Talent.com
Cybersecurity Risk and Compliance Advisor

Cybersecurity Risk and Compliance Advisor

Soffit Infrastructure Services (P) LtdCochin, Republic Of India, IN
30+ days ago
Job description

The Information Security Consultant will be responsible for the implementation, assessment, and management of ISO 27001 : 2022, ISO 27002, and SOC 2 standards for clients. This role involves working independently or alongside senior consultants to help clients achieve and maintain information security compliance and other best practices. The consultant will focus on assessing and ensuring compliance with key security frameworks and will provide vCISO support to various clients.

Key Responsibilities :

ISO 27001 / 27002 Compliance :

  • Assist clients in achieving ISO 27001 certification by identifying and implementing the appropriate controls within the audit scope.
  • Verify compliance with ISO 27001 / 27002 controls and provide recommendations for improvement.

SOC 2 Compliance :

  • Assist clients in achieving SOC 2 compliance by identifying and implementing the appropriate Trust Service Criteria (TSCs).
  • Conduct SOC 2 compliance assessments and ensure the proper implementation of required controls.
  • Risk Assessment and Mitigation :

  • Conduct risk assessments of business activities, collaborating with stakeholders to manage risks until closure or acceptance.
  • Provide actionable recommendations to mitigate identified risks.
  • Policy and Procedure Development :

  • Define, develop, and review information security policies, procedures, guidelines, forms, and templates in line with best practices.
  • Ensure documentation is up-to-date and aligned with industry standards.
  • Baseline Standards Review :

  • Create and review baseline standards for operating systems, databases, web servers, and applications.
  • Recommend improvements based on security assessments.
  • Post-Implementation Audits :

  • Support post-implementation audits for ISO 27001 : 2022 to ensure ongoing compliance.
  • Monitor and assess adherence to established information security standards.
  • Information Security Awareness :

  • Create and execute organizational information security awareness programs.
  • Conduct training sessions to ensure employees are knowledgeable about security best practices.
  • Security Standards Compliance :

  • Assist clients in ensuring compliance with various security standards (ISO 27001, SOC 2, HIPAA, NIST, CIS, PCI DSS, etc.).
  • Recommend strategies to ensure long-term adherence to security best practices.
  • Incident Response :

  • Develop and implement incident response plans to handle security breaches and cyberattacks.
  • Ensure that clients have clear, actionable plans to address potential security incidents.
  • Gap Assessment :

  • Conduct gap assessments to identify areas of non-compliance and provide remediation strategies.
  • vCISO Support :

  • Provide virtual Chief Information Security Officer (vCISO) support to clients, advising on information security strategy and governance.
  • Skills and Qualifications :

    Technical Skills :

  • Strong background in Information Technology and / or Cybersecurity .
  • Proficiency in auditing, policy development, database security, firewall design, risk analysis, identity management, access control, and web security.
  • Knowledge of security frameworks including ISO 27001, SOC 2, HIPAA, NIST, CIS, PCI DSS, and other industry best practices.
  • Hands-on experience with ISO 27001 : 2022 and SOC 2 implementations and assessments.
  • Strong understanding of risk management and the ability to assess and mitigate security risks.
  • Presales and Communication Skills :

  • Excellent client-facing communication skills.
  • Strong problem-solving abilities and the capacity to work effectively in a team environment.
  • Ability to communicate complex technical concepts to both technical and non-technical audiences.
  • Demonstrated ability to deliver presentations and conduct training sessions.
  • Create a job alert for this search

    Risk Advisor • Cochin, Republic Of India, IN

    Related jobs
    • Promoted
    Governance, Risk, and Compliance Advisor

    Governance, Risk, and Compliance Advisor

    Solytics PartnersPune, Republic Of India, IN
    Solytics Partners is a Global Analytics firm, recognized with multiple industry awards for innovation and excellence.Our team comprises experts with deep knowledge in risk, analytics, AI / ML, AML / FC...Show moreLast updated: 1 day ago
    • Promoted
    Enterprise Risk Advisory Lead

    Enterprise Risk Advisory Lead

    Randstad IndiaRepublic Of India, IN
    Job Location - Riyadh, Saudi Arabia.Our budget for this position is 7,000 USD or 6.Lakhs INR per month (tax-free).Please apply only if you fall in the given criteria. As the Director of Enterprise R...Show moreLast updated: 11 days ago
    • Promoted
    Investment Advisory Compliance Lead

    Investment Advisory Compliance Lead

    Evalueserve IndiaRepublic Of India, IN
    Elevate Your Impact Through Innovation and Learning.Evalueserve is a global leader in delivering innovative and sustainable solutions to a diverse range of clients, including over 30% of Fortune 50...Show moreLast updated: 30+ days ago
    • Promoted
    AVP, Compliance & Risk Policy

    AVP, Compliance & Risk Policy

    GenpactChennai, Republic Of India, IN
    Ready to shape the future of work?.At Genpact, we don’t just adapt to change—we drive it.AI and digital innovation are redefining industries, and we’re leading the charge.Genpact’s AI Gigafactory, ...Show moreLast updated: 11 days ago
    • Promoted
    Senior Compliance & Information Systems Advisor

    Senior Compliance & Information Systems Advisor

    YES BANKRepublic Of India, IN
    Objective The incumbent would be primarily responsible for co-ordinating regulatory inspections.Take care of IT compliance & also conduct Information Systems Audit for the Bank.Experience in conduc...Show moreLast updated: 13 days ago
    • Promoted
    Cybersecurity Engineer (Governance, Risk, Compliance)

    Cybersecurity Engineer (Governance, Risk, Compliance)

    MindlanceRepublic Of India, IN
    Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 14 days ago
    • Promoted
    Senior SAP Governance, Risk, and Compliance Advisor

    Senior SAP Governance, Risk, and Compliance Advisor

    Avigna ABPune, Republic Of India, IN
    Avigna is hiring SAP GRC Consultant (Process Control & Risk Management).Our SAP Delivery Center aims to build strong and sustainable solutions for customers across Europe.If you want to grow and bu...Show moreLast updated: 1 day ago
    • Promoted
    Governance, Risk & Compliance Advisor - Cybersecurity

    Governance, Risk & Compliance Advisor - Cybersecurity

    Cubical Operations LLPRepublic Of India, IN
    Information Risk Management / Cybersecurity.We are seeking a proactive and detail-oriented.GRC (Governance, Risk & Compliance) Consultant. The ideal candidate will have hands-on experience in.IT Aud...Show moreLast updated: 1 day ago
    • Promoted
    IT Risk and Compliance Advisor

    IT Risk and Compliance Advisor

    KPMG IndiaRepublic Of India, IN
    KPMG entities in India are professional services firm(s).These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993.Our professionals leve...Show moreLast updated: 1 day ago
    • Promoted
    Operational Risk and Compliance Manager - Technology

    Operational Risk and Compliance Manager - Technology

    RevolutRepublic Of India, IN
    People deserve more from their money.More visibility, more control, and more freedom.Since 2015, Revolut has been on a mission to deliver just that. Our powerhouse of products — including spending, ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Technology Risk Advisor

    Senior Technology Risk Advisor

    Pierag ConsultingRepublic Of India, IN
    This is a great opportunity to join our Technology Risk Advisory Team which provides a wide range of technology risk services related to IT Audit, SOX / ICFR, Service Organization Control (SOC) Repor...Show moreLast updated: 1 day ago
    • Promoted
    Cybersecurity Risk & Compliance Consultant

    Cybersecurity Risk & Compliance Consultant

    Cubical Operations LLPRepublic Of India, IN
    Information Risk Management / Cybersecurity.We are seeking a proactive and detail-oriented.GRC (Governance, Risk & Compliance) Consultant. The ideal candidate will have hands-on experience in.IT Aud...Show moreLast updated: 1 day ago
    • Promoted
    Cybersecurity Risk & Compliance Manager

    Cybersecurity Risk & Compliance Manager

    DeloitteRepublic Of India, IN
    India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realize your potential amongst cutting edge leaders, and organisations ...Show moreLast updated: 30+ days ago
    • Promoted
    Technical Compliance Advisor

    Technical Compliance Advisor

    MSX InternationalRepublic Of India, IN
    The purpose of this position is to serve as a Subject Matter Expert (SME) within the "Repair Optimization & Compliance" value stream, providing critical expertise to support solution design during ...Show moreLast updated: 30+ days ago
    • Promoted
    IT Risk and Compliance Advisor

    IT Risk and Compliance Advisor

    TVS NextChennai, Republic Of India, IN
    We are looking for IT Audit and Compliance Consultant – Chennai.This is a 12 months contract position.Create monthly / quarterly compliance tasks and assign to the appropriate process owners (via JIR...Show moreLast updated: 1 day ago
    • Promoted
    Cybersecurity Risk and Compliance Manager

    Cybersecurity Risk and Compliance Manager

    Ocwen Financial Solutions Pvt. Ltd. - APACPune, Republic Of India, IN
    The Incumbent would be responsible to manage the information security governance, risk, and compliance process.Standardize GRC policies, evaluate their impacts, and implement the relevant measure.L...Show moreLast updated: 1 day ago
    • Promoted
    Cybersecurity Compliance Specialist

    Cybersecurity Compliance Specialist

    Tiger AdvisoryRepublic Of India, IN
    Tiger Advisory provides premier cybersecurity consulting services, helping clients manage risks, strengthen resilience, and achieve compliance in an ever-evolving digital landscape.Our mission is t...Show moreLast updated: 30+ days ago
    • Promoted
    Third-Party Risk Governance Advisor

    Third-Party Risk Governance Advisor

    Tiger AdvisoryRepublic Of India, IN
    Tiger Advisory provides premier cybersecurity consulting services, helping clients manage risks, strengthen resilience, and achieve compliance in an ever-evolving digital landscape.Our mission is t...Show moreLast updated: 30+ days ago