Director Information Security

Toluna

Gurugram

Description

Information Security-Director

Location, Gurgaon, Hyderabad, Hybrid

About Us:

At Toluna, we keep the world’s biggest brands one step ahead of their markets, their competitors, and their customers. For 25+ years we’ve been a leader in consumer insights, and today we’re at the center of our industry’s biggest shift: the move to AI-powered research grounded in real human truth. Brands come to us because we’ve solved a problem most of our industry is still wrestling with: how to move fast without losing trust in the answer. Speed comes from AI we’ve been developing in-house since 2019, always-on platforms, and a 79M+ validated consumer community across 100+ countries

Introduction:

We are seeking an experienced and strategic Information Security Director to lead and mature global enterprise security, governance, risk, compliance, and customer assurance programs. This leadership role is responsible for developing and executing the organization's information security strategy while ensuring effective management of cyber risks across internal operations, third-party ecosystems, and customer engagements.

The ideal candidate will bring deep expertise in information security governance, risk management, compliance, and security operations, with particular emphasis on ISO 27001 Information Security Management System (ISMS) leadership, Third-Party Risk Management (TPRM), and Customer Security Assurance including RFI/RFP and Security Questionnaire Management.

The successful candidate will own the organization's ISO 27001 program, ensuring the ongoing effectiveness, certification, and continuous improvement of the ISMS while aligning

Responsibilities:

  • Develop and execute the enterprise information security strategy and roadmap.
  • Serve as executive owner of the ISO 27001 Information Security Management System (ISMS).
  • Lead certification audits, surveillance audits, internal audits, risk assessments, and management reviews.
  • Own and mature the Third-Party Risk Management (TPRM) program.
  • Conduct vendor security assessments and oversee remediation activities.
  • Lead customer-facing security assurance programs, including RFIs, RFPs, and security questionnaires.
  • Establish and maintain a repository of approved customer security responses.
  • Oversee governance, risk, compliance, incident response, vulnerability management, and security operations.

Your Profile:

  • Bachelor’s degree in information security, Cybersecurity, Computer Science, Information Technology, or related field.
  • 12+ years of progressive experience in information security, cybersecurity, risk management, or compliance.
  • 5+ years of leadership experience managing security teams and programs.
  • Demonstrated experience leading and maintaining an ISO 27001-certified ISMS.
  • Extensive experience with TPRM, vendor security assessments, customer security reviews, and RFI/RFP management.
  • Proven experience managing external certification audits, risk assessments, and remediation programs.
  • Strong knowledge of ISO 27001, CIS Controls, and privacy frameworks.
  • Excellent communication, executive presentation, and stakeholder management skills.

Preferred Qualifications & Certifications

• Master's degree in Cybersecurity, Information Systems, Risk Management, or Business Administration.

• CISSP

• CISM

• CRISC

• CISA

• ISO 27001 Lead Auditor

• ISO 27001 Lead Implementer

• CCSP

Our Values:

  • Acting with Ownership- Demonstrating individual accountability
  • Bringing a forward mindset- Being action-oriented, bold and entrepreneurial
  • Collaborating with Curiosity- Exhibiting teamwork through togetherness
  • Discussing openly, committing jointly- Sharing your views openly
  • Embracing empathy- Being egoless & caring

What we Offer:

At Toluna, we’re all about creating a welcoming, diverse workplace where everyone can thrive. We offer competitive pay, great benefits, and plenty of opportunities to grow within our global team. Inclusion and respect are at the heart of what we do. Our community connects over 72 million people across 70 countries. If you’re passionate about making an impact, we’d love to have you on board.

Other Benefits:

As per the country

Join our global team. We welcome big thinking and reward great work.