Hiring.Camp

Information Security Governance Leader

Guardianlife

·

Mar 5, 2026

Location
Chennai, India
Type
Full-time
Department
Security
Seniority
Lead
Experience
10+ years
Closing date
Mar 13, 2026
Source
Workday

Description

Job Description:

Information Security Governance Leader

Job Description

Role Summary

The Information Security Governance (ISG) Leader is a senior leadership role responsible for shared ownership along with US stakeholders for establishing, maintaining, and maturing the enterprise-wide information security governance framework. This individual will serve as a key advisor to BISO and senior leadership, ensuring the organization's security posture is aligned with regulatory obligations, industry standards, and business objectives. The role spans three core pillars: risk and compliance, policy and standards, and audit and assurance.

Key Responsibilities

 Information Security Governance & Policy Management

  • Own and maintain the cybersecurity policy framework, ensuring policies are current, effective, and enforceable.
  • Lead annual policy reviews and updates to reflect regulatory, business, and threat‑landscape changes.
  • Ensure policies and standards align with applicable laws and regulations (e.g., NYDFS) and industry frameworks (e.g., NIST).
  • Provide governance guidance on policy interpretation and applicability across business initiatives.

Risk Management & Security Assurance

  • Provide governance oversight for security risks introduced through new initiatives, platforms, or architectural changes.
  • Review architecture diagrams and security design / threat assessments to validate security‑by‑design principles.
  • Identify and document risks where control gaps exist and ensure appropriate mitigation plans are defined and tracked.
  • Support Third‑Party Risk Management (TPRM) by evaluating security integration and control effectiveness.

Technology & Innovation Governance

  • Act as a security governance advisor for technology governance and innovation governance processes.
  • Review and assess submissions through the Tech Governance process, including pre‑innovation, contracts, and design decisions.
  • Partner with architecture, legal, and risk teams to ensure security requirements are embedded early in the lifecycle.

Regulatory, Audit & Customer Assurance

  • Serve as a primary point of contact for customer and client security engagements, including:
  • SOC 2 and assurance responses
  • Security questionnaires and RFP responses
  • Support regulatory exams and internal/external audits by providing governance artifacts, evidence, and control narratives.
  • Ensure consistent, defensible security governance responses across customers and regulators.

Metrics, Reporting & Executive Communication

  • Define, collect, and report security governance metrics across the organization.
  • Lead the automation of security metrics to improve accuracy and scalability.
  • Prepare and present metrics and insights into Security Working Groups and Risk Committees.
  • Track and report on key indicators such as phishing campaign results and security awareness effectiveness.

Security Awareness & Culture

  • Own and oversee mandatory awareness training programs
  • Lead and expand the security awareness ecosystem, including:
    • Security Champions program
    • Cybersecurity Awareness Month initiatives
    • Design, deploy, and analyze phishing simulation campaigns to strengthen workforce resilience.
    • Foster a culture of shared accountability for information security across the enterprise.

Qualifications & Experience

  • Experience: 10+ years of experience in information security, Governance Risk and Compliance (GRC) roles
  • Certifications: CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CISA (Certified Information Systems Auditor) are highly preferred.
  • Framework Knowledge: Deep understanding of ISO 27001, NIST, and SOC 2.
  • Soft Skills: Strong leadership, communication, and ability to influence stakeholders without direct authority

Location:

This position can be based in any of the following locations:

Chennai

Current Guardian Colleagues: Please apply through the internal Jobs Hub in Workday

Skills

WorkdayCybersecuritySOCRisk ManagementComplianceSOC 2ISO 27001CISSP

Similar Jobs

30

Sr. Information Security Governance, Risk and Compliance Analyst

BCBST · Chattanooga, TN, United States of America · Remote

1 week ago

Information Security Governance Expert

Roche · Madrid Osiris, Spain

1 week ago

Information Security Governance Analyst

Freseniusmedicalcare · PHL Shared Services Philippines - Office · Hybrid

2 weeks ago

Working Student Information Security Governance & Culture

Puma · PUMA Way Headquarters, Germany

2 weeks ago

Information Security Governance & Compliance Officer

Vanderlande · Veghel, Netherlands

2 weeks ago

Information Security Governance, Risk and Assurance Lead

UKRI · Swindon, Wiltshire, United Kingdom, GB · Hybrid

2 weeks ago

Information Security Governance Expert

Roche · Madrid Osiris, Spain

3 weeks ago

AI and Automation Engineer-Information Security Governance

Roche · Madrid Osiris, Spain

3 weeks ago

Lead, Information Security - Governance & Controls

Pru · Wash, 213 Washington St., Newark, NJ, United States of America

3 weeks ago

Information Security Governance, Risk & Compliance (SGRC) Manager

Slrconsulting · Remote - England, United Kingdom · Remote

4 weeks ago

Senior Manager, Information Security Governance, Risk & Compliance

Ryder operates behind the scenes · USA - Remote FL, United States of America · Remote

1 month ago

Information Security Governance Manager

Ebanx · Curitiba | On-site · Onsite

1 month ago

Information Security Governance, Risk and Compliance Specialist

Globalwebindex · Athens, GR +1 · Hybrid

1 month ago

AI Governance & Information Security Lead

Fetch Pet · Sydney · Hybrid

1 month ago

Information Security Governance Analyst

Default Brand · Kansas City, MO

1 month ago

Information Security Governance Risk and Compliance Manager

Business Operations and Legal · LONDON, United Kingdom, GB · hybrid

1 month ago

Information Security Governance, Risk and Compliance Specialist

Globalwebindex · London, UK · Hybrid

1 month ago

Director, Information Security Governance

Pru · Wash, 213 Washington St., Newark, NJ, United States of America

1 month ago

Information Security Governance Manager

RSM · SLV-San Salvador-Calle Cortez Blanco #8 Urb. Madreselva, El Salvador

1 month ago

Werkstudent Communication Information Security Governance (m/w/d)

Datev · Nürnberg Fürther Str. 111, Germany

1 month ago

Information Security Governance - Associate Architect II - GR - 39969-72851-3 - JR189966

Elevancehealth · IND-KA-Bengaluru, Bagmane Solarium City, India +1

1 month ago

Director of Information Security Governance & Compliance

Sobi · Basel, BS, Switzerland · Hybrid

1 month ago

Director of Information Security Governance & Compliance

Sobi · Stockholm, Stockholm County, Sweden · Hybrid

1 month ago

Information Security Governance Expert

GRUPPO BCC ICCREA · ROMA, LAZIO, Italy

1 month ago

Sr. Manager Information Security Governance

Cibc · IL-Chicago, 70 W Madison St Fl 9, United States of America

1 month ago

Information Security Governance, Risk, Compliance (GRC) Supervisor

ARUP Laboratories · Salt Lake City, UT

1 month ago

Information Security Governance and Risk Manager

UKRI · Swindon, Wiltshire, United Kingdom, GB · Hybrid

2 months ago

Associate - Information Security Governance - IT

HKEX Career · HK-TKO 5/F, Hong Kong

2 months ago

Senior Information Security Governance Consultant

Thales · Zaventem_EXC, Belgium · Remote

2 months ago

Sr. Analyst - Information Security Governance, Risk & Compliance

Genesys · Virtual Office (Tamil Nadu), India · Remote

2 months ago