i
Flairdeck
26 Flairdeck Jobs
IT Security/Compliance Lead - Incident Management (6-8 yrs)
Flairdeck
posted 4d ago
Key skills for the job
Job Description :
Responsibilities :
- Develop, implement, and maintain IT security policies, procedures, and standards aligned with industry best practices and regulatory requirements.
- Oversee and manage compliance with relevant security frameworks and regulations, including ISO 27001:2022, ISO 22301:2019 (good to have), SOC 2, HIPAA, and others as applicable.
- Conduct regular security assessments, vulnerability scans, and penetration testing to identify and mitigate security risks.
- Develop and execute security awareness training programs for employees.
- Manage and respond to security incidents, including investigation, containment, and remediation.
- Collaborate with IT teams to ensure secure configuration and operation of systems and applications.
- Monitor security logs and alerts to detect and respond to potential threats.
- Evaluate and select security tools and technologies to enhance our security posture.
- Maintain documentation related to security policies, procedures, and compliance activities.
- Conduct internal audits to assess compliance with security policies and procedures.
- Work closely with external auditors during compliance assessments.
- Stay up-to-date with the latest security threats, vulnerabilities, and best practices.
- Contribute to the development and implementation of a business continuity and disaster recovery plan.
- Provide regular reports to management on the status of IT security and compliance efforts.
Qualifications :
- Minimum 6 years of experience working as an Audit and Compliance IT Security Compliance Consultant.
Mandatory : ISO 27001:2022 / ISMS Lead Auditor certification or equivalent experience.
Good to have : ISO 22301:2019 / BCMS Lead Auditor certification or equivalent experience.
- Strong knowledge and thorough understanding of ISO 27001, ISO 22301, SOC 2, HIPAA, and other relevant compliance frameworks.
- Knowledge of security frameworks like NIST CSF.
- Experience in conducting security risk assessments and vulnerability assessments.
- Experience in developing and implementing security policies and procedures.
- Experience in managing security incidents and responding to security breaches.
- Strong understanding of network security, information security, and application security concepts.
- Excellent communication, interpersonal, and presentation skills.
- Ability to work independently and as part of a team.
- Strong analytical and problem-solving skills.
- Bachelor's degree in Computer Science, Information Technology, or a related field
Functional Areas: Other
Read full job description6-11 Yrs
₹ 20 - 25L/yr
Hyderabad / Secunderabad