Padmi

Information Security- Risk Manager- GRC

Delhi NCRPosted 2 months ago
CybersecuritySeniorFull Time; Regular
Apply at SMC Group

Opens the source posting on shine.com

Source description

About the role

View original

As an Information Security Risk Manager specialized in Governance, Risk, and Compliance (GRC) with a focus on ISO-27001:2022 and Business Continuity Planning (BCP), your primary responsibility is to oversee the implementation, maintenance, and continual enhancement of the Information Security Management System (ISMS) in alignment with ISO 27001:2022 standards. Your role involves ensuring that the organization's information security practices adhere to regulatory requirements, client expectations, and industry best practices while effectively managing risks to maintain the confidentiality, integrity, and availability of information. Key Responsibilities: - Implement and maintain ISMS in accordance with ISO 27001:2022 standards. - Manage risk effectively to protect the organization's information assets. - Ensure compliance with information security standards and manage audits. - Conduct training sessions to enhance awareness regarding information security. - Handle incidents related to information security effectively and efficiently. - Drive continuous improvement initiatives in the information security domain. - Communicate with stakeholders to ensure alignment on security objectives. - Manage vendors and third-party relationships to maintain a secure ecosystem. Qualifications Required: - Bachelor's degree in Information Security, Computer Science, or a related field. A Master's degree is considered advantageous. - Experience in the Broking/Trading industry is preferred. Experience: - 5+ years of experience in information security management, with expertise in ISO 27001 implementation and compliance. - Proven track record of leading ISMS implementation and managing compliance audits. Certifications: - ISO 27001 Lead Implementer or Lead Auditor certification. - Additional certifications like CISSP, CISM, or CISA are beneficial. Skills: - Profound understanding of ISO 27001:2022 standards and information security best practices. - Strong knowledge of risk management and incident management processes. - Excellent communication, documentation, and project management abilities. - Collaborative mindset to work effectively with cross-functional teams and influence decision-making. - Proficiency in crisis management best practices. - Experience with Cloud AWS built environments, SaaS provider architecture, and cloud-based disaster recovery methodology. If you are passionate about information security, hold relevant qualifications and experience, and possess the necessary skills to excel in this role, we invite you to share your CV at hinachoudhary@smcindiaonline.com or apply directly to the job posting. As an Information Security Risk Manager specialized in Governance, Risk, and Compliance (GRC) with a focus on ISO-27001:2022 and Business Continuity Planning (BCP), your primary responsibility is to oversee the implementation, maintenance, and continual enhancement of the Information Security Management System (ISMS) in alignment with ISO 27001:2022 standards. Your role involves ensuring that the organization's information security practices adhere to regulatory requirements, client expectations, and industry best practices while effectively managing risks to maintain the confidentiality, integrity, and availability of information. Key Responsibilities: - Implement and maintain ISMS in accordance with ISO 27001:2022 standards. - Manage risk effectively to protect the organization's information assets. - Ensure compliance with information security standards and manage audits. - Conduct training sessions to enhance awareness regarding information security. - Handle incidents related to information security effectively and efficiently. - Drive continuous improvement initiatives in the information security domain. - Communicate with stakeholders to ensure alignment on security objectives. - Manage vendors and third-party relationships to maintain a secure ecosystem. Qualifications Required: - Bachelor's degree in Information Security, Computer Science, or a related field. A Master's degree is considered advantageous. - Experience in the Broking/Trading industry is preferred. Experience: - 5+ years of experience in information security management, with expertise in ISO 27001 implementation and compliance. - Proven track record of leading ISMS implementation and managing compliance audits. Certifications: - ISO 27001 Lead Implementer or Lead Auditor certification. - Additional certifications like CISSP, CISM, or CISA are beneficial. Skills: - Profound understanding of ISO 27001:2022 standards and information security best practices. - Strong knowledge of risk management and incident management processes. - Excellent communication, documentation, and project management abilities. - Collaborative mindset to work effectively with cross-functional teams and influence decision-making. - Proficiency in crisis management best practices. - Experience with Cloud AWS built environm

One address, no account. We’ll tell you when matching roles go live.

More at SMC Group

Related open roles

View all roles