Specialist - Cyber Security Audit
2 days ago
Nasdaq is continuously revolutionizing markets and undergoing transformations while we adopt new technologies to develop innovative solutions, constantly aiming to rewrite tomorrow. As a Specialist, you Assesses the quality of technology and infrastructure controls across all risks areas. Plans and evaluates internal audit programs for the organization's technology systems that enables cyber security and the activities of various departments to ensure compliance with the organization's technology policies, procedures and standards. Ensures the effectiveness of internal controls in compliance with industry best practices and standards, such as NIST CSF, 802.3, ISO 27001, DORA, MITRE,OWASP etc. Prepare reports for management on the results of audits, providing supporting detailed workpapers.
We are looking for candidates with a genuine desire and drive to deliver top technology solutions to today's markets
With this position we offer:
As a part of the Global Internal Audit team, specifically the Global Technology function, they are responsible for evaluating technology internal controls to ensure the company has appropriate controls in place to mitigate the technology risks that could affect the viability of our business.
As a Specialist – Cyber Security Audit, you will be responsible for planning and executing internal technology and infrastructure audit projects to evaluate internal controls across the organization, ensuring effectiveness, industry best practices and regulatory requirements. If you are someone who enjoys working in a results driven and high-performing international culture and thrive in a creative and dynamic environment, this is the role for you.
Role Responsibilities:
As a Specialist, your focus will be - Besides working closely with your colleagues in Bangalore, you will also work closely with Nasdaq teams in other countries.
Accomplishing and reporting on the adequacy and efficiency of Cyber Security
An equal opportunity in delivering against multiple and often time concurrent audit projects, handling conflicting priorities to achieve results on time
We are involved into planning, resolving scope areas, drafting risk and control matrix and test procedures for technology and cybersecurity audits
An opportunity to complete and report technical controls through continuous auditing and monitoring
We perform regulatory compliance set forth by RegSCI etc, including IT general controls
We are responsible for detailing issues and findings, ensuring alignment with corporate policies and procedures and regulatory standards.
We use automated audit tools as an integrating part of audit planning and execution.
We participate in business/operations & regulatory audits and work in audits of business processes to identify and evaluate key IT operational risks and controls
We expect you to have:
- Proven experience of 6-8 years of risk-focused technology internal audit or related experience (i.e. cybersecurity).
- Shift Hours: Work EMEA work hours, 12:00noon onwards, IST.
- Experience in- Audits of cyber security processes (data loss prevention, threat intelligence, vulnerability management, cyber event monitoring and incident management, cyber resiliency, social engineering, external threat, etc.), IT infrastructure (Firewalls, IDS / IPS, logging and monitoring tools, etc.) and cloud security
- Understanding Cyber Risk management, logging, monitoring and information security incident management.
Knowledge and understanding technology risk management principles and standards like ISO 27001 and NIST MITRE and OWASP Frameworks
Demonstrated ability to write audit reports with minimal direction and guidelines
Solid team player, empathic, collaborative
Good interpersonal, project management and communication skills
Education Qualification: Bachelor's degree in information systems, Cybersecurity, Computer Science, or a related field
It would be great if you:
- Professional auditing certifications preferred: CISA (Certified Information Systems Auditor) or CISSP (Certified Information Systems Security Professional.
- Experience working with Global Teams (USA and EMEA)
- Fluent English language skills and a strong customer service mindset
Does it sound like you?
As the selection process is ongoing, please submit your application in English as soon as possible. We will get back to you in 2-3 weeks
Come as you are
Nasdaq is an equal opportunity employer. We positively encourage applications from suitably qualified and eligible candidates regardless of age, color, disability, national origin, ancestry, race, religion, gender, sexual orientation, gender identity and/or expression, veteran status, genetic information or any other status protected by applicable law.
Nasdaq is a leading global provider of trading, clearing, exchange technology, listing, information, and public company services. As the creator of the world's first electronic stock market, its technology powers more than 100 marketplaces in 50 countries. Nasdaq is home to over 4,000 total listings with a market value of approximately $12 trillion.
To learn more, about our business visit Check out more about our Life at Nasdaq.
Come as You AreNasdaq is an equal opportunity employer. We positively encourage applications from suitably qualified and eligible candidates regardless of age, color, disability, national origin, ancestry, race, religion, gender, sexual orientation, gender identity and/or expression, veteran status, genetic information, or any other status protected by applicable law.
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request an accommodation.
-
Enterprise Cyber Security Specialist
10 hours ago
Bengaluru, Karnataka, India Three Across Full timeRole: Enterprise Cyber Security Specialist (AVP)Location: BengaluruOverviewWe are looking for an experienced Cyber Security Specialist (AVP) to support the APAC region, with a strong focus on cyber risk assessments, governance, compliance, and cybersecurity awareness within a regulated financial services environment.This role sits within the Regional...
-
Cyber Security Engineer
7 days ago
Bengaluru, Karnataka, India Ceragon Networks Full timeDescriptionThe cyber security Technical Specialist will be joining the cyber security team and own both hands-on responsibilities as well as administrative/methodological ones. This is a great opportunity to be a part of a highly experienced team and work on most advanced, interesting and challenging environments/ products.The cyber security Technical...
-
Cyber Security Engineer
16 hours ago
Bengaluru, Karnataka, India Ceragon Full timeThe cyber security Technical Specialist will be joining the cyber security team and own both hands-on responsibilities as well as administrative/methodological ones. This is a great opportunity to be a part of a highly experienced team and work on most advanced, interesting and challenging environments/ products.The cyber security Technical Specialist will...
-
Cyber Security Specialist
2 weeks ago
Bengaluru, Karnataka, India Contactx Resource Management Pvt. Ltd. Full timeImmediate joiners or Serving Notice period Ensure NIST, ISO27002 and CIS aligned risk controls are covered, including but not limited to Cyber Security Policies & Standards. Ensure EMEA operates under comprehensive and relevant Cyber Security policies and standards with appropriate staff awareness, compliance monitoring and reporting. Monitor and...
-
Cyber Security Specialist
7 days ago
Bengaluru, Karnataka, India Spiralyze Full timeCyber Security SpecialistDepartment: SecurityEmployment Type: Full TimeLocation: Remote India (Bangalore)Description We're looking for someone great to lead critical work in Security & ComplianceYour primary task is to strengthen our security processes and keep our agency and our clients safe. You will take extreme amounts of initiative and enthusiasm to get...
-
Cyber Security Engineer
16 hours ago
Bengaluru, Karnataka, India Onzestt Services Full timeDesired Competencies (Technical/Behavioral Competency)Experience in the field of cyber security (IEC *)Strong understanding of network security, firewalls and VPNs.Understanding of cryptography & authentication protocols.Experience with secure coding practices and vulnerability managementStrong knowledge of Cyber security standards..Responsibility of /...
-
Cyber Security Awareness Lead
1 week ago
Bengaluru, Karnataka, India MUFG Global Service Private Limited Full timeDo you want your voice heard and your actions to count?Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships,...
-
Cyber Security Awareness Lead
1 week ago
Bengaluru, Karnataka, India MUFG Full timeDo you want your voice heard and your actions to count?Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships,...
-
Cyber Security Consultant
2 days ago
Bengaluru, Karnataka, India Netm Corporate Solutions Full timeJob SummaryWe are seeking a skilled Cyber Security Consultant Trainer with 3+ years of hands-on industry experience to deliver high-quality cyber security training and provide consulting support. The ideal candidate should have strong technical expertise, excellent communication skills, and a passion for mentoring and upskilling learners in real-world cyber...
-
Cyber Security
4 days ago
Bengaluru, Karnataka, India Artifact Corporation Full timeCyber Security & Networking Specialist (Onsite Resident Engineer)Location:Onsite – Client Location (Regular Day Shift)Experience Level:Minimum 2 YearsEducation:Diploma or BE/B.Tech in IT / ECE / CSECertification:Mandatory CCNA(or equivalent)Job Type:Full-Time – OnsiteRole SummaryWe are seeking a qualifiedCyber Security & Networking Specialistto provide...