Job Description –
Cyber Security Auditor
(P1 Level)
Job Description –
Cyber Security Auditor
(P1 Level)
Reporting Structure:
Reports to Lead Auditor / Sr. Manager, Systems Audit
Education:
Graduate in Computer Science/IT or B. Tech or BCA
Certifications:
CISA / CISM / CISSP / CEH / CRISC preferred.
ISO 27001 Lead Auditor/Lead Implementer
Experience (years):
2 to 4 yrs. of experience in the field of information security operations and Banking Technologies Domains like Application Security, Database management and administration, / Network security and SOC / Payment systems in addition to IT General controls (ITGC).
Exposure to the Banking / Finance / Payment industry domains would be preferrable.
Hands-on experience in the following areas:
Writing Information security policies, procedures, and processes
Conducting risk assessment covering Cyber Security domains encompassing any of the below domains:
Application Security:
Mobile application assessment, OWASP security practices for applications, VA/PT/AppSec, source-code review,
black/grey/white box testing, application SDLC, Robust knowledge of programming languages for applications.
Database Security:
Database administration and management - Oracle, MS SQL etc., Database Activity Monitoring tools, data security and localization.
Payments Systems Security:
Understand payment systems and architecture such as SWIFT, UPI, IMPS, ATM, Internet Banking, Mobile Banking, Core Banking System, payment gateway, ATM switch and terminal.
Experience in PCI DSS implementation/assessment and ATM end-point security and Cards data security and operations.
Networks Security:
Managing firewalls, routers, proxy, WAF, email filtering, DLP, DDoS protection, data encryption, IPS/IDS, Incident response and investigate security breaches, VA-PT for networks.
Security Operations Centre- Implementation and review.
IT General Controls:
Familiarity with Technical Security controls of Identity & Access Management, Netwo
📌 Cyber Security Auditor (Mumbai)
🏢 Rebit
📍 Mumbai