An application made for this job — a tailored resume and cover letter that speak straight to the posting.
InfosecTrain A Brand of AZPIRANTZ TECHNOLOGIES LLP is seeking a security consultant experienced in information security, business continuity and data privacy management systems. You will lead consulting engagements, assess current controls, and help clients implement policies aligned to ISO27001/ISOs and other standards.
Strong communication, project management, and the ability to translate business requirements into technical IT security deliverables are essential.
Knowledge in Information Security, Business Continuity, IT Service Management & IT Governance & Strategy
Desired Certification: CISSP (Certified Information Systems Security Professional), CISA (Certified Information Systems Auditor), ISO 27001 Lead Auditor, or similar
The consultant shall be responsible for consulting engagements for the information security, business continuity, data privacy, and similar management systems service offerings. The role requires a strong background in Information Security, ISO 27000, ISO22301, ISO 27701, and similar standards and frameworks.
The role requires broad high level technical knowledge and the ability to recommend advisory solutions based on customer business problems or requirements.
Influencing organization, customers, suppliers, partners and peers in areas of expertise.
Advising on the available standards, methods, tools and technologies relevant to area of expertise and how business benefits can be realized.
Lead customer through consulting engagements by assembling information to determine, document and agree customer requirements, conducting AS-IS assessment in line with applicable standards and frameworks, conducting gap analysis and producing recommendations.
Defining, developing, and implementing policies, processes, and procedures aligned to standards, and frameworks.
Developing templates, guidelines and other job aids to use the implemented policies, processes and procedures.
Assessing and formulating tool requirements to execute the processes and ensuring that all the processes are institutionalized within the customer environment.
Conducting periodic compliance audits / assessments against defined processes and various compliance frameworks such as CIS, NIST, ISO 31000, ISO 22301, and ISO27000 series.
Reporting, ensuring and facilitating closure of all non-conformities by driving/initiating corrective actions within the customer environment.
Developing Metrics/KPIs and performing data collection related to the processes deployed, driving analysis and improvements based on recommendations
Contributing to internal best practices, processes and methodology documents pertaining to areas of specialization.