Security Risk and Compliance Expert

7 hours ago


India NOKIA Full time

Security Risk and Compliance Expert will be instrumental in shaping the global Information Security Management System (ISMS) within our Group Security team. This role involves engaging with various Business Groups and Corporate Functions to identify and manage information security risks, ensuring compliance and enhancing our security posture. Facilitate risk assessments, develop training, and contribute to the continuous improvement of security policies and tools. Enhance the overall security and compliance of services provided to our customers.
- Implement and operate the global Information Security Management System (ISMS) to enhance overall security and compliance.
- Conduct risk assessments with global stakeholders to evaluate and report information security risks.
- Develop and maintain the information security risk register, tracking mitigation progress and presenting reports to stakeholders.
- Provide recommendations for security risk mitigation strategies tailored to different business groups.
- Create, update, and maintain ISMS documentation and a repository of reports and audit records.
- Facilitate training sessions to educate employees on ISMS practices and promote a strong security culture.
- Collaborate with cross-functional teams to identify evolving security trends and compliance requirements.
- Contribute to the continuous improvement of Nokia ISMS and related tools, utilizing KPIs to measure effectiveness.

**You have**:

- Master's or bachelor's degree in computer science, security engineering, or equivalent
- 5+ years of experience in information security in a multinational organization. Solid understanding of information security processes and technologies
- Practical knowledge of ISO/IEC 27001:2022 standard implementation
- Excellent documentation and communication skills

**It would be nice if you also had**:

- Knowledge of security standards like CSA CCM, NIST CSF, NIS2, and SOC2
- Experience delivering information security training
- Familiarity with RSA Archer and Microsoft Power BI or other GRC tools
- Certifications in information security (e.g., CRISC, CISSP and ISO 27001 LI/LA).

**Come create the technology that helps the world act together**

Nokia is committed to innovation and technology leadership across mobile, fixed and cloud networks. Your career here will have a positive impact on people’s lives and will help us build the capabilities needed for a more productive, sustainable, and inclusive world.
We challenge ourselves to create an inclusive way of working where we are open to new ideas, empowered to take risks and fearless to bring our authentic selves to work

**What we offer**

Nokia offers continuous learning opportunities, well-being programs to support you mentally and physically, opportunities to join and get supported by employee resource groups, mentoring programs and highly diverse teams with an inclusive culture where people thrive and are empowered.

**Nokia is committed to inclusion and is an equal opportunity employer**

Nokia has received the following recognitions for its commitment to inclusion & equality:

- One of the World’s Most Ethical Companies by Ethisphere
- Gender-Equality Index by BloombergWorkplace Pride Global Benchmark

At Nokia, we act inclusively and respect the uniqueness of people. Nokia’s employment decisions are made regardless of race, color, national or ethnic origin, religion, gender, sexual orientation, gender identity or expression, age, marital status, disability, protected veteran status or other characteristics protected by law.
We are committed to a culture of inclusion built upon our core value of respect.

Join us and be part of a company where you will feel included and empowered to succeed.



  • India TriOptus Full time

    Job Title: Senior Manager – Information Security Risk Location: REMOTE Department: Information Security Governance (ISG) Reporting To: Head – IS GRCRole Overview: The Senior Manager – Information Security Risk is responsible for developing, executing, and managing the bank's Information Security Risk Management (ISRM) program.The role plays a pivotal...


  • India TriOptus Full time

    Job Title: Senior Manager – Information Security RiskLocation: REMOTE Department: Information Security Governance (ISG) Reporting To: Head – IS GRCRole Overview:The Senior Manager – Information Security Risk is responsible for developing, executing, and managing the bank's Information Security Risk Management (ISRM) program. The role plays a pivotal...


  • India Atom Full time

    Job Title: Oracle Cloud Security and Risk Management (RMC) Consultant Experience: 5–7 Years Location: India OffshoreJob Summary:We are seeking an experienced Oracle Cloud Security and Risk Management (RMC) Consultant to join our team. The ideal candidate will have 5–7 years of hands-on experience in Oracle Fusion Security, Oracle Cloud Infrastructure...


  • India beBeeCompliance Full time ₹ 15,00,000 - ₹ 20,00,000

    Risk and Compliance Specialist RoleWe are seeking a skilled Risk and Compliance Specialist to join our team. As a key member, you will play a critical role in ensuring the robustness of our risk and compliance function.This position involves working closely with the Senior Risk Manager to identify and mitigate potential risks. Your responsibilities will...

  • Security Researcher

    4 weeks ago


    India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of expertsAltered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information security training, cyber ranges, online labs and security...


  • India 3Pillar Global Full time

    We build breakthrough software products that power digital businesses We are an innovative product development partner whose solutions drive rapid revenue market share and customer growth for industry leaders in Software and SaaS Media and Publishing Information Services and Retail Our key differentiator is our Product Mindset Our development teams...


  • India Leena AI Full time

    Leena AI was founded by IIT Delhi alumnus & senior industry veterans with a belief that AI can transform the way enterprises work. We create awesome bots! We improve employee experience through intelligent conversations, making it easier for employees to get the answers they’re looking for. We are a team of passionate self-starters, who encourage each...


  • India MAX Security Full time

    Company Profile: Max is Global Risk Management organization based out in Tel Aviv, Israel and its APAC HQ is based out of Mumbai.Led by veterans from Israeli Military Special Forces, Intelligence, Cyber and Secret Services we operate in 160 countries across the globe.We have capabilities in every continent across the world and carry the experience of 25 +...


  • India beBeeInformation Full time ₹ 1,20,00,000 - ₹ 1,50,00,000

    Job Title: Senior Information Security ConsultantSprinto is a leading platform that automates information security compliance. By raising the bar on information security, Sprinto ensures compliance, healthy operational practices, and the ability for businesses to grow and scale with unwavering confidence. We are a team of 200+ employees & helping 1000+...


  • India MAX Security Full time

    Company Profile:MAX is Global Risk Management organization based out in Tel Aviv, Israel and its APAC HQ is based out of Mumbai. Led by veterans from Israeli Military Special Forces, Intelligence, Cyber and Secret Services we operate in 160 countries across the globe. We have capabilities in every continent across the world and carry the experience of 25 +...