12 Sep
|
Heena Dogra
|
Zirakpur
12 Sep
Heena Dogra
Zirakpur
Job Summary
Responsible for governing information security, IT compliance, and data protection across all HIIMS
hospitals in alignment with NABH standards, ISO/IEC 27001, and the Digital Personal Data Protection
(DPDP) Act, 2023. The role ensures protection of patient data, clinical systems, and audit readiness
across the hospital chain.
Key Responsibilities
- Implement and maintain ISMS as per ISO/IEC 27001
- Ensure NABH Information Management System (IMS) and patient data confidentiality compliance
- Ensure DPDP Act compliance including lawful processing, data security safeguards, and breach
response
- Govern access control, user access reviews, and privileged access management
- Oversee IT General Controls: access, change management, backups, DR & BCP
- Support internal, statutory, NABH, ISO, and ITGC audits
- Manage security incidents and vendor security assessments
- Conduct IT security and data privacy awareness programs
Qualifications & Experience
- Bachelors degree in IT / Computer Science / Information Security
- 6–10 years of experience in IT security, compliance, or IT audit
- 3+ years experience in healthcare or hospital environments
- Experience with NABH and ISO 27001 audits preferred
📌 It Security And Compliance Manager (Zirakpur)
🏢 Heena Dogra
📍 Zirakpur