
Information Security GRC Manager
4 days ago
Job Description Information Security GRC Manager
Work Location: Navi Mumbai
Key Focus Area: Information Security GRC
Key Responsibilities:
Policy Development and Enforcement: Develop, implement and maintain Information Security policies, procedures, standards, frameworks, and associated plans based on industry best practices such as ISO 27001, ISO 22301, ISO 27701 NIST, ITGC, PCI-DSS, etc.
Lead the organizations tech compliance requirements such as but not limited to DoT requirements, PCIDSS, RBI (System Audit reports), ITGC, ISMS BCMS and Data privacy etc.
Risk Management: Performing security risk assessments, ISMS audits and privacy risk evaluations. Identify, document, and maintain an information security risk register. Regularly report to the security lead and other stakeholders.
Security Project Management (PMO) Prepare Governance and Risk Management presentations for CISO and Leads on monthly/quarterly basis. Collaborate with cross functional team, gather required information and ensure end-to-end delivery.
Compliance Reporting: Prepare compliance reports and remediation plans based on periodic reviews of application, workstation, server, and network device configurations.
Data Loss Prevention (DLP): Monitor and maintain compliance of DLP.
Third-Party Risk Management: Provide responses to Third party due diligence, independent oversight, and facilitate implementation and continuous improvement of Third-party risk management and processes.
Security Control Automation: Influence security control automation efforts to enhance security and compliance at scale.
Audit Representation: Represent Jios security posture in both internal and external audits.
Security Awareness and Training: Drive security awareness initiatives and conduct regular training on organisation security policies and standard requirements through training sessions, communication, and workshops etc.
Qualification and Work Experience
Qualification
B.E./B.Tech/MBA
Professional certifications such as CISM/ CISA or equivalent are highly desirable.
Work Experience: 5-7 Years
Minimum 4-5 years of professional experience in Information Security practices, with at least 2 years specialising in Governance, Risk and Compliance (GRC) domains.
Significant knowledge and experience in Cyber Security domain, ITGC control evaluation, policies and standards, regulatory compliance, in-depth understanding of Industry Standards and Frameworks such as ISO 27001, PCI DSS, COBIT, NIST, ISO
Project management within the realm of information security to include developing/vetting of project plans to ensure compliance to security standards.
Leading cross-functional teams to address vulnerabilities and enhance security measures.
Experience in supporting security controls, compliance and audit activities.
Demonstrated ability to apply IT-related knowledge and experience in solving compliance issues.
Have extensive experience of process building and improvement, strategic development and cross-organizational collaboration and negotiation.
Competencies /Expertise Required (Functional & Behavioral)
Strong knowledge of core information security principles such as least privilege access, defence in depth, preventative vs. detective controls, network security, cloud security, application security, endpoint security, data protection, and incident response.
Excellent analytical and problem-solving skills, with the ability to manage multiple tasks under tight deadlines.
Advanced written and verbal communication and presentation skills, with a focus on team building and collaboration.
High sense of ownership and drive with ability to establish credibility and earn trust with a variety of stakeholders and leadership.
An entrepreneurial spirit with the ability to drive innovation independently.
Maturity, judgment, negotiation/influence skills, analytical skills, and leadership skills
Adaptable to change.
Quick Learner Open learn and work on new technologies and products.
A proactive approach to security, attention to detail, and a commitment to continuous learning and improvement.
-
Information Security GRC
1 week ago
Mumbai, Maharashtra, India Flywings Hr Services Full time US$ 80,000 - US$ 1,00,000 per yearLooking for a smart GRC specialist in Information security, with strong experience in ISO27001 Lead Auditor, RBI Compliance. Immediate Joiner - Ready to join in 10 days. Budget - 8LPA - 10 LPA. Location:- Kurla West, Mumbai.
-
GRC Information Security Specialist
6 days ago
Mumbai, Maharashtra, India beBeeInformationSecurity Full time ₹ 8,00,000 - ₹ 12,00,000GRC Consultant RoleWe are seeking a highly skilled professional to fill this role. Key responsibilities include implementing and maintaining information security management systems (ISMS) frameworks based on ISO 27001 standards.The ideal candidate will have experience in conducting gap assessments, risk assessments, and internal audits as well as supporting...
-
Information Security GRC Engineer
2 weeks ago
Mumbai, Maharashtra, India ECL Finance Full time ₹ 9,00,000 - ₹ 12,00,000 per yearPosition: Information Security GRC EngineerJob Description: We are seeking a dedicated and talented Security GRC Engineer to join our Information Security Team. He / She will be responsible for ensuring that our organization adheres to relevant regulations, standards and internal policies related to information security and data privacy. The ideal candidate...
-
Cyber Security GRC
1 week ago
Mumbai, Maharashtra, India Forvis Mazars Full time ₹ 1,04,000 - ₹ 1,30,878 per yearJob Title: Manager/Senior Mnager Information Security (GRC)Location: Mumbai Experience: 8+ yearsRole OverviewWe are looking for an Information Security Manager with strong expertise in Governance, Risk, and Compliance (GRC). The role involves implementing security frameworks, managing audits, leading compliance initiatives, and driving cross-functional...
-
Information Security Manager
2 weeks ago
Mumbai, Maharashtra, India Burns Mcdonnell Full timeJob DescriptionWe are seeking an experienced Information Security Manager to lead our India Information Security department. This role is a vital part of our Global Information Security Directorate. You will be responsible for managing day-to-day operations, ensuring the enforcement of security policies, and mitigating risks to our digital assets. The ideal...
-
Lead - IT Security GRC
1 week ago
Navi Mumbai, Maharashtra, India Tata Tele Business Services Full time US$ 60,000 - US$ 1,20,000 per yearJob DescriptionJob Responsibilities Manage all audits pertaining to Information & CyberSecurityManage Technology & IT Risk Management programManage Data Privacy program Infosec perspectiveManage compliance to regulatory, legal & statutory requirements from Infosec perspectiveImplement and manage industry recognised security certifcations, viz ISO, SOC2,...
-
GRC Consultant
4 weeks ago
Navi Mumbai, Maharashtra, India Golden Opportunities Full timeJob Title: GRC Consultant Location: Ghansoli, Navi Mumbai Job Description: Candidate should have 5+ years of experience as GRC Consultant. Risk Management: Identify, assess, and manage risks related to information security, privacy, and regulatory compliance. ISO 27001 Implementation: Lead the implementation and maintenance of ISO 27001 standards, including...
-
Senior Information Security Manager
6 days ago
Mumbai, Maharashtra, India beBeeInformationSecurityLeader Full time ₹ 2,50,00,000 - ₹ 4,00,00,000Job Title: Senior Information Security LeaderWe are seeking a seasoned information security professional to lead our global CISO team's Governance, Risk, and Compliance (GRC) initiatives.About the Role:As the primary liaison, you will ensure regional regulatory requirements are met, external/internal audits are conducted, and risk registers are effectively...
-
Manager - IT GRC
3 days ago
Mumbai, Maharashtra, India N53 Tech Full time ₹ 1,04,000 - ₹ 1,30,878 per yearLocation: Head Office – Mumbai | Full-Time | Function: TechnologyOne of our leading financial services clients is seeking a highly motivated Manager – Governance, Risk & Compliance (GRC) to join IT Cyber Security & GRC team. The role will be pivotal in ensuring compliance with SEBI, RBI, and other regulatory frameworks, while driving information...
-
Chief Information Security Officer
2 weeks ago
Navi Mumbai, Maharashtra, India beBeeInformation Full time ₹ 2,00,00,000 - ₹ 2,50,00,000Job Title: Chief Information Security OfficerThis role is responsible for overseeing Information Security Governance, Risk & Compliance, and Awareness Activities.Compliance with guidelines on information and cyber security for insurers issued by regulatory bodies.Compliance with other guidelines related to information security/data security/cyber...