ISMS Manager

1 day ago


Gurgaon, Haryana, India DDReg Pharma Full time US$ 90,000 - US$ 1,20,000 per year

DDReg Pharma

DDReg Pharma

Full Time

Gurgaon

Posted 1 day ago

Job Summary:

DDReg Pharma Pvt Ltd is seeking a detail-oriented and proactive Information Security Analyst to join our team in Gurugram. The ideal candidate will be responsible for ensuring the integrity, confidentiality, and availability of information systems by identifying and mitigating security risks. The successful candidate will possess expertise in information security frameworks such as ISO 27001, SOC 2, and a strong understanding of third-party risk management.

Key Responsibilities:

Vendor Risk Management: Oversee the management of all vendors, ensuring compliance with organizational security standards, effective communication, and adherence to service level agreements (SLAs).

Risk Assessments: Conduct comprehensive risk assessments to identify vulnerabilities within the organization and implement effective mitigation strategies. Regularly evaluate organizational security posture and suggest improvements.

ISO 27001 Compliance: Lead efforts in ensuring compliance with ISO 27001:2022 standards. Conduct internal audits and support external audits to ensure continuous adherence to the standards.

Third-Party Risk Management (TPRM): Lead the TPRM onboarding and periodic review processes, ensuring third-party vendors meet required security standards and regulatory compliance.

Incident and Problem Management: Analyze incidents and problems within the organization, identifying root causes and developing actionable plans to prevent future occurrences.

Policy and Documentation Review: Review and update organizational policies and procedures to ensure alignment with ISO 27001 and other regulatory requirements. Maintain comprehensive documentation of all security-related activities.

Collaboration & Reporting: Collaborate with internal teams and external auditors to ensure compliance with relevant frameworks. Prepare and present detailed reports on security incidents, risk assessments, and mitigation strategies.

Training and Awareness: Facilitate training sessions for internal teams on information security best practices and compliance requirements, ensuring continuous education on security threats and mitigation measures.

Key Skills & Requirements:

Proven experience in Information Security, including hands-on experience with ISO 27001, SOC 2, and ITGC frameworks.

Strong understanding of third-party risk assessments and vendor management.

Experience in Risk Assessment, Incident Management, and Root Cause Analysis.

Certification: ISO 27001 Lead Auditor (preferred).

Proficiency in creating and maintaining security documentation, policies, and procedures.

Familiarity with NIST, GRC, and SOC 2 frameworks.

Ability to work under pressure, manage multiple tasks, and handle sensitive information.

Educational Qualifications:

Bachelor's Degree (Mandatory):

B.Sc. in Information Technology, Computer Science, Cybersecurity, or related fields.

OR

B.Tech. / B.E. in Computer Science, Information Technology, or related engineering disciplines.

Master's Degree (Preferred):

M.Sc. in Information Security, Cybersecurity, or related fields.

OR

MBA in Information Security (if focused on management aspects of ISMS).

Languages:

English: Full Professional Proficiency

Hindi: Full Professional Proficiency

Related

Job Features

Job Category

IT



  • Gurgaon, Haryana, India beBeeInformation Full time ₹ 17,70,955 - ₹ 25,39,348

    About our role: We are looking for a professional to manage third-party risk management and implement information security management system (ISMS) activities.


  • Gurgaon, Haryana, India beBeeRisk Full time ₹ 25,00,000 - ₹ 35,00,000

    Job DescriptionManage Risk, Secure Systems.We're seeking a proactive Infosec Analyst to join our team. As a key member, you'll be responsible for managing third-party risk management, implementing Information Security Management System (ISMS) activities, and protecting systems from threats.Your Key Responsibilities:End-to-end ownership of responding to...


  • Gurgaon, Haryana, India beBeeSecurity Full time ₹ 1,20,00,000 - ₹ 1,50,00,000

    About the Role:We are seeking a skilled and dedicated Information Security Analyst to join our team. As an Information Security Analyst, you will play a vital role in managing third-party risk management, assisting in implementing ISMS-related activities, and protecting systems and assets from external and internal threats.

  • IT Audit

    1 day ago


    Gurgaon, Haryana, India Naukri Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Role & responsibilitiesCoordinate with Internal and External Auditors for providing inputs required and liaison with other sub-functions of ITReview IT Policies and SOPs. Prepare modifications and maintain change history for wherever applicablePrepare documentation for ISMS implementation and coordinate with all stakeholders for driving implementation and...


  • Gurgaon, Haryana, India beBeeCybersecurity Full time ₹ 1,20,00,000 - ₹ 1,60,00,000

    Job Summary:We are seeking a seasoned security expert to join our team as an Information Security Analyst.Key Responsibilities:Third-Party Risk ManagementISMS Implementation and MaintenanceSecurity Evidence ManagementRisk Assessments and PlanningVendor Risk ManagementInformation Systems GovernanceTechnology Risk ManagementBusiness Continuity and Disaster...


  • Gurgaon, Haryana, India beBeeCybersecurity Full time ₹ 16,56,800 - ₹ 25,17,600

    Job SummaryWe are looking for a seasoned Information Security Analyst to manage third-party risk management, assist in implementing ISMS-related activities, and protect systems and assets from external and internal threats.As an expert in the field of cybersecurity, you will be responsible for facilitating assurance-related requirements, having...


  • Gurgaon, Haryana, India beBeeTechnologyRisk Full time US$ 90,000 - US$ 1,20,000

    Job DescriptionKey Responsibilities:Deliver technology risk services to clients, ensuring their systems meet audit and compliance standards.Focus on IT General Controls (ITGC), IT Application Controls (ITAC), Risk Assessment (RA), and Information Security Management Systems (ISMS).Support clients in navigating complex regulatory requirements and ensuring...


  • Gurgaon, Haryana, India Rajesh Kumar ( Proprietor of Aayam Consultants) Full time

    Job DescriptionJob Title:ISO 27001 Lead AuditorCompany:CyberAssurewww.cyberassure.oneYears of Experience:4-5years min.2yrs relevant exp.Location:Sohna Road, Gurgaon, Sector 49Package:open , no barWork Mode: Work From OfficeJoining time-: Immediate - 30 daysAbout Us:We are a fast-growing, innovative organisation in the cybersecurity industry, committed to...


  • Gurgaon, Haryana, India beBeeInformation Full time ₹ 1,50,00,000 - ₹ 2,50,00,000

    Key Information Security Manager RoleWe are seeking an experienced Key Information Security Manager to join our team in executing a key technical management capacity to provide a conduit between IT teams and key business stakeholders in your functional area of IT Security. This role is responsible for ensuring information technology needs are managed...


  • Gurgaon, Haryana, India Publicis Re:Sources Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Functional Title: Sr. Associate Information Security, Global Security Office, IndiaJob Summary: This position is an active member of the Global Security Office (GSO), the security organization of Publicis Groupe under Re:Sources, responsible for supporting security management and compliance activities globally to Groupe agencies. This position supports...