Support
- Assist in managing and responding to security incidents within the region, to ensure rapid containment and remediation.
- Work with the Security Operations team to protect both internal and client environments.
- Support post-incident reviews and contribute to continuous improvement in incident handling, including lessons learned for client operations.
Qualifications and Experience
• Bachelor’s degree in Information Security, Computer Science, or related field (or equivalent experience). • 3+ years of experience in an information security role, preferably with regional oversight in an MSP or data processing environment. • Good understanding of ISO27001, NIST, GDPR, and other security and data protection frameworks. • Experience in security risk management, audits, compliance, and client security assurance. • Knowledge of security operations, incident response, and managed security services. • Familiarity with supply chain security and third-party risk management. • Good communication and stakeholder management skills, with experience working with clients on security matters. • Ideally security certifications such as CISSP, CISM, or CRISC are preferred.
Working at Bravura
Our people are the heart of our business. We work hard to provide a rich employee experience and a robust framework for ongoing career development.
- Competitive salary and employee benefits scheme.
- Flexible working hours, we value work-life balance.
- Maternity/ Parental (including secondary) leave policy.
- Cab facility available in Delhi/NCR.
- Meal facility available
- Free Medical Insurance
So, what’s next?
We make hiring decisions based on your experience, skills and passion so even if you don’t match every listed skill or tick all the boxes, we’d still love to hear from you.
Please note that interviews are primarily conducted virtually and if you require any reasonable adjustments or would like to note which pronouns you use, please let us know.
All final applicants for this position will be asked to consent to a criminal record and background check. Please note that people with criminal records are not automatically barred from applying for this position. Each application will be considered on its merits.
Youtube Video
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits CISM CISSP Compliance Computer Science CRISC FinTech GDPR Incident response ISMS ISO 27001 NIST Risk management Security assessment SLAs SOC 2
Perks/benefits: Career development Competitive pay Flex hours Medical leave Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.