Department: Risk and Compliance
Employment Type: Permanent - Full Time
Location: Pune
We are seeking a 3 year+ experienced Information Security Risk Officer to join our second line of defence, providing independent oversight, challenge, and assurance of information security practices across the organisation. This role is critical in ensuring that information security risks are effectively identified, assessed, managed, and reported in alignment with regulatory requirements, ISO/IEC 27001 standards, and our enterprise risk management framework.
Reporting to the Group Head of Information Security, you will play a key role in evaluating the design and operational effectiveness of controls that safeguard our information systems and data. You will provide objective, risk-based assurance and contribute to continuous improvement across security governance, incident management, risk management, and compliance activities.
Working closely with stakeholders across IT, Risk, Legal, and Operations, you will help embed security into business processes and projects from the outset, ensuring a consistent and resilient approach to information protection.
This is a hands-on, business-facing role, ideal for someone who is passionate about enabling teams to operate securely while supporting the organisation’s ability to move with agility and confidence. You’ll thrive in a dynamic environment where pragmatic risk management and proactive engagement are key to driving secure business outcomes
Experience
Education
Knowledge
Skills
Ability
To perform and document information security risk assessments
Collaborative team player, comfortable working with IT, Legal, HR, Risk, and operational teams.
To lead small-scale initiatives and driving continuous improvement across security activities.
Quick learner with a growth mindset, able to adapt and be flexible. Strong understanding of Information security and cyber risk frameworks (ISO 27001, NIST CSF, CIS)Proven experience in information security and risk management.Excellent English communication skills (written and verbal).Relevant professional certification(s) (at least one of the following):
Not all required but valued:

We deliver professional services and technology solutions across the risk and insurance market, including claims, underwriting, distribution, regulation, customer experience, human capital, digital transformation and change management.
Our global team of more than 8,000 professionals operate across the UK, Ireland, Bermuda, the U.S., Canada, Spain, Switzerland, and India, providing specialist solutions to more than 1,000 highly regulated and global clients - helping them to manage risk, operate their core business processes, transform, and grow.
Davies U.S. is dedicated to bringing this breadth of insurance sector services to America and is quickly expanding. We provide valuable integrated claims capability and resources, operational and consulting solutions for the insurance market, and innovative InsurTech.