Objectives of the role:-
The purpose of this role is to ensuring confidentiality, integrity and availability of data and systems. Help protect the organization against evolving cybersecurity threats and regulatory challenges.
- Prepare a detailed report summarizing the drill, including performance metrics, identified gaps, and recommendations for improvement.
- Schedule regular board and committee meetings to review organizational performance and strategic initiatives.
- Communicate & track Risk Assessment and Internal/External Audit findings till closer.
- Develop dashboards and reports to visualize and track performance against established metrics.
- Maintain a risk register to document identified risks, their potential impacts, and likelihood.
- Provide regular updates on risk management activities, including identified risks, mitigation efforts, and outcomes.
- Maintain thorough documentation of compliance activities and prepare timely and accurate reports for regulatory authorities as required.
- Responsible for Identity Management/ Identity & Access Governance/ Access Management. Maintaining user access and need to know basis privileges to produce sensitive data.
- Make recommendations to enhance information security, including processes, procedures, governance approaches, and compliance. Partner with Control and Compliance peers who lead and manage engagements with Internal/External Auditors as well as Regulatory Examiners.
Skills Required:-
- Knowledge of regulatory requirements and industry standards.
- Experience with cloud security and data protection.
- Ability to work under pressure and handle multiple priorities.
- Strong strategic thinking and decision-making abilities.
- Strong understanding of standards and frameworks ISO 27001, NIST, PCI DSS etc.
- Understanding of Security concepts and Cloud Security Governance.
- Understanding of Data Privacy, GDPR, Data Protection, Data Classification.
Experience needed:-
- This position requires minimum 12-18 years of relevant experience
Qualifications:-
- Bachelor's degree in Computer Science or equivalent.
- At least 1 of the following Certification: CEH, CISM, CRISC, CISA.