CHIEF INFORMATION SECURITY OFFICER Vedanta, a forward-thinking and expansion-driven enterprise, operates as a fully integrated producer across multiple sectors, including Oil & Gas, Zinc–Lead–Silver, Aluminum, Power, Iron Ore & Steel, Copper & Nickel, Cobalt, Ferry-Chrome, and Manganese. Additionally, the company is rapidly scaling its metal recycling capabilities and expanding its portfolio of critical minerals. Vedanta holds a leading position in power generation, transmission, renewable energy solutions, optical fiber production, and display glass manufacturing. Leveraging world-class, cost-efficient, and long-lasting assets, Vedanta plays a pivotal role in India’s economy, contributing 1.4% to the country’s GDP. Internship program listings Gondola Copper Mines (KCM) Plc, a subsidiary of Vedanta Resources, stands as Zambia’s premier copper producer. The company is positioned for substantial expansion, providing compelling prospects to capitalize on mineral and human capital assets to bolster stakeholder value and solidify its reputation as Zambia’s flagship enterprise. To contribute to the realization of this strategic vision, KCM is actively seeking qualified candidates for the following positions: MAIN ROLES & RESPONSIBILITIES Oversee the implementation and management of IT and OT security programs to ensure robust protection and compliance with industry standards. Establish and enforce a robust security framework through the development and continual refinement of strategic initiatives, policies, and standardized procedures. Develop and enhance the Information Security Management System (ISMS) in alignment with internationally recognized standards. Material risks must be escalated in accordance with established governance frameworks. Coordinate and oversee overarching operational technology (OT) security measures for Industrial Control Systems (ICS), Supervisory Control and Data Acquisition (SCADA) systems, and Programmable Logic Controllers (PLCs). Enhance cybersecurity measures by establishing comprehensive logging and monitoring systems, deploying robust malware protection protocols, and fortifying overall security infrastructure. Efficiently acquire, develop, and manage secure systems to ensure compliance with organizational standards and industry best practices. Oversee the security of suppliers and third-party entities. Ensure the implementation and effectiveness of business continuity and disaster recovery measures to maintain operational resilience. REQUIREMENTS AND QUALIFICATIONS A relevant bachelor’s degree in Information Security, Computer Science, Information Technology, or a closely related field is required. Qualified candidates must possess certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CASM), or credentials in ISO/IEC 27001 as Lead Implementer or Lead Auditor. These certifications are essential requirements for the role, demonstrating expertise in information security management and compliance frameworks. A minimum of 10 to 15 years of professional experience in roles focused on information security, cybersecurity, or IT risk management is required. Experienced senior leader with a minimum of 5–7 years in directing enterprise information security programs is required. Demonstrated expertise in industrial, regulated, IT, and operational technology (OT) security environments is required. Proven proficiency in conducting ISO 27001 audits, regulatory compliance assessments, and assurance evaluations is required. Sharing is caring! We encourage you to utilize the icons below to share this opportunity with your network.
---
**
[Click the Apply button below to apply, and Create my CV to build a CV tailored to this offer, professionally]