08 Aug
|
Girnar Insurance Brokers
|
Gurugram
08 Aug
Girnar Insurance Brokers
Gurugram
Role & responsibilities
Manage and maintain ISO 27001 ISMS and support SOC 2 compliance.
- Lead internal and external security audits, including ITGC and regulatory audits.
- Ensure compliance with IRDAI, Aadhaar, DigiLocker, ISNP, and other applicable regulations.
- Coordinate Vulnerability Assessment & Penetration Testing (VAPT) and track remediation.
- Manage customer, insurer, and third-party security assessments and questionnaires.
- Develop and maintain security policies, standards, and governance documentation.
- Conduct risk assessments and monitor compliance across technology and business teams.
- Work closely with Engineering, IT, Product, and Compliance teams to strengthen the organization's security posture.
Requirements
- 5+ years of experience in Information Security GRC.
- Hands-on experience with ISO 27001, SOC 2, ITGC, VAPT, and security audits.
- Solid understanding of regulatory compliance, particularly IRDAI, Aadhaar, and DigiLocker.
- Experience managing customer security assessments and audit readiness.
- Excellent stakeholder management, communication, and documentation skills.
- Preferred
- Bachelor's degree in Computer Science, IT, Cybersecurity, or a related field.
- Certifications such as ISO 27001 Lead Auditor/Implementer, CISA, CISSP, or CRISC are preferred.
- Experience in the Insurance, FinTech, or BFSI domain is a plus.
📌 Security Manager- GRC (Gurugram)
🏢 Girnar Insurance Brokers
📍 Gurugram