Source description
About the role
As an Information Security Manager in the Information Technology department at Mumbai location, you will be responsible for managing technical information security aspects including information security tools, infrastructure security controls reviews/testing, technical security compliance, regulatory compliance, risk assessment, internal/external audits, cybersecurity control evaluations, and evaluation/implementation of new security solutions and cloud security controls. Your key roles and responsibilities will include: - Managing Regulatory Information & Cybersecurity compliance requirements. - Performing risk assessments of third-party vendors, ensuring compliance with security standards, and mitigating potential threats. - Performing cloud security risk assessments for cloud SaaS solutions. - Managing Data Leakage Prevention (DLP) controls, reviewing alerts, and aligning SPOCs to curtail data leaks. - Reviewing and finetuning DLP policies regularly to improve data security controls. - Leading internal and external regulatory audits to assess the effectiveness of security controls, vulnerability assessments, and ensuring compliance with relevant standards and regulations. - Ensuring Information Security awareness for all employees and vendor staff. Conducting tabletop exercises to discuss various business disruption scenarios for Senior Management. - Reviewing and Monitoring security alerts observed by the SOC & vulnerabilities observed in the infrastructure & networks. - Monitoring Brand protection & Dark web alerts and ensuring closure. - Reviewing Security Architecture, Network, Firewall rules, and implementing, monitoring, and supporting various security tools as per organizational requirements. - Maintaining various KRI/KPI for Information security controls and presenting it to various management forums. - Performing Business Impact Analysis for in-scope business functions. - Ensuring correct identification, analysis, investigation, reporting, and handling of potential security incidents as part of ongoing operational components of Enterprise Information security. - Evaluating and performing proof of concept of new Cyber Security Products required by the Organization. - Managing the Business Continuity program as per the regulatory framework. - Conducting yearly reviews of Information Security policies & procedures. In this role, you will play a crucial part in maintaining the security posture of the organization and ensuring compliance with regulatory and cybersecurity standards. As an Information Security Manager in the Information Technology department at Mumbai location, you will be responsible for managing technical information security aspects including information security tools, infrastructure security controls reviews/testing, technical security compliance, regulatory compliance, risk assessment, internal/external audits, cybersecurity control evaluations, and evaluation/implementation of new security solutions and cloud security controls. Your key roles and responsibilities will include: - Managing Regulatory Information & Cybersecurity compliance requirements. - Performing risk assessments of third-party vendors, ensuring compliance with security standards, and mitigating potential threats. - Performing cloud security risk assessments for cloud SaaS solutions. - Managing Data Leakage Prevention (DLP) controls, reviewing alerts, and aligning SPOCs to curtail data leaks. - Reviewing and finetuning DLP policies regularly to improve data security controls. - Leading internal and external regulatory audits to assess the effectiveness of security controls, vulnerability assessments, and ensuring compliance with relevant standards and regulations. - Ensuring Information Security awareness for all employees and vendor staff. Conducting tabletop exercises to discuss various business disruption scenarios for Senior Management. - Reviewing and Monitoring security alerts observed by the SOC & vulnerabilities observed in the infrastructure & networks. - Monitoring Brand protection & Dark web alerts and ensuring closure. - Reviewing Security Architecture, Network, Firewall rules, and implementing, monitoring, and supporting various security tools as per organizational requirements. - Maintaining various KRI/KPI for Information security controls and presenting it to various management forums. - Performing Business Impact Analysis for in-scope business functions. - Ensuring correct identification, analysis, investigation, reporting, and handling of potential security incidents as part of ongoing operational components of Enterprise Information security. - Evaluating and performing proof of concept of new Cyber Security Products required by the Organization. - Managing the Business Continuity program as per the regulatory framework. - Conducting yearly reviews of Information Security policies & procedures. In this role, you will play a crucial part in maintaining the security posture of the organiza
More at Native