Job Description:
Job Responsibilities
Present and report regularly InfoSec dashboard to management and stakeholders
Assist with the development of technical security risk and compliance documentation
Document and Communicate status and compliance effectiveness to management on a regular basis
Conduct regular internal audits on information security specific to ISO
Manage external audits from customers and stakeholder
Support business teams to achieve and maintain their security and compliance posture in accordance with ISO & Data Privacy
Validate ongoing compliance of policies and process/procedures in support of requirements and ensure that controls are operating effectively
Prepare responses to client questionnaires and RFPs on information security, compliance and data privacy related areas. Provide support and clarity to customers and users of the information and cyber-security policy framework answering related questions and challenges as they arise
Interface and engage both management and other functions in organization on information security compliance related activities and processes
Lead the effective publication of policy materials and documents Risk Management
Maintain and manage ISMS related documents, reports, and artefacts
Coordinates the issuance of access control and drive change management activities
Manage vendor and third-party due diligence documentation
Internal consultant for IT domain leads, administrators for security infrastructure, and assisting them to implement security devices configuration controls for firewalls, Internet connectivity, IPS and router etc.
Qualifications
Certification ISO
3+ years of experience in Compliance, Security, or IT Audit experience
Total experience of 5-6 years
Any graduate or masters degree in science, engineering or technology
Knowledge in Project Management, IT Security Architecture Design
Prior experience with managing other security compliance ISO & SOC1 & SOC2