Job Description:
Hands-on experience in SOC 2 Type I and Type II implementation/readiness and delivery.
Solid understanding of AICPA Trust Services Criteria (TSC).
Experience with control mapping, gap assessments, evidence collection and validation.
Understanding of Type II observation periods, control operating effectiveness and exceptions.
Experience coordinating with external auditors/CPA firms.
Ability to manage SOC 2 engagements from kickoff through audit closure.
ISO 27001 Expertise
Robust understanding of ISO/IEC 27001:2022 requirements.
Experience implementing and maintaining an Information Security Management System (ISMS).
Conducting ISO 27001 gap assessments and readiness assessments.
Understanding of Annex A controls and applicability assessment.
Experience with:
Risk assessment and risk treatment
Statement of Applicability (SoA)
Information security policies and procedures
Internal audits
Management reviews
Corrective actions / NC management
Continual improvement
ISMS metrics and monitoring
Experience supporting organizations through ISO 27001 certification audits.
Understanding of Stage 1 and Stage 2 audit processes.
Governance, Risk & Compliance (GRC)
Solid understanding of GRC frameworks and principles.
Ability to establish and maintain governance processes.
Experience with:
Risk management
Control frameworks
Compliance assessments
Regulatory requirements
Policy governance
Exception management
Risk acceptance
Corrective and preventive actions
Compliance monitoring
Ability to map controls across multiple frameworks such as SOC 2, ISO 27001, PCI DSS, GDPR, HIPAA, etc.
Compliance & Audit Management
Manage internal and external compliance assessments.
Prepare organizations for certification and attestation audits.
Develop audit plans, evidence trackers and compliance calendars.
Review audit evidence for completeness and adequacy.
Manage audit observations, non-con
📌 Sr Consultant Delhi
🏢 TAC Security
📍 Delhi
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.