Information securities & Audit Manager

Talentgigs

Bengaluru

On-site

INR 223,200 - 334,800

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading company in Bengaluru is seeking a Manager for their Information Security team. This role involves managing internal and external audits, responding to client inquiries, and ensuring compliance with industry standards. The ideal candidate will have over 10 years of experience and relevant certifications in information security. Responsibilities include developing security policies and engaging with clients to enhance security practices.

Qualifications

  • 10+ years of experience in information security, with a focus on audit management.
  • CISA, CRISC, CISM, or CISSP certifications preferred.
  • Experience with compliance frameworks such as NIST, ISO 27001, HIPAA.

Responsibilities

  • Organize and manage internal and external audits related to information security.
  • Respond to client security questionnaires in a timely manner.
  • Engage with clients and third-party auditors regarding the organization's security posture.

Skills

Analytical Thinking
Relationship Building
Project Management

Education

Bachelor's degree in Information Security, Cybersecurity, Communications, Education, Computer Science, Engineering or related field

Job description

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from Talentgigs

Director HR || Strategic Hiring Partner || C-LEVEL HIRING

Designation: Manager

Experience: 10+ years (Relevant)

Qualification: Bachelor’s degree in Information Security, Cybersecurity, Communications, Education, Computer Science, Engineering or related field or equivalent work experience

CISA, CRISC, CISM, or CISSP certifications (one or more) preferred

Targeted Companies: Big 4

Shifting timings: 2pm to 11PM

Mode: WFO

Role Description:

  • The Client Questionnaires & Audit Manager, Information Security position will be an integral member of the Information Security and Risk Management team. This role will be responsible for organizing and managing internal and external audits. Work in Chief Information Security Officer (CISO) office under Director, Information Security Governance, Risk and Compliance. Successful candidate will have a good mix of security knowledge, understanding of industry best practice, and a demonstrated background in information security risk management.
  • The candidate will be responsible for managing and responding to client security questionnaires, audits, and assessments related to the organization’s information security posture. This role involves working closely with internal teams, clients, and external auditors to ensure the company’s security practices align with industry standards and client requirements. The manager will also coordinate audit activities toensure compliance with security frameworks and regulations.

The ideal candidate:

  • is a self-starter, with the ability to drive tasks to completion independently and learn new skills on the job as program requirements evolve.
  • possesses strong business judgment, deep analytical thinking, is comfortable managing multiple responsibilities within a fast-paced environment, and has worked collaboratively with others to develop, implement, and communicate business improvement and innovative strategies.
  • possesses strong verbal and written communication skills, a solution-oriented approach, and relationship-building skills are important attributes to succeed in this role. Successful candidate will develop strong relationships, collaborate across teams, coordinate multiple timelines, and manage complex, cross discipline projects.
  • global view of their business and think in terms of immediate problem solving but also automating, expanding, and scaling solutions broadly.

Responsibilities:

  • Establish a repository of standardized security questionnaire responses and ensure they are updated with the implemented security controls, certifications, and policies.
  • Manage responses to client security questionnaires in a timely and accurate manner.
  • Collaborate with internal teams (e.g., IT, legal, Information Security) to gather necessary documentation and information for client inquiries.
  • Serve as the main point of contact for clients regarding security-related inquiries and responses.
  • Client MSA Security Terms and Conditions Review:
  • Create security terms and conditions for inclusion in contracts.
  • Review security terms and conditions and provide feedback to legal team.
  • Audit Coordination:
  • Lead and coordinate client and internal audits to assess the organization's compliance with security policies, procedures, and regulatory requirements (e.g., ISO 27001, HIPAA).
  • Serve as the liaison between the organization and external auditors or clients performing audits.
  • Prepare and provide evidence for security audits, ensuring all documentation is complete and accurate.
  • Collaborate with internal teams to design and implement mitigation strategies for identified risks.
  • Collaborate with control owners to create corrective action plans to ensure appropriate remediation efforts are implemented and completed in a timely manner.
  • Cyber Insurance Response:
  • Respond to cyber insurance questionnaires based on implemented security controls, certifications, and policies.
  • Process Improvement:
  • Identify opportunities to improve the efficiency and effectiveness of client questionnaire responses and audit processes.
  • Develop and implement templates, and workflows to streamline the completion of client questionnaires.
  • Continuously improve the organization's internal audit and compliance processes to meet client expectations.
  • Stakeholder Engagement:
  • Engage with clients and third-party auditors in discussions around the organization's security posture.
  • Communicate effectively with internal stakeholders, including IT, legal, compliance, and senior leadership, to ensure timely responses to audits and questionnaires.
  • Provide recommendations to management regarding areas of improvement in security practices and compliance.

Experience:

  • 10+ years of experience in information security, with a focus on audit management.
  • Experience with responding to security questionnaires and managing client audits.
  • Experience in managing third-party audits and internal audit processes.
  • Familiarity with compliance frameworks such as NIST, ISO 27001, HIPAA, and others.
  • Demonstrated advanced verbal and written communication skills
  • Excellent project management and organizational skills, with the ability to handle multiple audits and client requests simultaneously.
  • Excellent organization skills and be a self-motivated learner
Seniority level
  • Seniority level
    Associate
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Information Services

Referrals increase your chances of interviewing at Talentgigs by 2x

Sign in to set job alerts for “Information Security Manager” roles.
Associate Director, Information Security
Enterprise Risk Manager / ICS Risk Manager (Information & Cyber Secuirty Risk) for our client in Bangalore
Senior Information Security Engineer - VAPT, Thick client application
Technology Consulting-DT IT Audit Assistant Manager
Technology Consulting-DT IT Audit Assistant Manager
Technology Consulting-DT IT Audit Assistant Manager
Engineering Manager, Customer Capacity Experience
Senior Software Engineering Manager, Google Cloud
Engineering Manager, Android Application Safety
Engineering Manager, Play Search and Quality
Engineering Manager, YouTube Developer Infrastructure
Engineering Manager, YouTube OTT Scaled Content
Senior Software Engineering Manager, Google Cloud
Engineering Manager, Mobile, YouTube Create
Software Engineering Manager, Google Store
Sales Manager – Digital Trust & Compliance Consulting

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager [T500-19579]
Information Security Manager [T500-19579]

Deutsche Börse • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Information Technology Auditor
Information Technology Auditor

Cubical Operations • Bengaluru

On-site
INR 800,000 - 1,500,000
Sr. Manager - IT
Sr. Manager - IT

ATLAS SkillTech University • Mumbai Suburban

On-site
INR 12,000,000 - 18,000,000
Dynamic work environment
Opportunities to lead and scale
Cross-functional collaboration
+1
I O Engineering Manager
I O Engineering Manager

Optum • Dadri

On-site
INR 1,500,000 - 2,000,000
Lead Cyber Risk Management
Lead Cyber Risk Management

HYrEzy Tech Solutions • Noida

On-site
INR 1,500,000 - 2,500,000
Senior Information Security Engineer
Senior Information Security Engineer

DigiCert • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Generous time off policies
Education support
Wellness and lifestyle support
Senior Security Specialist
Senior Security Specialist

techvantage.ai • Thiruvananthapuram

On-site
INR 1,500,000 - 2,500,000
High visibility in a growing function
Opportunity to work with innovative technology
Competitive compensation
Senior Software Engineer - Security
Senior Software Engineer - Security

LogiNext • Mumbai City

On-site
INR 1,500,000 - 2,500,000
Lead Cyber Risk Management- Noida, Sector 125
Lead Cyber Risk Management- Noida, Sector 125

HYrEzy Tech Solutions • Noida

On-site
INR 1,200,000 - 2,000,000
Security Architect
Security Architect

Accenture in India • Bengaluru

On-site
INR 1,500,000 - 2,500,000