IT & Infosec Engineer - Security Risk Management

4 weeks ago


bangalore, India NorthClan Full time

Responsibilities :

- Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001 and ITIL).


- Align internal IT and Infosec processes as per RBI IT and security guidelines.


- Assist IT and Infosec Team in defining the key metrics for management reporting.


- Develop cyber security standards, including incorporating industry practices and applicable compliance requirements.


- Maintain the security risk register and related policies.


- Maintain the inventory of IT vendors as per regulatory guidelines.


- Develop review checklists, and questionnaires, and manage evidence to assist the IT vendor risk management process.


- Perform 3rd party security due-diligence reviews and periodic vendor risk assessments to assess vendor compliance.


- Coordinate with external stakeholders and auditors for IT and infosec-related reviews.


- Coordinate for conducting periodic penetration testing exercises on in-scope applications and related infrastructure.


- Coordinate with stakeholders for timely closure of open risks.


- Assist in imparting security awareness training and executing phishing simulation exercises to employees.


- Assist IT and Infosec in gathering the metrics data and preparing management dashboards.


- Lead the periodic IT and Infosec governance review meetings and gather feedback for improvement.


- Assess the existing IT and Infosec processes and provide recommendations to improve.


- Identify opportunities for IT and Infosec governance automation and lead continuous compliance initiatives.


- Support cross-entity teams/group entities to mirror the best practices implemented at the parent entity.


- Develop templates for incident reporting and manage artifacts. Assist during incident investigation and collaborating with stakeholders.


Key Areas : ISO 27001 security governance, vendor security due-diligence, vendor security reviews, and assessment, preparation of security checklist, security awareness/phishing simulation, management dashboards, managing key metrics for IT and Infosec.


Requirements :

- Should have 5 - 7 years of experience in the information security domain and minimum should have 4 years in overall IT and Infosec governance-related activities.


- Must have sound knowledge in defining processes, developing policies, procedures, and guidelines, and preparing management reporting dashboards.


- Must have experience in guiding teams concerning RBI IT guidelines.


- Developing and implementing enterprise governance, risk, and compliance strategies and solutions.


- Ability to document and explain details concisely and understandably.


- Industry-recognized certificates relevant to the roles such as ITIL, and ISO 27001 are desired.


- Ability to lead complex, cross-functional projects, and problem-solving initiatives.


- Passionate about IT/information security and updating knowledge daily to support the organization.


- Candidates must have excellent verbal and written communication skills.


- Familiarity with industry standards and regulations including PCI, ISO27001 CIS, and NIST is desired.


- Candidates with BFSI experience will be preferred.


- Fair understanding of public cloud models (e. g. AWS, Google, Microsoft Azure) and their security : good to have - ISO 27001 ITIL.


Skills :


- The candidate should be a good team player.


- Should have good interpersonal skills.


- Good written communication skills including ability to develop process documentation and security guidelines.


- Ability to apply critical thinking and logic to a wide range of intellectual and practical problems.


- Ability to maintain composure under pressure and work calmly during an emergency.


- Ability to manage multiple tasks and schedules.


Location : Bangalore

(ref:hirist.tech)

  • Bangalore, Karnataka, India NorthClan Full time

    Responsibilities : - Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001 and ITIL).- Align internal IT and Infosec processes as per RBI IT and security guidelines.- Assist IT and Infosec Team in defining the key metrics for management reporting.- Develop cyber...


  • Bangalore, India NorthClan Full time

    Responsibilities : - Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001 and ITIL). - Align internal IT and Infosec processes as per RBI IT and security guidelines. - Assist IT and Infosec Team in defining the key metrics for management reporting. - Develop...


  • Bangalore, Karnataka, India NorthClan Full time

    Responsibilities : - Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001 and ITIL).- Align internal IT and Infosec processes as per RBI IT and security guidelines.- Assist IT and Infosec Team in defining the key metrics for management reporting.- Develop cyber...


  • bangalore, India Nexthire Full time

    Role - Senior Infosec Engineer - Governance  Experience - 5-8 Yrs  Location- Bangalore (Work from Office) Job Responsibilities  ● Develop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001 and ITIL)● Align internal IT and Infosec processes as per RBI IT and security...


  • bangalore, India Scrut Automation Full time

    Job Description: Infosec Delivery Consultant Role Details POSITION: Infosec Delivery Consultant Location: Bangalore About SCRUT Automation Scrut Automation is an information security and compliance monitoring platform, aimed at helping small and medium cloud-native enterprises develop and maintain a robust security posture, and comply with various...


  • bangalore, India KreditBee Full time

    Roles and Responsibilities: Ensure Compliance with the Regulatory requirements w.r.t the Information and Cyber Security requirements - RBI, UIDAI, CIC, etc. Identify and develop the InfoSec Policy, Processes, and Procedures to incorporate the industry benchmarks / best practices and the latest trends. To identify, track, monitor & ensure compliance with...


  • bangalore, India KreditBee Full time

    Roles and Responsibilities: Ensure Compliance with the Regulatory requirements w.r.t the Information and Cyber Security requirements - RBI, UIDAI, CIC, etc. Identify and develop the InfoSec Policy, Processes, and Procedures to incorporate the industry benchmarks / best practices and the latest trends. To identify, track, monitor & ensure compliance with...


  • bangalore, India InCred Financial Services Full time

    Job DescriptionDevelop and finalize policies, procedures, and guidelines related to IT and Infosec domains in alignment with industry best practices (ISO 27001 and ITIL)Align internal IT and Infosec processes as per RBI IT and security guidelinesAssist IT and Infosec Team in defining the key metrics for management reportingDevelop of cyber security...


  • Bangalore, India New Relic, Inc. Full time

    Senior Security Engineer - Infosec Customer Trust Senior Security Engineer - Infosec Customer Trust Senior Security Engineer Req ID FY|G&A|#9 Location(s) Bangalore, India; Hyderabad, India; Work arrangement(s) Hybrid (works from home and New Relic office throughout the week) Your opportunity As a InfoSec Security Engineer for GTM Support, you will help New...


  • Bangalore, India New Relic, Inc. Full time

    Senior Security Engineer - Infosec Customer Trust Senior Security Engineer - Infosec Customer Trust Senior Security Engineer Req ID FY|G&A|#9 Location(s) Bangalore, India; Hyderabad, India; Work arrangement(s) Hybrid (works from home and New Relic office throughout the week) Your opportunity As a InfoSec Security Engineer for GTM Support, you will help New...


  • bangalore, India New Relic, Inc. Full time

    Senior Security Engineer - Infosec Customer Trust Senior Security Engineer - Infosec Customer Trust Senior Security Engineer Req ID FY|G&A|#9 Location(s) Bangalore, India; Hyderabad, India; Work arrangement(s) Hybrid (works from home and New Relic office throughout the week) Your opportunity As a InfoSec Security Engineer for GTM Support, you will help...


  • bangalore, India New Relic, Inc. Full time

    Senior Security Engineer - Infosec Customer Trust Senior Security Engineer - Infosec Customer Trust Senior Security Engineer Req ID FY|G&A|#9 Location(s) Bangalore, India; Hyderabad, India; Work arrangement(s) Hybrid (works from home and New Relic office throughout the week) Your opportunity As a InfoSec Security Engineer for GTM Support, you will help...


  • bangalore, India Deloitte Full time

    Role: Infosec Business AnalystLocation: Bangalore/ Pune/ Mumbai/ Hyderabad/ NCRNotice Period : Immediate to 30 daysWork you’ll doThe primary role of a Infosec Business Analyst is to make immediate, direct contributions to enhancing our clients’ competitive position and performance in ways that are distinctive, innovative, and sustainable.To do this, the...


  • bangalore, India Deloitte Full time

    Role: Infosec Business AnalystLocation: Bangalore/ Pune/ Mumbai/ Hyderabad/ NCRNotice Period : Immediate to 30 daysWork you’ll doThe primary role of a Infosec Business Analyst is to make immediate, direct contributions to enhancing our clients’ competitive position and performance in ways that are distinctive, innovative, and sustainable.To do this, the...


  • bangalore, India Deloitte Full time

    Role: Infosec Business Analyst Location: Bangalore/ Pune/ Mumbai/ Hyderabad/ NCR Notice Period : Immediate to 30 days Work you’ll do The primary role of a Infosec Business Analyst is to make immediate, direct contributions to enhancing our clients’ competitive position and performance in ways that are distinctive, innovative, and sustainable. To do...


  • bangalore, India Rubrik Full time

    Job Summary Information Security - Who We Are The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and...


  • bangalore, India Nexthire Full time

    Role : Infosec Engineer Experience :  3-6 Years Location : Bangalore Working Days: 5 Days a week About InCred InCred was founded by Bhupinder Singh in 2016. InCred is credited for Incredible India. We use technology and data-science to make lending quick, simple and hassle-free. We believe...

  • Infosec Specialist

    3 weeks ago


    bangalore, India ZEISS India Full time

    CARL ZEISSCarl Zeiss AG branded as ZEISS, is a German manufacturer of optical systems and optoelectronics, founded in Jena, Germany in 1846 by optician Carl Zeiss.ZEISS is headquartered in Oberkochen, Germany and enjoys a global presence and rich heritage of being in business for more than 170 years.ZEISS today operates in the following businesses:•...

  • Infosec Specialist

    2 months ago


    bangalore, India ZEISS India Full time

    CARL ZEISSCarl Zeiss AG branded as ZEISS, is a German manufacturer of optical systems and optoelectronics, founded in Jena, Germany in 1846 by optician Carl Zeiss.ZEISS is headquartered in Oberkochen, Germany and enjoys a global presence and rich heritage of being in business for more than 170 years.ZEISS today operates in the following businesses:•...


  • Bangalore, Karnataka, India HeadPro Consulting LLP Full time

    Job Title : Senior Staff InfoSec Engineer (OT/IOT Network)Location : BangaloreExp : 5 to 8 yearsMandatory skills:1. Need someone who have strong experience in Network Information security.2. Require a strong exposure of operations Technology like Design & System Architecture3. Candidates can share profile if they have worked on Manufacturing, Pharma, Bio...