- Identify policy and process requirements as per Client Contractual requirement, GISP and industry standards like ISO 27001, PCI DSS, SOC
- Experience in handling external audits and evidence requirement based on all the controls which are applicable for ISO27001, PCIDSS controls
- Experience in infrastructure scan using Tanium and Rapid 7 and Application Security Assessment
- Experience in Vulnerability and patch management and positive knowledge on vulnerability scoring systems (CVSS)
- To work with all stakeholders for collection, review of evidence of various Internal Audit, Client Audits, ISO27001, PCIDSS controls
- Experience in IT Infrastructure auditing (Servers, Network, Applications, Cloud)
- Conducted Internal Security Risk Assessment.
Providing mitigation plan for the identified risk
- Monitoring the audit compliance for all GECSPTISPS Client Contractual requirement.
Education:
- Computer Science or IT Engineering, Telecommunications, Systems, or related degree.
- Understanding of ISO 27001, PCI DSS, SOC standards.
- Knowledge of Information Security standards and policies (Internal and General)
Work Exp:
- 5+ years in information security or cybersecurity & IT
- 2+ years in InfoSec team operating in BPO/Backoffice environment
- 1+ years in managing risk, policy & exception management
📌 Assistant Manager (Chennai)
🏢 TP
📍 Chennai
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.