Senior Compliance Assessor-CISA/CISSP

3 months ago


Bengaluru, India Blue Yonder Full time

Overview:

We are a leading AI-driven Global Supply Chain Solutions Software Product Company and one of Glassdoor’s “Best Places To Work”.

What you’ll do:

Responsible for building, managing, and enhancing the Enterprise Cybersecurity Compliance function across all Blue Yonder business units. Execute compliance audit processes while collaborating with external auditors and regulators to ensure comprehensive and timely completion of the external auditors. Coordinate with Cybersecurity Sr. Director of Governance, Risk and Compliance to actively contribute to the creation, administration, and continual enhancement of Blue Yonder’s Cybersecurity Program, compliance frameworks, risk management practices and privacy protocols. Leverage technical knowledge and communication skills to collaborate with business leaders and technical stakeholders to identify, evaluate and manage security risks and controls.  Provide process-oriented, results-driven approach to compliance employing effective problem solving and communication skills. Provide input and support of the cybersecurity trust center, blog and Viva Engage. Provide expertise in identifying security control gaps and assist stakeholders in remediation mitigation. Educate and assist stakeholders to ensure that the risks are tracked and closed in a timely manner. Participate and assist sales, pre-sales and technical account managers in the completion of customer provided security questionnaires. Ensure cybersecurity policies, processes, procedures, and plans are followed and align with cybersecurity roadmap during all audits. Researching industry compliance regulations and policies. Keep updated on compliance requirements and amendments to regulations. Evaluating internal operational and procedural compliance. Analyzing and updating existing compliance policies and related documentation.

What we are looking for:

8+ years-experience, CISA/CISSP certifications required, CRISC certification desired. Working knowledge and implementation expertise in security standards ISO27001, ISO27001, ISO27701, ISO9001, SSAE18 SOC1/SOC2, ISO27017/ISO27018, NIST, FedRAMP, HIPAA, GDPR, CCPA, etc. Familiar with Continuous Monitoring tools. Self-motivated and organized with proven ability to meet compliance deadlines. Excellent interpersonal skills, ability to work effectively with product development and internal audit teams. Proven ability to serve as an effective member of a compliance team. Experience in managing customer security assessments/questionnaires. Experience in educating stakeholders in security compliance audits. Lead security planning efforts and interact effectively with auditors, customers and key stakeholders. Excellent in customer service, strong written and oral communication and interpersonal skills.

Our Values


If you want to know the heart of a company, take a look at their values. Ours unite us. They are what drive our success – and the success of our customers. Does your heart beat like ours? Find out here: Core Values

Diversity, Inclusion, Value & Equality (DIVE) is our strategy for fostering an inclusive environment we can be proud of. Check out Blue Yonder's inaugural Diversity Report which outlines our commitment to change, and our video celebrating the differences in all of us in the words of some of our associates from around the world.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.



  • Bengaluru, India One Degree North HR Services Full time

    Position : Senior Network Security Engineer. Experience : 10+ years. Location : Bangalore. Skills required : - 10+ years of progressively expanding responsibilities and experience in telecommunications, networking, technology management or security operations.- SASE Certifications from vendors, such as Palo Alto, Zscaler, Fortinet, Netskope and Versa...


  • Bengaluru, India eliterecruitments Full time

    **Information Security Risk Assessor (ISRA)**: We are looking for an Information Security Risk Assessor (ISRA) to join our client’s team. In this role, you will play a crucial part in securing our projects by design through the delivery of Information Security Assurance Plans based on ISO Risk Management principles. **Location -...


  • Bengaluru, India JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** You’re ready to gain the skills and experience needed to grow within your role and advance your career **Job Summary**: As an Information Security Risk Assessor with GT Controls Office Team, your primary responsibility will be to support firm wide technology and regulatory assessments, conduct various assessments/controls testing and...

  • IT Auditor- ITGC

    3 weeks ago


    Bengaluru, India Marmon Technologies India Pvt Ltd Full time

    Job DescriptionDesignation : Auditor- ITGC and CybersecurityReporting to : Internal Audit Senior Lead - IndiaLocation : Bangalore, Full TimeQualification : CISA certified, Bachelor's degree in Computer Science, Information Technology, or a related fieldExperience : 1-3 YearsJob Summary:We are seeking a skilled ITGC and Cybersecurity Audit Professional with 3...

  • IT Auditor- ITGC

    3 weeks ago


    Bengaluru, India Marmon Technologies India Pvt Ltd Full time

    Job DescriptionDesignation : Auditor- ITGC and CybersecurityReporting to : Internal Audit Senior Lead - IndiaLocation : Bangalore, Full TimeQualification : CISA certified, Bachelor's degree in Computer Science, Information Technology, or a related fieldExperience : 1-3 YearsJob Summary:We are seeking a skilled ITGC and Cybersecurity Audit Professional with 3...

  • Senior Manager

    2 months ago


    Bengaluru, India Accorian Full time

    About AccorianAccorian is an established cybersecurity advisory and consulting firm headquartered in New Jersey with regional offices in India, Canada and UAE. In today's dynamic digital world, we serve a global clientele, helping businesses of all sizes strategize cybersecurity initiatives, identify risks, develop solutions, program management,...


  • Bengaluru, Karnataka, India Zanskar Securities Pvt Ltd Full time

    Zanskar Securities is a leading algorithmic brokerage firm based in Bangalore, specializing in cutting-edge trading technologies. Our mission is to innovate the financial markets through advanced quantitative models and financial engineering. We are a team of quants, engineers, and infrastructure experts dedicated to delivering high-performance trading...


  • Bengaluru, India HyrEzy Talent Solutions Full time

    Roles & Responsibilities (BSc. IT, BE) with Information Security Certifications - CISM, CISSPEXPERIENCE :- Candidate must have strong experience in Information Security Management system, Policy & procedures creation, implementation- ISO27001 assessment - Specification for a framework of policies procedures that include all technical & operational controls-...

  • Security Assessor

    4 weeks ago


    Bengaluru, India Fime Full time

    Fime enables its clients to create and launch trusted and secure solutions with consulting and testing services in payments, smart mobility, biometrics, authentication and open banking. With 800+ experts around the world in 24 locations across Europe, the Middle-East, Americas and Asia, Fime is immersed as a multi-cultural environment.Inspired by the...

  • Security Assessor

    2 weeks ago


    Bengaluru, India Fime Full time

    Fime enables its clients to create and launch trusted and secure solutions with consulting and testing services in payments, smart mobility, biometrics, authentication and open banking. With 800+ experts around the world in 24 locations across Europe, the Middle-East, Americas and Asia, Fime is immersed as a multi-cultural environment. Inspired by the...

  • Cyber Security Lead

    2 months ago


    Bengaluru, India Merck Group Full time

    Your role :An exciting new opportunity has arisen as Cybersecurity Lead Expert in our Enabling Functions (EF)sector. The Cybersecurity Lead Expert serves as partner for and supports all teams in the Enabling Functions and has up to senior level visibility. You will support the Sector CISO and collaborate with other corporate Cybersecurity functions (e.g....


  • Bengaluru, India Everbridge Full time

    About the Team: As a member of our Information security team, you will join a fast-paced and well-rounded security team. You’ll work in a cutting-edge cloud environment that powers our company’s impressive growth. Last year our platform sent over 1 billion messages, helping customers navigate critical communications during significant man-made events...


  • Bengaluru, India NetApp Full time

    Title: Risk and Compliance Lead (GRC) Location: Bangalore, Karnataka, IN, 560071 Requisition ID: 127087 Job SummaryThe Senior GRC Compliance Analyst will facilitate the completion of internal and external audits including ISO27001, AICPA SSAE 18 SOC 2 Type 2, and various customer audits to accurately reflect NetApp’s security and compliance posture to...


  • Bengaluru, India NetApp Full time

    Title: Risk and Compliance Lead (GRC) Location: Bangalore, Karnataka, IN, 560071 Requisition ID: 127087 Job SummaryThe Senior GRC Compliance Analyst will facilitate the completion of internal and external audits including ISO27001, AICPA SSAE 18 SOC 2 Type 2, and various customer audits to accurately reflect NetApp’s security and compliance posture to...


  • Bengaluru, India NTT DATA Full time

    Description: The Third Party Cybersecurity Risk Manager 2 will conduct cyber security risk assessments on Third Parties to Humana or its subsidiaries using a pre-defined security questionnaire. The role will be responsible for evaluating vendor responses, supporting documentation and evidence, identifying potential risk, reporting, and presenting the review...


  • Bengaluru, India Hashmap Full time

    Description: The Third Party Cybersecurity Risk Manager 2 will conduct cyber security risk assessments on Third Parties to Humana or its subsidiaries using a pre-defined security questionnaire. The role will be responsible for evaluating vendor responses, supporting documentation and evidence, identifying potential risk, reporting, and presenting the review...


  • Bengaluru, India Marmon Technologies India Pvt Ltd Full time

    Job Description Designation : Auditor- ITGC and Cybersecurity Reporting to : Internal Audit Senior Lead - India Location : Bangalore, Full Time Qualification : CISA certified, Bachelor's degree in Computer Science, Information Technology, or a related field Experience : 3-6 Years Job Summary: We are seeking a skilled ITGC and Cybersecurity Audit...

  • Risk & Compliance

    3 months ago


    Bengaluru, India Tesco Technology Full time

    Company Description Tesco Bengaluru: We are a multi-disciplinary team creating a sustainable competitive advantage for Tesco by standardising processes, delivering cost savings, enabling agility, providing cutting-edge technological solutions and empowering our colleagues to do ever more for our customers. With cross-functional expertise in Global Business...

  • Itgc Expert

    4 months ago


    Bengaluru, India Spectral Consultants Full time

    Identify and evaluate clients risk areas covering processes related to Applications, Network and IT systems, Revenue generating processes and provide comprehensive input to risk-based plan. - Risk assessment and development of IT Audit Plan. - Supervise a team of internal audit personnel across different client engagements. - Plan, organize, direct and...


  • Bengaluru, India JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** You’re ready to gain the skills and experience needed to grow within your role and advance your career **Job Summary**: The scope of work includes control assessments for the various programs covering Financial (SOX, CCAP etc.), Payment Card (PCI), Cyber, Privacy (GLBA, GDPR etc.), Application (ARA) and Infrastructure (ICA) across both...