IT Security Professional

20 - 25 years

20 - 25 Lacs

Posted:1 day ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

  • Lead enterprise-wide information security strategy and compliance programs.
  • Design Company s policy and procedure.
  • Ensuring Design effectiveness and operational effectiveness of all IT and business Processes.
  • Identify cost effective right security tool and smooth rollout to across organization.
  • Negotiation with vendor for cost optimization.
  • Develop, implement & monitor an information security program to ensure that the integrity, confidentiality and availability of information is owned, controlled and processed by the organization.
  • Conducting Half yearly ISMS Internal Audit & Managing client external Audit, Annual certification audits (ISO 27001, ISO 20001, ISO9001, PCI DSS, SSAE 18 SOC1 & SOC2, GDPR, HiTrust).
  • Annual Data Protection & Privacy Compliance review.
  • Conduct a Risk Assessment on newly introduced project.
  • Ensuring compliance of Onboarding Offboarding, Physical Security, Desktop Management, Server Management (On Premises/ Cloud), Network Management, Application security, Website security, VA PT, hardening, SOC, Access management, BCP, Incident, Change, Problem and capacity management processes.
  • Ensure frequency-based controls are executed on time (e.g. Log Review, User Access Review, Firewall Rule Review, VAPT, infosec training, Background verification etc.)
  • Monthly Security Deck and presentation to senior Management
  • Ensuring Inventory completeness on Laptop, Server, Network devices, Antivirus Report, Patch Report, Encryption report, Vulnerability Assessment, Hardening, Penetration Testing and Health Monitoring tool.
  • Managing Risk Register, Security Incident & Issue tracker.
  • Responding Client s Vendor Risk Assessment Questionnaire.
  • Reviewing IT security related solutions, Mapping current IT controls with upcoming client requirements.
  • Vendor Security review.
  • Ensure Annual BCP/ DR Drill, Ransomware Simulation and Phishing simulation
  • Identify and implement opportunities for automation to improve governance/audit controls.
  • Information Security Awareness sessions.

Personal Skills:

  • Currently working in a

    manager-level role

    within

    Information Security Governance and Compliance

    , with a strong focus on

    IT Security

    .
  • Proficient in

    Advanced Excel

    and

    PowerPoint

    ; knowledge of

    Power BI

    and

    Excel VB Macros

    will be an added advantage.
  • Strong

    communication skills

    with the ability to present findings and recommendations effectively.
  • Excellent

    analytical thinking

    and

    decision-making

    abilities.
  • Ability to manage and oversee compliance initiatives, audits, and IT security governance frameworks.
  • Strong attention to detail with a proactive and solution-oriented mindset.

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
RIA Advisory logo
RIA Advisory

Consulting

New York

RecommendedJobs for You