Team Member - Infosec
`Annexure I: ABG Job Description Template`HayGroupJob Description Template 2024Ver. 1.1Basic Details: Fill the required information about JobPoornata PositionNumber of the job9Poornata PositionTitle of the job(30 characters max)Chief ManagerBusiness Aditya Birla Capital Business Unit Aditya Birla Health InsuranceEffective Date(DD/MM/YYYY) 29-10-20251) Job Purpose: Write the purpose for which the job exists (in 2-3 lines) (Max 1325 Characters)1. Governance, Risk and Compliance Audit (GRCA): Ensures audits cover governance structures,regulatory compliance, security frameworks, business continuity, and incident response with regulardocumentation and remedial actions.2. Third-Party Risk Management (TPRM): Evaluates vendor security posture using questionnaires, AIdrivenassessments, audits, and contract reviews, ensuring compliance with privacy laws and effectiveincident response.3. Intermediaries Audit: Reviews intermediaries’ cyber policies, board-approved controls, and oversightmechanisms to ensure safe data handling and regulatory compliance.4. Legal Document Review: Ensures contracts include clear clauses for information security, data privacy,AI governance, breach notification, and regulatory adherence aligned with organizational policies.5. AI Security for Third-Party Vendors: Requires transparency about AI use, robust security controls, biasmitigation, continuous monitoring, incident response, and regulatory compliance prior to onboarding AIvendors.2) Job Context & Major Challenges: Write the specific aspects of the job that provide a challengeinternal and external) to the jobholder in the context of the Business/Unit/Function/Department/Section(Max 3975 Characters)The role operates within a complex and dynamic environment where ensuring robust information securitygovernance, risk management, and compliance (GRCA) is critical. Internally, the job holder faces thechallenge of integrating evolving regulatory requirements, organizational policies, and technologicaladvancements into practical and enforceable security frameworks, while aligning with business objectivesacross multiple departments.Major internal challenges include:`Annexure I: ABG Job Description Template`HayGroupJob Description Template 20242) Job Context & Major Challenges: Write the specific aspects of the job that provide a challengeinternal and external) to the jobholder in the context of the Business/Unit/Function/Department/Section(Max 3975 Characters)1. Managing coordination and communication between diverse stakeholders such as IT, legal, HR,compliance and business units to ensure unified risk mitigation strategies.2. Keeping pace with rapidly changing cyber threat landscapes and ensuring that control measures—including AI security protocols—remain effective and relevant.3. Balancing stringent security requirements with operational efficiency and business needs, especiallywhen dealing with third-party risk management (TPRM) and onboarding AI vendors.4. Maintaining thorough documentation, audit readiness, and remediation tracking amid frequentchanges and updates.5. Ensuring staff training and awareness programs effectively address evolving threats and compliancemandates.Externally, the sfbhjazjob holder contends with challenges related to vendor and third-party management,including:1. Conducting rigorous assessments of vendors' security postures, AI governance, and data privacypractices amidst diverse technological capabilities and regulatory environments.2. Navigating contractual negotiations to embed adequate security and compliance clauses, includingthose for AI-related risks.3. Addressing complexities of auditing intermediaries and ensuring they meet the organization’s securityand regulatory expectations.4. Managing incident response and liability concerns that arise from third-party breaches or AI systemfailures.5. Staying abreast of emerging regulations globally that impact vendor management and AI security,ensuring continuous compliance.Overall, the role demands a proactive, multidisciplinary approach to information security that anticipatesrisks, drives compliance, nurtures vendor relationships, and fosters a security-conscious culture withinthe organization and its extended ecosystem.3) Dimensions: Mention quantitative or qualitative parameters that are relevant for the job and providea better understanding of the scope and scale of the job.Business Workforce Number(Max 254 Characters) 8500 (All ABHICL Employees)Unit Workforce Number(Max 254 Characters) 8500 (All ABHICL Employees)`Annexure I: ABG Job Description Template`HayGroupJob Description Template 2024Function Workforce Number(Max 254 Characters) 8500 (All ABHICL Employees)Department Workforce Number(Max 254 Characters) 8500 (All ABHICL Employees)Other Quantitative and ImportantParameters for the job: Budgets/Volumes/No. of Products/Geography/Markets/ Customers or any other parameter1. Overseeing security and compliance for "N" numberof third-party vendors, including AI service providers,intermediaries, and contractors across diverse servicelines.2. Reviewing and managing compliance for a largevolume of legal agreements annually—commonlyhundreds—that involve data privacy, security clauses,and AI governance provisions.3. Supporting operations across ABHICL, ensuringadherence to regional cybersecurity regulations (e.g.IRDAI & DPDPA in India).4. Coordinating multiple internal and external auditsyearly, including GRCA, TPRM, intermediaries, and AIcompliance assessments.4) Key Result Areas: Write the key results expected from the job and the supporting actions for each ofthese key result areas (For majority of jobs typically there could be 4- 7 key result areas)- Maximum 10KRAs can be updatedKey Result Areas (Max 1325 Characters) Supporting Actions (Max 1325 Characters)Information Security GovernanceDevelop and enforce security policies; ensurecompliance through audits and continuousmonitoringRisk Management & Compliance Conduct GRCA & TPRM audits; manage riskremediation & track clousre of findingsVendor & Third-Party SecurityAssess and onboard vendors including AI vendors,maintain ongoing security and compliancemonitoringLegal and Contractual ComplainceReview and validate contracts for security, privacyand AI governance clauses; coordinate with legalteamsReporting & communication Provide regular reports on security posture, risksand audits status to stakeholdersContinuous ImprovementMonitor emerging threats and regulatory changes;drive initiatives to enhance security posture.`Annexure I: ABG Job Description Template`HayGroupJob Description Template 2024Ethical & AI GovernanceEnsure AI and automation systems operatetransparently, ethically, and without bias; establishaccountability mechanisms.Audit & Inspection ManagementPlan, coordinate, and oversee internal and externalaudits; remediate any non-compliance findingseffectively.Regulatory & Standards ComplianceKeep abreast of evolving regulations like IRDAI,DPDPA; ensure organizational policies align and areenforced.`Annexure I: ABG Job Description Template`HayGroupJob Description Template 20245) Relationships: Describe the nature and purpose of most important contacts or relationship (exceptsuperior/team members) with individuals, departments, organizations inside and outside of theorganization, that job is required to interact with in order to deliver the job objectivesRelationship Type(Max 80 Characters) Frequency Nature(Max 1325 Characters)InternalLegal team Regular Contract review and legal complianceIT Department Frequent(Daily/Weekly)Security technology deployment, incidentresponseCompliance & All Business As required Regulator adherence and audit coordinationAuditors (Internal/External) Periodic (Quaterly) Security and Compliance auditsCustomers / Business Units Frequent Security requirements gathering, risk impactreviewIncident Response Teams As needed Security incident coordination and resolutionExternalVendors/ Third PartyprovidersOngoing Security Assessment, Compliance MonitoringAI Vendors OngoingAI security evaluation, risk mitigation,governanceRegulatory Authorities As required (AuditCycles)Compliance audits and reportingAuditors (Internal/External) Periodic (Annual) Security and Compliance audits`Annexure I: ABG Job Description Template`HayGroupJob Description Template 2024`Annexure I: ABG Job Description Template`HayGroupJob Description Template 2024SIGN-OFF: Provide the name of the Manager and the jobholder. Signature needed for the hard copy of theJD. Hard copy to be maintained in the organizational record.Job Holder Reports to – ManagerName Jaya Pathak Shrikant IyerSignature (needed forthe hard copy)
Recommended Jobs
Associate - Sourcing Manager (Procurement Operations)
Posted just now
Territory Manager-Business Loan
Posted just now
Location Manager - Retail - Secured - Shimla
Posted just now
Analyst, Data Analytics and Insights
Posted just now

