Job Description:
Job Responsibilities
•Present and report regularly InfoSec dashboard to management and stakeholders
•Assist with the development of technical security risk and compliance documentation
•Document and Communicate status and compliance effectiveness to management on a regular basis
•Conduct regular internal audits on information security specific to ISO
•Manage external audits from customers and stakeholder
•Support business teams to achieve and maintain their security and compliance posture in accordance with ISO & Data Privacy
•Validate ongoing compliance of policies and process/procedures in support of requirements and ensure that controls are operating effectively
•Prepare responses to client questionnaires and RFPs on information security, compliance and data privacy related areas. Provide support and clarity to customers and users of the information and cyber-security policy framework answering related questions and challenges as they arise
•Interface and engage both management and other functions in organization on information security compliance related activities and processes
•Lead the effective publication of policy materials and documents Risk Management
•Maintain and manage ISMS related documents, reports, and artefacts
•Coordinates the issuance of access control and drive change management activities
•Manage vendor and third-party due diligence documentation
•Internal consultant for IT domain leads, administrators for security infrastructure, and assisting them to implement security devices configuration controls for firewalls, Internet connectivity, IPS and router etc.
Qualifications
•Certification – ISO
•3+ years of experience in Compliance, Security, or IT Audit experience
•Total experience of 5-6 years
•Any graduate or master’s degree in science, engineering or technology
•Knowledge in Project Management, IT Security Architecture Design
•Prior experience with managing other security compliance ISO & SOC1 & SOC2