11 Sep
|
Concept Medical
|
Surat
11 Sep
Concept Medical
Surat
Role Overview
We are looking for a Senior Manager – IT Governance to lead IT Governance, Information Security, Risk & Compliance, ISMS, Business Continuity, and IT Audit .
The role will serve as the Group ISMS Owner for ISO/IEC 27001:2022 , ensuring strong governance, risk management, compliance, security controls, and business resilience across the organization.
Key Responsibilities
- Own ISO/IEC 27001:2022 ISMS , including SoA, risk assessment, treatment plans, policies, and risk acceptance.
- Lead IT Governance, Risk & Compliance (GRC) and internal/external audit readiness.
- Govern IAM, PAM, MFA, SoD, and quarterly access reviews .
- Drive ISO 22301 Business Continuity & Disaster Recovery governance.
- Oversee cybersecurity governance, incident response, VAPT, vulnerability management, SIEM, and security controls.
- Drive DPDP Act & GDPR readiness and third-party/vendor security assurance.
- Ensure IT compliance with ISO 13485, GxP , and applicable regulatory requirements.
- Align IT security controls with NIST CSF and CIS Controls .
- Lead the IT Governance team and provide effective risk, compliance, and security reporting to management.
Candidate Profile
- 10–15 years of relevant IT / Information Security experience.
- At least 4 years specifically in Information Security Governance, IT Compliance, Risk Management, or Management Systems .
- Strong hands-on experience with ISO 27001 ISMS and ISO 22301 .
- Experience in regulated industries , preferably Medical Devices, Pharma, Healthcare, or Life Sciences.
- Robust knowledge of IT risk, audits, IAM, cybersecurity, ITGC, BCM, privacy, and vendor security.
- Experience: 10–15 Years
Certifications – Preferred ISO 27001 / ISO 22301 Lead Auditor or Implementer | CISA | CISM | CRISC | CISSP
📌 Senior Manager – IT Governance (Surat)
🏢 Concept Medical
📍 Surat