Padmi

Manager, Information Security Governance, Risk and Compliance

HyderabadPosted 2 months ago
CybersecuritySeniorFull Time; Regular
Apply at Important Group

Opens the source posting on shine.com

Source description

About the role

View original

Role Overview: As a Manager, Information Security Governance, Risk and Compliance at NTT DATA, you will play a crucial role in supporting the organization by protecting its brand and ensuring compliance with regulatory and contractual obligations. Your responsibilities will include preparing, monitoring, and implementing controls for various compliance programs such as ISO27001 and SOC, in alignment with the Information Security Management System. Key Responsibilities: - Support the development and operational effectiveness of IT security controls. - Manage and monitor Group risk using the company's preferred risk management solution. - Assist in developing security compliance review schedules, reviewing risk registers, and conducting threat and risk assessments. - Document improvements in service design and ensure the development and review of required security plans. - Review service level and business requirements to develop service methodologies and information security policies. - Advise on reporting requirements and ensure implementation of the ISM policy in service operation. - Assist with compliance design and operation in alignment with internal security policies and laws. - Evaluate security assessments to develop and align the ISMS security strategy with operational requirements. - Develop an ISMS security audit management strategy aligned with operational requirements. - Consider technical requirements and implications to verify that solution design meets ISMS, client, and regulatory requirements. - Evaluate operational processes and drive implementation of process controls to ensure ISMS policy alignment and ongoing compliance. Qualification Required: To excel in this role, you need to have: - Relevant people management skills. - Ability to make final decisions on administrative or operational matters. - Advanced understanding of complex inter-relationships in systems or processes. - Excellent interpersonal and consultative skills to map business needs to technology solutions. - Ability to discuss and report technology and information security risk to non-technology stakeholders. - Analytical thinking, proactive approach, and consistent client focus. - Ability to develop and articulate ISM strategies and good strategic thinking. - Strong planning, organizing, and project management skills. - Advanced knowledge of security risk management, operational processes, and controls. - Advanced knowledge of information security management, policies, and risk frameworks. Academic Qualifications and Certifications: - Bachelors degree in Information Technology or Computer Science. - Security certifications such as CISA, CRISC, COBIT, or equivalent. - Certifications like Lead audit/Implementer - ISO 27001, SOC TSP are preferred. Required Experience: - Advanced experience in Technology Information Security Industry. - Experience in Operational Risk Management and Enterprise Risk Management. - Experience in risk identification in technical programs, new technologies, changes in systems, etc. - Experience with Enterprise Risk Management solutions and technical Information Security consulting. - Up-to-date knowledge of security threats, countermeasures, and network technologies. About NTT DATA: NTT DATA is a global business and technology services leader committed to accelerating client success through responsible innovation. With expertise in AI, digital infrastructure, cloud, security, and more, we help organizations move confidently into the digital future. As an Equal Opportunity Employer, we embrace diversity and provide an environment free of discrimination and harassment. Join us at NTT DATA to accelerate your career and make a positive impact on society. Apply today. Role Overview: As a Manager, Information Security Governance, Risk and Compliance at NTT DATA, you will play a crucial role in supporting the organization by protecting its brand and ensuring compliance with regulatory and contractual obligations. Your responsibilities will include preparing, monitoring, and implementing controls for various compliance programs such as ISO27001 and SOC, in alignment with the Information Security Management System. Key Responsibilities: - Support the development and operational effectiveness of IT security controls. - Manage and monitor Group risk using the company's preferred risk management solution. - Assist in developing security compliance review schedules, reviewing risk registers, and conducting threat and risk assessments. - Document improvements in service design and ensure the development and review of required security plans. - Review service level and business requirements to develop service methodologies and information security policies. - Advise on reporting requirements and ensure implementation of the ISM policy in service operation. - Assist with compliance design and operation in alignment with internal security policies and laws. - Evaluate security assessments to develop and align

One address, no account. We’ll tell you when matching roles go live.

More at Important Group

Related open roles

View all roles