06 Aug
|
IAMOPS | Growth Fanatics DevOps
|
Pune
06 Aug
IAMOPS | Growth Fanatics DevOps
Pune
Compliance Associate – ISO 27001 Implementation & Information Security
Company: IAMOPS
Location: Pune, India , Surat India
Employment Type: Full time
Experience: 2–5 Years We are looking for a Compliance Associate with strong hands-on experience in implementing and maintaining Information Security Management Systems (ISMS) based on ISO 27001 and related security frameworks. This is an implementation-focused role. We are looking for someone who has practical experience configuring, implementing, documenting, and maintaining ISO 27001 controls—not someone whose primary experience is limited to conducting audits. Key Responsibilities
Lead the implementation and continuous improvement of ISO 27001 Information Security Management System (ISMS).
Design, implement, and maintain security controls aligned with ISO 27001 Annex A requirements.
Develop, review, and maintain information security policies, procedures, standards, and operational documentation.
Perform risk assessments, risk treatment planning, and maintain risk registers.
Coordinate implementation of technical and administrative security controls across cloud and IT environments.
Work closely with DevOps, Cloud, Infrastructure, and Engineering teams to implement security requirements.
Implement and maintain compliance with ISO 27701, ISO 42001, NIST Cybersecurity Framework, and GDPR where applicable.
Support implementation of Identity and Access Management (IAM), Single Sign-On (SSO), privileged access controls, and user access review processes.
Establish asset management, data classification, information handling, and data protection controls.
Configure and maintain security documentation, Statement of Applicability (SoA), control registers, and compliance evidence.
Monitor compliance activities and ensure continuous adherence to implemented security controls.
Coordinate internal compliance activities and support external certification assessments by preparing documentation and evidence.
Track non-conformities, corrective actions, preventive actions, and continuous improvement initiatives.
Conduct vendor security assessments and third-party risk evaluations.
Deliver security awareness training across the organization.
Prepare management reports, compliance dashboards, and Management Review Meeting (MRM) documentation.
Support clients during security implementation projects and provide compliance guidance.
Required
Skills
Strong hands-on experience implementing ISO 27001 controls in production environments.
Experience building and maintaining an Information Security Management System (ISMS).
Good understanding of
ISO 27001
ISO 27701
ISO 42001
NIST Cybersecurity Framework
GDPR
📌 Compliance Associate (Pune)
🏢 IAMOPS | Growth Fanatics DevOps
📍 Pune