15 Sep
|
A Global data engineering
|
Noida
15 Sep
A Global data engineering
Noida
We are seeking energetic and 10+ years of experience Information Security Professional to assist and drive Information security and compliance reporting initiatives. You will play a desirable role in aligning organizational compliance with ISMS policies and ISO 27001:2022 standard's requirements and assist in driving impactful ISMS programs across all levels. The ideal candidate should possess:
- Excellent verbal written communication skills and leadership skills
- Should be expert in at least 5 areas from the following: a. ISO / IEC 27001:2022 ISMS, ISO / IEC 22301:2019 BCMS b. Risk Assessment and Gap Assessments c. SOX, SOC 1, SOC 2 d. HIPAA and Hi-TRUST e. Internal Audit and External Audit f. Policies and Procedures Review g. Control Testing and Incident Response Activities h. Stakeholder Management i. Cyber Security
- Knowledgeable in Privacy laws, Governance, Risk, and Compliance
- Readiness to manage cross-functional teams and drive organization-wide security changes and build a security-first culture.
- Having strong technical knowledge in managing / supporting IT infrastructure will be an added advantage.
- Excellent understanding of tools such as Windows AD, O365, security infrastructure like SASE, WAF, Firewall Network and Application, DevSec-Ops, CI-CD pipeline, SDLC, IAM and IGA, MFA application security, RSA Archer, cloud security (AWS/Azure/GCP/OCI).
Roles & Responsibilities:
- Manage and Lead ISMS policy,
procedures and records review and documentation
- Coordinate all ISMS initiatives for the organization
- Help ensure organizational compliance with ISMS policies and ISO 27001:2022 standard's requirements
- Ensure that the ongoing updates or initiatives taken under ISMS are presented to the management on an annual basis
- Help ensure implementation of employee awareness program in the organization
- Coordinate and manage internal audits, management reviews and execution of corrective actions preventive actions as per defined timelines
- Track and facilitate closure of observations/gaps/non-conformities identified during the internal/external audits
- Follow-up on all incidents reported and discuss with ISO team for the root cause and share learning opportunities with all the departments
- Follow-up with respective departments for adherence to ISMS policies and procedures Mandatory Education: 1. B.E. / B.Tech. / M. Tech / MS / MBA Graduate with 3-4 Years of Regular Education Degree
Preferred Certifications (Atleast 2 - One should be Privacy Certification):
- ISO/IEC 27001:2022 ISMS Lead Implementor / Auditor
- ISO/IEC 27701:2025 PIMS Lead Implementor / Auditor
- Certified Data Privacy Solutions Engineer (CDPSE)
- CIPP/E
Need Immediate Joiners for the role.
Please share resumes to
[email protected]
📌 Division Manager (Noida)
🏢 A Global data engineering
📍 Noida