FEATURED JOBS
FEATURED JOBS
Risk Manager – Information Security & Governance
1. Information Security Management:
Develop, implement, and maintain information security policies, standards, and procedures to ensure the protection of sensitive information.
Perform regular security risk assessments and vulnerability assessments to identify and address potential threats.
Lead the development and execution of security awareness training programs for employees to foster a culture of cybersecurity awareness.
Manage and maintain security tools and technologies (e.g., firewalls, encryption software, intrusion detection systems).
2. Governance, Risk, and Compliance (GRC):
Establish and maintain an effective governance framework to ensure compliance with relevant regulations (e.g., GDPR, HIPAA, SOX, ISO 27001).
Ensure that information security policies and practices align with business objectives and legal/regulatory requirements.
Conduct regular audits and assessments of systems, processes, and operations to assess adherence to security standards and identify areas of improvement.
Support Risk management meetings – collate information, prepare deck, etc.
Support organization in formulating and driving Environmental, Social and Governance goals.
3. Incident Response & Management:
Act as a key member of the incident response team, coordinating responses to security breaches or incidents.
Maintain detailed documentation of security incidents and conduct post-incident reviews to improve future responses.
4. Reporting & Documentation:
Prepare and present security and compliance reports for senior leadership, including updates on risk assessments, audits, and mitigation efforts.
Maintain accurate records of all security activities, incidents, and compliance initiatives
Required | English | Ability Level | Business Fluent |
Required | Hindi/Gujrati | Ability Level | Business Fluent |
8+ years of experience in Information Security, IT Governance, Risk Management, or related fields.
Proven experience in implementing and managing security frameworks (e.g., NIST, ISO 27001).
Hands-on experience with security tools such as SIEM, firewalls, and endpoint protection systems.
Strong understanding of information security concepts, risk management processes, and compliance requirements (e.g., GDPR, PCI-DSS, SOC 2).
Familiarity with security frameworks such as NIST, ISO 27001, and ITIL.
Experience in conducting security audits, vulnerability assessments, and risk assessments.
Proficiency in security tools (e.g., firewalls, intrusion detection/prevention systems, SIEM solutions).
Knowledge of data privacy laws and regulations (GDPR, CCPA, HIPAA, etc.).
Excellent communication skills, with the ability to convey complex technical concepts to non-technical stakeholders.
Strong problem-solving skills and the ability to work independently and in a team.