· Candidate carries experience in design, development & maintenance of Information Security Management System, Privacy Information Management System, Business Continuity Management System, Infrastructure Security, Operations Security, Security Projects Transition /Transformation
· Experience in performing Information Security Risk assessment, cyber security, business impact assessment and Privacy Impact assessment
· Knowledge and exposure working with global regulatory frameworks applicable to BFSI, Healthcare, Telecom, Education, Real-estate etc.
· Experience in implementation of international standards like NIST CSF, GDPR, CIS, ISO 27001, ISO 27701, ISO 22301, PCI DSS, NESA/SIA, UAE Data Protection Law, COBIT etc.
· Experience in auditing of international standards like NIST CSF, GDPR, CIS, ISO 27001, ISO 27701, ISO 22301, PCI DSS, NESA/SIA, UAE Data Protection Law, COBIT etc.
· Knowledge and experience in GRC workflows (IT GRC tools like Archer, Risk vision, etc.)
· Candidate is aware of new technology platforms/emerging technologies
· Experience with handling a security incident response
· Experience in Policy governance, implementation, management & assessment/audits of ISMS/PIMS/BCMS
· Delivery of value-added technology/cyber risk consulting & assurance services to clients
· Excellent client relationship management skills, dispute handling, writing, social and convincing skills
· Experience in proposal writing and assisting with client presentations
· Ability to deliver work within tight time-scales, to budget and to a high quality
· Candidate has played a lead auditor/lead implementer role relevant to the domains in the past
Desired Candidate Profile
·
B.E., B. Tech, B. Com or other relevant graduation
· Certification in CISA or CISSP must, CDPSE, CEH, CISM, CRISC, ISO 27001 Lead Implementer/ISO 27001 Lead Auditor is an added advantage
· Looking for suitable candidates in Technology Governance, Risk, Compliance domain for a leading professional services firm.
· The candidate should have 12 to 14 years’ experience with knowledge in Information Security, Data privacy, Cybersecurity frameworks
· Has worked in the role of Information Security Officer, Manger Operation Security along with project management experience.
· The candidates applying preferably should be from consulting background.
· Individuals applying must have a knack of team bonding, management skills and senior management interaction skills.