Senior Consultant Information Security- ISO 27001 Implementer Job in Glan Management Consultancy at Gurgaon
1 week ago
Job Title:
Senior Consultant Information Security IT
Job Purpose:Acting in a key technical management & execution capacity to provide a conduit between IT teams and key business stakeholders thereby ensuring information technology needs are managed consistently, following professional IT and global standards, and delivered with a high quality and customer satisfaction.
Reward level:Middle Management
Job Location:Gurgaon
Experience:7 years
Relevant Experience:7 years
Reporting to:General Manager
Qualification:Bachelors degree in IT and relevant Information Security
Certifications Key Deliverables:- Provide support as Lead implementor towards ISMS and PIMS policies, procedures, and guidelines and ensure to perform regular review and update.
- Gather evidence of continuous compliance with ISO 27001:2022 and ISO 27701:2019, DPDPA, IT Act and Cert In Regulation including audit logs, records of reviews, timely closure of open audit and risks and sharing the report with management.
- Conduct regular, documented information security and privacy risk assessments on Security Tools and Technologies by identifying assets, threats, vulnerabilities, likelihood, and impact.
- Prioritize identified vulnerabilities, detailed findings, remediation recommendations, trending reports on vulnerability posture towards closure with stakeholders.
- Implementation of a comprehensive, ongoing security project plan for remediation of open audit gaps.
- Prepare regular report on overall information security posture, GRC maturity, and risk landscape to relevant stakeholders.
- Perform Root Cause Analysis and lessons learned from information security incidents, actively participate in audits and support internal IT staff to perform technical assessments and controls with evidence.
- Internal IT and business customers.
- Global/Local IT Vendor, market and global (HQ) colleagues.
- Internal staff - direct reports (where applicable).
- IT vendors, contractors (where applicable).
- Must have ISO 27001 Lead Implementer and ISO 27701 Lead Implementer certifications.
- In depth understanding of IT Act, DPDPA, Cert In regulations, CIS Controls as well as UK DPA and ISO 31000.
- Good to have certification on CISM (Certified Information Security Manager), CISSP (Certified Information Systems Security Professional) and Cloud Security certifications (e.g., CCSK, CCSP, vendor-specific like AWS Security Specialty).
- Familiarity with common vulnerability scanning tools like Qualys (features, reporting, agent-based vs. network scans) and Cloud Security Posture Management (CSPM) tools like Wiz (cloud service provider configurations, misconfigurations, compliance checks in AWS, Azure, GCP).
- Conduct and lead IT DR drills and Tabletop exercises with internal IT teams.
- Hands on knowledge on common security technologies (e.g., firewalls, EDR, Cloud Security, VAPT tools, SIEM, WAF, DLP, PAM, BAS, encryption etc.,).
- Ability to handle and manage Endpoint, Perimeter, Cloud and Data Security technical consoles with configuration and fine tuning of policies.
- Understanding of various penetration testing types (e.g., network, web application, API, mobile, cloud) and methodologies.
- Knowledge of common attack vectors and exploitation techniques like MITREATTACK and DEFEND, NIST Cyber Security Framework.
- Excellent technical writing skills for creating clear, concise, and comprehensive security policies, standards, and procedures.
- Ability to analyse complex risk data and present actionable insights.
- Proficiency with GRC platforms or tools for managing policies, risks, and controls.
- Exceptional verbal and written communication skills to articulate complex security concepts to technical and non-technical stakeholders.
- Strong technical skills to diagnose security issues, identify root causes, and develop effective solutions.
- Ability to develop and deliver engaging security training sessions and awareness campaigns to internal IT staff.
- Ability to stay updated with the latest security threats, vulnerabilities, technologies, and regulatory changes.
Email updated resume with salary details to:
email:
Contact: Satish
Website:
Key Skill:Consultant Information Security, GRC, information security consultant, IT security, ISO 27001 compliance, ISO 27001 Implementer, ISO 27001, internal auditor, CISM
Posted on:26th Aug, 2025
-
Manager Information Security
1 week ago
Gurgaon, Haryana, India glan management consultancy pvt. ltd. Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Description Job Title: Manager Information Security IT Job Purpose: Acting in a key technical management & execution capacity to provide a conduit between IT teams and key business stakeholders in your functional area of IT Security to ensure information technology needs are managed consistently, following professional IT and global standards, and...
-
Information Security Manager
1 week ago
Gurgaon, Haryana, India glan management consultancy Full time ₹ 16,25,000 - ₹ 30,15,133 per yearCompany: Glan Management ConsultancyLocation: GurgaonExperience: 7-15 yearSalary:Employment Type:Job Description:Job Title: Manager Information Security – ITJob Purpose: Acting in a key technical management & execution capacity to provide a conduit between IT teams and key business stakeholders in your functional area of IT Security to ensure information...
-
Information Security Consultant
1 week ago
Gurgaon, Haryana, India Glan Management Consultancy Full time ₹ 4,00,000 - ₹ 12,00,000 per year* Develop ISO 27001 compliance plans and implement controls.* Conduct IT risk assessments and audits.* Ensure data confidentiality, integrity, and availability.email; satish
-
Information Security Manager
6 days ago
Gurgaon, Haryana, India Glan Management Consultancy Full time ₹ 10,00,000 - ₹ 25,00,000 per yearMust have ISO 27001 LI/LA and ISO 27701 LI/LA certifications.In depth understanding of IT Act, DPDPA, Cert In regulations, CIS Controls as well as UK DPA and ISO 31000immediate joiner prefer.email: jobs@ satish: 88O
-
Information Security Consultant Lead
1 week ago
Gurgaon, Haryana, India Glan Solutions Full time ₹ 9,00,000 - ₹ 12,00,000 per yearMust possess and demonstrate ISO 27001 Lead Implementer/Auditor and ISO 27701 Lead Implementer/Auditor certifications and knowledge.In depth understanding of IT Act, DPDPA, Cert In regulations, CIS Controls as well as UK DPA and ISO 31000
-
Manager- Information security
1 week ago
Gurgaon, Haryana, India Glan Solutions Full time ₹ 1,04,000 - ₹ 1,30,878 per yearIn depth understanding of IT Act, DPDPA, Cert In regulations, CIS Controls as well as UK DPA and ISO 31000ISO 27001 Lead Implementer/Auditor and ISO 27701 Lead Implementer/Auditor certificationsmail resumeemail-
-
Manager- Information Security
3 days ago
Gurgaon, Haryana, India Glan Solutions Full time ₹ 15,00,000 - ₹ 25,00,000 per yearMust have ISO 27001 Lead Implementer/Auditor and ISO 27701 Lead Implementer/Auditor certificationsunderstanding of IT Act, DPDPA, Cert In regulations, CIS Controls as well as UK DPA and ISO 31000email: etalenthire@ satishL: 88O
-
Senior Consultant
1 week ago
Gurgaon, Haryana, India Marks and Spencer Full time ₹ 20,00,000 - ₹ 25,00,000 per yearSenior Consultant - IT Security: KeyDeliverables (Essential Functions & Responsibilities of the Job) :Providesupport as Lead implementor towards ISMS and PIMS policies, procedures, andguidelines and ensure to perform regular review and update.Gatherevidence of continuous compliance with ISO 27001:2022 and ISO 27701:2019, DPDPA, IT Act and Cert In...
-
Information Security Risk
2 weeks ago
Gurgaon, Haryana, India Airtel Full time ₹ 1,20,000 - ₹ 1,80,000 per yearInformation Security Risk Management and Compliance (GRC)Details : JD for Consultant (Information Security Risk & Compliance)POSITION Information Security Risk Management and Compliance (GRC) EXPERIENCE 4-5 Years KEY RESPONSIBILITIES & JOB DESCRIPTIONReview of policy and procedure with implementation across organization In depth knowledge of risk...
-
Information Security
1 week ago
Gurgaon, Haryana, India Aliqan Services Private Limited Full time ₹ 12,00,000 - ₹ 15,00,000 per yearJob Title: Information Security & Data Protection Officer (DPO) – ManagerLocation: GurgaonExperience: 6–7 yearsEmployment Type: Full-TimeAbout the RoleWe are seeking a highly skilled and motivated InfoSec/DPO Manager to lead our organization's information security, data protection, and compliance initiatives. The ideal candidate will have 6–7 years of...