Information Security and Compliance Associate
7 months ago
**Job Title: Information Security and Compliance Analyst**
**Education: Any Degree**
**Location: Mumbai**
**Experience: 0 -1 year**
**Key Skills: ISMS, PIMS, CISA, ISO 27001:2022 LI/LA, ISO 27701:2019 LI / LA and PCI DSS**
Information Security and Compliance Associate Reports to Sr. Director of Information Security. Information Security and Compliance Associate position's core responsibilities are to assist in technical Information Security assessments and reporting using ServiceNow Governance Risk and Compliance module against defined standards and controls. Also assisting in Risk assessment through the information Security Management System and related ISO control framework. This position will be responsible to work on periodic compliance check and report.
**Required Skills**:
**Technical Compliance review**:
- Conduct periodic compliance checks, record and update tickets followed by defined policy and procedures.
- Assisting in dashboard creation and reporting on various elements from Cybersecurity and compliance.
- Assisting in periodic review and reporting of vulnerability management, DLP, Endpoint protection, SIEM.
- Proactive review and update security /normal incidents/tickets on daily basis
- Conduct periodic assessment based on defined Information system control in ServiceNow GRC and update result/status.
- Perform the periodic review of IT/FM/HR/ Business Operation according to Datavail Policy and procedures.
- Assist in global internal audit based on defined Information system and privacy control (ISO 27001 and ISO 27701), with various departments on defined frequency.
- Document audit results in ServiceNow GRC and act as the point of contact for audit responsibilities.
- Participate in Risk assessment exercise based on defined calendar.
- Assist in vendor risk assessment using defined module on ServiceNow on defined frequency.
- Proactively identify opportunities to improve the quality of reporting and usability of the available information.
- Provide reporting and metrics to the Information Security team on a defined frequency to show results of the above activities.
**Skills and Experience**:
- Fresher or/ work experience in Information Security Audit and compliance
- Technical ability to understand various IT and security management systems
- Knowledge of information security, cyber security "best practices," such as ISO 27001/27002, ISO 27701, PCI-DSS, NIST, Data Protection and Privacy.
- Interpersonal skills - ability to build strong relationships with internal team members and to work across the organization to achieve results.
- Professional communication skills - Ability to work effectively with mid and senior level contacts face to face, electronically and over the phone.
- Integrity - Words and actions are always consistent and behavior is always in accordance with highest ethical standards.
- Technical acumen - Ability to grasp technical concepts and establish credibility with technical contacts.
- Strong learning ability
- Process orientation - Ability to recognize process deficiencies and implement improvements.
**Qualifications**:
- Graduate in Computer Science / equivalent with / or / A Security Certification or knowledge in leading audit security standards such as CISA/ ISO 27001 LI / LA / ISO 27701 LI.
-
Information Security and Compliance Associate
7 months ago
Mumbai, Maharashtra, India Datavail Full time**Job Title: Information Security and Compliance Associate** **Education: Any Degree** **Location: Mumbai** **Experience: 0 -1 year** **Key Skills: ISMS, PIMS, CISA, ISO 27001:2022 LI/LA, ISO 27701:2019 LI / LA and PCI DSS** Information Security and Compliance Associate Reports to Sr. Director of Information Security. Information Security and Compliance...
-
Information Security Executive
2 weeks ago
Mumbai, Maharashtra, India Prakhar Software Solutions Pvt Ltd Full time**Experience: fresher** **Notice period: immediate** **Budget: 18k monthly** **Loctaion: Mumbai (Mulund)** **Qualifications**: Bachelor's degree in Computer Science, Information Security, or a related field. A master's degree or equivalent experience is a plus. **Key Responsibilities**: **Security Management**: Develop, implement, and manage information...
-
Compliance Officer ISO 27001
4 months ago
Mumbai, India Paralok Information Security Pvt.Ltd. Full timeRequirements: - Experience in a compliance and regulatory environment related across industries and geographies such as PCI-DSS, ISO 27001, SOC is desired - Experience developing, championing, and managing internal compliance programs. - Analytical thinker who is highly organized and pays close attention to detail. - Strong written and verbal communication...
-
Information Security
4 months ago
Mumbai, Maharashtra, India Magnify It Pvt. Ltd. Full time100% Client Payroll **JD**: - Third-party/supplier security risk assessment - Interpreting security assurance reports (SOC2, pen test reports, security policies/processes/standards) - Reviewing security requirements in contracts - Understanding outsourced solutions and associated information classification - Assessing supplier security controls (based on...
-
Information Security-grc
2 weeks ago
Powai, Mumbai, Maharashtra, India CRISIL Full time**Role / Designation**: Manager - Information Security Governance, Risk & Compliance Job Level: 12A/13A Job location: Mumbai Employment type: On-Roll Reporting Manager: Chief Information Security Officer Accountabilities: 1. Establishing and maintaining Information security program conforming to ISO/IEC 27001:2015 for uplifting the cyber resilience and...
-
Avp(Information Security Governance
22 hours ago
Mumbai, India BharatHire.Com Full timeFrom 10 to 17 year(s) of experience- ₹ Not Disclosed by Recruiter- Mumbai (All Areas)**Roles and Responsibilities** Engineering/Management Graduate with ISO 27001 LA & having mini 12 yrs of total exp, out of which minimum 7 years in the areas of Information Security/IT Security/ IT Governance, Risk & Compliance. experience on ISO 27001...
-
Information Security Associate
5 days ago
Mumbai, India Third Bridge Full timeCompany Description Third Bridge was founded on the belief that human insights drive intelligent investment decisions. To make well-informed investment decisions, Third Bridge clients require access to the most relevant experts, their knowledge and their expertise. Third Bridge enables this through private consultations and exclusive content drawn from...
-
Information Security Compliance Specialist
3 weeks ago
Navi Mumbai, Maharashtra, India Flairdeck consulting Full timeAbout the RoleWe are looking for a highly skilled Information Security Compliance Specialist to join our team at FlairDeck Consulting. As a key member of our Third-Party Technology Risk Management team, you will be responsible for conducting IT audits, evaluating IT controls, and ensuring information security compliance.The estimated salary for this role is...
-
Information Security
4 months ago
Andheri East, Mumbai, Maharashtra, India Magnify It Full timeFulltime- Mumbai, Mumbai (Andheri East)- Posted 3 hours ago100% Client Payroll **JD**: - Third-party/supplier security risk assessment - Interpreting security assurance reports (SOC2, pen test reports, security policies/processes/standards) - Reviewing security requirements in contracts - Understanding outsourced solutions and associated information...
-
Information Security Compliance Specialist
2 weeks ago
Mumbai Metropolitan Region, India Priceline Full timePriceline is a leading online travel company with a US subsidiary that offers a hybrid work model. This role is eligible for two days of in-office work.We are looking for a skilled Information Security Compliance Specialist to join our team.Responsibilities:Coordinate security GRC projects and initiatives to improve our security posture.Maintain security...
-
Information Security Convenor
2 months ago
Mumbai, Maharashtra, India Percipere Full time**Job Title**:Information Security Convenor **Department**: Information Security **Location**: Mumbai **Requirement**: - Understanding and atleast 2-3 years experience in the Information Security space - Certified as Information Security Implementer will be an added advantage **Job Description-** - You will be responsible for assisting and driving the...
-
Guest Service Associate
7 months ago
Mumbai, Maharashtra, India MoSahay Associate Full timeThe **Guest Service Associate (GSA)** is responsible for providing exceptional customer service to guests, ensuring their stay is memorable and pleasant. The GSA will handle all aspects of guest check-in and check-out, answer inquiries, and manage reservations. A background in hotel management is essential to understand the operational and service-oriented...
-
Information Security Convenor
7 months ago
Mumbai, Maharashtra, India Percipere Full time**Job Title**:Information Security Convenor **Department**: Information Security **Location**: Mumbai **Requirement**: - Understanding and atleast 2-3 years experience in the Information Security space - Certified as Information Security Implementer will be an added advantage **Job Description-** - You will be responsible for assisting and driving the...
-
Information Security Convenor
7 months ago
Mumbai, Maharashtra, India Percipere Full time**Job Title**:Information Security Convenor **Department**: Information Security **Location**: Mumbai **Requirement**: - Understanding and atleast 2-3 years experience in the Information Security space - Certified as Information Security Implementer will be an added advantage **Job Description-** - You will be responsible for assisting and driving the...
-
Chief Information Security Operations Manager
4 weeks ago
Mumbai, Maharashtra, India Information technology Full timeChief Information Security Operations ManagerWe are seeking an experienced leader to manage our SOC function in Mumbai.About the Role:The successful candidate will be responsible for leading a team of security engineers and analysts, ensuring adherence to set SLAs, and advising on technologies to enhance security posture.Key Responsibilities:Manage a team of...
-
Information Security Analyst
4 weeks ago
Mumbai Metropolitan Region, India Priceline Full timeThis role is eligible for our hybrid work model: Two days in-office.Why is this job a big deal:The position is responsible for coordinating Priceline’s risk and compliance projects, elevating our security posture. As a leading tech company, this role requires an understanding of our existing infrastructure, cybersecurity controls and risk profi le, as well...
-
Information Security Analyst
4 weeks ago
Mumbai Metropolitan Region, India Priceline Full timeThis role is eligible for our hybrid work model: Two days in-office. Why is this job a big deal: The position is responsible for coordinating Priceline’s risk and compliance projects, elevating our security posture. As a leading tech company, this role requires an understanding of our existing infrastructure, cybersecurity controls and risk profi le, as...
-
SISA Information Security
3 days ago
Mumbai, India SISA Information Security Pvt. Ltd. Full timeLead - Sales Job Description:At SISA, we are in hypergrowth mode, and our Leadership team is driving us through the cybersecurity domain in pursuit of excellence and revenue achievements. We now come to you with the Senior Manager Sales role, who would navigate this journey for us. He / She will be driving Sales activities to ensure that the P&L goals of...
-
Information Security Client
5 days ago
Mumbai, India Institutional Shareholder Services Full timePosition Overview - This role is responsible for supporting the information security agenda for ISS. The role’s primary responsibility is managing internal and external client requests, auditing, and documentation with a secondary focus on Information Security support and operations. As part of the Information Security Office, this role will work closely...
-
Compliance Associate
3 days ago
Mumbai, Maharashtra, India TIAA Full timeSpecialist - Compliance (Monitoring, Surveillance & Reporting) The role assists with performing all phases of compliance monitoring and surveillance activities, including data collection, developing the scope, documenting applicable risks and controls, developing reproducible scripts, analyzing and interpreting findings, documenting and tracking issues and...