Vulnerability Assessment Consultant-2

2 weeks ago


Bengaluru Karnataka, India JLL Full time

JLL supports the Whole You, personally and professionally.
Vulnerability Assessment Consultant-2
JLL Technologies, Bangalore
**What this job involves**:
JLLTechAmbitions
The Information Security Consultant will support planning, execution, and reporting of operational and system IT internal controls and risk management within the company. This role will act as a point of contact for Cybersecurity Governance, Risk, and Compliance. The role will work closely with the Technology functional teams and internal business lines in the day-to-day operational delivery of the overall Cybersecurity Compliance program.
Teaming with the Cybersecurity Compliance Manager, the Information Security Consultant will:
Monitor changes in business processes, information systems, management and operations, and accordingly maintain an assessment to risk.
Build and maintain productive relationships with process owners.
Through effective leadership, ensure audits of control effectiveness and design and other projects are completed in an efficient manner, and within established deadlines.
Through the effective review of department work, ensure that the assessments of internal control structure related to processes audited are supported through sufficient and adequately documented evidence.
Continually evaluate the efficiency and effectiveness of the internal controls and department functions, and identify areas of improvement.
Assist with internal investigations.
Promote good practice of Information Security Compliance to staff and associated contractors.
Provide direct and specific guidance to the department internal control process owners’ as appropriate for each process owner of the department and the work being performed.
Perform risk assessments related to controls in scope for work being performed.

**Responsibilities**:
Maintain awareness of current issues and significant changes within the business environment and business processes.
Periodically determine the need for revisions to control processes.
Demonstrate effective interaction with all levels of management and business partners.
Review specific control risk assessments to ensure efficiency and effectiveness in addressing key risks associated with the respective auditable entity or entities.
Review risk questionnaire submissions to identify key risks associated with the respective vendor /service and work with stakeholders to mitigate and advise.
Ensure that appropriate communication has been made in advance with compliance and internal process & service owners regarding the timing and logistics of each audit and review.
Anticipate problems and obstacles to the timely and efficient completion of audits and compliance reviews. Recommend solutions to anticipated and incurred problems and obstacles impeding the timely completion of such audit and reviews.
Through an understanding of internal controls, standards and applicable policies, procedures, and country regulations, review evidence to ensure the assessment of the effectiveness and efficiency of internal controls is adequate and sufficiently supported and documented, and the departmental and professional standards are adequately upheld.
Ensure issues and exceptions are fully identified and properly defined, and recommendations are adequately formulated to address the root cause of identified issues in a beneficial manner.
Ensure issues and recommendations are adequately and effectively communicated to owners on a proactive basis during the course of each audit or review.
Review final process owners’ responses for adequacy and completeness.
Ensure appropriate and timely follow-up audit work is performed to properly update the status of outstanding reported issues, and adequate communication is provided to management on a proactive basis.
Use the firm’s various methods of internal communication to direct colleagues and the wider organization to current, new policies and essential compliance information.
Experience & Education
Experience in evaluating third parties for the presence of fundamental information security controls.
College diploma or university degree in the field of computer science, information systems, or computer engineering
Exposure to any GRC technologies to perform risk management.
Good understanding of compliance standards/framework like ISO 27001/27002, NIST, SOC1, SSAE16/SOC2, CIS.
Minimum of 4 years IT experience; or equivalent combination of education and experience
Minimum of 4 years' experience of contributing to the success of a range of midsize-to-large multi-country initiatives.
Experience in designing and managing compliance and risk management controls and processes in day to day IT operations and projects.
Experience working in the corporate sectors (financial services, telecommunications or utilities)
Experience working in real estate services industry
Technical Skills & Competencies
High level of written and oral English communication skills.
High level of analytical, conceptual, and prob



  • Bengaluru, India Terralogic Full time

    Department: Cybersecurity / Information SecurityLocation: Bangalore (On-site)Employment Type: Full-timeInterested candidates can apply using the form below.https://forms.Gle/ET8oeGXFAk9Fdxou7About the RolesWe’re hiring experienced professionals to join our Cybersecurity team in two key positions:VAPT Engineer (L2/L3) – leading advanced vulnerability...


  • Bengaluru, India Cubical Operations LLP Full time

    Job Title: Deputy Manager – VAPT (Vulnerability Assessment & Penetration Testing)Location: BangaloreExperience: 5+ YearsDepartment: Information Security / Cyber RiskJoining: Early joiners preferredAbout the Role:We are looking for a skilled Deputy Manager – VAPT to lead and execute vulnerability assessments and penetration testing engagements across...


  • Bengaluru, India Cubical Operations LLP Full time

    Job Title: Deputy Manager – VAPT (Vulnerability Assessment & Penetration Testing) Location: Bangalore Experience: 5+ Years Department: Information Security / Cyber Risk Joining: Early joiners preferred About the Role: We are looking for a skilled Deputy Manager – VAPT to lead and execute vulnerability assessments and penetration testing engagements...


  • Bengaluru, India Cubical Operations LLP Full time

    Job Title: Deputy Manager – VAPT (Vulnerability Assessment & Penetration Testing)Location: Bangalore Experience: 5+ Years Department: Information Security / Cyber Risk Joining: Early joiners preferredAbout the Role:We are looking for a skilled Deputy Manager – VAPT to lead and execute vulnerability assessments and penetration testing engagements across...


  • Bengaluru, India Cubical Operations LLP Full time

    Job Title: Deputy Manager – VAPT (Vulnerability Assessment & Penetration Testing)Location: BangaloreExperience: 5+ YearsDepartment: Information Security / Cyber RiskJoining: Early joiners preferredAbout the Role:We are looking for a skilled Deputy Manager – VAPT to lead and execute vulnerability assessments and penetration testing engagements across...


  • Bengaluru, India Cubical Operations LLP Full time

    Job Title: Deputy Manager – VAPT (Vulnerability Assessment & Penetration Testing)Location: BangaloreExperience: 5+ YearsDepartment: Information Security / Cyber RiskJoining: Early joiners preferredAbout the Role:We are looking for a skilled Deputy Manager – VAPT to lead and execute vulnerability assessments and penetration testing engagements...


  • Bengaluru, India Cubical Operations LLP Full time

    Job Title: Deputy Manager – VAPT (Vulnerability Assessment & Penetration Testing)Location: Bangalore Experience: 5+ Years Department: Information Security / Cyber Risk Joining: Early joiners preferredAbout the Role:We are looking for a skilled Deputy Manager – VAPT to lead and execute vulnerability assessments and penetration testing engagements across...


  • Bengaluru, India Cubical Operations LLP Full time

    Job Title: Deputy Manager – VAPT (Vulnerability Assessment & Penetration Testing)Location: Bangalore Experience: 5+ Years Department: Information Security / Cyber Risk Joining: Early joiners preferredAbout the Role:We are looking for a skilled Deputy Manager – VAPT to lead and execute vulnerability assessments and penetration testing engagements across...


  • Bengaluru, India SKS Enterprises Full time

    Position Name : Application Security EngineerLocation : BangaloreExperience Range : 3+ YearsMandatory Requirement :- Passionate about application security with a strong commitment to staying updated on the latest security trends and best practices.- Proven experience in addressing web application security challenges, including a solid grasp of OWASP Top 10...

  • Cloud Assessment

    2 weeks ago


    Bengaluru, India Rapid Global Business Solutions Full time

    Qualifications/Requirements: - Bachelor's degree in Computer Science, Information Technology, or a related field - 7+ years of proven experience in security design, penetration testing, and risk assessment - In-depth knowledge of security principles, practices, and methodologies - Extensive hands-on experience with a variety of security tools and...