Talent.com
Cybersecurity Risk and Compliance Advisor
Cybersecurity Risk and Compliance AdvisorSoffit Infrastructure Services (P) Ltd • Cochin, Republic Of India, IN
No longer accepting applications
Cybersecurity Risk and Compliance Advisor

Cybersecurity Risk and Compliance Advisor

Soffit Infrastructure Services (P) Ltd • Cochin, Republic Of India, IN
30+ days ago
Job description

The Information Security Consultant will be responsible for the implementation, assessment, and management of ISO 27001 : 2022, ISO 27002, and SOC 2 standards for clients. This role involves working independently or alongside senior consultants to help clients achieve and maintain information security compliance and other best practices. The consultant will focus on assessing and ensuring compliance with key security frameworks and will provide vCISO support to various clients.

Key Responsibilities :

ISO 27001 / 27002 Compliance :

  • Assist clients in achieving ISO 27001 certification by identifying and implementing the appropriate controls within the audit scope.
  • Verify compliance with ISO 27001 / 27002 controls and provide recommendations for improvement.

SOC 2 Compliance :

  • Assist clients in achieving SOC 2 compliance by identifying and implementing the appropriate Trust Service Criteria (TSCs).
  • Conduct SOC 2 compliance assessments and ensure the proper implementation of required controls.
  • Risk Assessment and Mitigation :

  • Conduct risk assessments of business activities, collaborating with stakeholders to manage risks until closure or acceptance.
  • Provide actionable recommendations to mitigate identified risks.
  • Policy and Procedure Development :

  • Define, develop, and review information security policies, procedures, guidelines, forms, and templates in line with best practices.
  • Ensure documentation is up-to-date and aligned with industry standards.
  • Baseline Standards Review :

  • Create and review baseline standards for operating systems, databases, web servers, and applications.
  • Recommend improvements based on security assessments.
  • Post-Implementation Audits :

  • Support post-implementation audits for ISO 27001 : 2022 to ensure ongoing compliance.
  • Monitor and assess adherence to established information security standards.
  • Information Security Awareness :

  • Create and execute organizational information security awareness programs.
  • Conduct training sessions to ensure employees are knowledgeable about security best practices.
  • Security Standards Compliance :

  • Assist clients in ensuring compliance with various security standards (ISO 27001, SOC 2, HIPAA, NIST, CIS, PCI DSS, etc.).
  • Recommend strategies to ensure long-term adherence to security best practices.
  • Incident Response :

  • Develop and implement incident response plans to handle security breaches and cyberattacks.
  • Ensure that clients have clear, actionable plans to address potential security incidents.
  • Gap Assessment :

  • Conduct gap assessments to identify areas of non-compliance and provide remediation strategies.
  • vCISO Support :

  • Provide virtual Chief Information Security Officer (vCISO) support to clients, advising on information security strategy and governance.
  • Skills and Qualifications :

    Technical Skills :

  • Strong background in Information Technology and / or Cybersecurity .
  • Proficiency in auditing, policy development, database security, firewall design, risk analysis, identity management, access control, and web security.
  • Knowledge of security frameworks including ISO 27001, SOC 2, HIPAA, NIST, CIS, PCI DSS, and other industry best practices.
  • Hands-on experience with ISO 27001 : 2022 and SOC 2 implementations and assessments.
  • Strong understanding of risk management and the ability to assess and mitigate security risks.
  • Presales and Communication Skills :

  • Excellent client-facing communication skills.
  • Strong problem-solving abilities and the capacity to work effectively in a team environment.
  • Ability to communicate complex technical concepts to both technical and non-technical audiences.
  • Demonstrated ability to deliver presentations and conduct training sessions.
  • Create a job alert for this search

    Risk Advisor • Cochin, Republic Of India, IN

    Related jobs
    Investment Advisory Compliance Lead

    Investment Advisory Compliance Lead

    Evalueserve India • Republic Of India, IN
    Elevate Your Impact Through Innovation and Learning.Evalueserve is a global leader in delivering innovative and sustainable solutions to a diverse range of clients, including over 30% of Fortune 50...Show more
    Last updated: 30+ days ago • Promoted
    Head of Cyber Risk and Compliance

    Head of Cyber Risk and Compliance

    The Indian Hotels Company Limited (IHCL) • Republic Of India, IN
    IHCL and its subsidiaries bring together a group of brands and businesses that offer a fusion of warm hospitality and world-class service. World’s Strongest Hotel Brand’ and ‘India’s Strongest Brand...Show more
    Last updated: 12 days ago • Promoted
    Cybersecurity Account Lead

    Cybersecurity Account Lead

    Kaspersky • New Delhi, Republic Of India, IN
    Kaspersky has been protecting individuals and corporate clients all over the world from cyber threats for 27 years.We have 400 million unique users, 270 000 corporate clients, 517 products, 1100 te...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cyber Risk Advisor

    Senior Cyber Risk Advisor

    Luxoft India • Pune, Republic Of India, IN
    CISO organization plays a leading role in ensuring cyber and information security for our clients, employees and data and also manages the Group Operations and Technology (GOTO) risk and group stra...Show more
    Last updated: 6 days ago • Promoted
    Cybersecurity Risk and Compliance Consultant

    Cybersecurity Risk and Compliance Consultant

    Reflect Security Solutions • Chennai, Republic Of India, IN
    Are you someone who’s passionate about cybersecurity and has hands-on experience in implementing ISO 27001? Are you ready to join a growing company where your work creates real impact?.ISO 27001 Im...Show more
    Last updated: 4 days ago • Promoted
    Assistant Manager, Cybersecurity Compliance

    Assistant Manager, Cybersecurity Compliance

    Accedere Limited • Republic Of India, IN
    Max 5 years) of experience with InfoSec Certification of min ISO 27001 LA / CISA.Kindly read the entire JD before applying. Accedere is a CERT-In Empanelled Audit firm, a CPA Firm as well as a Certifi...Show more
    Last updated: 6 days ago • Promoted
    Cybersecurity Risk & Compliance Manager

    Cybersecurity Risk & Compliance Manager

    ITC Infotech • Republic Of India, IN
    Service Delivery Manager - Cyber Security.Experience and Manage delivery of cybersecurity services across DLP, Email security, Endpoint security, IAM / PAM, WAF, Encryption, Vulnerability management....Show more
    Last updated: 9 hours ago • Promoted • New!
    IT Risk and Compliance Advisor

    IT Risk and Compliance Advisor

    KPMG India • Republic Of India, IN
    KPMG entities in India are professional services firm(s).These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993.Our professionals leve...Show more
    Last updated: 24 days ago • Promoted
    Senior IT Risk Advisor

    Senior IT Risk Advisor

    7-Eleven Global Solution Center – India • Republic Of India, IN
    Why Join 7-Eleven Global Solution Center?.When you join us, you'll embrace ownership as teams within specific product areas take responsibility for end-to-end solution delivery, supporting local te...Show more
    Last updated: 6 days ago • Promoted
    Cybersecurity Governance Lead

    Cybersecurity Governance Lead

    Luxoft India • Pune, Republic Of India, IN
    CISO organization plays a leading role in ensuring cyber and information security for our clients, employees and data and also manages the Group Operations and Technology (GOTO) risk and group stra...Show more
    Last updated: 6 days ago • Promoted
    Governance, Risk, and Compliance Lead

    Governance, Risk, and Compliance Lead

    ShieldByte Infosec Pvt. Ltd. • Republic Of India, IN
    Cybersecurity, IT Security, IT Audit.We are seeking Governance, Risk, and Compliance (GRC) professionals to join our team as GRC Executive / GRC Manager. The role involves risk assessment, regulator...Show more
    Last updated: 4 days ago • Promoted
    Trading Risk & Compliance Leader

    Trading Risk & Compliance Leader

    Anand Rathi Group • Republic Of India, IN
    Anand Rathi Global Intermediaries Limited (Stock Broker).We are a SEBI-registered Trading Member and Self-Clearing Member with a focus on institutional broking, proprietary trading, and promoter gr...Show more
    Last updated: 30+ days ago • Promoted
    Business Risk and Compliance Advisor

    Business Risk and Compliance Advisor

    People Prime Worldwide • Republic Of India, IN
    Our client is a French multinational information technology (IT) services and consulting company, headquartered in Paris, France. Founded in 1967, It has been a leader in business transformation for...Show more
    Last updated: 9 hours ago • Promoted • New!
    Senior Risk Advisor

    Senior Risk Advisor

    NPCI BHIM • Republic Of India, IN
    Preferred Educational Qualification : .Enterprise Risk Management (ERM), Operational Risk Management (ORM), incident governance, compliance and / or audit. Candidate should have worked extensively on ma...Show more
    Last updated: 17 days ago • Promoted
    Cyber Risk and Controls Advisor

    Cyber Risk and Controls Advisor

    Randstad • Republic Of India, IN
    Cyber Controls & Audit Expert at Randstad Global.Bangalore - India, hybrid, fulltime.Are you ready to strengthen Randstad's cyber resilience on a global scale? Randstad Global is seeking a highly s...Show more
    Last updated: 2 days ago • Promoted
    Cybersecurity Governance Lead

    Cybersecurity Governance Lead

    Network Intelligence • Republic Of India, IN
    Program Management & Advisory services Cyber Security Governance Advisory.ISO 27001 : 2013 or ISO 27001 : 2022 Internal & External Audit support for requisite compliance document.Empaneled Audit Suppor...Show more
    Last updated: 3 days ago • Promoted
    Cybersecurity Solutions Advisor

    Cybersecurity Solutions Advisor

    Palo Alto Networks • Republic Of India, IN
    At Palo Alto Networks® everything starts and ends with our mission : .Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and m...Show more
    Last updated: 30+ days ago • Promoted
    Governance, Risk & Compliance Advisor

    Governance, Risk & Compliance Advisor

    KPMG India • Republic Of India, IN
    Function : Governance, Risk and Compliance Services (GRCS).KPMG is a global network of professional firms providing Audit, Tax and Advisory services. We operate in 156 countries and have 152,000 peo...Show more
    Last updated: 30+ days ago • Promoted