Job Description
Role Security Compliance Auditor
Location: Pune or Bangalore, India
Who Are We Looking For
Information Security compliance auditor are responsible for ensuring that the process, technology and business solutions are compliance with companys standards. Compliance auditor will be required to engage with internal and external stakeholders to achieve the goals of the company's security organization and business.
The role reports into the Cyber Operations Manager
Position Summary
Experience 8 plus on Compliance & Risk Management
Deep knowledge of Governance and audit
Experience with implementation of corrective action programs
Positive Understanding of IT security policy, procedure, design, and implementation
In depth Knowledge on frameworks including ITIL, ISO27002, SOX, PCI DSS, GDPR and COBIT 5.
Deliver Managed Security Services in compliance with PCI DSS and framework compliance to COBIT 5
Undertake risk classifications and registration in line with the core business principles and policies
Conduct Technical and process compliance internal Audits
Perform evidence gathering to validate compliance as required by Client, and report audit findings
Participate in IT security and process maturity audits as required by Client
Maintain documentation required for security assessments, audits and internal control and control testing.
Security-related Incident handling
Assist client to define Security requirements based upon Business needs and update their Information Security Policy
Inform stakeholders immediately if becomes aware of any vulnerability or weakness in the Services or any Security breach, and recommends a possible solution or mitigation
Comply with data and records management, and electronic records and data archiving as per IT Security policies and processes for company
Knowledge, Skills And Experience
Extensive technical information security experience, including, but not limited to:
Cloud Security
ISO 9001
ISO 27001, ISO 2
📌 Lead Engineer (Pune)
🏢 Mphasis
📍 Pune