Information Systems Security Compliance Manager 4

2 weeks ago


Delhi, India Novalink Solutions LLC Full time
Job DescriptionPosition Description

Information Technology (IT) Professionals analyze, develop, implement, maintain, and modify computer operations, systems, networks, databases, applications, and/or information security. Incumbents may perform duties in one or more IT specialization areas depending on the needs of the agency. Incumbents perform supervisory duties and manage projects of varying size, scope, and impact to agency operations to include serving as the project leader; planning, organizing, and directing project activities; resolving design conflicts; data administration; resource allocation; contract negotiation; timeline development; critical path tracking; justifying the need for additional resources; and coordination with other work units within and outside the organization as assigned.

Primary responsibilities will be performing the duties of an Information Security Officer. Security functions include but are not limited to:

Conduct comprehensive assessments of the management in accordance with NIST Risk Management Framework (RFM), operational, and technical security controls employed within or inherited by a system to determine the overall effectiveness of the security controls using NIST 800-53 and Center for Internet Security (CIS) Controls for DMV ON-PREM and Cloud environments including AWS, Salesforce, and Mulesoft CSPs.

Generate and maintain required IS security documentation including Systems Security Plans (SSP), Information Assurance Standard Operating Procedures (IA SOP), Continuous Monitoring Plans, Security Control Traceability Matrices, Risk Assessments, Plan of Action & Milestones (POA&M), equipment specifications, practices, and procedures.

The position will perform security audits and support external agency audits to ensure compliance with state and federal rules in the following areas:

investigations, security awareness training administration, security access control recommendations, badge access administration, risk assessments, approval authorization, anomalous activity detection alert notifications and incident response, and evaluation of software and hardware recommendations with related cost estimates.

Maintain day-to-day security posture and continuous monitoring of DMV networks and systems utilizing tools such as Tenable, Symantec, Alteris, Anomali, and Solarwinds in accordance with security policies and procedures.

Schedule, perform and maintain records of required IS auditing, patching, maintenance, software/hardware changes, and scanning based on evolving threat/vulnerabilities and customer compliance requirements.

Assess changes to an IS by performing periodic self-inspections for compliance with PCI-DSS, CJIS, and state and federal data privacy requirements, tests, and reviews of the IS program to ensure that systems are operating as authorized/accredited and that conditions have not changed; ensure corrective actions are taken for identified findings and vulnerabilities.

Minimum Qualifications

Bachelor's degree from an accredited college or university with major course work in computer science, management information systems, or closely related field and five years of progressively responsible professional IT experience relevant to the duties of the position which may include systems administration, network administration, database administration, applications analysis and development, and/or information security, two years of which were at the advanced journey level or in a supervisory or project management capacity; OR Bachelor's degree from an accredited college or university with major course work in computer science, management information systems, or closely related field and five years of progressively responsible professional IT experience which may include systems administration, network administration, database administration, applications analysis and development, and/or information security, relevant to the duties of the position, two years of which were at the journey level in information security; OR two years of relevant experience as an IT Professional III in Nevada State service; OR an equivalent combination of education and experience as described above.

Requirements

Special Requirements

Current CISSP and PCI-DSS ISA certifications

A pre-employment criminal history check and fingerprinting are required. Persons offered employment in this position will be required to pay for these items.

Current AWS Certified Security, Salesforce Cloud Security Engineer (desired)

Work is with Confidential information and requires ONSITE duties and functions.



  • Delhi, India Aexonic Full time

    Company DescriptionAexonic is a global IT solutions company that provides full-cycle services in the areas of software development, IT consulting, mobile application development, Digital Marketing, Cloud-based enterprise solutions, and portal development. Our quality-driven delivery model, combined with technical and business domain expertise, allows us to...


  • delhi, India TAC Security Full time

    Company DescriptionTAC Security is a global leader in vulnerability management, providing protection for Fortune 500 companies, leading enterprises, and governments worldwide. TAC Security's Artificial Intelligence (AI) based Vulnerability Management Platform, ESOF (Enterprise Security in One Framework), manages over 5 million vulnerabilities. ESOF has been...


  • Delhi, India IQ-EQ Full time

    Job DescriptionResponsibilities (how we will measure success)To provide second line support for all aspects of the Group’s Information Security strategy and arrangements encompassing cultural, physical and technology elements throughout the business, with the primary focus being on Info Sec programme governance and oversight.Working as part of the Group...


  • Delhi, India SMC Group Full time

    About the Role:We are seeking an experienced and strategic-minded Chief Information Security Officer (CISO) to join our team at SMC Global. As the CISO, you will be responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. You will lead the development and...


  • delhi, India Randstad India Full time

    Role: Information Security OfficerLocation: Bangalore/Hyderabad/Mumbai/ChennaiWork Type: HybridExp: 15 years experience in Information securityInformation Security OfficerJob DescriptionAs an Information Security Officer you'll be responsible for information security, making sure that Randstad standards are in place, reporting business risks, and aligning...


  • Delhi, India SISOL Recruitment Full time

    Job DescriptionEssential Duties & Responsibilities:•Promote and manage IT security and privacy awareness training and education for administrators, teachers, and staff, as well as create proper security incident notification protocols.•Promotes the company's culture, purpose, vision, and basic values.•Must be able to transform the business's...


  • delhi, India UNCIA Full time

    About the company:We are a dynamic enterprise application software product company catering to NBFCs and Banks with a suite of pure-play SaaS products in the Digital Lending space.We offer a comprehensive suite tailored to meet evolving customer needs, primarily focusing on Lending solutions such as SME Lending, Home Finance, and Supply Chain Finance. Uncia...


  • Delhi, India Aexonic Full time

    Company DescriptionAexonic is a global IT solutions company that provides full-cycle services in the areas of software development, IT consulting, mobile application development, Digital Marketing, Cloud-based enterprise solutions, and portal development. Our quality-driven delivery model, combined with technical and business domain expertise, allows us to...


  • Delhi, India Nityo Infotech Full time

    Senior Security Consultant (Audit & Compliance) - Internal requirementExperience: 6+ yearsLocation : Pune NP-30 Days Budget -11 LPA Mandatory Skills : ISMS, PCI DSS, Compliance, GRC, Data privacy, ISO 27001 Lead Auditor, Risk Assessment 1) Establish, Implement, Maintain and Improve Information Security Management System (ISMS) as per ISO 27001 Standard. 2)...

  • IT Security Analyst 4

    2 weeks ago


    new delhi, India Oracle Full time

    At Oracle Cloud Infrastructure (OCI), we build the future of the cloud for Enterprises. We act with the speed and attitude of a start-up along with the scale and customer focus of the leading enterprise software company in the world. About the team: EES Security and Compliance team defines and measures baseline standards using existing internal...


  • delhi, India Ladders UP HR Solutions LLP - Connecting Right Talent Since 2016 Full time

    Company DescriptionLadders UP HR Solutions LLP is a leading recruitment agency located in Jaipur, India. Established in 2016, Ladders UP connects businesses with the right talent across various industries, including NBFC, Financial Services, Housing Finance, Microfinance, Investment Banking, IT and Software, Waste Management, Oil & Gas, Engineering &...


  • Delhi, India iENGINEERING Full time

    Job DescriptionWhat we’re looking for:iENGINEERING is seeking a knowledgeable and experienced Information Security Specialist to join the team. The ideal candidate will possess expertise in analyzing and identifying security issues with web applications and portals. As an Information Security Specialist, you will be responsible for ensuring the...


  • Delhi, India SMC Group Full time

    About the Role:We are seeking an experienced and strategic-minded Chief Information Security Officer (CISO) to join our team at SMC Global. As the CISO, you will be responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. You will lead the development and...


  • Delhi, India SMC Group Full time

    About the Role: We are seeking an experienced and strategic-minded Chief Information Security Officer (CISO) to join our team at SMC Global. As the CISO, you will be responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. You will lead the development...

  • IT Security Manager

    4 weeks ago


    Delhi, India TekJobs Full time

    The IT Security Manager establishes and maintains a business-wide information security management practice to ensure information assets are adequately protected. The Manager identifies, evaluates, and reports on information security risks in a manner that meets compliance and regulatory requirements, and aligns with and supports the risk posture of the...


  • Delhi, India Nityo Infotech Full time

    Management , Risk Assessment , Root Cause Analysis , Time Management , ACT , Actions , Analysis , Assessment , Audit Reports , Awareness , Closure , Compliance , Controls , Coordinate , Correction , Corrective Actions , Cycle , Departments , Description , External , Findings , Follow , ISO , Incident , Incident Management , Incidents , Information Security ,...


  • New Delhi, India SMC Group Full time

    About the Role:We are seeking an experienced and strategic-minded Chief Information Security Officer (CISO) to join our team at SMC Global. As the CISO, you will be responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. You will lead the development and...

  • Audit and Compliance

    2 weeks ago


    delhi, India Anblicks Full time

    Job Role : Sr Executive - Internal Audit and ComplianceLocation: AhmedabadExperience: 5+ YearsJob Summary:We are seeking an experienced Compliance and Security Specialist with a minimum of 5 years of hands-on expertise in Information Security Management System (ISMS), Quality Management System (QMS), Compliance, ISO standards, and Security...


  • delhi, India Indifi Full time

    Indifi is an exciting, well-funded fintech start-up enabling micro, small and medium enterprises(MSME) financing in India, by providing small businesses access to multiple lenders. The company hasreceived funding from top-tier VC firms such as Accel Partners, Elevar Equity and Omidyar Network.We are developing a lending platform that is unique amalgamation...


  • Delhi, India Marken Full time

    DescriptionJob Title:Information Systems AuditorLocation:PuneMain Purpose:The Information Systems (IS) Auditor serves as a trusted advisor when assessing internal systems and controls, and is a key point of contact with external examiners. Identifies and verifies risks to systems and data, and ensure teams are cognizant of any deficiencies and working toward...