
SME Security Risk and Compliance
22 hours ago
Our Excellent Opportunity
Senior Manager - Security Risk & Compliance is responsible for ensuring that the company's processes and systems are monitored and evaluated to meet compliance requirements. Some of the responsibilities include:
- Regulatory Intelligence - Monitor and analyse regulatory policies, notifications, and guidelines.
- Compliance - Developing and implementing policies and procedures that ensure compliance with regulatory and ethical standards.
- Risk management - Identifying and mitigating compliance risks and supporting annual risk assessments.
- Advisory - Providing guidance to business teams on regulatory compliances.
- Audits - Conducting compliance reviews and audits and performing due diligence screening on third-party engagements.
- Decision-making - Overseeing key decision points to ensure appropriate decisions are made.
- Program management - Work internally with key stakeholders to drive compliance program covering impact assessment of regulatory requirements and identify risks.
Security Compliance landscape
The security landscape is dynamically evolving from a regulatory perspective. Since security is a cross-cutting issue, India has a complex inter-ministerial and inter-departmental institutional framework, with several ministries, departments and agencies performing key functions.
India's cyber security compliance requirements include:
- Communication Security Certification Scheme (ComSec) notified in 2020 follows Indian Telecom Security Assurance Requirements (ITSAR) and mandates testing in designated Telecom Security Test Labs (TSTL) accredited by National Centre for Communication Security (NCCS).
- Telecom Cybersecurity Rules These rules expand the scope of data collection, increase the responsibilities of telecom entities, and introduce new roles and reporting requirements. They also emphasize a proactive approach to cybersecurity, with a focus on continuous monitoring, rapid response, and coordination between the government and telecom entities.
- Information Technology (The Indian Computer Emergency Response Team and Manner of Performing Functions and Duties) Rules, rules), established the Computer Emergency Response Team (CERT-In) and put in place obligations on intermediaries and service providers to report cybersecurity incidents to the CERT-In.
- Directions on information security practices, procedure, prevention, response and reporting of cyber incidents for a safe and trusted internet, issued in 2022 by the CERT-In, add to and modify existing cybersecurity incident reporting obligations under the 2013 rules.
- Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (SPDI rules) require companies that process, collect, store or transfer sensitive personal data or information to implement reasonable security practices and procedures.
- The Information Technology (Guidelines for Intermediaries and Digital Media Ethics Code Rules, 2021) require intermediaries to implement reasonable security practices and procedures to secure their computer resources and information, maintaining safe harbour protections. Intermediaries are also mandated to report cybersecurity incidents to the CERT-In.
- Information Technology (Information Security Practices and Procedures for Protected System) Rules, 2018, oblige companies that have protected systems – as defined under the IT Act – to put in place specific information security measures.
- Data localization - Mandatory data localization is a key provision of the 2024 Cyber Security Regulations in India.
- Incident reporting and response- All entities are required to report cybersecurity incidents to the Computer Emergency Response Team (CERT-In) within six hours of becoming aware of them.
- Cyber security audits and compliance- Cyber security audits and compliance are key provisions of the 2024 Cyber Security Regulations in India.
- National Critical Information Infrastructure Protection Centre (NCIIPC)- The NCIIPC was launched by the Indian government in 2014 and is under the Prime Minister's Office (PMO).
-
Analyst, Risk and Compliance
3 weeks ago
Gurgaon, Haryana, India Cvent Full timeJob DescriptionAbout the role:Provide support for projects and operational tasks associated with Cvent's information security governance, risk management, and audit and compliance programsIn This Role, You Will:- Participate in internal security assessments and security reviews; conduct security risk analysis of business processes and technology solutions to...
-
Information Security Risk
6 days ago
Gurgaon, Haryana, India Airtel Full time ₹ 1,20,000 - ₹ 1,80,000 per yearInformation Security Risk Management and Compliance (GRC)Details : JD for Consultant (Information Security Risk & Compliance)POSITION Information Security Risk Management and Compliance (GRC) EXPERIENCE 4-5 Years KEY RESPONSIBILITIES & JOB DESCRIPTIONReview of policy and procedure with implementation across organization In depth knowledge of risk...
-
Information Security Risk
21 hours ago
Gurgaon, Haryana, India Airtel Full time ₹ 1,80,000 - ₹ 3,00,000 per yearSr. Executive (Information Security Risk & Compliance)Review of policy and procedure with implementation across organization In depth knowledge of risk management with good knowledge of handling external and internal risks Work with cyber risk quantification and integrate with existing risk management process. Should be able to quantify risks and...
-
Information Security Risk
19 hours ago
Gurgaon, Haryana, India Airtel Full time ₹ 20,00,000 - ₹ 25,00,000 per yearInformation Security Risk Management and Compliance (GRC) JD for Consultant (Information Security Risk & Compliance) KEY RESPONSIBILITIES & JOB DESCRIPTIONReview of policy and procedure with implementation across organization In depth knowledge of risk management with good knowledge of handling external and internal risks Work with cyber risk...
-
Risk And Compliance Manager
3 days ago
Gurgaon, Haryana, India Autope Payment Solutions Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Description Risk / Compliance ManagerCompany: Autope Payment Solution LimitedLocation: GurugramExperience Required: Minimum 5 YearsPosition OverviewThe Risk / Compliance Manager will be responsible for developing, implementing, and maintaining the company's compliance and risk management framework. The role requires a deep understanding of regulatory...
-
Associate - Risk & Policy - SME & LAP
3 days ago
Gurgaon, Haryana, India Hero Fincorp Full time ₹ 15,00,000 - ₹ 25,00,000 per yearPurpose of the Role:The Portfolio Management Analyst will undertake key activities related to the management and analysisof the SME-Finance (Loan against property, Supply Chain Finance and Construction Finance) portfolio.This includes identifying trends in disbursals and overall portfolio performance, spotting strengths, anddetecting early delinquency...
-
Security, Risk
2 weeks ago
Gurgaon, Haryana, India Peoplefy Infosolutions Full time ₹ 15,00,000 - ₹ 25,00,000 per yearCapabilitiesProven analytical skills and evidence-based decision makingExcellent problem solving, troubleshooting & documentation skillsStrong written and verbal communication skillsExcellent collaboration and interpersonal skillsStrong delivery focus with an active approach to quality and auditabilityAbility to work under pressure and excel within a...
-
Manager - IT Security
3 days ago
Gurgaon, Haryana, India Marks and Spencer Full time ₹ 15,00,000 - ₹ 25,00,000 per yearManager - IT Security: Key Deliverables (Essential functions & Responsibilities of the Job):Lead auditor support for ISMS & PIMS with regular reviews and updatesEnsure compliance with ISO 27001, ISO 27701, DPDPA, IT Act, and Cert-In regulationsConduct and document security and privacy risk assessments with stakeholdersIdentify and prioritize...
-
Cyber Security Risk Analyst
4 weeks ago
Gurgaon, Haryana, India Agilent Technologies Full timeJob DescriptionJob DescriptionAgilent inspires and supports discoveries that advance the quality of life. We provide life science, diagnostic and applied market laboratories worldwide with instruments, services, consumables, applications and expertise. Agilent enables customers to gain the answers and insights they seek so they can do what they do best:...
-
Security Governance
6 days ago
Gurgaon, Haryana, India Sbi Cards And Payment Services Limited Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDeputy Vice President - Security Governance & Compliance About the company SBI Card is a leading pure-play credit card issuer in India, offering a wide range of credit cards to cater to diverse customer needs. We are constantly innovating to meet the evolving financial needs of our customers, empowering them with digital currency for seamless payment...