18 Sep
|
Penta Software
|
Delhi
18 Sep
Penta Software
Delhi
IT Risk & Compliance Specialist
Department: Strategy & Technology
Reports To: Vice President of Strategy & Technology
Works Closely With: Chief Information Security Officer (CISO), Director if Infrastructure
Position Summary The IT Risk & Compliance Specialist supports the organization's governance, risk management, and compliance initiatives by coordinating technology audits, maintaining IT policies and procedures, and assisting with information security programs. This position partners closely with the Vice President of Strategy & Technology and the CISO to help ensure the organization remains audit-ready and compliant with regulatory, client, and industry requirements.
This is an entry to mid-level position ideal for an organized, detail-oriented qualified interested in building a career in IT governance, compliance, and information security.
Essential Responsibilities
- Coordinate activities supporting HITRUST, SOC 2, client security reviews, and other technology audits.
- Maintain the organization's centralized repository of IT policies, procedures, and standards.
- Coordinate policy reviews and updates with department owners to ensure documentation remains current.
- Track audit findings, remediation efforts, risk items, and compliance activities through completion.
- Assist with client security questionnaires and requests for security documentation.
- Support the CISO with governance, risk management, and security initiatives.
- Maintain audit evidence and documentation required for internal and external assessments.
- Assist in developing and improving IT governance processes, documentation, and reporting.
- Collaborate with Infrastructure, Development, Help Desk, Compliance, and Operations to support compliance initiatives.
- Perform other related duties as assigned.
Qualifications
Required
- Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field (or equivalent experience).
- 14 years of experience in IT, compliance, audit, security, or a related field.
- Strong organizational, communication, and documentation skills.
- Ability to manage multiple priorities and meet deadlines.
- Proficiency with Microsoft Office 365.
Preferred
- Experience with HITRUST, SOC 2, HIPAA, or similar compliance frameworks.
- Experience coordinating audits or maintaining technical documentation.
- Familiarity with SharePoint, Microsoft Teams, Jira, ServiceNow, or similar collaboration tools.
- Basic understanding of information security and risk management principles.
Preferred Certifications
- Security+
- ISC Certified in Cybersecurity (CC)
- ITIL Foundation
- I (preferred or willingness to obtain)
Core Competencies
- IT Governance
- Risk & Compliance
- Audit Coordination
- Policy Management
- Documentation
- Organization & Planning
- Communication
- Process Improvement
- Attention to Detail
- Team Collaboration
📌 IT Risk & Compliance Specialist (Delhi)
🏢 Penta Software
📍 Delhi