Information Security Program Manager

2 days ago


Bangalore Karnataka, India Varite Full time

Company Name VARITE India Private Limited About The Client A data management and cloud services company headquartered in the United States specializes in simplifying backup recovery and data protection processes The firm offers a cloud-based platform integrating backup instant recovery archival search and analytics functions Known for its innovative data management approach the company caters to organizations seeking efficient and scalable solutions About The Job Client is seeking an experienced Program Manager to join our Third-Party Risk Assessment team This team focuses on analyzing and managing risks associated with our vendors service providers and other third parties ensuring our organization upholds the highest standards of compliance security and business resilience While your primary responsibility will be Third-Party Risk Management you will also collaborate on other cybersecurity risk management initiatives Building strong cross-functional relationships across the company is a key component of this role To excel you must showcase exceptional leadership communication and decision-making skills and have a proven track record in managing third-party risk vendor governance or related domains Essential Job Functions Lead and conduct comprehensive risk assessments of new and existing third-party vendors and service providers focusing on cybersecurity and regulatory compliance Evaluate third-party security questionnaires audit reports e g SOC 2 ISO 27001 and risk documentation Coordinate with vendors to request and verify security controls remediation plans and ongoing compliance Oversee facilitation of risk remediation efforts agreed upon with suppliers ensuring timely resolution Collaborate during supplier contract development reviewing deviations from security requirements and offering subject matter expertise on risk remediation Classify vendors according to risk tiers and maintain a comprehensive database of vendor risk profiles Participate in continuous security monitoring of existing suppliers to track changing risk profiles Partner with Procurement Legal Privacy and InfoSec teams to improve supplier security management processes Identify opportunities to automate parts of the assessment process thereby reducing manual work and enhancing efficiency Keep abreast of emerging risks industry standards and regulatory requirements affecting third-party vendors Manage and mentor contractors and junior team members fostering professional growth and maintaining a collaborative team environment Qualifications Bachelors degree in Computer Science Information Security Cybersecurity Risk Management or a related field 8-10 years of professional experience in third-party risk assessment within cybersecurity or information risk management Understanding of relevant information security frameworks including related regulatory compliance requirements such as ISO 27001 2 including ISO 27017 18 FedRAMP SOC 2 Trust Services Criteria PCI DSS NIST CSF Solid understanding of risk assessment methodologies and best practices Ability to synthesize and communicate complex risk findings to both technical and non-technical audiences Detail-oriented process-driven and capable of managing multiple vendor assessments concurrently Experience with tools such as Coupa OneTrust JIRA and Coverbase is a plus Professional certifications in Information Security or Risk Management e g CISA CISM CISSP CRISC is a plus How to Apply Interested candidates are encouraged to respond submit their updated resumes and for additional job opportunities please visit Unlock Rewards Refer Candidates and Earn If you re not available or interested in this opportunity please pass this along to anyone in your network who might be a good fit and interested in our open positions VARITE offers a Candidate Referral program where you ll receive a one-time referral bonus based on the following scale if the preferred candidate completes a three-month assignment with VARITE Experience Level Bonus Referral 0-2 years INR 5 000 2-6 years INR 7 500 6 years INR 10 000 About VARITE VARITE is a global staffing and IT consulting company providing technical consulting and team augmentation services to Fortune 500 Companies in USA UK CANADA and INDIA VARITE is currently a primary and direct vendor to the leading corporations in the verticals of Networking Cloud Infrastructure Hardware and Software Digital Marketing and Media Solutions Clinical Diagnostics Utilities Gaming and Entertainment and Financial Services Equal Opportunity Employer VARITE is an equal opportunity employer We celebrate diversity and are committed to creating an inclusive environment for all employees We do not discriminate based on race color religion sex sexual orientation gender identity or expression national origin age marital status veteran status or disability status



  • bangalore, India Navi Full time

    About the Team At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regulatory compliance, and data protection, while championing a security-first culture across all teams. Our mission: Protect what powers Navi -...

  • Program Manager

    1 week ago


    bangalore, India Andromeda Security Full time

    Job Description:We are seeking a results-driven Program Manager to join our Customer Success team. In this role, you will drive cross-functional programs that enhance experience for SaaS customers, improve retention, and ensure scalable success operations. You will collaborate with CS leadership, product, and engineering teams to deliver initiatives that...

  • Program Manager

    1 week ago


    Bangalore, India Andromeda Security Full time

    Job Description: We are seeking a results-driven Program Manager to join our Customer Success team. In this role, you will drive cross-functional programs that enhance experience for SaaS customers, improve retention, and ensure scalable success operations. You will collaborate with CS leadership, product, and engineering teams to deliver initiatives that...


  • Bangalore, Karnataka, India Mashreq Bank Full time

    Job Category NES Job Group We are seeking a highly skilled and experienced Senior Cloud Security Architect who will also primarily contribute to Cloud Security Governance initiatives The ideal candidate will possess a strong blend of technical expertise strategic thinking and leadership capabilities to design implement and govern secure cloud environments...


  • bangalore, India Cube Consultancy Services Full time

    Job Responsibilities: - Develop, implement, and monitor a strategic, comprehensive enterprise information security and IT risk management program to ensure the integrity, confidentiality, and availability of information owned, controlled, or processed by the organization. - Manage the enterprise's information security organization, consisting of direct...


  • Bangalore, Karnataka, India Zscaler Full time

    About Zscaler Serving thousands of enterprise customers around the world including 45 of Fortune 500 companies Zscaler NASDAQ ZS was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users As the operator of the world s largest security cloud Zscaler accelerates digital transformation...


  • Bangalore, Karnataka, India Eurofins Full time

    Company Description Eurofins Scientific is an international life sciences company providing a unique range of analytical testing services to clients across multiple industries to make life and the environment safer healthier and more sustainable From the food you eat to the medicines you rely on Eurofins works with the biggest companies in the world to...


  • bangalore, India Chargebee Full time

    Role PurposeThe Director / Head of Information Security will lead Chargebee’s Corporate Information Security function, working in close partnership with the Enterprise Cyber security (ECS) which manages product and infrastructure security and Corporate IT (which manages employee systems, devices, and operations) teams.This role focuses on strengthening...


  • Bangalore, Karnataka, India Endava Full time

    Company Description Technology is our how And people are our why For over two decades we have been harnessing technology to drive meaningful change By combining world-class engineering industry expertise and a people-centric mindset we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital...


  • Bangalore, Karnataka, India UnitedHealth Group Full time

    Monitoring and Response Vulnerability Testing Perform regular vulnerability testing risk analyses and security assessments 1 Incident Response Monitor for and respond to security incidents and breaches in the cloud environment 2 Policy and Compliance Security Policies Develop and enforce cloud security policies and procedures 1 Compliance Ensure compliance...