
ISO Lead Analyst - Vice President
- Job Req Id:
- 25911229
- Location(s):
- Mumbai, Maharashtra, India
- Job Type:
- Hybrid
- Posted:
- Oct. 08, 2025
Discover your future at Citi
Working at Citi is far more than just a job. A career with us means joining a team of more than 230,000 dedicated people from around the globe. At Citi, you’ll have the opportunity to grow your career, give back to your community and make a real impact.
Job Overview
Job Requirements:
This Information Security role is a senior level professional responsible for driving efforts to support governance, risk, and compliance for CISO at Citi. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's cyber and information security policy and country regulatory related requirements. The role is part of the Cyber Governance, Control and Policy Team.
Job Responsibilities:
Manage and validate deliverables of all Information Security (IS) programs, ensuring closure per agreed timelines and goals
Engagement with APAC regulators on IS related matters
Manage regulatory exams and internal & external audits
Work closely with Global & Regional Information Security teams to improve processes and reduce risk, and support the IS regulatory related activities
Prior successful regulatory delivery experience (Bank/Assessor/Regulator side) in a senior capacity is essential
Manage internal/external resources to organize cyber-attack simulations and penetration testing, coordinating, and overseeing vulnerability, mitigation/remediation/correction action plans, and issues management process
As a key member of the IS team, with significant exposure globally and regionally, the role holder must have a proven track record of delivering complex regulatory assessments and requirements
Accountable for delivery of the associated remediation from regulatory assessments
Proficiency in preparing periodic updates / reports / presentation deck for both internal stakeholders and regulators
Provide timely and appropriate updates to regional and global stakeholders; escalate issues in a timely manner to senior management
Build and develop partnerships with business, IT, risk, compliance, audit, senior management staff and stakeholders
Facilitate and lead cross-functional meetings, assist in developing analytics and reporting to track effectiveness of process and identify potential process improvements
Acts as IS/Cybersecurity SME to senior stakeholders and/or other team members.
General requirements:
Engagement required across global & regional teams.
Candidate will be required to work across time zones especially NAM time zone.
Expectation to work with partners in other Business functions such as Technology & CTI.
Skills & Qualifications:
8-10 years of relevant experience in Cyber Security Governance & Risk & Control, Cyber Security Operations / Technology Risk Management / Third-party Risk Management or IT Audit, preferably with experience gained from banking / finance services industry / consultancy / control compliance or legal disciplines
Experience in assessing cyber regulatory compliance.
Relevant professional qualifications with Risk / Security management e.g. CISSP, CRISC, CISM, CISA, or equivalent
Strong understanding of International Standards/Frameworks such as: NIST, ISO 27001series, COBIT, CIS, GDPR, DORA, etc.
Proficient in interpreting and applying policies, standards, and procedures
Excellent project management and organizational skills.
Strong collaboration, reporting writing and communication skills with highly proficiency in both spoken and written English.
Certifications: One of Information Security Certificate e.g. CISSP, CRISC, CISM, CISA, or equivalent
Qualification - Bachelor’s/University degree or equivalent experience in Computer Science, Cyber Security, Computer/Information Engineering, Information Technology, or a related discipline is preferred
This job description provides a high-level review of the types of work performed. Other job-related duties may be assigned as required.
------------------------------------------------------
Job Family Group:
Technology------------------------------------------------------
Job Family:
Information Security------------------------------------------------------
Time Type:
Full time------------------------------------------------------
Most Relevant Skills
Please see the requirements listed above.------------------------------------------------------
Other Relevant Skills
For complementary skills, please see above and/or contact the recruiter.------------------------------------------------------
Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law.
If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi.
View Citi’s EEO Policy Statement and the Know Your Rights poster.

Global Benefits
Discover the top benefits offered to our global workforce, designed to support your well-being, growth and work-life balance. Explore a few of the highlights that make working with us rewarding.

Explore More Jobs
-
Wholesale Credit Risk– Public Sector – Assistant Vice President
- Mumbai, Maharashtra
-
Wealth Collateral Operations Analyst
- Belfast, Northern Ireland
-
VP - Non-Employee Staffing Office Onboarding Lead
- Mumbai, Maharashtra, Chennai, Tamil Nadu
-
Universal Banker - C04 - ROCKVILLE
- Rockville, Maryland
-
Early Careers Talent Network
Sign up to receive personalized job matches based on your skills and interests. We'll help you discover opportunities that align with your goals.
-
Career Professionals Talent Network
Sign up to receive tailored job matches based on your skills and experience. Discover opportunities that align with your ambitions.