02 Sep
|
ACL Digital
|
India
Information Security & QMS Analyst
Experience: 2–5 Years | Locations: Chennai (1) | Bengaluru (1)
Role Overview
Support Information Security, Data privacy, QMS activities, including audits, contract reviews, project security assessments, in alignment with ISO 9001 and ISO 27001. This is a work-from-office role.
Core Responsibilities:
- Audits & Assessments – Coordinate & support, external audit certification, customer audits, conduct internal audit, handle Information Security questionnaires and third-party vendor risk assessments.
- Contracts & Privacy – Review contracts, MSAs and Information Security clauses; support implementation of PII/privacy controls in line with GDPR and India’s DPDP Act.
- Project Security – Conduct & support project security audits covering SDLC, Secure SDLC, and secure coding practices with Project& program Delivery teams.
- QMS/ISMS – Maintain policies, procedures, standards, and records; track risks, non-conformities, corrective actions, and compliance gaps to closure.
- Stakeholder Collaboration – Work with IT, HR, Legal, Delivery, and other stakeholders to implement, audit and maintain ISMS,
QMS & privacy controls.
- Awareness & Reporting – Conduct Information Security awareness sessions and prepare compliance dashboards, trackers, reports, and management review inputs.
Required Skills:
- 2–5 years of experience in QMS, Information Security, GRC and Data Privacy.
- Working knowledge of ISO 9001, ISO 27001:2022, and its 93 Annex A controls.
- Implementation knowledge of ITGC/IT controls and Information security controls.
- Experience/exposure to internal, external, and customer audits, risk assessments, third-party reviews and contract/security clause reviews.
- Working knowledge of Secure SDLC, secure coding, GDPR & India’s DPDP Act.
- Robust communication, stakeholder coordination, analytical & documentation skills.
Preferred:
- ISO 27001 / ISO 9001 Internal or Lead Auditor certification.
- Experience working in Software programming and Information Technology related organizations.
- Exposure to GRC, privacy, or Information Security governance.
📌 Information Security Analyst (India)
🏢 ACL Digital
📍 India