Information Security Specialist
1 day ago
Job Title: GRC AnalystThis is a critical role for any organization seeking to drive compliance programs, manage audits, and ensure third-party security risks are effectively identified and mitigated. We are seeking an Information Security professional with expertise in Governance, Risk & Compliance (GRC), Data Protection, and Third-Party Risk Management (TPRM).Governance, Risk & Compliance (GRC)The successful candidate will develop, implement, and maintain information security policies, standards, and procedures. They will conduct risk assessments and drive risk treatment/mitigation plans, ensuring timely closure of findings. Additionally, they will monitor compliance with frameworks/standards such as ISO 27001, NIST, CIS.Develop and Implement Information Security Policies: Create and maintain information security policies, standards, and procedures that align with organizational goals and regulatory requirements.Conduct Risk Assessments: Identify and assess potential risks to the organization's information assets, developing mitigation strategies to address these risks.Monitor Compliance: Ensure ongoing monitoring of compliance with established policies, standards, and regulations, making recommendations for improvement where necessary.Data ProtectionThe ideal candidate will identify and mitigate risks associated with processing of personal and sensitive data. They will oversee data classification, retention, and secure disposal practices, leading initiatives around Data Loss Prevention (DLP). This includes policy finetuning, incident monitoring, and working with stakeholders on data handling improvements.Identify and Mitigate Risks: Conduct thorough risk assessments to identify vulnerabilities in data handling processes, implementing controls to mitigate these risks.Oversee Data Classification: Develop and implement data classification policies, ensuring that sensitive data is properly classified and handled.Lead DLP Initiatives: Design and implement Data Loss Prevention strategies, ensuring that data is properly protected from unauthorized access or disclosure.Third-Party Risk Management (TPRM)The successful candidate will conduct security assessments and due diligence for vendors, partners, and service providers. They will review and evaluate vendor security controls, certifications, and compliance posture, managing the third-party risk lifecycle.Conduct Security Assessments: Perform thorough security assessments of third-party vendors, partners, and service providers, identifying potential risks to the organization.Review Vendor Security Controls: Evaluate the security controls and compliance posture of third-party vendors, partners, and service providers, making recommendations for improvement where necessary.Manage the Third-Party Risk Lifecycle: Oversee the entire third-party risk lifecycle, from onboarding to periodic reviews and issue remediation.Qualifications:Bachelor's degree in Computer Science or Information Security or related field.4–6 years of experience in Information Security roles with focus on GRC, Data Protection, and TPRM.Strong understanding of security standards (ISO 27001, NIST, etc.).Experience conducting risk assessments, vendor due diligence, and compliance reviews.Good knowledge of data protection principles, privacy laws, and security best practices.Excellent documentation, communication, and stakeholder management skills.Preferred Skills:Relevant certifications such as CISM, CISA, ISO 27001, CIPM, or CRISC.Experience with GRC tools (e.g., Archer, ServiceNow GRC, OneTrust, or similar).Knowledge of cloud security and SaaS vendor risk assessments.
-
Information Security Manager
2 weeks ago
Mumbai, Maharashtra, India VIP (Vermont Information Processing) Full time ₹ 8,00,000 - ₹ 12,00,000 per yearCompany: Vermont Information Processing India Pvt. Ltd.VIP is the leading technology supplier for brewers, distributors, wineries, soda bottlers, and othercompanies in the beverage industry. From helping distributors improve their warehouse, delivery, andsales operations, to empowering suppliers to know where their products are and how they are selling,VIP...
-
Information Security
10 hours ago
Mumbai, India Morpheus Human Consulting Full timeReference Code: - 321-31 - Job Title: **Information Security - IT Industry - Mumbai** - Category: - IT Enabled Services - Job Description: - Job Title: Information Security - IT Industry - Mumbai - Responsible for adhering to RBI guidelines on Cyber & IT governance. Day to day management of IT Security & Compliance. - Job Responsibilities - Responsible...
-
Information Security Specialist
4 days ago
Mumbai, Maharashtra, India Piramal Finance Full time ₹ 12,00,000 - ₹ 36,00,000 per yearRoles & Responsibilities:He/She will be responsible for managing Regulatory Information & Cybersecurity compliance requirements like RBI & IRDAIPerform risk assessment of all key applications and IT Infrastructure to ensure all risks are identified and mitigatedResponsible for handling the relevant application security practice areas like vulnerability...
-
NFRM Information Security
2 weeks ago
Mumbai, Maharashtra, India Deutsche Bank Full time ₹ 6,00,000 - ₹ 18,00,000 per yearJob Title: NFRM Information Security & Technology Risk SpecialistLocation: Mumbai, IndiaCorporate Title: AssociateRole DescriptionAn Information Technology & Security Risk Specialist to join the 2nd LoD Information Security & Technology Risk Team. The team is global, this role is within the Mumbai team (currently 1 person) which is being built out to support...
-
Information Technology Specialist
2 days ago
Mumbai, Maharashtra, India Sky Nexus Full time ₹ 5,00,000 - ₹ 15,00,000 per yearCompany DescriptionSky Nexus Australia is a provider of IT services and consulting, with a focus on information security solutions for small and medium-sized enterprises (SMEs). We specialize in empowering SMEs with secure and reliable technology to address their unique challenges in information technology and cybersecurity. By offering tailored services and...
-
Network Security Engineer
1 week ago
Mumbai, Maharashtra, India Sattrix Information Security Full time ₹ 4,00,000 - ₹ 12,00,000 per yearJob Title:Network Security Engineers (L1 / L2 / L3)Location:Chennai / Mumbai / HyderabadEmployment Type:Full-time | Client RoleShifts: Rotational ShiftsWork Mode:Work from OfficeAbout the Role:We are looking for highly skilled and motivatedNetwork Security Engineers (L1, L2 & L3). You'll be responsible for managing, operating, and optimizing a wide range of...
-
Information Technology Specialist
3 weeks ago
Mumbai, India Sky Nexus Full timeJob Description Company Description Sky Nexus Australia is a provider of IT services and consulting, with a focus on information security solutions for small and medium-sized enterprises (SMEs). We specialize in empowering SMEs with secure and reliable technology to address their unique challenges in information technology and cybersecurity. By offering...
-
Endpoint Security Engineer L2
6 days ago
Mumbai, India Sattrix Information Security Full timeJob Title: Endpoint Engineer / Device Management L2 Support Engineer Location: Mumbai & Chennai Experience: 4–6 Years (Minimum 5 years in Security Device Management & Operations) Education: B.E. / B.Tech / MCA Budget: 15-18 LPA About the Role We are looking for skilled Endpoint Engineers (L2 Support) with strong experience in managing and operating...
-
Endpoint Security Engineer L2
7 days ago
Mumbai, India Sattrix Information Security Full timeJob Title: Endpoint Engineer / Device Management L2 Support Engineer Location: Mumbai & Chennai Experience: 4–6 Years (Minimum 5 years in Security Device Management & Operations) Education: B.E. / B.Tech / MCA Budget: 15-18 LPA About the Role We are looking for skilled Endpoint Engineers (L2 Support) with strong experience in managing and operating...
-
NFRM Information Security
2 weeks ago
Mumbai, India Deutsche Bank Full timeJob Description NFRM Information Security & Technology Risk Specialist, AS Position Overview Job Title: NFRM Information Security & Technology Risk Specialist Location: Mumbai, India Corporate Title: Associate Role Description - An Information Technology & Security Risk Specialist to join the 2nd LoD Information Security & Technology Risk Team. The team is...