Description
Job Responsibilities | Manage all audits pertaining to Information & CyberSecurity |
Manage Technology & IT Risk Management program |
Manage Data Privacy program Infosec perspective |
Manage compliance to regulatory legal & statutory requirements from Infosec perspective |
Implement and manage industry recognised security certifcations viz ISO SOC2 etc |
Manage Third Party Risk Management program |
Manage & Govern IS policies |
Key Result Areas | Ensure all audits are effectively managed with no major risks observations reported |
Ensure all the GRC programs are planned executed and completed as per set timelines |
Esnure that the Org security certiifcations are maintained yearly with no major NCs. |
Support Business and other Org functions in audits/ assessments / advisories if needed |
|
| Necessary | Preferred |
Skills/ Capabilities and competencies | Managed Internal & external IT/ IS audits Implemented GRC projects & activities | |
Technical knowledge on security fundamentals and emerging cyber threats | |
Qualification | Graduate | Post Graduate |
Overall Work Experience | 10 years | |
Age (Optional) | | |
Essential Requirement | Technical & Cyber Security domain knowledge and hands on experience | |
Behavioural Attributes | Willingness to learn and take up new challenges in a dynamic environment | |
Prefered Industry | None | Consulting services / Telecom / IT |