Information Security Consultant
1 week ago
The Information Security Consultant will be responsible for the implementation, assessment, and management of ISO 27001:2022, ISO 27002, and SOC 2 standards for clients. This role involves working independently or alongside senior consultants to help clients achieve and maintain information security compliance and other best practices. The consultant will focus on assessing and ensuring compliance with key security frameworks and will provide vCISO support to various clients.Key Responsibilities:ISO 27001/27002 Compliance:- Assist clients in achieving ISO 27001 certification by identifying and implementing the appropriate controls within the audit scope. - Verify compliance with ISO 27001/27002 controls and provide recommendations for improvement.SOC 2 Compliance:- Assist clients in achieving SOC 2 compliance by identifying and implementing the appropriate Trust Service Criteria (TSCs). - Conduct SOC 2 compliance assessments and ensure the proper implementation of required controls.Risk Assessment and Mitigation:- Conduct risk assessments of business activities, collaborating with stakeholders to manage risks until closure or acceptance. - Provide actionable recommendations to mitigate identified risks.Policy and Procedure Development:- Define, develop, and review information security policies, procedures, guidelines, forms, and templates in line with best practices. - Ensure documentation is up-to-date and aligned with industry standards.Baseline Standards Review:- Create and review baseline standards for operating systems, databases, web servers, and applications. - Recommend improvements based on security assessments.Post-Implementation Audits:- Support post-implementation audits for ISO 27001:2022 to ensure ongoing compliance. - Monitor and assess adherence to established information security standards.Information Security Awareness:- Create and execute organizational information security awareness programs. - Conduct training sessions to ensure employees are knowledgeable about security best practices.Security Standards Compliance:- Assist clients in ensuring compliance with various security standards (ISO 27001, SOC 2, HIPAA, NIST, CIS, PCI DSS, etc.). - Recommend strategies to ensure long-term adherence to security best practices.Incident Response:- Develop and implement incident response plans to handle security breaches and cyberattacks. - Ensure that clients have clear, actionable plans to address potential security incidents.Gap Assessment:- Conduct gap assessments to identify areas of non-compliance and provide remediation strategies.vCISO Support:- Provide virtual Chief Information Security Officer (vCISO) support to clients, advising on information security strategy and governance.Skills and Qualifications:Technical Skills:- Strong background in Information Technology and/or Cybersecurity. - Proficiency in auditing, policy development, database security, firewall design, risk analysis, identity management, access control, and web security. - Knowledge of security frameworks including ISO 27001, SOC 2, HIPAA, NIST, CIS, PCI DSS, and other industry best practices. - Hands-on experience with ISO 27001:2022 and SOC 2 implementations and assessments. - Strong understanding of risk management and the ability to assess and mitigate security risks.Presales and Communication Skills:- Excellent client-facing communication skills. - Strong problem-solving abilities and the capacity to work effectively in a team environment. - Ability to communicate complex technical concepts to both technical and non-technical audiences. - Demonstrated ability to deliver presentations and conduct training sessions.
-
Senior Information Security Consultant
2 days ago
New Delhi, India InfoBeans Full timeJob Title: Information Security Consultant (Senior) Location: Indore / Pune / Chennai (Onsite preferred) Experience: 8+ Years Position Type: Full-time Urgency: Immediate Requirement (Senior)About the Job We are seeking an experienced Information Security Consultant who can support internal teams by implementing security controls, closing audit gaps, and...
-
Information Security Consultant
2 weeks ago
New Delhi, India Tata Consultancy Services Full timeDear CandidateTata Consultancy is hiring for Cyber Security Analyst – Security Compliance & Governance.Experience: 3 -10 Years Location : Delhi NCRRequired Technical Skill Set: Experience in ISMS Implementation as per ISO 27001 standards Certification in ISO 27001 LA would have added advantage.Desired Competencies : Minimum Education Criteria - BE/B.Tech...
-
Information Security Consultant
3 weeks ago
New Delhi, India Tata Consultancy Services Full timeDear CandidateTata Consultancy is hiring for Cyber Security Analyst – Security Compliance & Governance.Experience: 3 -10 YearsLocation : Delhi NCRRequired Technical Skill Set: Experience in ISMS Implementation as per ISO 27001 standards Certification in ISO 27001 LA would have added advantage.Desired Competencies :1. Minimum Education Criteria - BE/B.Tech...
-
Chief Information Security Officer
2 weeks ago
New Delhi, India Career Stone Consultant Full timeJob Description: The job purpose is to lead and implement comprehensive cybersecurity and information security initiatives, including policy development, risk assessment, incident management, and compliance. Responsible for data privacy protection, infrastructure security, vendor management, and fostering a security-conscious culture.Roles and...
-
New Delhi, India InfoBeans Full time2 roles we have1st : Senior Information Security Architect2nd : Information Security Architect – Intermediate LevelI have copied both the JD's please check before applying.JD for role 1About the JobWe are seeking a Senior Information Security Architect (15+ years) to lead security architecture initiatives across diverse IT systems supporting core business...
-
Security Compliance Officer
2 days ago
New Delhi, India SQ1 Security Full timeJob Overview:SQ1 Security is seeking an experienced Cybersecurity and Compliance Expert to lead and drive our initiatives toward achieving SOC 2, ISO 27001, GDPR, and HITRUST certifications.Key Responsibilities:• Develop and Maintain Security Frameworks: Design, implement, and maintain information security policies, procedures, and controls aligned with...
-
Chief Information Security Officer
1 day ago
Delhi, Delhi, India Intelligent Digital Security Full time**Job Responsibilities -**: - Accountable executive for providing overall direction and oversight of the strategy, development, implementation, and administration of information assurance and security policies, plans, and controls that will protect competitive corporate information. - Develops and executes security risk, audit and incident management,...
-
Information Security Auditor
1 day ago
Delhi, Delhi, India Intelligent Digital Security Full time**Job Responsibilities -**: - Conduct based on various IT security compliances (such as ISO 27001, PCI DSS, NIST SP 800-53, etc.) and support organization to remediate the identified risks - Design policy framework based on ISO 27001:2013 - Define controls as per ISO 27002:2013/15 Framework. - Define controls as per NIST SP 800-53 framework - Conduct ISMS...
-
Information Security Expert
4 days ago
New Delhi, India NISG (National Institute for Smart Government) Full timeFrom 7 to 12 year(s) of experience ₹ Not Disclosed by Recruiter - New Delhi **Roles and Responsibilities** **About NHA**: **National Health Authority (NHA)**is the apex body responsible for implementing India’s flagship public health insurance/assurance scheme called “Ayushman Bharat Pradhan Mantri Jan Arogya Yojana” & has been entrusted with the...
-
Cyber & Information Security
2 weeks ago
New Delhi, India WEBSKITTERS TECHNOLOGY SOLUTIONS PRIVATE LIMITED Full timeWe are seeking a strategic, forward-thinking Head of Cyber & Information Security to lead the design, implementation, and governance of enterprise-wide information security frameworks across Webskitters.This senior leadership role will be responsible for defining and executing the organisation’s cybersecurity, data protection, and compliance...