03 Sep
|
PNB Housing
|
Noida
Ensure compliance with applicable regulatory, legal, contractual, and organizational information security requirements.
Governance & Compliance
- Establish, maintain, and continuously improve the organization's Information Security Management System (ISMS) in accordance with ISO 27001, NIST, PCI-DSS, SOC 2, and other applicable security frameworks and standards.
- Ensure compliance with applicable regulatory, legal, contractual, and organizational information security requirements.
- Lead internal and external audits, compliance assessments, certification programs, and management reviews.
Risk Management
- Drive enterprise-wide information security risk assessments and maintain the information security risk register.
- Identify, assess, monitor, and report cyber security and technology risks to senior management and relevant stakeholders.
- Track risk treatment plans and ensure timely closure of identified security gap
Security Reviews & Assurance
- Conduct security assessments and reviews of applications, infrastructure, third-party vendors, and cloud environments.
- Review recent technology initiatives, products, applications, and projects from an information security perspective and recommend appropriate controls.
- Oversee Vulnerability Assessment and Penetration Testing (VAPT) programs and ensure remediation of identified vulnerabilities.
Security Operations & Incident Management
- Monitor emerging threats, vulnerabilities, and cyber security trends and issue security advisories and alerts to stakeholders.
- Support Security Operations Center (SOC) activities by reviewing security incidents, trends, and control effectiveness.
- Lead Cyber Security Incident Response, Investigation, Recovery, and Lessons-Learned activities.
- Coordinate with internal teams and external partners during major security incidents and regulatory reporting requirements.
Awareness & Stakeholder Management
- Design and deliver information security awareness programs, training sessions, and phishing simulation campaigns for employees and third parties.
- Prepare and present security risk, compliance, audit, and governance reports to executive leadership and governance committees.
- Collaborate with business, technology, risk, legal, audit, and compliance teams to strengthen the organization's security posture.
📌 Senior Manager - IT GRC (Noida)
🏢 PNB Housing
📍 Noida