AM- Compliance (IT Support & Infra)

The Glove Company

Mumbai

On-site

INR 180,000 - 280,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

The Glove Company is seeking an information security compliance lead in Mumbai to drive ISO 27001:2022 implementation and governance. You will coordinate audits, develop policies, and align security with IT, legal, and business teams to mitigate risk.

You will oversee the management of SIEM, EDR, PAM/DAM, and firewall controls, ensuring AD security and patch management are effective. Strong communication and leadership are essential.

Qualifications

  • 2–5 years of experience in information security compliance and risk management.
  • Hands-on ISO 27001:2022 implementation (mandatory).
  • Exposure to SOC 2, SOX, GDPR, DPDPA, PCI DSS, ISO 27701:2019 preferred.
  • Certifications such as CISSP / CISA / CISM are desirable.
  • Experience with security tools: EDR, SIEM, PAM, DAM, firewalls and AD security.

Responsibilities

  • Lead implementation and maintenance of ISO 27001:2022 compliance across the organization.
  • Manage compliance for SOC 2 Type 2, SOX, and upcoming frameworks like GDPR, DPDPA, PCI DSS, ISO 27701:2019.
  • Coordinate with external auditors and manage end-to-end audit processes.
  • Develop, review, and enforce information security policies, standards, and procedures.
  • Monitor compliance with security policies and highlight non-compliance issues.
  • Prepare reports on compliance status, risk assessments, and incidents.

Skills

Information security
Regulatory compliance
Audit coordination
Leadership

Education

Bachelor's degree in CS/InfoSec or related field

Tools

EDR
SIEM
PAM/DAM
Firewalls
AD security

Job description

Key Responsibilities
  • Lead implementation and maintenance of ISO 27001:2022 compliance across the organization.
  • Manage compliance for SOC 2 Type 2, SOX, and upcoming frameworks like GDPR, DPDPA, PCI DSS, and ISO 27701:2019.
  • Coordinate with external auditors and manage end-to-end audit processes.
  • Develop, review, and enforce information security policies, standards, and procedures.
  • Manage and optimize security tools such as:
    • CrowdStrike EDR
    • SIEM systems
    • PAM and DAM solutions
    • Firewalls and network security devices
  • Ensure security and integrity of Active Directory (AD).
  • Oversee patch management to ensure timely updates and vulnerability remediation.
  • Conduct regular risk assessments and vulnerability analyses.
  • Identify security risks and implement mitigation strategies.
  • Monitor compliance with security policies and highlight non-compliance issues.
  • Work closely with IT, legal, and business teams to align security objectives.
  • Conduct employee training and awareness programs on security and compliance.
  • Stay updated on emerging threats and regulatory changes.
  • Prepare reports on compliance status, risk assessments, and incidents.
  • Maintain documentation for audits, policies, and compliance activities.
Qualifications & Experience
  • Bachelors degree in Computer Science, Information Security, or a related field.
  • 2–5 years of experience in information security compliance and risk management.
  • Hands-on experience with ISO 27001:2022 implementation (mandatory).
  • Exposure to SOC 2, SOX, GDPR, DPDPA, PCI DSS, ISO 27701 preferred.
  • CISSP / CISA / CISM
  • ISO 27001 Lead Implementer or Lead Auditor
  • Experience with security tools:
    • EDR, SIEM, PAM, DAM
    • Firewalls and network security
    • Active Directory security
    • Patch management systems
  • Strong understanding of:
    • IT infrastructure & networking
    • Application security
    • Regulatory compliance standards
  • Excellent communication and interpersonal skills
  • Strong leadership and coordination abilities
  • High integrity and professionalism
  • Analytical mindset with strong problem-solving skills
  • Ability to manage multiple priorities under pressure
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Manager
Information Security Manager

Altraize • Mumbai

On-site
INR 223,200 - 334,800
IT Security Team Lead
IT Security Team Lead

Creative Capsule • Goa

On-site
INR 2,500,000 - 4,500,000
IT Cyber Security & Compliance Executive
IT Cyber Security & Compliance Executive

MS Clinical Research • Karnataka

On-site
INR 900,000 - 1,300,000
IT Security Team Lead
IT Security Team Lead

Creative Capsule • India

On-site
INR 2,500,000 - 5,200,000
Senior Security Compliance Analyst
Senior Security Compliance Analyst

TaskUs • India

On-site
INR 1,400,000 - 2,100,000
Senior Manager Information Security
Senior Manager Information Security

InterGlobe Enterprises • Gurugram District

On-site
INR 1,800,000 - 2,800,000
Deputy General Manager-GRC
Deputy General Manager-GRC

SupportFinity™ • Ahmedabad District

On-site
INR 1,200,000 - 2,000,000
Compliance Analyst
Compliance Analyst

Acura Solutions • Ernakulam

On-site
INR 700,000 - 1,100,000
Manager IT Governance & Compliance
Manager IT Governance & Compliance

Sabpaisa • Delhi

On-site
INR 1,500,000 - 2,500,000
Information Security Manager
Information Security Manager

Cashify • Gurugram District

On-site
INR 2,500,000 - 4,500,000