11 Sep
|
Concept Medical
|
Surat
11 Sep
Concept Medical
Surat
Role Overview
We are looking for a Senior Manager – IT Governance to lead IT Governance, Information Security, Risk & Compliance, ISMS, Business Continuity, and IT Audit.
The role will serve as the Group ISMS Owner for ISO/IEC 27001:2022, ensuring robust governance, risk management, compliance, security controls, and business resilience across the organization.
Key Responsibilities
Own ISO/IEC 27001:2022 ISMS, including SoA, risk assessment, treatment plans, policies, and risk acceptance.
Lead IT Governance, Risk & Compliance (GRC) and internal/external audit readiness.
Govern IAM, PAM, MFA, SoD, and quarterly access reviews.
Drive ISO 22301 Business Continuity & Disaster Recovery governance.
Oversee cybersecurity governance, incident response, VAPT, vulnerability management, SIEM, and security controls.
Drive DPDP Act & GDPR readiness and third-party/vendor security assurance.
Ensure IT compliance with ISO 13485, GxP, and applicable regulatory requirements.
Align IT security controls with NIST CSF and CIS Controls.
Lead the IT Governance team and provide effective risk, compliance, and security reporting to management.
Candidate Profile
10–15 years of relevant IT / Information Security experience.
At least 4 years specifically in Information Security Governance, IT Compliance, Risk Management, or Management Systems.
Robust hands-on experience with ISO 27001 ISMS and ISO 22301.
Experience in regulated industries, preferably Medical Devices, Pharma, Healthcare, or Life Sciences.
Robust knowledge of IT risk, audits, IAM, cybersecurity, ITGC, BCM, privacy, and vendor security.
Experience: 10–15 Years
Certifications – Preferred ISO 27001 / ISO 22301 Lead Auditor or Implementer | CISA | CISM | CRISC | CISSP
📌 Senior Manager – It Governance Surat
🏢 Concept Medical
📍 Surat