The Job logo

What

Where

Consultant - Information Security Group - Support

ApplyJoin for More Updates

You must Sign In before continuing to the company website to apply.

Smart SummaryPowered by Roshi
We are looking for a Consultant in Cyber Security Governance, Risk and Compliance (GRC) to join our Information Security Group (ISG) in Bangalore. As a Consultant, you will be responsible for working on GRC initiatives, designing and implementing robust and scalable Information Security, and assisting in various Cyber Security projects. We expect you to have up to 5 years of experience in Information Security, with knowledge of leading Information Security Standards and Frameworks. You should also have working knowledge of Cloud platforms such as Microsoft Azure, AWS, and GCP. An Engineering graduate with one or more certifications like CISSP, CRISC, or CISM will be preferred. We are looking for someone with attention to detail, strong communication and collaboration skills, and a mindset of continuously improving the Information Security program. If you are a self-starter, an avid learner, and have a positive attitude, we would love to hear from you.

Role
Consultant – Cyber Security Governance Risk and Compliance


Designation
Consultant – Information Security Group


Function
Cyber Security Governance, Risk and Compliance (GRC)


Unit
Information Security Group (ISG)


Reporting to
Manager – Cyber Security Governance Risk and Compliance

 

Base location
Bangalore

 

About ISG
Tredence CISO’s office is accountable for Security and Privacy on all aspects of Tredence’s internal and Client facing business. The team in charge of Security - the Information Security Group (ISG) - focusses on all elements of Information Security for the organization working collaboratively with stakeholders from across its business. The team provides internal as well as external stakeholders assurance while confidential data is being handled to meet business objectives.
ISG takes care of implementing, maintaining and reporting of Information Security and its posture using a combination of Policies, Procedures, Guidelines and Cyber Security technology controls on an ongoing basis. The team comprises of two Groups,
1. Cyber Security Governance, Risk and Compliance (GRC) and,
2. Cyber Security Technical Operations (TechOps)

 

Responsibilities
o In your role, you will partake in all GRC initiatives for the organization working with the GRC sub-teams – Governance, Risk Management and, Policy and Compliance - and all relevant stakeholders
o Help with the development and sustenance of Cyber Security Metrics Program as well as the tracking of all mitigations and Projects to closure
o Assist the team in designing, implementing, maintaining and continuously improving the Information Security so as to ensure a robust and scalable GRC program
o Handle initiatives such as, but not limited to, Cyber Security Strategy, Strategic Plan, Cyber Security Governance Framework, Cyber Security benchmarking, handling of Cyber Security Audits, Security Councils and Reporting, Program Management Office (PgMO), Cyber Security Skill Management, External and Internal Cyber Security branding, Information Security Risk Management, Supplier Risk Management, M&A Cyber Security, Cyber Security Regulatory Compliance, ISMS and BCMS Management, Cyber Resilience Program and the Organizational Security Culture

 

Knowledge expectations
o You come with up to 5 years of working experience in Information Security
o You have a working knowledge of applying pragmatic security controls in leading Information Security Standards and Frameworks such as, but not limited to, Information Security Management System (ISO 27001), Business Continuity Management System (ISO 22301), NIST Cyber Security Framework (NIST), NIST 800-53, PCI DSS, HIPAA, SSAE-18 SOC 1 or SOC 2 and SoX controls, having driven various implementation and compliance initiatives related to the same
o You have working knowledge on applying essential security controls in one or more of the following Cloud platforms – Microsoft Azure, Amazon Web Services (AWS), Google Cloud Platform (GCP)
o You stay informed on the latest on Information Security and the dynamic regulatory landscape

 

Required education and certifications
o You are an Engineering graduate, have an equivalent or higher education
o You have acquired one or more of the following certifications – CISSP, CRISC, CISM, CCSP, ISO 27001 Lead Implementer / Auditor, ISO 22301 Lead Implementer / Auditor, Azure, AWS and GCP Certifications

 

Skills expectations and others
o You have great attention to detail, strong communication and collaboration skills
o You come with a mix of technical, analytical and problem-solving skills
o You come with a mindset of helping improve the Information Security Program at all times
o You are an avid learner which you continuously look at imbibing and applying on the job
o You are a self-starter, a go getter and an innovative thinker with a positive attitude

Set alert for similar jobsConsultant - Information Security Group - Support role in Bengaluru, India
Tredence Inc. Logo

Company

Tredence Inc.

Job Posted

a year ago

Job Type

Full-time

WorkMode

On-site

Experience Level

3-7 Years

Category

Consulting

Locations

Bengaluru, Karnataka, India

Qualification

Bachelor

Applicants

Be an early applicant

Related Jobs

Tredence Inc. Logo

Consultant-DE

Tredence Inc.

Bengaluru, Karnataka, India

+3 more

Posted: a year ago

We are seeking an experienced data scientist who possesses mathematical and statistical expertise, as well as a curiosity and creative mind to uncover hidden opportunities in data. You will be responsible for developing data engineering solutions, building ETL pipelines, and fulfilling reporting needs. Technical skills in Databricks, AWS/Azure, SQL, Python, and Spark are necessary. Experience with batch processing, streaming, and other big data technologies is desired. Strong communication, analytical, and problem-solving skills are important.

Synopsys Inc Logo

Security Services Associate Consultant

Synopsys Inc

Bengaluru, Karnataka, India

Posted: a year ago

In this role, you need to go beyond traditional testing services to help our clients identify, remediate, and prevent vulnerabilities in the applications that power their business. You need to have a holistic approach to application security offers a balance of managed and professional services and products tailored to fit client’s specific needs.         As a security professional. You should have the ability to provide remediation guidance, program design services, and training that empower build and maintain secure applications. Responsibilities include but not limited to the following: Ability to collaborate with project team members, take direction from the project lead and execute tasks consistently Can Conduct Source Code Analysis Can Conduct Software Penetration Testing Can Conduct Architecture Security Analysis Can Conduct Secure Software Design and Architecture analysis Conduct Database Security Analysis Knowledge on Network Security Analysis will be an added advantage Familiarity with at least Java or .Net (Should be able to read and understand enterprise code and write basic code) Experience with other languages (e.g. JavaScript, Python, Ruby, PHP, Perl, COBOL, SQL, or Assembly) (Desired) Key Qualification Bachelor’s Degree in Computer Science, Engineering or equivalent. Master’s Degree preferred Preferred Experience 2+yrs of work experience in relevant role