Senior Information Security RIsk Specialist

3 weeks ago


Navi Mumbai, India Jio Platforms Limited Full time
Competencies:

1. Proficient in planning and executing Cybersecurity Risk Management program activities2. Keen understanding of leading Risk Management frameworks and standards (e.g. NIST RMF)3. Ability to conduct end-to-end Risk Assessments independently for a variety of systems and technologies4. Sound understanding on cybersecurity tools and latest technologies5. Exposure to cybersecurity strategy, governance, and compliance programs6. Experience in IT configuration and change management for on prem and cloud environments.7. In-depth knowledge of cloud security principles, technologies, and best practices, with hands-on experience in implementing security controls in cloud environments.

Job Accountabilities:

1.

Building senior executive-led cyber risk programs based on the organizations risk appetite, that can track progress, and continuously adapt to shifting agency strategies, evolving regulations and ever-growing cyber threats.2.

Performing cybersecurity risk assessments that involve building or customizing a robust cybersecurity risk management framework, analyzing existing processes & controls for inadequacies (gaps) and recommending corrective action plans with a prioritized list of initiatives to achieve the intended target state.3.

Conducting interviews and process walkthroughs with business, IT and third parties for identifying business, IT, and cybersecurity risks.4.

Understanding and documenting risks as well as control deficiencies identified during such risk assessments/review sessions.5.

Quantifying risks identified during the assessments to enable appropriate prioritization for effective risk remediation.6.

Selecting and guiding the deployment of technical controls to mitigate identified risks.7.

Reviewing and consolidating project status and activity updates, issues, changes, risks to the project manager in a timely manner.8.

Participating in Governance Risk and Compliance program initiatives to ensure holistic understanding and uplifting of the GRC function.9.

Defining security hardening standards and guidelines based on keen knowledge of industry standards applied to the organizations unique technology stack and context.10. Developing and maintaining cloud security governance frameworks, policies, and standards aligned with industry best practices and regulatory requirements.11. Conducting risk assessments and compliance reviews of cloud service providers and cloud environments to identify security vulnerabilities, assess risks, and ensure compliance with security standards and contractual requirements.12. Conducting IT risk assessments of systems, networks, and infrastructure to identify vulnerabilities and assess the effectiveness of security controls.

Skills Required (Knowledge and Skills):

1.

Knowledge of IT system, networking and database concepts2.

Knowledge of TCP/IP and Operating Systems (Windows/Unix), databases, network devices etc.3.

Knowledge/ experience in implementing standard Network And Endpoint security controls/technologies (Firewalls, IDS, VPN, Anti-virus etc) and ability to review IT/ Network architecture from a security perspective4.

Knowledge/Experience in defining/ assessing security hardening or secure configuration best practices for IT infrastructure (operating systems, network or security devices, databases) and applications.5.

Knowledge and experience of performing gap analysis of organizational policies or processes against security best practices such as ISO 27001, PCI DSS, NIST, COBIT etc6.

Experience in performing independent risk assessments for projects, applications or infrastructure and recommending risk mitigation controls to reduce the risk7.

Knowledge of Business Continuity and Disaster Recovery principles

Experience and Qualifications:

1.

BE/B.Tech/ME/M.Tech/MCA/MS from a reputed/recognized institute2.

Four to Six years of relevant experience in Information Security3.

Excellent verbal, written communication and presentation skills4.

Personal Drive and Positive Work Ethic to deliver results within tight deadlines and demanding situationsFlexibility to adapt to a variety of tasks and activities, work environments and locations5.

Ability to comprehend tasks with medium complexity and create execution plans for review by managers and deliver with minimum supervision6.

Ownership mindset and should demonstrate persistence in following up on tasks to be performed by other stakeholders so that project timelines can be met7.

Any one of following certification will be an added advantage: CISA/CCNA Security/CISSP/CISM/CRISC/ GIAC/CCSP/CCSK.8.

Any security cloud certification in Azure, AWS, GCP.


  • Senior Manager

    1 week ago


    Navi Mumbai, India H R CENTRAL Full time

    Designation : Senior Manager - Information Security Role : Information Security Manager Reporting to : Head of Information and Cybersecurity, Regional CISO for APAC Job Location : Navi MumbaiKey Responsibilities : - Planning, Supporting and Driving various IT Security, OT Security, Cybersecurity/ Data Security and Privacy Projects/ Initiatives/ POCs, as...

  • Senior Manager

    1 week ago


    navi mumbai, India H R CENTRAL Full time

    Designation : Senior Manager - Information Security Role : Information Security Manager Reporting to : Head of Information and Cybersecurity, Regional CISO for APAC Job Location : Navi MumbaiKey Responsibilities : - Planning, Supporting and Driving various IT Security, OT Security, Cybersecurity/ Data Security and Privacy Projects/ Initiatives/ POCs, as...

  • Senior Manager

    1 week ago


    Navi Mumbai, Maharashtra, India H R CENTRAL Full time

    Designation : Senior Manager - Information Security Role : Information Security Manager Reporting to : Head of Information and Cybersecurity, Regional CISO for APAC Job Location : Navi MumbaiKey Responsibilities : - Planning, Supporting and Driving various IT Security, OT Security, Cybersecurity/ Data Security and Privacy Projects/ Initiatives/ POCs, as...

  • Senior Manager

    1 week ago


    Navi Mumbai, India H R CENTRAL Full time

    Designation : Senior Manager - Information Security Role : Information Security Manager Reporting to : Head of Information and Cybersecurity, Regional CISO for APAC Job Location : Navi MumbaiKey Responsibilities : - Planning, Supporting and Driving various IT Security, OT Security, Cybersecurity/ Data Security and Privacy Projects/ Initiatives/ POCs, as...


  • Mumbai, India Security Lit Full time

    Job Description:We are looking for a skilled and experienced professional to join our Information Security Governance team as a Senior Infrastructure, Application & Cloud Offensive Security Assessment expert. This role involves leading and executing comprehensive security assessments, including web application security testing, vulnerability assessment, and...

  • Senior Red Team Lead

    8 hours ago


    Mumbai, India Security Lit Full time

    Job Description:We are looking for a skilled and experienced professional to join our Information Security Governance team as a Senior Infrastructure, Application & Cloud Offensive Security Assessment expert. This role involves leading and executing comprehensive security assessments, including web application security testing, vulnerability assessment, and...


  • Mumbai, India DBS Bank Full time

    Specialist, Cyber Security-(WD57226)Risk Management Group works closely with our business partners to manage the bank’s risk exposure by balancing its objective to maximise returns against an acceptable risk profile. We partner with origination teams to provide financing, investments and hedging opportunities to our customers. To manage risk effectively...


  • Navi Mumbai, India Holcim Full time

    Education / QualificationBachelor’s degree in Computer Science, Information Technology or Engineering degree in any discipline with experience/ skills in Information Security/ Cybersecurity/ IT Security/ OT Security, etc.CEH/ CFIH/ CISSP/ CISM/ CRISC certifications are added advantageExperienceAt least 10+ years of experience in Information Security/...


  • mumbai, India DBS Bank Full time

    Specialist, Cyber Security-(WD57226) Risk Management Group works closely with our business partners to manage the bank’s risk exposure by balancing its objective to maximise returns against an acceptable risk profile. We partner with origination teams to provide financing, investments and hedging opportunities to our customers. To manage risk effectively...


  • Mumbai, India DBS Bank Full time

    Specialist, Cyber Security-(WD57226) Risk Management Group works closely with our business partners to manage the bank’s risk exposure by balancing its objective to maximise returns against an acceptable risk profile. We partner with origination teams to provide financing, investments and hedging opportunities to our customers. To manage risk effectively...


  • navi mumbai, India Holcim Full time

    Education / Qualification Bachelor’s degree in Computer Science, Information Technology or Engineering degree in any discipline with experience/ skills in Information Security/ Cybersecurity/ IT Security/ OT Security, etc. CEH/ CFIH/ CISSP/ CISM/ CRISC certifications are added advantage Experience At least 10+ years of experience in...


  • Navi Mumbai, India Holcim Full time

    Education / Qualification Bachelor’s degree in Computer Science, Information Technology or Engineering degree in any discipline with experience/ skills in Information Security/ Cybersecurity/ IT Security/ OT Security, etc. CEH/ CFIH/ CISSP/ CISM/ CRISC certifications are added advantage Experience At least 10+ years of experience in...

  • Asst Vice President

    6 days ago


    Navi Mumbai, India talent leads Full time

    Job Description :As a Senior Manager/AVP of IS & IT Governance, you will play a pivotal role in ensuring the effective governance, risk management, and compliance of the organization's information security and technology infrastructure. You will lead efforts to establish and maintain robust IT governance frameworks, policies, and procedures, ensuring...

  • Asst Vice President

    5 days ago


    navi mumbai, India talent leads Full time

    Job Description :As a Senior Manager/AVP of IS & IT Governance, you will play a pivotal role in ensuring the effective governance, risk management, and compliance of the organization's information security and technology infrastructure. You will lead efforts to establish and maintain robust IT governance frameworks, policies, and procedures, ensuring...

  • Asst Vice President

    5 days ago


    Navi Mumbai, Maharashtra, India talent leads Full time

    Job Description :As a Senior Manager/AVP of IS & IT Governance, you will play a pivotal role in ensuring the effective governance, risk management, and compliance of the organization's information security and technology infrastructure. You will lead efforts to establish and maintain robust IT governance frameworks, policies, and procedures, ensuring...

  • Asst Vice President

    4 days ago


    Navi Mumbai, India talent leads Full time

    Job Description :As a Senior Manager/AVP of IS & IT Governance, you will play a pivotal role in ensuring the effective governance, risk management, and compliance of the organization's information security and technology infrastructure. You will lead efforts to establish and maintain robust IT governance frameworks, policies, and procedures, ensuring...


  • Navi Mumbai, Maharashtra, India iimjobs Full time

    Role Overview:To manage and oversee the information security of a company, inclusion its systems and data. Assure that information created, acquired or maintained by Org and its authorized users, is in accordance with its intended purpose and complies with statutory and regulatory requirements regarding information access, security and privacy in order to...

  • Information Security

    4 weeks ago


    Vashi, Navi Mumbai, Maharashtra, India Anzen Technologies Private Limited Full time

    **Job Description for Information Security Consultant**: - **Technical / job functional knowledge** - Understanding and working knowledge of control frameworks based on industry best practices such as ISO27001, PCI-DSS, GDPR. - Responsible for conducting timely security assessments of third-party suppliers, recording results accurately and initiating...


  • mumbai, India Zype Full time

    Job Purpose/Summary: • Responsible for maintaining Information Security policies and controls, in addition to application, infrastructure and network security reviews of local, national, and international operations to ensure the security of all Information Security assets. • Involved with the prevention, identification and detection of IT and...


  • Navi Mumbai, India XL Dynamics India Full time

    **Position**: Officer Information Security - ** Job Shift**: Night - ** Experience**: 0 to 5 years - ** Education**: We hire based on individual talent, skill and work ethic. Formal degrees are not a material in our hiring decision. - ** Job Location**: Navi Mumbai - ** Salary Range**: ₹ 2,50,000- ₹ 3,50,000 P.A. **Key Responsibilities**: - Provide...