Lead Engineer, Information Security

1 week ago


gurgaon, India Acuity Knowledge Partners Full time
Acuity Knowledge Partners
Acuity Knowledge Partners (Acuity) is a leading provider of bespoke research, analytics and technology solutions to the financial services sector, including asset managers, corporate and investment banks, private equity and venture capital firms, hedge funds and consulting firms. Its global network of over 6,000 analysts and industry experts, combined with proprietary technology, supports more than 500 financial institutions and consulting companies to operate more efficiently and unlock their human capital, driving revenue higher and transforming operations. Acuity is headquartered in London and operates from 10 locations worldwide.
The company fosters a diverse, equitable and inclusive work environment, nurturing talent, regardless of race, gender, ethnicity or sexual orientation.
Acuity was established as a separate business from Moody’s Corporation in 2019, following its acquisition by Equistone Partners Europe (Equistone). In January 2023, funds advised by global private equity firm Permira acquired a majority stake in the business from Equistone, which remains invested as a minority shareholder.
For more information, visit Information
Position Title – Lead Engineer, Information Security
Experience Level – 2 to 3 years
Department - Information Security
Location – Gurgaon
Position reports to – Director
Shift Timings - Gurgaon (Support Beijing), Work Shift 8:30am IST to 5:30pm IST
Job Purpose
By working with global clients, Acuity Knowledge Partners provides its employees the opportunity to gain valuable experience and to benchmark themselves against some of the finest institutions in the world. We have a strong performance-driven culture, one that is entrepreneurial and fun to be part of.
Key Responsibilities
This is a challenging position within the Acuity Information Security team, reporting up to Director, CISO.
Responsible to Run and maintain of ISO27001, conduct Internal Audit, Information security risk management, Cyber Security, BCMS and SOC 2 framework implementation and maintenance along with other relevant guidelines and regulations for the organization. Provide an oversight and enforce Information Security controls to ensure information security Compliance & Assurance.
The candidate is very motivated and willing to take on challenges, able to multitask to succeed, and has the ability to work independently with minimal oversight.
Key Competencies
Work with functional groups (HR, Compliance, IT & facilities, Client Accounts) in the validation of organizational security and maintain a process to ensure maintenance of organization’s ISO27001 certification along with risk management framework and BCMS requirements.
Conduct periodic internal ISMS audits and risk assessments to assess the adequacy of the security controls and provide recommendations.
Facilitate external audits for different industry certifications e.g. ISO 27001, SOC2 audits, client audits.
Ensure coordination with IT team for implementing best industry practice for network, Cloud and Cyber security.
Work closely with other support function to implement best security controls w.r.t. cyber/cloud and data security.
Identify and implement corrective action plan to address external / internal audit findings and updating statement of applicability.
Documentation of Security Policies, Standards, Guidelines & Standard Operating Procedures.
Coordinate with multiple teams for management and investigation of security incidents and perform root cause analysis.
Conduct periodic Security Awareness Training programs.
Develop, test and maintain business continuity and Disaster Recovery plans.
Ensure compliance to Regulatory compliance requirements applicable to the organization. In- depth knowledge of Information Security risk and industry best practices. Assists departments to ensure regulatory compliance in areas such as ISO: 27001, SOC II, GDPR and so on.
Coordinate with functional support groups and operational groups for generation of security metrics to track compliance.
Perform vendor risk assessments, maintain the process in the GRC tool.
Serve as a SME on cloud cyber risk for leading cloud platforms AWS, Azure/ office 365.1.
Lead cybersecurity controls testing across On-prem & Cloud Environment to determine control effectiveness and adherence to both internal cybersecurity policies and external requirements e.g. Industry Certifications, Laws, Regulations and Contracts.
Develop and lead cyber risk Initiative as part of cloud transformation projects on AWS\Azure cloud services.
Design and develop cloud platform-specific security policies, standards, and procedures for management group and account/subscription management and configuration e.g. azure policy, azure security center, AWS Infra Security, IAM control, firewall management, auditing and monitoring, DLP, security incident and event management, data protection, SSO and conditional access controls.
Ensure RFP responses and helping delivery team to meet contractual security requirements.
Bachelor’s Degree in Engineering or Equivalent area of study
Relevant certifications such having CISSP, CISA, CISM, CCSP is an advantage, ISO 27001 LA/LI preferred.
Minimum 2 or 3 years’ of experience in Information Security, Risk Management and Business Continuity management in a corporate environment.
Excellent understanding of ISO27001, ISO 31000, InfoSec Risk Management, Cyber Security, BCMS and SOC 2 framework along with controls used for securing a business' computer networks and digital information.
Knowledge of cyber security frameworks
Working experience of best industry practices of Vulnerability management; Cloud Security; Cyber Security and network security.
Ability to identify, observe and analyze potential information security risks and develop strategies for preventing threats and quickly addressing breaches
Good understanding with regulatory compliance requirements such as SOX, PCI-DSS, HIPPA; DPA 2018 / GDPR compliance etc.
Understanding of IT/Cyber security concepts i.e. IDAM; Active Directory; Firewall; IDS/IPS; Email Security; DLP; Cryptography; Vulnerability management; etc.
Demonstrated capability for high ownership, hands-on, capable to deliver by self.
Worked on controls based on ITIL, ISO 20000, ISO 27001, ISO 31000, PCI DSS, CSA, CIS, NIST, GDPR and relevant standards.
Work shift may require to extend occasionally.

  • Gurgaon, India Acuity Knowledge Partners Full time

    Acuity Knowledge PartnersAcuity Knowledge Partners (Acuity) is a leading provider of bespoke research, analytics and technology solutions to the financial services sector, including asset managers, corporate and investment banks, private equity and venture capital firms, hedge funds and consulting firms. Its global network of over 6,000 analysts and industry...


  • Gurgaon, India Skillventory Full time

    **Information Security with a leading NBFC**: - From 4 to 8 year(s) of experience - ₹ Not Disclosed by Recruiter - Gurgaon/Gurugramor **Roles and Responsibilities** Key Responsibilities: - Learns about business initiatives, products, and attack surfaces to drive relevant security - detections - Architect, and deploy security solutions, and tools for...


  • Gurgaon, India Junglee Games Full time

    As our **AVP - Information Security** you will foster a security-first culture within the company and help implement solutions that will enhance their overall security posture and user experience by providing adequate awareness training, workshops, information sessions etc. **Responsibilities**: - Lead and manage the Product and Infrastructure security...


  • Gurgaon, India Maruti Suzuki India Ltd Full time

    Department/ Division-IT - Job Title-Chief Information Security Officer (CISO) - Level in the organization-SMGR/ AGM - Educational Qualification-BE / B. Tech/ MCA/ MBA from Premier Institute - Work Experience (Years): 13-15 years - Role: Experience and exposure to Information Security & Cyber Security in a professional enterprise and minimum 8-10 year’s...


  • Gurgaon, India Mettl Full time

    **Location**: Gurgaon **Experience**: 12-16 Years **Minimum Qualification**: B.Tech **About The Role**: **Key Responsibilities**: - Supports executive strategies, and fundamentally ensures the security of the information Mercer is entrusted to protect. - Conducts industry research on new and emerging security technologies and identifies approaches to...


  • gurgaon, India Aviva India Full time

    We are seeking a highly motivated and hands-on Information Cyber Security manager to join our dynamic team.Key Responsibilities• Lead and manage the response to security incidents, coordinating efforts between the GSOC and local SOCs.• Lead the incident response team in identifying, managing, and resolving security incidents.• Develop and maintain...


  • Gurgaon, India Targray Full time

    Company OverviewTargray is a diversified multinational commodity and specialty materials company that markets a broad range of products and solutions for high-growth energy sectors. Established in 1987 in Montreal, Canada, our organization is a leading international provider of materials for solar and energy storage companies, and one of the largest physical...


  • gurgaon, India Targray Full time

    Company OverviewTargray is a diversified multinational commodity and specialty materials company that markets a broad range of products and solutions for high-growth energy sectors. Established in 1987 in Montreal, Canada, our organization is a leading international provider of materials for solar and energy storage companies, and one of the largest physical...

  • Security Engineer

    1 week ago


    gurgaon, India S&P Global Full time

    About the Role: Lead Endpoint Security EngineerExperience - 5 to 7 years (Not less than 5 Years*)Role- Lead Endpoint Security EngineerLocation- Gurgaon, Hyderabad, BangaloreShift Time - 1 pm to 10 pm or 2 pm to 11 pmWork model- Hybrid (Must attend office 2 days in a week)The Team: The Endpoint Security team (part of Information Security - Information...

  • Security Engineer

    1 week ago


    Gurgaon, India S&P Global Full time

    About the Role:Lead Endpoint Security EngineerExperience - 5 to 7 years (Not less than 5 Years*)Role- Lead Endpoint Security EngineerLocation- Gurgaon, Hyderabad, BangaloreShift Time - 1 pm to 10 pm or 2 pm to 11 pmWork model- Hybrid (Must attend office 2 days in a week)The Team:The Endpoint Security team (part of Information Security - Information...


  • Gurgaon, India Targray Full time

    Company Overview Targray is a diversified multinational commodity and specialty materials company that markets a broad range of products and solutions for high-growth energy sectors. Established in 1987 in Montreal, Canada, our organization is a leading international provider of materials for solar and energy storage companies, and one of the largest...


  • Gurgaon, India Artiscien Software Solution Private Limited Full time

    **Summary**: Responsible for information security process, log, and alert monitoring, managing the DLP, auditor & Vendor management. - Monitoring 24*7 SOC/event log to ensure compliance with security policies. - Keeping up to date with developments in IT security standards and threats. - Collaborating with management and the IT department to improve...


  • Gurgaon, India Skillventory Full time

    **Application Security with a leading Fintech**: - From 6 to 11 year(s) of experience - ₹ Not Disclosed by Recruiter - Gurgaon/Gurugramor **Roles and Responsibilities** Roles and Responsibilities: - Application Security Assurance Ops - Collaborate closely in a hands-on environment with architecture, product - management, product engineering, program...


  • Gurgaon, India Housing.com Full time

    REA India is a part of REA Group Ltd. of Australia (ASX: REA) ("REA Group"). It is the country's leading full stack real estate technology platform that owns Housing.com and PropTiger.com. REA India is the only player in India that offers a full range of services in the real estate space, assisting consumers through their entire home seeking journey...

  • Lead-Cyber Security

    1 week ago


    gurgaon, India Zupee Full time

    About ZupeeWe are the biggest online gaming company with largest market share in the Indian gaming sector’s largest segment — Casual & Boardgame. We make skill-based games that spark joy in the everyday lives of people by engaging, entertaining, and enabling earning while at play.In the three plus years of existence, Zupee has been on a mission to...


  • Gurgaon, India Suntory Global Spirits Full time

    What makes this a great opportunity? The Cloud Security Analyst is a key member of the Global Information Security team reporting to the Cloud Security Manager. The Cloud Security Analyst will interface with peers in the security team as well as other members of the broader technology team. Beam Suntory is a world class employer that develops talented,...


  • Gurgaon, India OpSec Security Full time

    OpSec Security is a well-established and recognized global leader in the provision of physical, digital and online anti-counterfeiting and brand protection solutions. Employing approximately 1,000 colleagues it operates from multiple locations including business hubs in the USA, UK and has other sales and support offices in the EU and the Far East. OpSec is...


  • Gurgaon, India Symbiosis Management Consultants Full time

    Lead - Information Technology - NBFC Responsiblities :- Owner of all IT Assets within the company, spearhead all IT Audit and Compliance activities covering Information Security and Cyber Security projects, processes and assets- Act as Data guardian and SPOC for all Core IT aspects covering, but not limiting to end user Support, Desktop & Server support,...


  • Noida/Delhi/Gurgaon/Gurugram, India Xebo.ai Full time

    InfoSec & Compliance Specialist:Position Overview :We are seeking a highly skilled Information Security and Compliance Specialist to join our team at Xebo.ai. In this position, you will play a critical role in ensuring the security and integrity of our SaaS-based products tailored for the survey and insurance industry, and ensure compliance with the relevant...


  • Gurgaon, India Acuity Knowledge Partners Full time

    Acuity Knowledge PartnersAcuity Knowledge Partners (Acuity) is a leading provider of bespoke research, analytics and technology solutions to the financial services sector, including asset managers, corporate and investment banks, private equity and venture capital firms, hedge funds and consulting firms. Its global network of over 6,000 analysts and industry...