This is an exciting new role to partner with the Information Security Manager for India delivering key security initiatives across the market. This role will be responsible for ensuring controls and culture are maintained, and for supporting business security requirements, leveraging global security capabilities.
Job Description : Key Responsibilities
- Communications : Communicate and support adherence of Dentsu Security policy and standards within the market.
- Work with central security teams to ensure policy, standards, and projects consider global and regional nuances.
- Lead risk and control assessment process, reporting risk outputs and metrics to business and security stakeholders as required.
- Evaluate, review, and prepare updates to the risk register and follow information and cyber risk remediations to closure.
- Support the completion of thorough assessments of in-scope systems, applications, processes and locations to establish information security risks and control gaps.
- Support the Cyber Operations team with monitoring and tracking the remediation of technical vulnerabilities in the functions. Manage escalation with technology stakeholders as required.
- Provide support for security incidents, including assessing the scope and impact of incidents and following appropriate policies and procedures.
- Audit & Assurance : Engage with Internal Assurance and Internal Audit teams to ensure functional audits findings are tracked and managed.
- Training and Awareness : Drive a culture of understanding and awareness around Information Security risks throughout the global functions.
- Build relationships and partner with key members of the global functions team
- Assist in developing and contributing to management reporting and presentations.
Professional Skills & Key Experiences
Achieved or working towards an information security qualification (CISSP, CISM, CISA, CRISC, ISO27001 Lead Auditor / Implementor) (desirable)Effective working knowledge of ISO 27001 and maintenance of an ISMSExperience of security compliance initiatives within an enterprise technology environment such as NIST CSF, CSA, PCI DSS, Cyber Essentials Company confidentialExperience operating in a matrixed organisation to meet requirements of diverse stakeholders.Experience of acting as internal security consultant for project teams and business partners.Track record of supporting information security in a diverse, fast-paced enterprise environment. Knowledge of all domains within security covering people, process and technologyUnderstanding of security risk analysis techniquesUnderstanding of network architecture, protocols and principles (desirable)Working knowledge of global data protection legislationAbility to explain technical complex concepts to non-technical audiences combined with excellent communication and organisational skillsExperienced with IT assurance functions and auditing techniquesExcellent written and verbal communication skills and able to be understood by both technical and nontechnical personnelStakeholder management and interpersonal skills at both a technical and non-technical levelDiligent and thorough approach to problem solvingInterest in their own personal development within securityUnderstanding of emerging methodologies, technologies, architectures, and philosophies in the Cyber / Information Security portfolio.Comfortable with managing uncertainty, ambiguity, and change to make decisions and recommendationsLocation : New delhi
Brand : Dentsu
Time Type : Full time
Contract Type : Permanent
Skills Required
Pci Dss, Cisa, Csa, Isms, Iso 27001, Cissp, crisc , Cism