Information Security Consultant

3 weeks ago


Mumbai Maharashtra, India Bank of America Full time

About Us At Bank of America we are guided by a common purpose to help make financial lives better through the power of every connection Responsible Growth is how we run our company and how we deliver for our clients teammates communities and shareholders every day One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world We re devoted to being a diverse and inclusive workplace for everyone We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical emotional and financial well-being Bank of America believes both in the importance of working together and offering flexibility to our employees We use a multi-faceted approach for flexibility depending on the various roles in our organization Working at Bank of America will give you a great career with opportunities to learn grow and make an impact along with the power to make a difference Join us Global Business Services Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed globally integrated delivery model and globally resilient operations Global Business Services is recognized for flawless execution sound risk management operational resiliency operational excellence and innovation In India we are present in five locations and operate as BA Continuum India Private Limited BACI a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services Process Overview Global Information Security GIS functions by analyzing researching improving defining implementing and executing information security processes defined in large part by past high profile audit issues Key responsibilities include Data Quality management of closed manually identified P2 vulnerabilities developing an understanding of the LOBs that report vulnerabilities via manual flat file to GIS following standard practices and procedures in analyzing situations or data and supporting team members in performing specialized GIS functions primarily Data Quality assurance Job expectations include partnering with teams inside and outside of GIS inclusive of GIS CTI EET APS E GT Risk and others Position will be a member of the Third Party Cyber Security Alternative Assurance Program TPAAp organization in Global Information Security GIS responsible for conducting information security assessments of third parties by reviewing independent audit reports e g SOC 2 Type 2 ISO 27001 PCI DSS RoC or Self Attestation Assessment reports e g SIG PCI DSS AoC to document a point of view on the information security posture of the third party The position will be a key player in driving strategic initiatives focused on the design of Third Party Alternative Assurance TPAA program requirements governance routines consequence processes and third party risk metrics and reporting In addition to supporting strategic initiatives the position will include analyzing and interpreting diverse information security risk indicators to deliver actionable insights into third party information security risk and enable prioritized cyber security assurance approaches Position requires interaction with the third party cyber assessment team technical subject matter experts GIS Policy and the internal and external third party management community Responsibilities Candidates must have at least 8-10 years of relevant experience Previous information technology security audit assessment experience is a plus Previous security audit assessment or remediation experience Previous experience reviewing independent audit reports certification e g ISO 27001 SOC 2 Type 2 PCI DSS RoC Previous experience reviewing self attestation assessment reports e g SIG PCI DSS AoC Self-starting organized and requiring minimal management oversight Ability to operate across organizational boundaries and hierarchies to accomplish tasks Strong analytical skills problem solving conceptual thinking attention to detail Ability to work effectively with peers and various levels of management Well organized and thorough with the ability to balance and prioritize Excellent verbal and written communication skills across multiple levels of the organization Requirements Education B E B Tech M E M Tech MCA M Sc Certifications If Any ISO 27001 LA Ethical Hacking CISA CISM Experience Range 8-15 Years Foundational Skills Experience in Information Security Management Experience in Governance Risk Compliance Experience in internal or external audits Experience with ISO 27001 and SOC 2 Type 2 control frameworks Experience in implementing or reviewing ISO 27001 PCI SOX etc controls Strong analytical and problem solving skills Excellent written verbal communication skills Desired Skills Knowledge in Vulnerability Assessments and Application Architecture Cloud Security Understanding of Networking Systems Admin Cryptography Access Management Work Timings 1 30 PM - 10 30 PM Job Location HYD MUM CHN



  • Mumbai Metropolitan Region, India Paramount Computer Systems Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    JOB SUMMARYThe Information Security Consultant shall be responsible for ensuring the information security compliance requirements for the client. The purpose of the job is to ensure adequate security controls are in place, meeting the respective security regulatory requirements.This includes managing compliance:• to various information security...


  • Mumbai, Maharashtra, India VIP (Vermont Information Processing) Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Company: Vermont Information Processing India Pvt. Ltd.VIP is the leading technology supplier for brewers, distributors, wineries, soda bottlers, and othercompanies in the beverage industry. From helping distributors improve their warehouse, delivery, andsales operations, to empowering suppliers to know where their products are and how they are selling,VIP...


  • Mumbai, Maharashtra, India NTek Software Solutions Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    About the Company:AKS IT Services (an ISO 9001:2015 and ISO 27001:2013 certified company) is a leading IT Security Services and Solutions provider with over 6000 clients. Our work spans from auditing & consulting, IT security training, cyber forensics to product development and reselling major security products.Job Description:• Plan and execute audits of...


  • Mumbai, India Morpheus Human Consulting Full time

    Reference Code: - 321-31 - Job Title: **Information Security - IT Industry - Mumbai** - Category: - IT Enabled Services - Job Description: - Job Title: Information Security - IT Industry - Mumbai - Responsible for adhering to RBI guidelines on Cyber & IT governance. Day to day management of IT Security & Compliance. - Job Responsibilities - Responsible...

  • Senior Manager

    4 days ago


    Mumbai, India NMS Consultant Full time

    Description :The Senior Manager Information Security will spearhead the development and execution of a comprehensive information security strategy that supports the organizations business objectives and regulatory requirements. This role requires a strategic leader with deep technical expertise and proven experience managing enterprise security programs,...


  • Mumbai, Maharashtra, India NMS Consultant Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Summary:-The Senior Manager – Information Security will spearhead the development and execution ofa comprehensive information security strategy that supports the organization's businessobjectives and regulatory requirements. This role requires a strategic leader with deeptechnical expertise and proven experience managing enterprise security programs,...


  • Vashi, Navi Mumbai, Maharashtra, India Anzen Technologies Private Limited Full time

    **Job Description for Information Security Consultant**: - **Technical / job functional knowledge** - Understanding and working knowledge of control frameworks based on industry best practices such as ISO27001, PCI-DSS, GDPR. - Responsible for conducting timely security assessments of third-party suppliers, recording results accurately and initiating...


  • mumbai, India Career Stone Consultant Full time

    Job Description:The job purpose is to lead and implement comprehensive cybersecurity and information securityinitiatives, including policy development, risk assessment, incident management, and compliance.Responsible for data privacy protection, infrastructure security, vendor management, and fostering asecurity-conscious culture.Roles and...


  • Mumbai, India Career Stone Consultant Full time

    Job Description: The job purpose is to lead and implement comprehensive cybersecurity and information security initiatives, including policy development, risk assessment, incident management, and compliance. Responsible for data privacy protection, infrastructure security, vendor management, and fostering a security-conscious culture. Roles and...


  • Mumbai, India Career Stone Consultant Full time

    Job Description: The job purpose is to lead and implement comprehensive cybersecurity and information security initiatives, including policy development, risk assessment, incident management, and compliance. Responsible for data privacy protection, infrastructure security, vendor management, and fostering a security-conscious culture. Roles and...