Minimum 6 years of information security and risk experience, including minimum 4 years of experience in information protection controls assessments and ISO 27001 information security controls auditing and /or implementing.
Strong information security and privacy standards knowledge.
Excellent information protection risk assessment planning, executing, managing and reporting skills for internal audits as well as third party supplier audits.
Proven ability to operate as a risk-based Quality Assessment (QA) reviewer of audits performed, applying independent judgment based on leading industry practices. Demonstrated sound professional judgment to evaluate control effectiveness in context, separating isolated procedural issues from matters that present meaningful risk or systemic.
Ability to assess contractual security obligations and map them to control testing and evidence.
Experience reviewing and interpreting independent certification and attestation reports (e.g. ISO 27001, SOC 2).
Understanding of risk‑based scoping approaches, including consideration of supplier risk indicators and service context.
ISO 27001:2022 lead auditor or lead implementer certification.
ISO 42001 / AI lead auditor or lead implementer a plus.
Prior KPMG (or Big4) work experience a plus. Familiarity with KPMG policies (e.g.
Global
InfoSec & Privacy Policies, GISP, GAUP) or governance frameworks (e.g. IFDTA) a plus.
Excellent written and verbal communication skills in English, including strong report writing and the ability to present clearly and confidently to senior stakeholders.
Proficient in M365 tools (Word, PowerPoint, Excel, Teams, Copilot), with solid capability to produce explicit, high‑quality reports and presentations.
Strong ability to multitask and work independently within a global team. Proactive, can work with minimal supervision, and work on continuous improvements.
Accountable and collaborative approach, and with excellent stakeholder management skills * Adaptive, quick learner and attention to detail. Experienced working in multicultural environments and sensitive to different business cultures.
📌 Information Protection Assessments - Assistant Manager (Pune)
🏢 KPMG Delivery Network India 1
📍 Pune
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.