Talent.com
This job offer is not available in your country.
Information Security : GRC / ISRM Lead

Information Security : GRC / ISRM Lead

DNEGmumbai, India
23 hours ago
Job description

Description

Position at DNEG DNEG’s expanding Information Security (InfoSec), Governance, Risk and Compliance (GRC) and Data Privacy programs have the requirement to add an experienced InfoSec Governance, Risk and Compliance (GRC) Lead to the expanding global team. The role will be responsible for successfully managing and steering the Information Security GRC and Privacy function within DNEG. The InfoSec team are responsible for ensuring that the confidentiality, integrity, and availability (CIA) of its, and client’s, confidential data, PII and systems and services are always maintained. It’s for this reason that an experienced InfoSec GRC function is required to work collaboratively with the team, peers, and business stakeholders to ensure that all the InfoSec GRC initiatives / projects are aligned, maintained, and managed effectively to meet the requirements of both tactical roadmap requirements and to the overall successful delivery of the wider InfoSec strategy. 1. Mandatory Requirements and Expectations

An experienced individual that works in a methodical and concise manner is required to successfully manage the InfoSec GRC and Privacy function at DNEG.

  • Experience of working within a highly technical and multi-faceted InfoSec security program.
  • Have excellent interpersonal, analytical, assessment and documentation skills which can be effectively utilized to develop and deliver against highly critical and GRC and Privacy assurance requirements.
  • Working closely with the Information Security Program Manager (ISPM) to successfully prioritize, steer and deliver the GRC and privacy facets of the InfoSec program.
  • Experience of working within multi-faceted audit environment.
  • Demonstrable experience of delivering, maintaining, managing, and maturing a global GRC program to meet the requirements of a highly complex environment.
  • Excellent track record of working with both internal and client driven auditable environments and ensure that control areas are effectively managed from a risk-based methodology. 2. Duties and Operational Responsibilities
  • Manage, maintain, and mature the GRC and function within DNEG.
  • Work proactively with the wider InfoSec team to ensure that all GRC and audit deliverables are suitably communicated and documented.
  • Be able to work effectively in an independent capacity and as part of the InfoSec team.
  • Utilize effective task management, communication, and leadership skills.
  • Work in close partnership and collaborate with peers and internal technical teams. 3. Job Requirements

3.1 Mandatory Job Requirements

A successful candidate will meet the majority of the requirements listed below and will be able demonstrate suitable experience in competencies in each of the following :

  • Five to Ten years, plus / minus, of working within, or leading, a GRC, Data Privacy and audit function.
  • Have demonstrable experience with all the following key areas :
  • Lead and mature the existing GRC program to ensure that identified CRM and InfoSec risks are suitably kept within DNEG’s risk tolerance level.
  • Highly proficient with Risk Management methodologies and suitable application.
  • Lead the assessment, evaluation and define risk mitigation solutions across the business and technical environments and identify areas of improvement.
  • Take ownership of the ISMS policy framework and ensure that the control framework is suitable and meets requirements as set forth by industry and client driven audit requirements.
  • Conduct onsite security audits and gap analyses across DNEG facilities to assess alignment with security frameworks.
  • Mature and further develop the audit program and work collaboratively with peers and stakeholders to ensure that control deficiencies are suitably tracked and ultimately either mitigated or accepted.
  • Highly motivated and bring a progressive and highly collaborative approach to the InfoSec GRC function.
  • Knowledge of Information / Cyber Security processes and methodologies, e.g., ISO27001, CSA CCM etc.
  • Experience of working collaboratively and effectively with a PMO function.
  • Document and create qualitative and quantitative reporting relating to the GRC / Data Privacy roadmap. 3.2 Desired Job Requirements
  • A successful candidate will have experience with the desired requirements listed below and will be able demonstrate suitable experience in competencies in each of the following :

  • Experience of working with and customizing automated risk management platforms and services.
  • Prior experience working within either the film or media industry sector.
  • Experience and demonstrable, high-level knowledge, of the following :
  • Working within either a hybrid or cloud native environment and their associated risks that are applicable within this type of environment.
  • 3.3 Education

  • A bachelor’s degree in IT or Computer Science is desirable, but not essential.
  • Any of the following Risk Management certifications, e.g., CISSP, CISM, CISA, CRISC, ISO 27001 Lead Implementer / Auditor etc.
  • About Us

    We are DNEG, one of the world’s leading visual effects and animation companies for the creation of award-winning feature film, television, and multiplatform content. We employ more than 9,000 people with worldwide offices and studios across North America (Los Angeles, Montréal, Toronto, Vancouver), Europe (London), Asia (Bangalore, Mohali, Chennai, Mumbai) and Australia (Sydney).

    At DNEG, we fundamentally believe that embracing our differences is a vital component of our collective success. We are committed to creating an equitable, diverse and inclusive work environment for our global teams, where everyone feels they matter and belong. We welcome and encourage applications from all, regardless of background, experience or disability. Please let us know if you need any adjustments or support during the application process, we will do our best to accommodate your needs. We look forward to meeting you!

    Create a job alert for this search

    Lead Information Security • mumbai, India

    Related jobs
    • Promoted
    IAM & PAM Lead - Entra ID & ARCON

    IAM & PAM Lead - Entra ID & ARCON

    ITC InfotechMumbai, Maharashtra, India
    IAM & PAM Lead - Entra ID & ARCON L3.ITCI Cyber Security team is looking for consolidated role governs the enterprise’s identity and privileged access lifecycle. The individual is expected to enforc...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Information Technology Security Officer

    Senior Information Technology Security Officer

    Neo Wealth and Asset ManagementMumbai, Maharashtra, India
    Senior Information Security Officer.Showcase sound understanding of cyber security, network & infra operations along with strong stakeholder management. Senior Engineer who has experience in working...Show moreLast updated: 8 days ago
    • Promoted
    Information Security Analyst- Urgent-Thane

    Information Security Analyst- Urgent-Thane

    Aditya Birla GroupThane, Maharashtra, India
    Job Description – Information Security Analyst (Defensive Security).Thane, Maharashtra, India (On-site).Job Description – Senior Information Security Analyst (SOC Function).Senior Information Secur...Show moreLast updated: 9 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiKalyan-Dombivli, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 28 days ago
    • Promoted
    SAP Security & GRC Consultant

    SAP Security & GRC Consultant

    LTIMindtreeMumbai, Maharashtra, India
    SAP Security Job Description Senior Level.We are seeking experienced professionals for the role of SAP Security Specialist. Only candidates with a minimum of 5 years’ experience in SAP S / 4HANA Secur...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaThane, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    ITC Infotech - L3 Vulnerability Management / Risk & Compliance Lead

    ITC Infotech - L3 Vulnerability Management / Risk & Compliance Lead

    ITC Infotech India LtdMumbai, India
    Job Summary : ITCI Cyber Security team is looking for the role which is accountable for leading the organizations end-to-end vulnerability lifecycle and align...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Instructor

    Cyber Security Instructor

    Accredianthane, maharashtra, in
    Accredian is a leading edtech company dedicated to empowering professionals with industry-relevant, practical, and cutting-edge technology training. Our goal is to bridge the skill gap through exper...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Information Security Engineer- GRC

    Senior Information Security Engineer- GRC

    IDfyMumbai, Maharashtra, India
    IDfy is an Integrated Identity Platform offering products and solutions for KYC, KYB, Background Verifications, Risk Assessment, and Digital Onboarding. We establish trust while delivering a frictio...Show moreLast updated: 30+ days ago
    • Promoted
    Third Party Risk Management - Cyber Security (Pune, Bangalore, Gurgaon)

    Third Party Risk Management - Cyber Security (Pune, Bangalore, Gurgaon)

    DigiHelic Solutions Pvt. Ltd.Mumbai, IN
    Lead the end-to-end third-party risk assessment process including initial due diligence, onboarding, and periodic reviews. Collaborate and lead discussions with various departments from client’s tea...Show moreLast updated: 2 days ago
    • Promoted
    Email Security Lead

    Email Security Lead

    ITC InfotechMumbai, Maharashtra, India
    L3 – Email Security Lead (Mimecast).Location : Mumbai (Andheri East).ITC Infotech Cyber Security team is looking for responsible for architecting and managing the secure email ecosystem, protecting ...Show moreLast updated: 1 day ago
    • Promoted
    SAP GRC Consultant

    SAP GRC Consultant

    SaplingsHRThane, IN
    We have a new urgent requirement pfb the JD.Excellent communication is essential as this is a customer-facing role.Below are the mandate criteria to be covered while sourcing : .GRC Access Control po...Show moreLast updated: 9 days ago
    • Promoted
    Security Lead

    Security Lead

    Eventus SecurityNavi Mumbai, Maharashtra, India
    Job Title : Security Lead (SOC).Location : Ahmedabad and Navi Mumbai.Responsibility Areas – Security Lead (L3) – SOC.Lead high-priority security investigations and incident response activities, ensur...Show moreLast updated: 30+ days ago
    • Promoted
    Natobotics - Vice President - Information Security GRC Specialist

    Natobotics - Vice President - Information Security GRC Specialist

    NatoboticsMumbai, India
    Job Title : VP Information Security (Governance, Risk & Compliance) Location : Mumbai Employment Type : Fu...Show moreLast updated: 30+ days ago
    • Promoted
    Information Technology Governance Consultant

    Information Technology Governance Consultant

    INSPYR Solutionsnavi mumbai, maharashtra, in
    Job Opening : Governance, Risk & Compliance (GRC) Analyst – Level 2 / 3.Governance, Risk, and Compliance (GRC) Analyst.SaaS applications while helping define governance frameworks and risk processes.S...Show moreLast updated: 1 day ago
    • Promoted
    L3 – Email Security Lead (Mimecast)

    L3 – Email Security Lead (Mimecast)

    ITC InfotechMumbai, Maharashtra, India
    Hi, We have 4 open positions for the below role in Mumbai, Secondary location is Pune.Interested candidates can email their updated profiles to manikandan. Current CTC, Expected CTC, Notice period, ...Show moreLast updated: 30+ days ago
    • Promoted
    L3 – Vulnerability Management, Risk and Compliance Lead

    L3 – Vulnerability Management, Risk and Compliance Lead

    ITC InfotechMumbai, Maharashtra, India
    Hi, We have 4 open positions for the below role in Mumbai, Secondary location is Pune.Interested candidates can email their updated profiles to manikandan. Current CTC, Expected CTC, Notice period, ...Show moreLast updated: 30+ days ago
    • Promoted
    Chief Information Security Officer

    Chief Information Security Officer

    AimhireThane, Maharashtra, India
    Job Opening : Chief Information Security Officer (CISO).Our client is a global leader in AI / ML-powered Customer Engagement and Experience Platforms (CEE). They are dedicated to revolutionizing how B2...Show moreLast updated: 30+ days ago
    • Promoted
    Practice Lead

    Practice Lead

    Network IntelligenceThane, Maharashtra, India
    Strategic Leadership & Practice Development.MDR, CES, and MSSP lines of business (LOB).Security Operations & Threat Management. Security Operations Center (SOC).SIEM, EDR, SOAR, and threat intellige...Show moreLast updated: 27 days ago
    • Promoted
    Tuta Insurance Brokerage - Chief Information Security Officer

    Tuta Insurance Brokerage - Chief Information Security Officer

    Tuta Insurance BrokerageMumbai, India
    Chief Information Security Officer (CISO) Job Description Role Overview We are looking for a Chief Information Security Offic...Show moreLast updated: 30+ days ago