Key Responsibilities:
- Driving internal InfoSec risk assessment program for the organization
- Developing risk assessment methodology as per industry standards like ISO 27001/31000 or NIST and implementing it across functions
- Preparing and reviewing InfoSec & IT policy & process documents
- Preparing audit checklists and performing internal technical audits
- InfoSec exceptions management
Qualifications & Experience:
- Experience of working InfoSec risk assessment across various functions in the organization
- Experience of Developing risk assessment methodology as per industry standards like ISO 27001/31000 or NIST and implementing it across functions
- Experience of performing internal IT audits or supporting ISO 27001/PCIDSS audits
- Experienced in MS Excel and MS PowerPoint
- Shall be capable of delivering output as an individual contributor
- ISO 27001 LA/LI certification (Must), Other certification (Optional)
Additional Requirements:
- Minimum educational qualification – Graduation/B. Tech /B.E.
- Number of yrs of experience – Minimum 3-5 years in Information Security specifically
- Work Mode – WFO/Hybrid (Full time WFH not possible)
- Shifts – US/UK/normal – 1:00 pm to 10:00 pm