As Information Security Analyst you will be responsible for managing third party risk management, assisting the Infosec team in implementing ISMS related activities and protecting systems and assets from external and internal threats.
Leegality is an ISO 27001 certified Company.
At Leegality you will :
- Facilitate assurance-related requirements.
- Have wider-than-usual exposure to regulatory compliance.
- Implement best-in-class security practices.
- Have the opportunity to advance security domain knowledge at a rapid pace.
- Directly report to Information Management and advance your leadership skills.
Key Responsibilities :
Understanding the Leegality product and its features.End-to-end ownership of responding to client security assessment questionnaires and Information Security Assurance Requests.Keeping the track of security evidence and updating them periodically.Collaborate with relevant teams to plan and develop work program timelines, risk assessments and other planning documents.Performing vendor risk management.Evaluating the security of a product or service provider prior onboarding.Assisting Infosec team in maintenance of ISMS.Ensure technology and information risks are effectively identified, assessed, controlled, managed, reported, and timely closure of Assurance action.Assist in deploying proper information systems, resources, and controls to maximize efficiencies and minimize risk.Demonstrate and apply a thorough understanding of complex information systems, strong project management skills, and use of current technology and tools to enhance the effectiveness of deliverables and services.Build strong relationships with all stakeholders to drive continuous improvement on Technology Risk / Project governance processes.Ensure business continuity, disaster recovery and stress testing controls are defined, documented, and conducted regularly.Assist InfoSec team in managing the organization's Operational Risk Assurance & Controls Testing Plan.Assist InfoSec Manager in day-to-day compliance activities to maintain the company's ISO 27001 : 2022, ISO 27017, ISO 27018, ISO 22301 certification and SOC 2 Type 2 Compliancy.Communication skills to develop clear protocols, inform management about potential risk issues, and relay information about policy changes effectively.Desired Skills and Experience :
Minimum 2 to 3 years of experience in core Information Security domain, preferably in the BFSI or B2B IT sectors.Certifications like ISO 27001 LA, CISA, CISSP will be an added advantage.Hands-on experience with multiple External & Client InfoSec Audits.(ref : iimjobs.com)