Internal Isms Auditor

2 days ago


Vikhroli Mumbai Maharashtra, India GM Infotech Full time

**Responsibilities**:
Develop and implement comprehensive audit plans aligned with organizational risk assessments and relevant standards.
Conduct audits of Information Security Management System (ISMS) based on ISO 27001:2022, NIST, GDPR, ITGC & IEC62443 standards to assess compliance and identify areas for improvement.
Conduct independent and objective assessments of the ISMS, evaluating the design, implementation, and effectiveness of information security controls.
Identify vulnerabilities, control weaknesses, and non-compliance issues through interviews, document reviews, testing procedures, and other established audit methodologies.
Identify and assess the organization's information security risks and develop audit reports detailing findings, recommendations, and corrective actions with recommended mitigation measures."
Stay updated with industry trends, standards, and regulations related to information security through professional development activities and participate in information security continuous improvement initiatives to enhance the effectiveness of the ISMS."
Collaborate with stakeholders across various departments (IT, HR, Legal) to implement corrective actions effectively.
Explain audit findings and recommendations to management and relevant parties, ensuring understanding and buy-in for proposed actions."
Collaborate effectively with diverse client stakeholders to ensure alignment with Information Security Management policies, procedures, guidelines, and processes."
Responsible for creating ISMS-related Documents/Checklists/Policies/SOPs, conducting ISMS Audits, and driving ISMS-related activities throughout all the locations."
Review and customize cyber security training and awareness materials when needed and conduct training on specific programs for clients as determined by the ISMS Manager."
Support the organization in achieving and maintaining ISO certification.
Designed policy framework based on ISO, opened and closed an audit meeting, and assisted with follow-up audits.
Review and update audit methodologies and tools based on emerging threats, best practices, and organizational changes.
Adhere to strict ethical standards and organizational information security policies when handling sensitive data obtained during the audit process."

Qualification:A bachelor’s degree in technology or engineering, Information or Cyber Security, Computer Science, BCA/MCA, or a related field is typically required."
Minimum 2-4 years’ experience in information security, risk management, or IT auditing, of which two years in a role or function related to Information Security Audit."
Significant experience in ISO 27001/2 standards for consulting, collaboration, implementation & auditing is highly desirable.
A strong understanding of information security frameworks like ISO 27001, NIST Cybersecurity Framework (CSF), GDPR, CIS, IEC 62443 or similar."
Experience planning, preparing, and delivering internal and external audits, including Compliance Audits.
Should have detailed experience and knowledge of Cyber/Information Security Governance, Risk Management, and Compliance.
Experience with regulatory compliance DPDP, CERT-In, NCIIPC, RBI, SEBI, IRDA.
Knowledge of information security controls, risk assessment methodologies, and vulnerability management principles.

Proficient in writing clear, concise audit reports with effective communication skills for technical & non-technical audiences.
Proficiency in using relevant audit tools and technologies.
Ability to work under pressure, meet deadlines, and maintain a positive attitude.
Strong interpersonal skills and ability to work independently or in a team.

Pay: ₹800,000.00 - ₹1,000,000.00 per year

Schedule:

- Day shift
- Monday to Friday

**Experience**:

- total work: 3 years (required)

Work Location: In person


  • ISMS Manager

    2 weeks ago


    Navi Mumbai, India Kiya Full time

    Role & responsibilities We are seeking an experienced ISMS Manager to establish, implement, and maintain our Information Security Management System (ISMS) in line with ISO 27001 and other relevant standards. The ISMS Manager will be responsible for developing security policies, ensuring compliance, managing audits, and fostering a culture of information...

  • ISMS Manager

    2 days ago


    Navi Mumbai, Maharashtra, India Kiya Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Role & responsibilitiesWe are seeking an experienced ISMS Manager to establish, implement, and maintain our Information Security Management System (ISMS) in line with ISO 27001 and other relevant standards. The ISMS Manager will be responsible for developing security policies, ensuring compliance, managing audits, and fostering a culture of information...


  • Mumbai, India Triton Maritime Full time

    Company : **Triton Maritime****: - Job Type : - Assistant / ISM and HSEQ co-ordinator - Location : - Mumbai - Department : - Vessel Owning- Experience : - 5 to 10+ years- Conversant with latest and updated Classification and Flag regulations and to ensure compliance. - The core knowledge in statutory(DG,MMD,IRS) and involved in ISM, ISPS, MLC & DOC...

  • Finance Faculty

    1 week ago


    Pune, Maharashtra, India ISMS Pune Full time

    **Urgently hiring for Full Time Faculty (Finance)** **About Us**: The International School of Management Studies is a modern, strong, sustainable, and student - centric institution. ISMS is accredited by Edexcel, the UK's largest awarding body and one of Pearson's leading brand names for academic and general qualifications. ISMS is one of the most trusted...

  • Student Counsellor

    1 week ago


    Pune, Maharashtra, India ISMS Pune Full time

    About the job About the Institution: The ISMS Group of Institutions is a modern, strong, sustainable, and student-centric institution, located at Ambegaon BK, 411041. ISMS Pune is accredited by Edexcel, the UK's largest awarding body and one of Pearson's leading brand names for academic and general qualifications. ISMS Pune is one of the most trusted and...


  • Mumbai, India Samson Maritime Limited Full time

    Monitoring and planning of ISM & ISPS Audits of all ships in the fleet. - Preparation for DOC Internal & External Audits. - Assisting Company’s Designated Person & CSO in ISM, MLC & ISPS related matters. - Monitoring & maintaining a record of all ISM / ISPS related reports and documents. - Correspondence with ships for tracking and follow up of...


  • Mumbai, India Infosec Career LLP Full time

    Key Responsibilities: - Good knowledge of ISMS - 2+ years of prior hands-on audit experience - Knowledge on SOC 1 type 1 and SOC2 type 2, HITRUST, ISAE 3000 controls - Able to work in external auditors and tailor the controls applicability for the organization - Able to work with internal stakeholders and collate the required evidences for the external...

  • GRC Consultant

    4 weeks ago


    Mumbai, Maharashtra, India Cubical Operations LLP Full time

    Job Title: GRC Consultant (ISMS / ISO 27001 / IT Audit)Experience: 2+ YearsLocation: Mumbai (On-site)Notice Period: Immediate Joiners PreferredEmployment Type: Full-timeJob Description:We are seeking a highly motivated and detail-oriented GRC Consultant with over 2 years of experience in Information Security Management Systems (ISMS), ISO 27001...

  • Grc Consultant

    3 weeks ago


    Mumbai, Maharashtra, India Cubical Operations LLP Full time

    Job Title: GRC Consultant (ISMS / ISO 27001 / IT Audit)Experience: 2+ Years Location: Mumbai (On-site)Notice Period: Immediate Joiners Preferred Employment Type: Full-time Job Description: We are seeking a highly motivated and detail-oriented GRC Consultant with over 2 years of experience in Information Security Management Systems (ISMS), ISO 27001...

  • GRC Consultant

    3 weeks ago


    Mumbai, Maharashtra, India Cubical Operations LLP Full time

    Job Title: GRC Consultant (ISMS / ISO 27001 / IT Audit) Experience: 2+ Years Location: Mumbai (On-site) Notice Period: Immediate Joiners Preferred Employment Type: Full-time Job Description: We are seeking a highly motivated and detail-oriented GRC Consultant with over 2 years of experience in Information Security Management Systems (ISMS), ISO 27001...