Talent.com
Niyo Solutions - Manager - Information Security

Niyo Solutions - Manager - Information Security

Niyo SolutionsBangalore
1 day ago
Job description

PROFILE : ISM / Information Security Manager.

Niyo Information Security function looking for a candidate who can manage Information Security operations in order to maintain and improve Information Security practices, governance and control desired from the role.

Area Of Responsibilities :

  • Provide support to GRC team with artefacts / evidence collection required by them during ISMS, Internal and External Audits.
  • Facilitate support and coordination required during any audit activities.
  • Track compliance & Reviews of periodic ISMS activities such as Disaster Recovery related drill, Backup & Restoration, Change Management, IP Whitelisting / ACL, Access and Roles Reviews, IS Signoff for new development and features etc.
  • Control adoption of ISMS / Information Security Policy across all department and function.
  • Track effectiveness of Information Security department specific KPIs.
  • To ensure current technology architecture for vulnerabilities, weaknesses and for possible upgrades or improvement done on time.
  • Oversee technological upgrades, improvements and major changes to the information security environment.
  • Perform periodic review of Change Management, Rules and Configuration.
  • Review control compliance required before Information Security Sign-off.
  • Review of Information Security events monitoring and Incidents.
  • Periodic review of Information Security related supplier for its SLAs.
  • Review Information Security Effectiveness measurement metrics across department and function as per documented procedure and associated templates.
  • Manage Information security awareness related training to organization personnel.
  • Provide Information Security training for new onboarding.
  • Manage Information Security specific subscription / license and certification and periodically review Information Security related spending to align with the Budget cap.
  • Manage and Control issuance of Digital Certificates and Encryption Keys.
  • Serve as a focal point of contact for the information security team and the Vendor / Partner or organization.
  • Communicate information security goals and new programs effectively with other department managers within the organization.
  • Evaluate and assess any platform or solution required within Information Security function and ensure effective deployments and its efficient use.
  • Periodically undertake the Incident Response simulation / table-top exercise and drill to test its effectiveness.
  • Create and publish reports, dashboards, metrics for Information Security operations and presentation to Department Head / Management.
  • Providing Department Head / Management oversight with a realistic overview of risks and threats in the technology environment.
  • Manage the process improvement within the Information Security function.
  • Identify, assess, and resolve complex issues within own area of responsibility.

Desired Skills :

  • 4+ years of experience in Information Security relation operations.
  • At-least 2 Years of ISO 27001 certifications.
  • Completed CISSP training or certifications.
  • Proven track record in risk management, preferably in the audit or compliance activities, technology, or other pertinent control functions.
  • Proficient in architectural design principles, cyber threat assessments, and the software development life cycle.
  • Type of Security Assessment necessary for Application, Server, Firewall, Cloud and other IT Infrastructure related resources.
  • Proficient with firewalls, endpoint security, mobility management, and vulnerability scanning.
  • Demonstrated expertise in the management of technology and application risks and controls.
  • Understanding of Information security standards, guidelines and controls such as CIS, OWASP, NIST, ISMS etc.
  • Demonstrated aptitude for analysis and problem-solving.
  • Strong organizational skills and the capacity to multitask successfully.
  • Familiar with security best practices in IaaS / PaaS services such as AWS, Azure and Google Cloud.
  • Familiar with MITRE ATT&CK framework.
  • Familiarity with Cloud environment such as AWS, GCP, Azure.
  • Deep understanding of Threat hunting, OSINT, DarkWeb analysis and compromise assessment.
  • Good understanding of Client / Server Architecture, TCP / IP Model and Network Topology.
  • Familiar with OSI Model and associated layer / data units such as network layer and its data units involving Packet, Fragment, Frame, Datagram, and Segment.
  • Familiar with multiple Operating System platforms such as Windows, Linux and Unix.
  • Familiar with popular commercials / open source tools and techniques used by hackers.
  • Familiar with Information Security tools and solutions, category such as SIEM, Vulnerability Scanner, Web Scanner, Mobile App Security Audit, Cloud Security Audit etc.
  • Familiar with different Technology stack such as ELK (Elasticsearch, Logstash, Kibana), Server Less, Lambda etc.
  • Knowledge of Security testing methodology, and other international industry recognised standards and guidelines including CIS controls in depth.
  • Demonstrate strong understanding of Open Source technologies, framework, tools and trends.
  • Up-to-date on general cyber security risks and threat landscape / Cyber Security Community engagement.
  • Aware of general cyber security practices needed by computer and internet user.
  • Strong written and verbal communication skills expected ability to communicate security and risk-related scenarios to both technical and non-technical stakeholders.
  • Strong knowledge of Word, Excel and PowerPoint for professional documentations.
  • Eligibility :

  • BCA / BSC / B Tech (CS / IT) / BE (CS / IT) / Diploma holder (IT / Computer / Network).
  • Work Experience : 6- 10 Years of total work experience.
  • Minimum 4+ Years experience in Information Security operation related roles.
  • Preferred Certifications CISSP, CRISC, CISA, CISM, CCSP and ISO 27001.
  • (ref : hirist.tech)

    Create a job alert for this search

    Information Security Manager • Bangalore

    Related jobs
    • Promoted
    Information Security Engineer

    Information Security Engineer

    InCred CapitalBangalore Urban, Karnataka, India
    We are seeking a highly motivated and independent Information Security Engineer to join.The ideal candidate will possess a broad range of technical and compliance expertise across various informati...Show moreLast updated: 18 days ago
    • Promoted
    • New!
    Senior Manager - Information Security and System Audit [Urgent]

    Senior Manager - Information Security and System Audit [Urgent]

    sliceBengaluru, Karnataka, India
    About the role The individual will be responsible for executing IT security audits, ensuring adherence to ISMS and ITGC controls, and identifying potential security risks.The role involves conduct...Show moreLast updated: 5 hours ago
    • Promoted
    Product Manager - Cyber Security Domain

    Product Manager - Cyber Security Domain

    SYD.co.inBangalore
    The client's Attack Surface Monitoring (ASM) productis used by enterprises globally to identify, monitor, and secure their external attack surface. It enables organisations to discover shadow a...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Plant Security

    Lead Plant Security

    Tata ElectronicsHosur, Tamil Nadu, India
    Head of Security (Corporate) TEPL.Electronics Manufacturing Services, Semiconductor Assembly & Test, Semiconductor Foundry, and Design Services. Established in 2020 as a greenfield venture of the Ta...Show moreLast updated: 18 days ago
    • Promoted
    Resillion - Cyber Security Manager / Architect - Security Operations Center

    Resillion - Cyber Security Manager / Architect - Security Operations Center

    ResillionBangalore
    Job Description Job Title : Cyber Security Manager / Architect.Experience range : 12-15 Years.Location : Bangalore (Hybrid Overview : <...Show moreLast updated: 30+ days ago
    • Promoted
    Pixis - Head of Information Security - Vulnerability Management

    Pixis - Head of Information Security - Vulnerability Management

    PixisBangalore
    Description : Why Pixis ? We at Pixis believe that nothing is impossible, when you fail fast you learn faster, zero hierarchy, put the team above...Show moreLast updated: 18 days ago
    Principal Specialist - Information Security

    Principal Specialist - Information Security

    ScaleneWorksBengaluru, Karnataka, India
    Quick Apply
    Represent the security office in the RnD organisation.Works with development and architect teams to propose solutions that follow the Amadeus standards. Communicate with BISO / TISO to present solutio...Show moreLast updated: 30+ days ago
    • Promoted
    Program Manager (Information Security)

    Program Manager (Information Security)

    NaviBengaluru, Karnataka, India
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 4 days ago
    Senior Manager - Information Security Trust & Compliance (Bangalore)

    Senior Manager - Information Security Trust & Compliance (Bangalore)

    First AdvantageBangalore, Karnataka, IN
    Quick Apply
    The role will own, lead, and scale large, multi-client GRC programs across diverse industries.This role will own the strategy and execution of a risk-based GRC approach that identifies, measures, m...Show moreLast updated: 30+ days ago
    Specialist - Information Security

    Specialist - Information Security

    ScaleneWorksBengaluru, Karnataka, India
    Quick Apply
    Would prefer candidates coming in from DEV Security operations(Dev SecOps) , Product security experience required, SAST and DAST, Secure SDLC, Threat Modeling, OWASP 10, Secure code review, Applica...Show moreLast updated: 30+ days ago
    • Promoted
    Mashreq - Manager - Information Security

    Mashreq - Manager - Information Security

    Mashreq Global Services Private LimitedBangalore, India
    Management : - To Strategize, develop and implement Data Protection Controls in coordination with stakeholders across the Organization globally. To ensure compliance of the Organ...Show moreLast updated: 23 days ago
    • Promoted
    Senior Manager - Information Security and System Audit

    Senior Manager - Information Security and System Audit

    sliceBengaluru, Karnataka, India
    The individual will be responsible for executing IT security audits, ensuring adherence to ISMS and ITGC controls, and identifying potential security risks. The role involves conducting security ass...Show moreLast updated: 10 days ago
    • Promoted
    Nextiva - Information Security Auditor

    Nextiva - Information Security Auditor

    NextivaBangalore
    Description : The Information Security Auditor will work across the organization to ensure Nextivas complian...Show moreLast updated: 25 days ago
    • Promoted
    Information Security Architect - Threat Modeling

    Information Security Architect - Threat Modeling

    Digihelic Solutions Private LimitedBangalore
    Description : Job Role : Information Security Architect.Experience Required : 7 to 9 years.Key Responsibilities : - Des...Show moreLast updated: 18 days ago
    • Promoted
    Information Security Lead

    Information Security Lead

    Narayana HealthBengaluru, Karnataka, India
    The Information Security Lead will be responsible for developing and implementing the organization’s information security framework to safeguard patient data, clinical systems, and enterprise IT in...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Information Security Engineer (3 Days Left)

    Information Security Engineer (3 Days Left)

    InCred CapitalBengaluru, Karnataka, India
    Job Summary : We are seeking a highly motivated and independent Information Security Engineer to join our information security team. The ideal candidate will possess a broad range of technical and ...Show moreLast updated: 1 hour ago
    Information Security Manager

    Information Security Manager

    EMBARKGCC SERVICES PRIVATE LIMITEDBangalore North, KA, in
    Quick Apply
    Role : Information Security Manager.Base location : Bangalore, Chennai, Mumbai, Pune & Hyderabad.Security Architecture Review & Threat Modeling : . STRIDE, PASTA, MITRE ATT&CK, DREAD).Review...Show moreLast updated: 26 days ago
    Senior Information Security Engineer

    Senior Information Security Engineer

    Epergne SolutionsBengaluru, Karnataka, India
    Quick Apply
    Senior Information Security Engineer.Job Roles & Responsibilities.Lead vulnerability assessments and policy compliance scans across on prem, cloud, container (Docker / Kubernetes), database, and ...Show moreLast updated: 30+ days ago