Information Security & Data Privacy Manager
T D Newton
Roles & Responsibilities : - Governance : Accountability for the management of information security within the member firm, with the mandate from senior leadership, including strategy and planning, monitoring and maintenance, investments, projects and communication.- Information Security Risk Management : Oversight of information security risk management through risk assessment, including approval of key risks, involvement in information security related escalations, review of contractual terms, response to client questionnaires and RFP, accountability for review of suppliers and acquisitions.- Compliance to Policies and Standards : Responsibility for supporting ongoing information security compliance initiatives, including policies and standards related to information security, technology, data governance and privacy.- Technology Approvals : Accountability for the review and approval of technology in relation to information security risks, including involvement and review of technology projects, approval of significant changes to technology environments, approval of cloud environments, and approval of Global Technology Standard exceptions.- Security Operations : Accountability for security operations, working with technology teams to ensure that technical & information security compliance standards are met on an ongoing basis.- Incident Management : Coordinates the local Member Firm incident response processes, including escalation to global (GSOC) where necessary and conducting readiness rehearsals within the member firm.- Awareness : Accountability for security awareness training program within the member firm, including the coordination of phishing campaigns. Also, accountability for awareness of external threats through the management of Threat Intelligence relate to the member firm or cluster of member firms.Educational Qualifications : - Minimum Bachelor's degree in Computer Science, Information Technology or MCA.- Hold industry standard accreditation or certifications (i.e., CISSP, CISM, ISO 27001).- Be familiar with current data privacy regulations, including GDPR, DPDPA.Work Experience : - Should have a minimum of 13 years experience within information security and risk management.- Have understanding and experience with Secure SDLC and DevSecOps or security automation.Tech Stack & Expertise : - Expertise in ISO 27001, NIST, SOC2, GDPR, DPDPA, and related frameworks.- Experience with Cloud Security, DevSecOps, Security Automation, Identity & Access Management, and Security Governance.- Professional certifications such as CISSP, CISM, or ISO 27001 preferred.- Knowledge of cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies.- Strong experience with Directories, SSO, Federation, Delegated administration, API gateways.- Good understanding of cloud computing architecture, technical design and implementations, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS) and Software as a Service (SaaS) delivery models. (ref:hirist.tech)
- ...Req ID: 388217 NTT DATA strives to hire exceptional, innovative... ...- Technical Consultant_Security Admin to join our team in Delhi... ...CSM modules including Case Management, Knowledge Management, Entitlements... ...degree in Computer Science, Information Technology, or related field....SuggestedFull timeHybrid workWork at officeRemote jobFlexible hours
- ...Responsibilities End-to-End Cloud Security Solution Review & Design... .... Cloud Security Posture Management & Compliance Assurance... ...IT operations and sensitive data. Secure Cloud Development... ...of progressive experience in Information Security, with at least 5–7 years...SuggestedFull time
- ...activities for the Identity and Access Management program.- Perform access certifications... ...role-based access as necessary.- Support security risk assessments and compliance reviews.... ...initiatives.Qualifications : - Knowledge of information security best practices and risk...Suggested
- ...N A P L A N Reports to: Senior Manager, Platform Security Working model: Hybrid Location:... ...announcements is to obtain privileged information from individuals. Anaplan does not... ...the correspondence. C andidate data processed during our recruitment activities...SuggestedHybrid workShift work
- ...doing: As a Senior Identity Security Engineer, you will be a key... ...out of our Privileged Access Management programme, and help shape the... ...interact with Anaplan’s systems and data. Identity Automation &... ...is to obtain privileged information from individuals. Anaplan...SuggestedFull timeHybrid work
Rs 3 - 4 lakhs p.a.
...POCs, and solution design across endpoint security, network security, and cloud-delivered... ...endpoint security deployments and policy management (EDR/XDR platforms)Assist with network... ...presentationsEducationB.Tech / B.E. in Computer Science, Information Technology, Electronics, or related...InternshipImmediate start- ...IT Security Engineer Senior Specialist - Digital Collaboration - Gurgaon... ...through leading-edge management consulting along with technology... ...experiences and protect BCG and client data. Our security engineering... ...collaborate with other BCG information technology teams such as ISRM...Local area
- ...and will report to the Senior Manager, Cybersecurity Governance, Risk... ...organization to mature/design security controls & mitigate risk.... ...compliance, key audit objectives, data analytics, etc. Report against... ...management with summary information on the status of the portfolio...Hybrid workWork at officeImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security & Data Privacy Manager. Be the first to apply!
